Malware

AdWare.Win32.StartSurf.abpz removal tips

Malware Removal

The AdWare.Win32.StartSurf.abpz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.StartSurf.abpz virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • Anomalous binary characteristics

How to determine AdWare.Win32.StartSurf.abpz?


File Info:

crc32: B8CBD023
md5: 5d61ac81094a9e2cb4fc3a29716eb204
name: 5D61AC81094A9E2CB4FC3A29716EB204.mlw
sha1: 85ac07a18033e5a134845e67d8049442a64a15f1
sha256: b585ff4ab8b279b952c717fc57b8e596b676b27f5b70b7d809d17d0e19f15441
sha512: a6079fc9870f1203a57b4f935a9022f13506802ff11cc432657c5926e7f5ee212e59a37acfc728d7c809050eeee5c042bad8786dbd271c46f58fea01e715e24d
ssdeep: 6144:L7ePKSElEgM39Jx4Z+qvifo/yGLTuzDYIKPtlNLA56s8BkSu5QhfcSMQ3K+WpqL:/9SYI9/RfciMIg2OkQp3GML/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017
InternalName: TemplatelExeFile.rc
FileVersion: 1.0.0.1
CompanyName: TODO:
ProductName: TODO:
ProductVersion: 1.0.0.1
FileDescription: TODO:
OriginalFilename: TemplatelExeFile.rc
Translation: 0x0419 0x04b0

AdWare.Win32.StartSurf.abpz also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00528e801 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.12815
CynetMalicious (score: 100)
CAT-QuickHealSoftwareBundler.Prepscram.A7
ALYacGen:Variant.ClipBanker.215
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.127365
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/StartSurf.f85f4183
K7GWTrojan ( 0050f44b1 )
Cybereasonmalicious.1094a9
CyrenW32/S-10b1690a!Eldorado
SymantecSMG.Heur!gen
ESET-NOD32a variant of Win32/Kryptik.FTMV
APEXMalicious
AvastFileRepMetagen [Malware]
Kasperskynot-a-virus:AdWare.Win32.StartSurf.abpz
BitDefenderGen:Variant.ClipBanker.215
NANO-AntivirusRiskware.Win32.StartSurf.epsnxd
SUPERAntiSpywarePUP.Bundler/Variant
MicroWorld-eScanGen:Variant.ClipBanker.215
TencentMalware.Win32.Gencirc.10b2db61
Ad-AwareGen:Variant.ClipBanker.215
SophosGeneric ML PUA (PUA)
ComodoApplication.Win32.IStartSurf.BS@7lng48
BitDefenderThetaGen:NN.ZexaF.34628.Ry0@a8fnMlok
TrendMicroTROJ_GEN.R002C0OLC20
McAfee-GW-EditionBehavesLike.Win32.Generic.jm
FireEyeGeneric.mg.5d61ac81094a9e2c
EmsisoftGen:Variant.ClipBanker.215 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.afe
AviraHEUR/AGEN.1103317
MicrosoftSoftwareBundler:Win32/Prepscram
ArcabitTrojan.ClipBanker.215
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Variant.ClipBanker.215
AhnLab-V3PUP/Win32.StartSurf.R204081
Acronissuspicious
McAfeePUP-XBS-KX
MAXmalware (ai score=81)
VBA32AdWare.StartSurf
MalwarebytesGeneric.Trojan.Bundler.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0OLC20
RisingTrojan.Kryptik!1.AB1C (CLOUD)
IkarusPUA.Bundler
FortinetW32/Kryptik.GGTA!tr
AVGFileRepMetagen [Malware]
Paloaltogeneric.ml
Qihoo-360Win32/Adware.Generic.HwoCEpsA

How to remove AdWare.Win32.StartSurf.abpz?

AdWare.Win32.StartSurf.abpz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment