Trojan

Trojan.Win64.Shelma.kwi malicious file

Malware Removal

The Trojan.Win64.Shelma.kwi is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win64.Shelma.kwi virus can do?

  • Anomalous binary characteristics

How to determine Trojan.Win64.Shelma.kwi?


File Info:

crc32: 0F7E3E50
md5: 9ecd28813adc6bb197181e7e81ec15fe
name: 9ECD28813ADC6BB197181E7E81EC15FE.mlw
sha1: 404f5cb1a3518abb07b01503e48765fd2e236745
sha256: f7ae6b5ed444abfceda7217b9158895ed28cfdd946bf3e5c729570a5c29d5d82
sha512: 8786d9aa694ffeb305a4c1306341255834baed44eb154298b325aa807426bf3b6b75751a8f329bd58e8134fd70bbc98973e8e0678f37888b7fd494a006396f96
ssdeep: 6144:7Cwvs3FDtiiahFgFRVJyiBbMcjuK66nOKr:7pviFQiOFmLFr
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

LegalCopyright: TORVALD and SONS xa9 2021 LLC
InternalName: opentyrian.exe
FileVersion: 6.6.6.6
CompanyName: Linux LLC
PrivateBuild: 6.6.6.6
LegalTrademarks: TARASBILBO Inc.
Comments: HelloWorld
ProductName: GoodLinuxAppHere
ProductVersion: 6.6.6.6
FileDescription: GoodLinuxAppHere
OriginalFilename: opentyrian.exe
Translation: 0x0409 0x04b0

Trojan.Win64.Shelma.kwi also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.Siggen13.46331
CynetMalicious (score: 99)
CAT-QuickHealTrojan.Win64
ALYacTrojan.GenericKD.46390192
CylanceUnsafe
SangforTrojan.Win64.Shelma.kwi
AlibabaTrojan:Win64/Shelma.72225dde
K7GWRiskware ( 0040eff71 )
SymantecTrojan.Gen.MBT
AvastWin64:Malware-gen
KasperskyTrojan.Win64.Shelma.kwi
BitDefenderTrojan.GenericKD.46390192
MicroWorld-eScanTrojan.GenericKD.46390192
Ad-AwareTrojan.GenericKD.46390192
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0WF121
McAfee-GW-EditionRDN/Generic Dropper
FireEyeTrojan.GenericKD.46390192
EmsisoftTrojan.GenericKD.46390192 (B)
AviraHEUR/AGEN.1126429
MicrosoftTrojan:Script/Phonzy.B!ml
ArcabitTrojan.Generic.D2C3DBB0
AegisLabTrojan.Win64.Shelma.4!c
GDataTrojan.GenericKD.46390192
AhnLab-V3Dropper/Win.Agent.C4501967
McAfeeRDN/Generic Dropper
MAXmalware (ai score=89)
VBA32Trojan.Win64.Shelma
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0WF121
FortinetW64/Shelma.KWI!tr
AVGWin64:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Win64.Shelma.kwi?

Trojan.Win64.Shelma.kwi removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment