Trojan

Trojan.Win64.Shelma.mwy removal guide

Malware Removal

The Trojan.Win64.Shelma.mwy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win64.Shelma.mwy virus can do?

  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

How to determine Trojan.Win64.Shelma.mwy?


File Info:

crc32: 5F938002
md5: bc6ae6ed9a19887ce3b4d989e436f057
name: BC6AE6ED9A19887CE3B4D989E436F057.mlw
sha1: 6adb2c62cf5c8ab321d697ca69ee0262349cf71d
sha256: 942b7abcc38d33e15a8664ab83f150f9ee54d28c39642fe9c0ac17a8752ef5eb
sha512: 20eb57c62b3a3bc21daa7a7c72eb6027d81b79af1ff964b375b550f6c7fec2ff9dab88d3a4aae0566105cd63a2b2b024b7336bb9601f7b3b1af95c30b6b25640
ssdeep: 24576:1w/eWD6s72VuQ2EF62dXuqkcDuvEQ8S4FLHaKKcUN9hwx/9nzbn5cHdXcQi61d:EeRa2MIs24cDxAEy9hwNJbnZQbd
type: PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Trojan.Win64.Shelma.mwy also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (W)
Cybereasonmalicious.2cf5c8
ESET-NOD32a variant of Win64/Rozena.CL
APEXMalicious
AvastWin64:Trojan-gen
KasperskyTrojan.Win64.Shelma.mwy
SophosMal/Generic-S
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.bc6ae6ed9a19887c
SentinelOneStatic AI – Suspicious PE
AviraTR/Rozena.mrugz
Antiy-AVLTrojan/Generic.ASBOL.C5E3
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
ZoneAlarmTrojan.Win64.Shelma.mwy
AhnLab-V3PUP/Win64.RL_Generic.R363184
McAfeeArtemis!BC6AE6ED9A19
TrendMicro-HouseCallTROJ_GEN.R002H0DHF21
YandexTrojan.Blocker!BGdruue2syo
IkarusTrojan.Win64.Rozena
FortinetPossibleThreat.DU
AVGWin64:Trojan-gen

How to remove Trojan.Win64.Shelma.mwy?

Trojan.Win64.Shelma.mwy removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment