Malware

Application.Bundler.313 information

Malware Removal

The Application.Bundler.313 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Bundler.313 virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Presents an Authenticode digital signature
  • Performs some HTTP requests
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.

Related domains:

z.whorecord.xyz
api.downerapi.com
downloader.downerapi.com
a.tomx.xyz
statapi.downerapi.com

How to determine Application.Bundler.313?


File Info:

crc32: 446553B8
md5: 9bddecdf85dc923e240205266df2a158
name: downer_66111230.exe
sha1: 60752cf82b867e0f094691f3967ed3034c0ed7dd
sha256: 9074f29b1ac3e5e4848a7035432beae22d0840b63b0515fe9c41d6333bbaa380
sha512: 424f9ee3d4a0241970bb3b1cbea4b51527d197c590265e59b2f663f1575ff881a82a8f02eb9ab9f7814fb30284529691d8d793898c99957607bb9d048dc617cc
ssdeep: 24576:TKIATVhj8QjWb2zBPce6Tggz6EePry1hSd3CESDqrvMLDJkQdJ:TKffjpWMBPR6MZrzdyESDqrkLDJrdJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2018
InternalName: FastDownloader.exe
FileVersion: 3.2.0.8
CompanyName: -
ProductName: x8f6fx4ef6x4e0bx8f7dx5668
ProductVersion: 3.2.0.8
FileDescription: x8f6fx4ef6x4e0bx8f7dx5668
OriginalFilename: FastDownloader.exe
Translation: 0x0804 0x04b0

Application.Bundler.313 also known as:

DrWebAdware.Downware.19668
MicroWorld-eScanGen:Variant.Application.Bundler.313
FireEyeGeneric.mg.9bddecdf85dc923e
McAfeeGenericRXAA-AA!9BDDECDF85DC
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusRiskware ( 00544e421 )
BitDefenderGen:Variant.Application.Bundler.313
K7GWRiskware ( 00544e421 )
Invinceaheuristic
CyrenW32/Application.HMKX-7107
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H07G720
AvastWin32:Adware-gen [Adw]
GDataGen:Variant.Application.Bundler.313
Kasperskynot-a-virus:HEUR:Downloader.Win32.Agent.vho
AlibabaAdWare:Win32/Downer.9e7d007c
NANO-AntivirusRiskware.Win32.Downer.gyjaxn
Endgamemalicious (high confidence)
SophosGeneric PUA GA (PUA)
ComodoApplicUnwnt@#126vb1edjgxk9
F-SecureHeuristic.HEUR/AGEN.1126112
ZillyaTool.Downer.Win32.45
EmsisoftGen:Variant.Application.Bundler.313 (B)
IkarusPUA.RiskWare.Downer
F-ProtW32/Downer.A.gen!Eldorado
JiangminAdWare.Downer.h
AviraHEUR/AGEN.1126112
Antiy-AVLGrayWare[AdWare]/Win32.Downer
MicrosoftProgram:Win32/Vigram.A
ArcabitTrojan.Application.Bundler.313
SUPERAntiSpywarePUP.FastDownloader/Variant
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Downer.gen
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.Downloader.R341342
VBA32Adware.Downer
MAXmalware (ai score=79)
Ad-AwareGen:Variant.Application.Bundler.313
MalwarebytesPUP.Optional.FastDownloader
APEXMalicious
ESET-NOD32a variant of Win32/RiskWare.Downer.B
RisingAdware.Downloader!1.C41F (CLOUD)
eGambitUnsafe.AI_Score_99%
FortinetRiskware/Agent
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml
Qihoo-360Win32/Virus.Adware.bea

How to remove Application.Bundler.313?

Application.Bundler.313 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment