Malware

AdWare.Win32.StartSurf.brly information

Malware Removal

The AdWare.Win32.StartSurf.brly is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.StartSurf.brly virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
all.fingersleep.bid
none.coalrate.men
a.tomx.xyz

How to determine AdWare.Win32.StartSurf.brly?


File Info:

crc32: 8F2F065B
md5: 9a6d85e6146a5d78869d78a7a653cfcc
name: 9A6D85E6146A5D78869D78A7A653CFCC.mlw
sha1: 530be3fe46faf6878882f48405f6528014c3ef03
sha256: 2c58d33e9f769bb8e57b214e421209f0ad7abbd8094188743dacd04ab3311c13
sha512: c9dc60437a752811d7693d7ced65215ffb232d86aafb9ab8cf15f9e3897cfb8e80cc1a697f65a50f14755464e395db3ddd87408afd05a55af2946f84909b4fe7
ssdeep: 24576:1qmAfk++mVRCc1OQ/FdKjxOR4nqtj3PtyIzX2t:Qhh9KFQKqx8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Rneen ithoneahrymos
InternalName: WEBOYROPW.EXE
FileVersion: 1.2.10.0
CompanyName: xa9Rneen ithoneahrymos
ProductName: WEBOYROPW
ProductVersion: 1.2.10.0
OriginalFilename: weboyropw.exe
Translation: 0x0409 0x04e4

AdWare.Win32.StartSurf.brly also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17914
CAT-QuickHealSwbndlr.Dlhelper.V2
ALYacApplication.Bundler.iStartSurf.1.Gen
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.52044
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/StartSurf.a3648eac
K7GWTrojan ( 0053ba2f1 )
K7AntiVirusTrojan ( 0053ba2f1 )
CyrenW32/Kryptik.FDS.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GJAJ
APEXMalicious
AvastWin32:AdwareX-gen [Adw]
CynetMalicious (score: 100)
Kasperskynot-a-virus:AdWare.Win32.StartSurf.brly
BitDefenderApplication.Bundler.iStartSurf.1.Gen
NANO-AntivirusRiskware.Win32.StartSurf.ffpqfd
MicroWorld-eScanApplication.Bundler.iStartSurf.1.Gen
TencentMalware.Win32.Gencirc.10c982d4
Ad-AwareApplication.Bundler.iStartSurf.1.Gen
SophosGeneric PUA FD (PUA)
ComodoTrojWare.Win32.Injector.ZRA@54s8j9
BitDefenderThetaGen:NN.ZexaF.34170.Nr0@a0m2w7ai
McAfee-GW-EditionBehavesLike.Win32.Downloader.tt
FireEyeGeneric.mg.9a6d85e6146a5d78
EmsisoftApplication.Bundler.iStartSurf.1.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.crs
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.270B5FE
MicrosoftTrojan:Win32/Wacatac.A!ml
ArcabitApplication.Bundler.iStartSurf.1.Gen
GDataApplication.Bundler.iStartSurf.1.Gen
AhnLab-V3Malware/Win32.Generic.C2633018
Acronissuspicious
McAfeePacked-FKC!9A6D85E6146A
MAXmalware (ai score=96)
VBA32BScope.Adware.AdLoad
MalwarebytesAdware.DLAssistant.Generic
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexTrojan.GenAsa!CEh6UkJvknw
IkarusPUA.Win32.Prepscram
FortinetW32/GenKryptik.CFOO!tr
AVGWin32:AdwareX-gen [Adw]
Paloaltogeneric.ml

How to remove AdWare.Win32.StartSurf.brly?

AdWare.Win32.StartSurf.brly removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment