Trojan

TrojanDownloader:Win32/Sadjique.A information

Malware Removal

The TrojanDownloader:Win32/Sadjique.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Sadjique.A virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine TrojanDownloader:Win32/Sadjique.A?


File Info:

name: 042822A0143DC71FDED9.mlw
path: /opt/CAPEv2/storage/binaries/35686db08662c303b0100ea59e7410e2f76f6c8ac3bb9fe6ac246401e66da939
crc32: C5B30010
md5: 042822a0143dc71fded914f283c0a232
sha1: c023672c8eda93f0a34f1e8aa88ff1de762203bd
sha256: 35686db08662c303b0100ea59e7410e2f76f6c8ac3bb9fe6ac246401e66da939
sha512: 77d921dcd37d8c584330a3eebee992607a308fe82d325d951ea97caf5add15812a89f257bf2c4670db2c1f47a477ad18bafbfda809130b4b598711b0a50aeee2
ssdeep: 1536:oHjoXC1cFTbg4gFxhroBMjg+i0Jss5HjaSCqa/O7WTy2DCqECquuCq:eBOFTb9g3KH+iCssRaEcO7WTy29yuA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T179C37D8329D04872ECE26BB012E6DB73897F7D451E91D5879B10F99B1D327B03A29387
sha3_384: 1d719d2a973e03e62c7f648c1219fda484d829208d639939975b0518bfb1568dd9d3b4ecde2e1e905c3dffad69543ee3
ep_bytes: 558bec6aff68f050400068e821400064
timestamp: 2011-04-18 10:48:15

Version Info:

0: [No Data]

TrojanDownloader:Win32/Sadjique.A also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Lapka.5!c
Elasticmalicious (high confidence)
DrWebTrojan.CsDown.13
MicroWorld-eScanDropped:Generic.Malware.SB.46631B0D
FireEyeGeneric.mg.042822a0143dc71f
SkyhighBehavesLike.Win32.Ransomware.cm
ALYacDropped:Generic.Malware.SB.46631B0D
MalwarebytesMalware.AI.2688811897
VIPREDropped:Generic.Malware.SB.46631B0D
SangforSuspicious.Win32.Save.ins
K7AntiVirusP2PWorm ( 0055e3e51 )
BitDefenderDropped:Generic.Malware.SB.46631B0D
K7GWP2PWorm ( 0055e3e51 )
Cybereasonmalicious.c8eda9
BitDefenderThetaAI:Packer.E3E98A471F
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/AutoRun.Agent.ABL
APEXMalicious
ClamAVWin.Trojan.Rootkit-4797
KasperskyRootkit.Win32.Lapka.vjg
AlibabaTrojanDownloader:Win32/Lapka.f0c7a5d5
NANO-AntivirusTrojan.Win32.CsDown.dipbe
ViRobotTrojan.Win32.A.Agent.36040
RisingDownloader.Sadjique!8.650E (TFE:5:dZxBeVXCJbB)
EmsisoftDropped:Generic.Malware.SB.46631B0D (B)
F-SecureTrojan.TR/Offend.6593641
ZillyaRootkit.Lapka.Win32.1701
Trapminemalicious.moderate.ml.score
SophosMal/Behav-214
IkarusTrojan-Clicker.Win32.Agent
MAXmalware (ai score=100)
JiangminTrojan/Agent.encs
GoogleDetected
AviraTR/Offend.6593641
Antiy-AVLTrojan/Win32.Agent2
Kingsoftmalware.kb.a.1000
MicrosoftTrojanDownloader:Win32/Sadjique.A
XcitiumMalware@#1yqnlon7foigz
ArcabitGeneric.Malware.SB.46631B0D
ZoneAlarmRootkit.Win32.Lapka.vjg
GDataDropped:Generic.Malware.SB.46631B0D
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Onlinegamehack.106496.EO
McAfeeArtemis!042822A0143D
DeepInstinctMALICIOUS
VBA32BScope.Adware.Creprote
Cylanceunsafe
PandaTrj/CI.A
TencentMalware.Win32.Gencirc.10b8c989
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.10758899.susgen
FortinetW32/Lapka.ABL!tr.rkit
AVGWin32:DangerousSig [Trj]
AvastWin32:DangerousSig [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove TrojanDownloader:Win32/Sadjique.A?

TrojanDownloader:Win32/Sadjique.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment