Trojan

What is “Trojan.Win32.Shelma.acwx”?

Malware Removal

The Trojan.Win32.Shelma.acwx is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Shelma.acwx virus can do?

  • Creates RWX memory
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Shelma.acwx?


File Info:

crc32: C0A17D9A
md5: f3514b8fd3e2f89b9fe59624afb143a5
name: F3514B8FD3E2F89B9FE59624AFB143A5.mlw
sha1: 7f20094e58bfb104955dd0eabff575682c0f9673
sha256: c49226c02f16ebc5db6d5272aab91393330a01baaf11ed50c7164850cbc93581
sha512: eb45b4714914ebfdee9e8be2bfcaaf6b0b49c863e8856b0fc18fb31dcf26b034877bb46930174787c70b7ebbb58083e1a4ed9c7134e18bd58c828819c3a96ff8
ssdeep: 12288:YuTYLHWOQ6zba0/KBUeBSLmQnMu6wLyZ6:YuTY7WOlHa08HSNMILy0
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2002-2017 Mark Russinovich
InternalName: Sysinternals Autoruns
FileVersion: 13.7
CompanyName: Sysinternals - www.sysinternals.com
ProductName: Sysinternals autoruns
ProductVersion: 13.7
FileDescription: Autostart program viewer
OriginalFilename: autoruns.exe
Translation: 0x0409 0x04b0

Trojan.Win32.Shelma.acwx also known as:

K7AntiVirusTrojan ( 0053a5831 )
LionicTrojan.Win32.Shelma.4!c
ALYacTrojan.GenericKD.40452336
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Shelma.d033683f
K7GWTrojan ( 0053a5831 )
Cybereasonmalicious.fd3e2f
SymantecTrojan.Gen.6
ESET-NOD32a variant of Win32/Patched.IY
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 99)
KasperskyTrojan.Win32.Shelma.acwx
BitDefenderTrojan.GenericKD.40452336
MicroWorld-eScanTrojan.GenericKD.40452336
TencentWin32.Trojan.Shelma.Ebgb
Ad-AwareTrojan.GenericKD.40452336
SophosMal/Generic-S
ComodoMalware@#i7abzyvilcca
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionRansomware-FKM!F3514B8FD3E2
FireEyeTrojan.GenericKD.40452336
EmsisoftTrojan.GenericKD.40452336 (B)
JiangminTrojan.Shelma.dqr
AviraHEUR/AGEN.1136664
MicrosoftTrojan:Win32/Meterpreter.gen!C
GDataTrojan.GenericKD.40452336
AhnLab-V3Trojan/Win32.Shelma.C2103888
McAfeeRansomware-FKM!F3514B8FD3E2
MAXmalware (ai score=100)
VBA32Trojan.Shelma
PandaTrj/CI.A
IkarusTrojan.Win32.Patched
FortinetW32/Patched.IY!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/HackTool.Meterpreter.HgIASQwA

How to remove Trojan.Win32.Shelma.acwx?

Trojan.Win32.Shelma.acwx removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment