Malware

AdWare.Win32.StartSurf.brfk removal guide

Malware Removal

The AdWare.Win32.StartSurf.brfk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.StartSurf.brfk virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

all.fingersleep.bid
none.coalrate.men

How to determine AdWare.Win32.StartSurf.brfk?


File Info:

crc32: FEBBA3A7
md5: 2b8313566f37598a69170994e24cc04a
name: 2B8313566F37598A69170994E24CC04A.mlw
sha1: 81bc9710893896ff850fadb6b9ec99e12f1d1848
sha256: 1e4b416ba0f46e781267ff54652dff854adfe93bd8ad02f7aed013624deaa740
sha512: c7fed8790085eaa7084230dffee55332834175323a8c0a1e874c85a21ae0b79d94422e91a018dd7261d9a74031db89701abe7656c113c6a21c4ed4e6bf69c9ac
ssdeep: 24576:FCWmKWIDIv/0wX6O+VzD+oMCCRLFBwfkHiLuI8p4b82U:FC6+v/wNuY8z
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Cesins ipyno
InternalName: SAANN.EXE
FileVersion: 2.9.5.8
CompanyName: xa9Cesins ipyno
ProductName: SAANN
ProductVersion: 2.9.5.8
OriginalFilename: saann.exe
Translation: 0x0409 0x04e4

AdWare.Win32.StartSurf.brfk also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053b81d1 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17914
CynetMalicious (score: 100)
CAT-QuickHealSwbndlr.Dlhelper.V2
ALYacApplication.Bundler.iStartSurf.1.Gen
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.127537
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaAdWare:Win32/StartSurf.ebe9e6ab
K7GWTrojan ( 0053b81d1 )
Cybereasonmalicious.66f375
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GJAJ
APEXMalicious
AvastWin32:AdwareX-gen [Adw]
Kasperskynot-a-virus:AdWare.Win32.StartSurf.brfk
BitDefenderApplication.Bundler.iStartSurf.1.Gen
NANO-AntivirusRiskware.Win32.StartSurf.ffojwj
MicroWorld-eScanApplication.Bundler.iStartSurf.1.Gen
TencentMalware.Win32.Gencirc.10c985ec
Ad-AwareApplication.Bundler.iStartSurf.1.Gen
SophosMal/Generic-S
ComodoApplication.Win32.Dlhelper.GI@8159ae
BitDefenderThetaGen:NN.ZexaF.34266.Cs0@aOx8@oki
McAfee-GW-EditionBehavesLike.Win32.Worm.vz
FireEyeGeneric.mg.2b8313566f37598a
EmsisoftApplication.Generic (A)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.btm
AviraHEUR/AGEN.1101341
Antiy-AVLTrojan/Generic.ASMalwS.2707F45
MicrosoftTrojan:Win32/Wacatac.A!ml
ArcabitApplication.Bundler.iStartSurf.1.Gen
GDataApplication.Bundler.iStartSurf.1.Gen
AhnLab-V3Malware/Win32.Generic.C2629950
Acronissuspicious
McAfeePacked-FKC!2B8313566F37
MAXmalware (ai score=70)
VBA32Trojan.Vittalia
MalwarebytesAdware.DLAssistant.Generic
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexTrojan.GenAsa!VEqySk3L8g4
IkarusPUA.Dlhelper
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CFOO!tr
AVGWin32:AdwareX-gen [Adw]
Paloaltogeneric.ml

How to remove AdWare.Win32.StartSurf.brfk?

AdWare.Win32.StartSurf.brfk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment