Leading countries, companies, and businesses is already difficult enough, but threats like SLICKSHOES are ready to make things even harder. More and more frequently governments and companies need to spend money on extensive malware research and cybersecurity because the number of threats targeted at them keep growing. The trojan we are discussing in this report is part of the Hidden Cobra group, and the hackers behind it have been actively performing attacks with the help of numerous infections, including Volgmer. researchers do not believe that this malware would affect regular Windows users who are using their computers at home, for example, but it is always better to be safe than sorry. This is why we have created this guide. Continue reading to learn more about the infection, and if you discover that you need to delete SLICKSHOES, check out the removal guide below.

How does SLICKSHOES work?

SLICKSHOES comes with a Themida-packed file, which cybercriminals could add seamlessly. If security software on the targeted system does not pick up on the threat, it might remain undetected. If that is what happens, the infection should be able to drop itself to %WINDIR%\Web\taskenc.exe and start malicious processes almost immediately. This dangerous threat can record information about the infected system, drop, execute, and delete files, terminate and execute processes, execute commands, and perhaps even spy on victims by capturing screenshots. All of this can help cybercriminals intrude on the privacy of individual computer users, large networks, and even organizations as a whole. The magnitude of the attack depends on what kinds of systems are attacked successfully. What other threats are dropped and run in conjunction with SLICKSHOES matters too. Even if you do not suspect this malware to run on your operating system, it is crucial to perform through system analysis to determine whether or not it is infected. If the trojan is found, there is a good chance that you need to remove other threats also.

Hidden Cobra – which some recognize as Lazarus, Whois, or Zinc – has been employing malicious tools for years now. From 2009 until 2013, the group performed persistent attacks against the South Korean government. In 2013, the hackers were able to perform wiper attacks against South Korean broadcast companies and financial institutions. It is believed that Hidden Cobra is also the group that gave birth to WannaCry Ransomware, a dangerous file-encryptor that was able to attack hundreds of thousands of computers around the world within just four days. In 2019, the attackers were performing financial attacks, and they might have been the ones responsible for the $49 million theft from Kuwait. This was done with the help of ELECTRICFISH malware. Only time will tell what major attacks SLICKSHOES will be employed in, but we should not dwell on what ifs. Instead, we should focus on strengthening the security of operating systems, and that might have to start with the removal of already active threats.

How to delete SLICKSHOES

Will you need to remove SLICKSHOES from your operating system? We do not know that. Could you face this threat? We do not know that either. However, we know that taking security precautions against malware is never a bad idea. If you have yet to face this trojan and other similar threats, specifically from the Hidden Cobra group, this is high time you overhauled your virtual security. It might be time to employ a more trustworthy and effective anti-malware tool, for example. If you have not used anti-malware software in the past, silent infections could already lurk within your system. Once you install it, it will perform a thorough system scan to determine what other threats exist. Then it will automatically delete them all. You will have SLICKSHOES deleted also if it exists. Most important, you will gain full-time protection you need to keep most threats away. To take an extra step further, always install the latest security updates, and make sure you keep yourself educated on malware to be able to address it correctly.

Removal Guide

  1. Launch File Explorer by tapping Win+E keys.
  2. Enter %WINDIR% into the field at the top to access the directory.
  3. Delete the folder named Web if it has a file named taskenc.exe inside.
  4. Empty Recycle Bin and then quickly install a malware scanner.
  Run a thorough system scan to check if your system is clean.
    tested removal of SLICKSHOES*

