Trojan

Should I remove “Trojan.Win32.Shelma.brxy”?

Malware Removal

The Trojan.Win32.Shelma.brxy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Shelma.brxy virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan.Win32.Shelma.brxy?


File Info:

name: B386609A87A27A5576F8.mlw
path: /opt/CAPEv2/storage/binaries/b2d19c71fc8c5eacae3e1ef36673a6245fca0daa50e6d563af93dc382067c269
crc32: 634CA981
md5: b386609a87a27a5576f81b1fca0cf98d
sha1: 2087b4a9b2e88bcc69a5e91bf8c68541dee735bf
sha256: b2d19c71fc8c5eacae3e1ef36673a6245fca0daa50e6d563af93dc382067c269
sha512: 1a042772e62ecb0a6b2d7178833e4f35c01da6fe983ddd8de3a283beb9e2c79eda8ac3c295212666860739d3d35fcdb733fd69860e7c5cea1c68db86d2bf5f4c
ssdeep: 6144:/5r+gF9n7FYk7ZspZuLxwFgzNCvUfk2YHkp2:/5rLt7FXQIfk2Y
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1B7C47CA57BA816E7D17BD13DC5C65B5ADAB27410533097CF01A803AE2F13AE81E3B724
sha3_384: 881cdd6f664a504c8840e5949d6ae1d9b86b25c8d072dc054dbad6a3097287dec9b1ef3800806079c0fe9995ae33f4c1
ep_bytes: e924620000e963bb0300e9d6630400e9
timestamp: 2021-12-10 06:35:59

Version Info:

0: [No Data]

Trojan.Win32.Shelma.brxy also known as:

LionicTrojan.Win32.Shelma.4!c
MicroWorld-eScanTrojan.GenericKD.38243851
FireEyeGeneric.mg.b386609a87a27a55
McAfeeRDN/Generic.dx
CylanceUnsafe
ZillyaTrojan.GenKryptik.Win64.2922
AlibabaTrojan:Win32/Shelma.dcbabd22
K7GWTrojan ( 005803221 )
K7AntiVirusTrojan ( 005803221 )
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win64/GenKryptik.FGYL
APEXMalicious
AvastWin32:ShikataGaNai-I [Trj]
ClamAVWin.Trojan.MSShellcode-6360730-0
KasperskyTrojan.Win32.Shelma.brxy
BitDefenderTrojan.GenericKD.38243851
Ad-AwareTrojan.GenericKD.38243851
EmsisoftTrojan.GenericKD.38243851 (B)
McAfee-GW-EditionRDN/Generic.dx
SophosMal/Generic-S
GDataTrojan.GenericKD.38243851
AviraTR/Crypt.Agent.pingj
GridinsoftRansom.Win64.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.38243851
MAXmalware (ai score=85)
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallTROJ_GEN.R002C0WLD21
FortinetW64/GenKryptik.FGYL!tr
AVGWin32:ShikataGaNai-I [Trj]
PandaTrj/CI.A

How to remove Trojan.Win32.Shelma.brxy?

Trojan.Win32.Shelma.brxy removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment