Trojan

Trojan.Win32.Siscos.wgv removal

Malware Removal

The Trojan.Win32.Siscos.wgv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Siscos.wgv virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • A process attempted to delay the analysis task.
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Deletes its original binary from disk
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself

Related domains:

xdx.s4f5er4t5g1df23saadse.club
fk.openyourass.club

How to determine Trojan.Win32.Siscos.wgv?


File Info:

crc32: 83080E73
md5: 8a1dc714b39b7a310e1c4d7a25ea5630
name: download.exe
sha1: 57176a4d3322a5f44b69ac94da1ef93421b660e0
sha256: 27e556ab69121c7cdaa0e0cca62f5ea8e888fd2958375412d425616660092c77
sha512: dbb1d7711a0478f0f90fd55bf8fa024d4dd6fc3250936e829c8bffe42daa13199039782157c9f0708d74b6b6fdc5281915dfa211f8c89c12d4ac0897c6065f63
ssdeep: 1536:+SA7zB/dFUHk5xmltOC9rMy9eMhV8jrYFzflez3a498XL8tNZ:+SA7RdaHkzml/rMy9pH8/YFfl43aG8
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan.Win32.Siscos.wgv also known as:

DrWebTrojan.DownLoader25.10311
MicroWorld-eScanGen:Trojan.Downloader.fmGfa8gFUSbj
FireEyeGeneric.mg.8a1dc714b39b7a31
CAT-QuickHealTrojan.Mauvaise.SL1
McAfeeArtemis!8A1DC714B39B
MalwarebytesTrojan.Downloader.UPX
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderGen:Trojan.Downloader.fmGfa8gFUSbj
K7GWTrojan-Downloader ( 0054d9311 )
K7AntiVirusTrojan-Downloader ( 0054d9311 )
TrendMicroBackdoor.Win32.ZEGOST.SMS
BitDefenderThetaGen:NN.ZexaF.33558.fmGfa8gFUSbj
F-ProtW32/Blackmoon.M.gen!Eldorado
SymantecTrojan Horse
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Dropper.Gh0stRAT-6989861-0
GDataWin32.Trojan.Agent.WP
KasperskyTrojan.Win32.Siscos.wgv
AlibabaTrojanDownloader:Win32/Siscos.4978e4b3
NANO-AntivirusTrojan.Win32.Tiny.gkwjyw
ViRobotTrojan.Win32.Z.Downloader.92160
AegisLabTrojan.Win32.Siscos.4!c
RisingBackdoor.Zegost!8.177 (TFE:5:GhyWtHWPdCV)
Ad-AwareGen:Trojan.Downloader.fmGfa8gFUSbj
EmsisoftTrojan-Downloader.Tiny (A)
ComodoPacked.Win32.MUPX.Gen@24tbus
F-SecureHeuristic.HEUR/AGEN.1014775
ZillyaTrojan.Siscos.Win32.5587
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Trojan.nc
SophosTroj/Agent-AWJO
IkarusTrojan-Ransom.HydraCrypt
CyrenW32/Blackmoon.M.gen!Eldorado
JiangminTrojan.Siscos.on
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1014775
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Wacatac
Endgamemalicious (moderate confidence)
ArcabitTrojan.Downloader.fmGfa8gFUSbj
ZoneAlarmTrojan.Win32.Siscos.wgv
MicrosoftTrojan:Win32/Occamy.C
AhnLab-V3Trojan/Win32.Kryptik.R265106
Acronissuspicious
VBA32BScope.Backdoor.BlackHole
ALYacGen:Trojan.Downloader.fmGfa8gFUSbj
CylanceUnsafe
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/TrojanDownloader.Tiny.NQG
TrendMicro-HouseCallBackdoor.Win32.ZEGOST.SMS
YandexTrojan.Siscos!qvsRSp3UlMg
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Kryptik.FHSF!tr
AVGWin32:DropperX-gen [Drp]
Cybereasonmalicious.4b39b7
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.ee5

How to remove Trojan.Win32.Siscos.wgv?

Trojan.Win32.Siscos.wgv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment