Malware

AdWare.Win32.StartSurf.brpu removal tips

Malware Removal

The AdWare.Win32.StartSurf.brpu is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.StartSurf.brpu virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

all.fingersleep.bid
none.coalrate.men

How to determine AdWare.Win32.StartSurf.brpu?


File Info:

crc32: F3B50FFD
md5: f3b51f94aa38108f3869ba0ebe6751a2
name: F3B51F94AA38108F3869BA0EBE6751A2.mlw
sha1: f334d7797cb4c386af2c067b796304a91240977b
sha256: 23b931565e2761a2a0da093a0cb69258dbca475451745048c544555f74956b6d
sha512: 984b7523d9e4c4e0c430f00a0b84628274ac7c2d126f2a94e018bf9ca358f0362f755cd2648df2e72f47bd6da1097d9e2a4a288d0e6aafd3ea645905e70c0ba4
ssdeep: 24576:4FC4mhEy5Bntw9wZoNMg2xl9YpEikkUJU9U:4FC4UnduMi5j3G
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Rurenf
InternalName: GAHOREU.EXE
FileVersion: 1.1.8.10
CompanyName: xa9Rurenf
ProductName: GAHOREU
ProductVersion: 1.1.8.10
OriginalFilename: gahoreu.exe
Translation: 0x0409 0x04e4

AdWare.Win32.StartSurf.brpu also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053ba2f1 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17914
CynetMalicious (score: 100)
CAT-QuickHealSwbndlr.Dlhelper.V2
ALYacApplication.Bundler.iStartSurf.1.Gen
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/StartSurf.d65c2099
K7GWTrojan ( 0053ba2f1 )
Cybereasonmalicious.4aa381
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GJAJ
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
Kasperskynot-a-virus:AdWare.Win32.StartSurf.brpu
BitDefenderApplication.Bundler.iStartSurf.1.Gen
NANO-AntivirusRiskware.Win32.StartSurf.ffpxfq
MicroWorld-eScanApplication.Bundler.iStartSurf.1.Gen
TencentMalware.Win32.Gencirc.10c8faa5
Ad-AwareApplication.Bundler.iStartSurf.1.Gen
SophosGeneric PUA PD (PUA)
ComodoApplication.Win32.Dlhelper.GE@8159h4
BitDefenderThetaGen:NN.ZexaF.34294.Wr0@ai2ln9ai
McAfee-GW-EditionBehavesLike.Win32.Generic.tm
FireEyeGeneric.mg.f3b51f94aa38108f
EmsisoftApplication.Bundler.iStartSurf.1.Gen (B)
JiangminAdWare.StartSurf.bxu
AviraTR/Crypt.XPACK.Gen4
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.270C96B
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitApplication.Bundler.iStartSurf.1.Gen
GDataApplication.Bundler.iStartSurf.1.Gen
AhnLab-V3Malware/Win32.Generic.C2633213
Acronissuspicious
McAfeePacked-FKC!F3B51F94AA38
MAXmalware (ai score=74)
VBA32BScope.Adware.StartSurf
MalwarebytesAdware.DLAssistant
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexTrojan.GenAsa!J+CVieXMVuQ
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CFOO!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove AdWare.Win32.StartSurf.brpu?

AdWare.Win32.StartSurf.brpu removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment