Malware

About “Application.Bundler.KuaiZip.A” infection

Malware Removal

The Application.Bundler.KuaiZip.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Bundler.KuaiZip.A virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Application.Bundler.KuaiZip.A?


File Info:

crc32: 77C287FE
md5: e8d34ac5a93b3b32578a3b8620a0aeaa
name: E8D34AC5A93B3B32578A3B8620A0AEAA.mlw
sha1: c824e7be1146f8da230349c058a48e09ae33d523
sha256: d9e649e00e9b3bb6483f44319606ff95c0a80a21744c7e58e1fe79785f0f05ee
sha512: ba268b1c8f3902170b5eb321192b10015e681c71a10192ff8469c3cd3becedc907814e0df23153a0dd17d07580044d53d06aea2f3c799709d68cac210d9c340b
ssdeep: 12288:VsadmGj8usdzeLnn2ageXN/zAXJR9c1Ztvj0OVs:V1bj8uaeLnn2agediRapD+
type: PE32 executable (GUI) Intel 80386, for MS Windows, InstallShield self-extracting archive

Version Info:

LegalCopyright: (C)
ProductName:
FileVersion:
FileDescription: Producer pcy
Translation: 0x0804 0x04e4

Application.Bundler.KuaiZip.A also known as:

LionicTrojan.NSIS.Agent.4!c
Elasticmalicious (high confidence)
ALYacApplication.Bundler.KuaiZip.A
CylanceUnsafe
SangforAdware.Win32.Agent.gen
BitDefenderApplication.Bundler.KuaiZip.A
Cybereasonmalicious.5a93b3
BaiduNSIS.Trojan-Dropper.Agent.c
ESET-NOD32Win32/Adware.Agent.NQQ
APEXMalicious
CynetMalicious (score: 99)
Kasperskynot-a-virus:HEUR:AdWare.NSIS.Agent.gen
AlibabaAdWare:Win32/Generic.7780debd
MicroWorld-eScanApplication.Bundler.KuaiZip.A
TencentWin32.Adware.Bp-startpage.Zppr
Ad-AwareApplication.Bundler.KuaiZip.A
SophosGeneric PUA MI (PUA)
BitDefenderThetaGen:NN.ZemsilF.34170.Tq0@ayn1uoj
VIPREAdware.GenericKD
McAfee-GW-EditionBehavesLike.Win32.AdwareAdload.gc
FireEyeApplication.Bundler.KuaiZip.A
EmsisoftApplication.Bundler.KuaiZip.A (B)
SentinelOneStatic AI – Malicious PE
AviraADWARE/Agent.rluhd
Antiy-AVLTrojan/Generic.ASMalwNS.6
KingsoftWin32.Troj.Bp-startpage.Zp.(kcloud)
MicrosoftTrojan:Win32/Wacatac.A!ml
ArcabitApplication.Bundler.KuaiZip.A
SUPERAntiSpywareTrojan.Agent/Gen-ChinAd
GDataApplication.Bundler.KuaiZip.A
McAfeeArtemis!E8D34AC5A93B
MAXmalware (ai score=99)
MalwarebytesTrojan.ChinAd
RisingAdware.StartPage/NSIS!1.B836 (CLASSIC)
FortinetW32/Agent.BT!tr

How to remove Application.Bundler.KuaiZip.A?

Application.Bundler.KuaiZip.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment