Malware

Should I remove “Application.Bundler.298”?

Malware Removal

The Application.Bundler.298 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Bundler.298 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)

Related domains:

w.nanweng.cn

How to determine Application.Bundler.298?


File Info:

crc32: 698BBF37
md5: 79e672bcccc4c0013e153276194abcb4
name: vmwareworkstationpro15.5.0E8999AE68B9FE69CBAE4B8ADE69687E5858DE8B4B9E789B9E588ABE78988E99984E6B3A8E5
sha1: 092814b03f9c446081bd967a5c30edc55da298e7
sha256: 1bbb1d185ccbe1c8f12e4bae3ab160e269722ea5cc8deedbb0d7fa327e60bff5
sha512: 165fef625993b279051beadbddaca848ce2352ed2647cf2fc2f7aef768963c18c5ad15b1ae165c35444ba010a219d744a62d49bcf01c74968cc73c831a529b84
ssdeep: 24576:NmxQWy5UYwFO+8rx/Anf1Es6Vw+fkkRXaXRVDXYg7cSIvd4:Nm65Uv8F/s36uxWaXnXYg7ed
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2020
InternalName: x667ax80fdx4e0bx8f7dx5668.exe
FileVersion: 5.0.0.0407
ProductName: x667ax80fdx4e0bx8f7dx5668.exe
FileDescription: _
OriginalFilename: x667ax80fdx4e0bx8f7dx5668.exe
Translation: 0x0804 0x04b0

Application.Bundler.298 also known as:

MicroWorld-eScanGen:Variant.Application.Bundler.298
McAfeeArtemis!79E672BCCCC4
CylanceUnsafe
SangforMalware
BitDefenderGen:Variant.Application.Bundler.298
ArcabitTrojan.Application.Bundler.298
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Adware.Qjwmonkey.H
Paloaltogeneric.ml
Ad-AwareGen:Variant.Application.Bundler.298
EmsisoftGen:Variant.Application.Bundler.298 (B)
DrWebAdware.Qjwmonkey.168
McAfee-GW-EditionArtemis!PUP
FortinetW32/Qjwmonkey.KD!tr
FireEyeGeneric.mg.79e672bcccc4c001
MAXmalware (ai score=74)
Endgamemalicious (high confidence)
MicrosoftPUA:Win32/Qjwmonkey
VBA32BScope.Adware.Qjwmonkey
RisingAdware.Downloader!1.BDCA (CLOUD)
IkarusPUA.Qjwmonkey
eGambitUnsafe.AI_Score_100%
GDataGen:Variant.Application.Bundler.298
AVGFileRepMetagen [Adw]
Cybereasonmalicious.cccc4c
AvastFileRepMetagen [Adw]
MaxSecureTrojan.Malware.121218.susgen

How to remove Application.Bundler.298?

Application.Bundler.298 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment