Malware

About “Application.Bundler.AXY” infection

Malware Removal

The Application.Bundler.AXY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Bundler.AXY virus can do?

  • Presents an Authenticode digital signature
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

pool.ntp.org
analytics.auslogics.com
www.google-analytics.com
edgedl.me.gvt1.com

How to determine Application.Bundler.AXY?


File Info:

crc32: B9152E70
md5: 05585d79bd727fa601a2edb2df5ac845
name: 05585D79BD727FA601A2EDB2DF5AC845.mlw
sha1: 64dff497b796259273c3535a3f4b162b43a18796
sha256: d95ae11c2fcf14a7c32c5fc1bb8b2e91812621c6761003a5f1fdc3edac151ed6
sha512: bbd7546357d1b97169bc9b93fdee27e2fb5936fb3f4249f0e069ec0b05a5575dc8a5f273d4b831afe15a41aa02b2a6d5b0572d7a4283711580943b99bc861750
ssdeep: 12288:WdX5HkfWTDQgDnaPKT3l20xgfEhzufChVZBa0gXfVtWz50K:+X5HZDQEnDTVDOqZs1fVtWzuK
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2008-2018 Auslogics Labs Pty Ltd
InternalName: driver-updater
FileVersion: 2.0.0.0
CompanyName: TweakBit
LegalTrademarks: Copyright xa9 2008-2018 Auslogics Labs Pty Ltd
Comments: Part of TweakBit Driver Updater
ProductName: Driver Updater
ProductVersion: 2.x
FileDescription: Driver Updater Setup
OriginalFilename: driver_updater_stub_installer.exe
Translation: 0x0409 0x04e4

Application.Bundler.AXY also known as:

K7AntiVirusUnwanted-Program ( 0056626f1 )
CylanceUnsafe
ZillyaTool.Bundler.Win32.14814
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderApplication.Bundler.AXY
K7GWUnwanted-Program ( 0056626f1 )
Cybereasonmalicious.9bd727
ESET-NOD32a variant of Win32/Auslogics.A potentially unwanted
APEXMalicious
CynetMalicious (score: 99)
Kasperskynot-a-virus:UDS:Downloader.Win32.DriverUpd.gen
AlibabaDownloader:Win32/DriverUpd.fd23bc5c
MicroWorld-eScanApplication.Bundler.AXY
SophosGeneric PUA GE (PUA)
ComodoApplication.Win32.Auslogics.TB@7ov6us
DrWebProgram.Unwanted.2482
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.05585d79bd727fa6
EmsisoftApplication.InstallDrive (A)
SentinelOneStatic AI – Malicious PE
JiangminDownloader.DriverUpd.bm
WebrootW32.Adware.Gen
AviraPUA/TweakBit.Gen7
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASBOL.BD47
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmnot-a-virus:HEUR:Downloader.Win32.DriverUpd.gen
GDataWin32.Application.Auslogics.C
AhnLab-V3PUP/Win32.Helper.R226464
McAfeeArtemis!05585D79BD72
MAXmalware (ai score=99)
VBA32TScope.Trojan.Delf
MalwarebytesPUP.Optional.TweakBit
PandaPUP/AuslogicsDriverUpdate
RisingPUF.Auslogics!1.AC47 (CLASSIC)
YandexTrojan.GenAsa!MREVrvxgRoo
IkarusBackdoor.MSIL.SpyGate
FortinetW32/Auslogics.A

How to remove Application.Bundler.AXY?

Application.Bundler.AXY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment