Trojan

What is “Trojan.Win32.Shelma.affj”?

Malware Removal

The Trojan.Win32.Shelma.affj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Shelma.affj virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Shelma.affj?


File Info:

crc32: DC3130F9
md5: 4aad1d881a8b482b6f507d64b5c11fac
name: 4AAD1D881A8B482B6F507D64B5C11FAC.mlw
sha1: 47563e6e25c021f381b7f3a40689265bc3f1afc4
sha256: 265c07a31a21461cdb817293571bd3a382d69f855ba84fb59991561bf090af32
sha512: 4940858f22ded3ed07d387f48067254552a42f967fee017ae6940bf06a8895ea5e6276a080a06a01cf3540e1007f05fb07f248e280f160f726e072dabd7ab7b5
ssdeep: 12288:/eqW86Tf7xglFIV/4Zf8FkKBPFrmtJxv/znLABkeGevRcAqn9LqgqmlrexDvBIRy:/V6fxg7IeEOKXrmtJx3rLABk1eFElre5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1997-2017 Simon Tatham.
InternalName: PuTTY
FileVersion: Release 0.70
CompanyName: Simon Tatham
ProductName: PuTTY suite
ProductVersion: Release 0.70
FileDescription: SSH, Telnet and Rlogin client
OriginalFilename: PuTTY
Translation: 0x0809 0x04b0

Trojan.Win32.Shelma.affj also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004943941 )
LionicTrojan.Win32.Razy.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Starter.7434
CynetMalicious (score: 100)
ZillyaTrojan.Rozena.Win32.67304
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Shelma.61814d0a
K7GWTrojan ( 004943941 )
Cybereasonmalicious.e25c02
SymantecML.Attribute.HighConfidence
ZonerProbably Heur.ExeHeaderH
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Shelma.affj
NANO-AntivirusTrojan.Win32.Starter.fkmndy
TencentWin32.Trojan.Shelma.Pfjx
SophosMal/Generic-S
ComodoMalware@#21arjzu9wc57g
BitDefenderThetaGen:NN.ZexaF.34236.VS2@auF8oEgi
McAfee-GW-EditionBehavesLike.Win32.Infected.bh
FireEyeGeneric.mg.4aad1d881a8b482b
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Gen2
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Malware/RL.Generic.R248266
McAfeeArtemis!4AAD1D881A8B
PandaTrj/CI.A
YandexTrojan.Shelma!UX2Z+YQL7HQ
FortinetW32/Generic.AC.40355b!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Win32.Shelma.affj?

Trojan.Win32.Shelma.affj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment