Trojan

UDS:Trojan.Win32.DBadur removal tips

Malware Removal

The UDS:Trojan.Win32.DBadur is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan.Win32.DBadur virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine UDS:Trojan.Win32.DBadur?


File Info:

name: DC1C22EB0B8C26444D3E.mlw
path: /opt/CAPEv2/storage/binaries/97712e72ffa0d63f01bfec36ea96e368f73a8d139e3bc42d6f8160a65f30baee
crc32: 6C27073D
md5: dc1c22eb0b8c26444d3ef227cc10b560
sha1: 43fe995a7042dd5984df646df44f6bb752b376a0
sha256: 97712e72ffa0d63f01bfec36ea96e368f73a8d139e3bc42d6f8160a65f30baee
sha512: 967a346475e3cd400b39b00dbf554c07dc1701df1d526b163c67a57f2c48d309769b397f45b921627ae059d1a001ee0d29ea432f3f9eb9e40c61092e22538464
ssdeep: 98304:uXYH4tidzqT3qOV8LC7pBqahk8Z8HunEgB:LHezn8G7psp8hE
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18706235A76D280F1EC811C305327C6DB37F224679B958CA3A7CD1802BD22FF675BA256
sha3_384: 14096e9f854cedac67bcd3fe67f8f7c31181763628adaa68f0769c1e835401f603778c7145aefdec7f17a30dfd04cedb
ep_bytes: e88dbaf0ff41bdb9dd9cfb4b8d9ced33
timestamp: 2024-04-18 16:48:01

Version Info:

0: [No Data]

UDS:Trojan.Win32.DBadur also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur2.FU.SJW@a4NidTaj
FireEyeGeneric.mg.dc1c22eb0b8c2644
SkyhighBehavesLike.Win32.Generic.wc
McAfeeArtemis!DC1C22EB0B8C
SangforTrojan.Win32.Agent.Vw7c
BitDefenderThetaAI:Packer.9829688A20
Paloaltogeneric.ml
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Packed.VMProtect.BC suspicious
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R002H09E624
AvastMalwareX-gen [Trj]
ClamAVWin.Packed.Lazy-10004518-0
KasperskyUDS:Trojan.Win32.DBadur.gen
BitDefenderGen:Trojan.Heur2.FU.SJW@a4NidTaj
TencentWin32.Backdoor.Phish.Ltgl
EmsisoftGen:Trojan.Heur2.FU.SJW@a4NidTaj (B)
GoogleDetected
VIPREGen:Trojan.Heur2.FU.SJW@a4NidTaj
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
MAXmalware (ai score=85)
MicrosoftProgram:Win32/Wacapew.C!ml
GridinsoftTrojan.Win32.Packed.sa
ArcabitTrojan.Heur2.FU.E6783D
ZoneAlarmUDS:Trojan.Win32.DBadur.gen
GDataGen:Trojan.Heur2.FU.SJW@a4NidTaj
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4057595
VBA32BScope.TrojanDownloader.Deyma
ALYacGen:Trojan.Heur2.FU.SJW@a4NidTaj
Cylanceunsafe
RisingTrojan.Generic@AI.100 (RDML:1OeAvq86MHHb/ZKUn3XYnQ)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGMalwareX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Packed.VMProtect.BW

How to remove UDS:Trojan.Win32.DBadur?

UDS:Trojan.Win32.DBadur removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment