Trojan

What is “Trojan:Win32/Shampel.A”?

Malware Removal

The Trojan:Win32/Shampel.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Shampel.A virus can do?

  • Starts servers listening on 0.0.0.0:80
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

www.shample.ru

How to determine Trojan:Win32/Shampel.A?


File Info:

crc32: CCFE389E
md5: 40da0896cd01e433ff4572beae941f90
name: 40DA0896CD01E433FF4572BEAE941F90.mlw
sha1: 2941dcac37e83b594aafa18820e8c1aeb6b78310
sha256: 8d78e8be4e32f3977a9463d57d9eaa00dc1c7212d2b44afc25fd4b839f6de153
sha512: 683a2586e5e82d13fdc7c1beddad51a097417fb10f530844b78afb5e432a21514f65f4ad2d57613dab43085999c7b95e2b22608fd9c495d1828a20982be6b3d1
ssdeep: 384:BjhSbFojJDNWdgUKaeKUcKZ9w7S+ihQmLypj56RV2LLvEDHQb0nuUTeRjzP+fXN:BjdLUTb72hspVvTEDwAnpTeR/ANn4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Shampel.A also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Siggen6.30523
MicroWorld-eScanTrojan.AgentWDCR.JFT
FireEyeGeneric.mg.40da0896cd01e433
CAT-QuickHealTrojan.Dorv.A5
McAfeeGenericRXEP-LM!40DA0896CD01
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 004b50681 )
BitDefenderTrojan.AgentWDCR.JFT
K7GWTrojan ( 004b50681 )
Cybereasonmalicious.6cd01e
BitDefenderThetaGen:NN.ZexaF.34804.cuX@aS5WoBgi
CyrenW32/Agent.LZLQ-2061
ESET-NOD32Win32/Agent.WUF
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.12095594-1
KasperskyTrojan-Dropper.Win32.Agent.bjsjrz
NANO-AntivirusTrojan.Win32.Crypted.digbrg
RisingDropper.Agent!8.2F (TFE:dGZlOgXm+zvGHMVKGg)
Ad-AwareTrojan.AgentWDCR.JFT
SophosML/PE-A
ComodoTrojWare.Win32.Dorv.A@5v28rd
F-SecureTrojan.TR/Agent.33824
BaiduWin32.Trojan.Agent.abz
ZillyaTrojan.Agent.Win32.514843
TrendMicroTROJ_DORV.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.nm
EmsisoftTrojan.AgentWDCR.JFT (B)
IkarusTrojan.Win32.Agent
JiangminTrojan/Generic.baomx
AviraTR/Agent.33824
MAXmalware (ai score=82)
Antiy-AVLTrojan[Dropper]/Win32.Agent.bjsjrz
MicrosoftTrojan:Win32/Shampel.A
GridinsoftTrojan.Win32.Agent.vb!s1
ArcabitTrojan.AgentWDCR.JFT
ZoneAlarmTrojan-Dropper.Win32.Agent.bjsjrz
GDataTrojan.AgentWDCR.JFT
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Generic.C745686
Acronissuspicious
VBA32TrojanDropper.Sysn
ALYacTrojan.AgentWDCR.JFT
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/OCJ.F
ZonerTrojan.Win32.27920
TrendMicro-HouseCallTROJ_DORV.SM
TencentMalware.Win32.Gencirc.10b0b65a
YandexTrojan.Agent!RPleL5SKB60
SentinelOneStatic AI – Suspicious PE – Downloader
eGambitUnsafe.AI_Score_99%
FortinetW32/Agent.WUF!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360HEUR/QVM10.1.0EE9.Malware.Gen

How to remove Trojan:Win32/Shampel.A?

Trojan:Win32/Shampel.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment