Malware

Application.Bundler.DownloadGuide.KE (B) removal guide

Malware Removal

The Application.Bundler.DownloadGuide.KE (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Bundler.DownloadGuide.KE (B) virus can do?

  • Attempts to connect to a dead IP:Port (3 unique times)
  • Presents an Authenticode digital signature
  • Mimics the system’s user agent string for its own requests
  • A process attempted to delay the analysis task.
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
dlg-configs.buzzrin.de
dlg-messages.buzzrin.de
az687722.vo.msecnd.net
a.tomx.xyz

How to determine Application.Bundler.DownloadGuide.KE (B)?


File Info:

crc32: 3AD7CDB6
md5: 9c5d1c97761a96b5f890a7a9f676c479
name: download-audiograbber.exe
sha1: 1a4f80bcf89ae84e4015fddceaebb6ad40e43e6f
sha256: f7555a3a844a5ae3430185f78adbeaf8ebf5672f4b52c818424679ff41f96248
sha512: 1810a2a00184d368d45cc2e32f92343a584b70c4f9852bc39d5493ce417915812a43a4e6c608cd74e3761e4b991057d7cdafb03dc9997fb54f67b510d21ed5bc
ssdeep: 12288:F4fmuV/2SlI1MCAHab5I0WozQsmknY87Z1EPclMkc9A7Z2P:F42DMCA6b5fWQmknY87LEPcl9nly
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVersion: 3.1.0.201

Application.Bundler.DownloadGuide.KE (B) also known as:

MicroWorld-eScanApplication.Bundler.DownloadGuide.KE
FireEyeGeneric.mg.9c5d1c97761a96b5
CAT-QuickHealTrojan.Mauvaise.SL1
McAfeePUP-FXK
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderApplication.Bundler.DownloadGuide.KE
Cybereasonmalicious.7761a9
Invinceaheuristic
F-ProtW32/S-58b25de1!Eldorado
SymantecPUA.DownloadSponsor
TrendMicro-HouseCallTROJ_GEN.R01FC0PB420
AvastWin32:UnwantedSig [PUP]
ClamAVWin.Malware.Downloadguide-6803841-0
GDataWin32.Application.DownloadGuide.T
Kasperskynot-a-virus:HEUR:Downloader.Win32.DownloaderGuide.gen
NANO-AntivirusRiskware.Win32.Covus.fkfkjs
RisingAdware.DownloadGuide!1.A1DB (RDMK:cmRtazqlpYKyzNMKOGhjAqrKjcET)
Ad-AwareApplication.Bundler.DownloadGuide.KE
SophosDownloadGuide (PUA)
ComodoApplication.Win32.DownloadGuide.A@7y5gwx
DrWebAdware.ClickMeIn.9588
TrendMicroTROJ_GEN.R01FC0PB420
McAfee-GW-EditionBehavesLike.Win32.Downloader.hh
EmsisoftApplication.Bundler.DownloadGuide.KE (B)
CyrenW32/S-58b25de1!Eldorado
JiangminDownloader.DownloaderGuide.aqk
MaxSecureTrojan.bundler.downloadguide.kee_169373
Antiy-AVLGrayWare[AdWare]/Win32.DownloadGuide.dd
Endgamemalicious (high confidence)
ArcabitApplication.Bundler.DownloadGuide.KE
ZoneAlarmnot-a-virus:HEUR:Downloader.Win32.DownloaderGuide.gen
MicrosoftPUA:Win32/Puwaders.B!ml
SentinelOneDFI – Malicious PE
AhnLab-V3PUP/Win32.DownloadGuide.R245289
MAXmalware (ai score=74)
VBA32Downloader.DownloaderGuide
MalwarebytesAdware.Downloader
ESET-NOD32a variant of Win32/DownloadGuide.D potentially unwanted
TencentMalware.Win32.Gencirc.10b0a5b4
YandexPUA.Downloader!
IkarusPUA.DownloadGuide
eGambitUnsafe.AI_Score_100%
FortinetRiskware/DownloaderGuide
WebrootPua.Freemium
AVGWin32:UnwantedSig [PUP]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Application.Bundler.DownloadGuide.KE (B)?

Application.Bundler.DownloadGuide.KE (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment