Categories: Trojan

How to remove “Trojan.Win64.Shelma.klh”?

The Trojan.Win64.Shelma.klh is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win64.Shelma.klh virus can do?

    How to determine Trojan.Win64.Shelma.klh?

    
    

    File Info:

    crc32: 8F7B7E82md5: 9eeedbcb2571a43a09b61c222e4103a1name: 9EEEDBCB2571A43A09B61C222E4103A1.mlwsha1: e318ebb93e214c149f1a1758dc9807ffc200d91csha256: 9b25a9a67d6eb9bd091f14ec4edef9f763fbafee75a3b43bea6197d5fcb1f18esha512: c01f08820dc40e18d5a9c0ab14f54e6b4b32f9b3720c99f165159e488e9e43dbde3e79a5218d34ba8fe9d0e804a18c0a1a1c44e060abfca85f7e84012d417620ssdeep: 24576:Tb7++NXp5icj73IrO6NZD+/vREHVnje2Wzl+o:T2+v533+gRqZe2Wzl+otype: PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows

    Version Info:

    0: [No Data]

    Trojan.Win64.Shelma.klh also known as:

    K7AntiVirus Trojan ( 00561a0d1 )
    Elastic malicious (high confidence)
    DrWeb BackDoor.Meterpreter.157
    Cynet Malicious (score: 100)
    ALYac Trojan.GenericKD.36904448
    Cylance Unsafe
    Zillya Trojan.Rozena.Win64.7460
    Sangfor Trojan.Win64.Shelma.klh
    Alibaba Trojan:Win64/Shelma.58019a9f
    K7GW Trojan ( 00561a0d1 )
    Cyren W64/Trojan.YQUR-3061
    Symantec Trojan.Gen.MBT
    ESET-NOD32 a variant of Win64/Rozena.CL
    APEX Malicious
    Avast Win64:Trojan-gen
    Kaspersky Trojan.Win64.Shelma.klh
    BitDefender Trojan.GenericKD.36904448
    NANO-Antivirus Trojan.Win64.Meterpreter.ivqvfl
    MicroWorld-eScan Trojan.GenericKD.36904448
    Ad-Aware Trojan.GenericKD.36904448
    Sophos Generic PUA OD (PUA)
    VIPRE Trojan.Win32.Generic!BT
    TrendMicro TROJ_GEN.R002C0WEI21
    McAfee-GW-Edition BehavesLike.Win64.TrojanVeil.tm
    FireEye Trojan.GenericKD.36904448
    Emsisoft Trojan.GenericKD.36904448 (B)
    Jiangmin Trojan.Shelma.gdt
    Avira HEUR/AGEN.1139713
    Antiy-AVL Trojan/Win64.Rozena
    Microsoft Trojan:Win32/Tiggre!rfn
    Arcabit Trojan.Generic.D2331E00
    ZoneAlarm Trojan.Win64.Shelma.klh
    GData Trojan.GenericKD.36904448
    AhnLab-V3 Trojan/Win.Generic.C4522246
    McAfee Artemis!9EEEDBCB2571
    MAX malware (ai score=87)
    VBA32 Trojan.Win64.Shelma
    Malwarebytes Malware.AI.4277185204
    Panda Trj/CI.A
    TrendMicro-HouseCall TROJ_GEN.R002C0WEI21
    Ikarus Trojan.Win64.Rozena
    MaxSecure Trojan.Malware.73848307.susgen
    Fortinet W64/Rozena.AY!tr
    AVG Win64:Trojan-gen
    Qihoo-360 Win64/Ransom.DogHousePower.HgEASU0A

    How to remove Trojan.Win64.Shelma.klh?

    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.
    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Recent Posts

    MSIL/GenKryptik.GXIZ information

    The MSIL/GenKryptik.GXIZ is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago

    Malware.AI.2789448175 (file analysis)

    The Malware.AI.2789448175 is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago

    Jalapeno.1878 removal instruction

    The Jalapeno.1878 is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago

    What is “Trojan.Heur3.LPT.YmKfaKBcBekib”?

    The Trojan.Heur3.LPT.YmKfaKBcBekib is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago

    How to remove “Worm.Win32.Vobfus.exmt”?

    The Worm.Win32.Vobfus.exmt is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago

    About “TrojanDownloader:Win32/Beebone.JO” infection

    The TrojanDownloader:Win32/Beebone.JO is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago