Trojan

Should I remove “Trojan.Win32.DelShad.jac”?

Malware Removal

The Trojan.Win32.DelShad.jac is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.DelShad.jac virus can do?

  • Checks adapter addresses which can be used to detect virtual network interfaces
  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • HTTPS urls from behavior.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Trojan.Win32.DelShad.jac?


File Info:

name: 69FDAC71457D999D8FCE.mlw
path: /opt/CAPEv2/storage/binaries/8639b9484b6633965589c0f54e3301afaa95aa38bbf6e283ef74ec28cfd6e949
crc32: 3D63463F
md5: 69fdac71457d999d8fceb17752822667
sha1: e4ff2c626a2170f47c1613b0e3b91a6fa36ba851
sha256: 8639b9484b6633965589c0f54e3301afaa95aa38bbf6e283ef74ec28cfd6e949
sha512: eb87a5f62aff7c0908c2f0cf49b1392cac50732ffa823bb8c7899292589dc625a1e9764ddbdce1195e82d0d72330d635373758d151b28778667794066c0c8bcc
ssdeep: 384:1IEh2tc084uoLFmpX+8nX/AWHwguRYBdRkHjBO:O09mM+dWzuaBzkHt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10DE29F530FC56AF4D92405763E63591B03A9E22D132FBB3A445E74BFED0E2641D223A8
sha3_384: 01ef1ac9b59887cdb21093ee9f3118e301c5ce8e013c51e5e89b132874206c95aff7cce0293a495a7945d81fa3de808d
ep_bytes: e8d35f00006a00ff15a4904000c3c700
timestamp: 2022-07-17 11:23:22

Version Info:

0: [No Data]

Trojan.Win32.DelShad.jac also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Convagent.i!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.ExNuma.1
FireEyeGeneric.mg.69fdac71457d999d
McAfeeGenericRXSK-DJ!69FDAC71457D
CylanceUnsafe
VIPREGen:Variant.ExNuma.1
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058ee541 )
BitDefenderGen:Variant.ExNuma.1
K7GWTrojan ( 0058ee541 )
Cybereasonmalicious.1457d9
CyrenW32/ExNuma.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HNPY
APEXMalicious
KasperskyTrojan.Win32.DelShad.jac
AlibabaVirTool:Win32/Pucrpt.9bf2f7ba
AvastWin32:TrojanX-gen [Trj]
Ad-AwareGen:Variant.ExNuma.1
EmsisoftGen:Variant.ExNuma.1 (B)
TrendMicroTROJ_GEN.R002C0DGH22
McAfee-GW-EditionGenericRXSK-DJ!69FDAC71457D
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
AviraTR/Crypt.ZPACK.Gen
MAXmalware (ai score=88)
MicrosoftVirTool:Win32/Pucrpt.A!MTB
ArcabitTrojan.ExNuma.1
GDataWin32.Trojan.QuasarRAT.B
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R442079
BitDefenderThetaAI:Packer.7AB77BA21E
ALYacGen:Variant.ExNuma.1
VBA32BScope.TrojanSpy.Stealer
MalwarebytesBackdoor.AsyncRAT
TrendMicro-HouseCallTROJ_GEN.R002C0DGH22
RisingBackdoor.Bladabindi!8.B1F (CLOUD)
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.HNPY!tr
AVGWin32:TrojanX-gen [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.DelShad.jac?

Trojan.Win32.DelShad.jac removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment