Trojan

Trojan.Win32.Siscos.aboc removal

Malware Removal

The Trojan.Win32.Siscos.aboc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Siscos.aboc virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Tries to suspend Cuckoo threads to prevent logging of malicious activity

How to determine Trojan.Win32.Siscos.aboc?


File Info:

crc32: 4165BC18
md5: 7a3e80694134fb2440ef07bb041a9822
name: 7A3E80694134FB2440EF07BB041A9822.mlw
sha1: 80df937ab9daad43c06af6b74c5a5204004b989f
sha256: 5e0498031e2220151d49148f96d9836c8a9961ab6dad2d5c6b13cc2f62e2f4e3
sha512: 7203ced1446e2a31f78a64774741d7495ca35bd681b1a2b78767f82ed6bc667abf59775e900849bc5bfb0a89d1248d36518e709329c98bf85b685de4bc83a701
ssdeep: 49152:wJb7g7MwlCUr3kXNKfXlrcRkaa37OUA1Ctb:wPg7Iq3iiXJcmaa3ewt
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2020
InternalName: leigod.exe
FileVersion: 7.0.3.5
CompanyName: x6b66x6c49x96f7x795e
ProductName: x96f7x795ex52a0x901fx5668
ProductVersion: 7.0.3.5
FileDescription: x96f7x795ex52a0x901fx5668
OriginalFilename: leigod.exe
Translation: 0x0804 0x04b0

Trojan.Win32.Siscos.aboc also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Damaged.1
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Siscos.4d64b3a3
Cybereasonmalicious.ab9daa
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Siscos.aboc
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34690.2H0@ae4pdUnj
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
FireEyeGeneric.mg.7a3e80694134fb24
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_99%
KingsoftWin32.Heur.KVM007.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GridinsoftTrojan.Heur!.03292021
GDataWin32.Trojan.Farfli.RXY1QZ
AhnLab-V3Trojan/Win.Generic.C4458561
McAfeeArtemis!7A3E80694134
TrendMicro-HouseCallTROJ_GEN.R005H07EL21
RisingTrojan.Siscos!8.2A3A (CLOUD)
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat.PALLAS.H
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Win32.Siscos.aboc?

Trojan.Win32.Siscos.aboc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment