Trojan

Trojan.Win32.Shelma.brlz removal guide

Malware Removal

The Trojan.Win32.Shelma.brlz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Shelma.brlz virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Trojan.Win32.Shelma.brlz?


File Info:

name: 4E354B36518CA42201B0.mlw
path: /opt/CAPEv2/storage/binaries/10cc5aa4a71e0e96616663c86197724848d3e3a4aa7e116bea09ced31c0bdaaf
crc32: 43A7E4A3
md5: 4e354b36518ca42201b0a8f2b577a6ef
sha1: 1f35359c728f28423087b4208c3d82d8c7ed03da
sha256: 10cc5aa4a71e0e96616663c86197724848d3e3a4aa7e116bea09ced31c0bdaaf
sha512: ec9798ec8a6a7075debb3a9342bcb9aa5248e1e7a36fc86d62fa987741fab007e866c59668880553c1040adeafd600fe97bc42c9a8c0f8a7f94ebcd7158adf1a
ssdeep: 384:S4aSgkZjDjJCcwmVdO14Co6VzxxENuyzMm/k50zuxiT:S4eqDjJRwpLENH//r
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T162920A69F7E780EEC216F4B489D3623156B4FE320979622E4698D9339F20791CB78B41
sha3_384: 9a25394b20f7233569feef0c65700675f8e86b96ed60a8a69ccdfd8d4a96f9bae3c71931e8789688d97b679ec500c15e
ep_bytes: 4883ec28488b05d5450000c700010000
timestamp: 2021-11-28 04:33:24

Version Info:

0: [No Data]

Trojan.Win32.Shelma.brlz also known as:

LionicTrojan.Win32.Shelma.4!c
MicroWorld-eScanTrojan.GenericKD.47565830
FireEyeTrojan.GenericKD.47565830
McAfeeArtemis!4E354B36518C
CylanceUnsafe
AlibabaTrojan:Win32/Shelma.1b96ac72
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
ArcabitTrojan.Generic.D2D5CC06
SymantecTrojan.Gen.MBT
TrendMicro-HouseCallTROJ_GEN.R002C0WL721
KasperskyTrojan.Win32.Shelma.brlz
BitDefenderTrojan.GenericKD.47565830
AvastWin64:TrojanX-gen [Trj]
Ad-AwareTrojan.GenericKD.47565830
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1205986
McAfee-GW-EditionBehavesLike.Win64.Generic.mm
EmsisoftTrojan.GenericKD.47565830 (B)
IkarusTrojan.Win64.Krypt
AviraHEUR/AGEN.1205986
MAXmalware (ai score=84)
MicrosoftVirTool:Win32/Sysdupate.gen!E
GDataTrojan.GenericKD.47565830
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.C4773594
VBA32Trojan.Shelma
ALYacTrojan.GenericKD.47565830
MalwarebytesMalware.AI.3840470133
APEXMalicious
FortinetMalicious_Behavior.SB
AVGWin64:TrojanX-gen [Trj]
Cybereasonmalicious.c728f2
PandaTrj/CI.A

How to remove Trojan.Win32.Shelma.brlz?

Trojan.Win32.Shelma.brlz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment