Malware

Application.Bundler.Firseria.1 removal tips

Malware Removal

The Application.Bundler.Firseria.1 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Bundler.Firseria.1 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with MPRESS
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Application.Bundler.Firseria.1?


File Info:

name: FB6C9DED91A72665E48E.mlw
path: /opt/CAPEv2/storage/binaries/e7c45d4ccd64a302ba965ca4fd231fbab3606ee99f78e644edbed25099ba7dcc
crc32: 5071A0AC
md5: fb6c9ded91a72665e48ec8a22a47684f
sha1: f685456c1c809b08e148046fc73e9b9151bb6806
sha256: e7c45d4ccd64a302ba965ca4fd231fbab3606ee99f78e644edbed25099ba7dcc
sha512: 571f7ae7b699366c870708ccbc5d548296e0141b4b09bff589a8c4d096ed9bb8aacfeb0f4bb42e7307792cce1dff4cc3bae0a92106d342d14b93c2660175dc4d
ssdeep: 3072:0exlohmlFLeGY1Ecm+Tk2hcaXlurZVdjkCmuU8HIIO0g:0eeueEcTlhQ7djOOIIOF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B0F36C2031C4CC72E16316304DE1DAA18A66BC7689FC958B7BDAB73A5F316D1D724336
sha3_384: 75a0f62c289f5eeabeb14d3a2213cc08985a1d82a296bb2ad2c5bd03434ea7546f162f89205f604c9f017d58899ffbe1
ep_bytes: e9560b00000058055a0b00008b3003f0
timestamp: 2013-10-03 08:57:06

Version Info:

CompanyName: Firseria
FileDescription: installer
FileVersion: 1.0.0.11
InternalName: installer
LegalCopyright: Copyright 2013
OriginalFilename: installer.exe
ProductVersion: 1.0.0.11
Translation: 0x0000 0x04b0

Application.Bundler.Firseria.1 also known as:

BkavW32.AIDetect.malware1
tehtrisGeneric.Malware
DrWebTrojan.DownLoader22.33065
MicroWorld-eScanGen:Application.Bundler.Firseria.1
FireEyeGeneric.mg.fb6c9ded91a72665
ALYacGen:Application.Bundler.Firseria.1
CylanceUnsafe
VIPREGen:Application.Bundler.Firseria.1
SangforVirus.Win32.Save.a
K7AntiVirusTrojan ( 0052964f1 )
K7GWTrojan ( 0052964f1 )
BitDefenderThetaGen:NN.ZexaF.34786.jm0@aCHFNthi
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/FirseriaInstaller.C potentially unwanted
ClamAVWin.Dropper.Tinba-9943147-1
Kasperskynot-a-virus:VHO:Downloader.Win32.Morstar.gen
BitDefenderGen:Application.Bundler.Firseria.1
AvastWin32:Morstar-B [PUP]
Ad-AwareGen:Application.Bundler.Firseria.1
EmsisoftGen:Application.Bundler.Firseria.1 (B)
ComodoApplication.Win32.Solimba.UET@56mdqh
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.ch
SentinelOneStatic AI – Suspicious PE
Trapminemalicious.high.ml.score
SophosGeneric PUA PG (PUA)
IkarusPUA.FirseriaInstaller
GDataGen:Application.Bundler.Firseria.1
JiangminTrojan/Refroso.afgk
AviraTR/Crypt.XPACK.Gen
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.Firseria.C204249
Acronissuspicious
McAfeePUP-XTI-KX
MalwarebytesPUP.Optional.Firseria
APEXMalicious
RisingAdware.FirseriaInstaller/ICON!1.5C42 (CLASSIC)
YandexPacked/MPress
MAXmalware (ai score=71)
MaxSecureDownloader.Morstar.a
FortinetAdware/Firseria
AVGWin32:Morstar-B [PUP]
Cybereasonmalicious.d91a72

How to remove Application.Bundler.Firseria.1?

Application.Bundler.Firseria.1 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment