Trojan

Trojan.Win32.Qshell.uk information

Malware Removal

The Trojan.Win32.Qshell.uk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Qshell.uk virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • The binary likely contains encrypted or compressed data.
  • Collects information about installed applications
  • Anomalous binary characteristics

How to determine Trojan.Win32.Qshell.uk?


File Info:

crc32: 660093EB
md5: 8e5596083fd4c3134204e905f7f66325
name: 8E5596083FD4C3134204E905F7F66325.mlw
sha1: 6902210f93d3a940571cc860c4563cd4be14edb9
sha256: 8110e38afd33797465ab43841b1c54abff7a25acc30fa27c2623966750d34737
sha512: e7084948b9f9bcb28f7c85a2812825d8012327bcfb5310f5759aebd585504624682187f9a6af86206295bfb4f1a9a178dc9322218b2e0a72e2cb3b8fcfb370e5
ssdeep: 6144:/HdO040SSrnmrwc4oU2FmrEaoGAC+Y5H2V3B918juwUX:vdO02Srnh0qEJC+Y218jdU
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1997-2017 Simon Tatham.
InternalName: PuTTY
FileVersion: Release 0.68
CompanyName: Simon Tatham
ProductName: PuTTY suite
ProductVersion: Release 0.68
FileDescription: SSH, Telnet and Rlogin client
OriginalFilename: PuTTY
Translation: 0x0809 0x04b0

Trojan.Win32.Qshell.uk also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45432691
CAT-QuickHealTrojan.Multi
ALYacTrojan.GenericKD.45432691
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.45432691
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Trojan.CISQ-2121
SymantecPacked.Generic.459
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyTrojan.Win32.Qshell.uk
AlibabaTrojan:Win32/Qshell.815503fd
NANO-AntivirusTrojan.Win32.Qshell.ihwhqa
TencentWin32.Trojan.Qshell.Ecuf
Ad-AwareTrojan.GenericKD.45432691
TACHYONTrojan/W32.Qshell.318976.B
EmsisoftTrojan.GenericKD.45432691 (B)
F-SecureTrojan.TR/AD.Dridex.dkohn
DrWebTrojan.Dridex.735
ZillyaTrojan.Qshell.Win32.150
TrendMicroTROJ_GEN.R002C0CAE21
McAfee-GW-EditionDrixed-FJZ!8E5596083FD4
FireEyeGeneric.mg.8e5596083fd4c313
SophosMal/Generic-R + Mal/EncPk-APV
IkarusTrojan-Banker.Emotet
JiangminTrojan.Qshell.aw
WebrootW32.Trojan.Gen
AviraTR/AD.Dridex.dkohn
Antiy-AVLGrayWare/Win32.Kryptik.ehls
MicrosoftTrojan:Win32/Hancitor.GC!MTB
GridinsoftTrojan.Heur!.02016020
ArcabitTrojan.Generic.D2B53F73
ZoneAlarmTrojan.Win32.Qshell.uk
GDataTrojan.GenericKD.45432691
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R362707
Acronissuspicious
McAfeeDrixed-FJZ!8E5596083FD4
VBA32Malware-Cryptor.Bambarbiya
MalwarebytesTrojan.Dridex
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HISQ
TrendMicro-HouseCallTrojanSpy.Win32.DRIDEX.SMTH.hp
RisingTrojan.Kryptik!1.D006 (CLASSIC)
YandexTrojan.Qshell!FerXNBq6XSo
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.112098555.susgen
FortinetW32/Kryptik.HIZF!tr
BitDefenderThetaGen:NN.ZedlaF.34590.tK8@aizB2tbi
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/TrojanDownloader.Hancitor.HygBOBwA

How to remove Trojan.Win32.Qshell.uk?

Trojan.Win32.Qshell.uk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment