Malware

AdWare.Win32.StartSurf.brwm removal tips

Malware Removal

The AdWare.Win32.StartSurf.brwm is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.StartSurf.brwm virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

all.fingersleep.bid
none.coalrate.men

How to determine AdWare.Win32.StartSurf.brwm?


File Info:

crc32: C8471E51
md5: 968e2e82e92b502b8ec4067d9ca386f5
name: 968E2E82E92B502B8EC4067D9CA386F5.mlw
sha1: d8c89f1858fe8e5a4dba9a5491a6e1777a87694e
sha256: 2c8a2259e5ba2568b6f677e83953ffc5a9d927738821bce30b2b43144dc35c3a
sha512: e852269c26c319ceb4257f08cbff1a3aac5d910ea56410735d4312d133d793871c7a89cc7f732d52fa9910644d07eb94a3cd0b19168da56810a3ce7a7dc8c234
ssdeep: 24576:z+sb2y0Y9B1xcuJp8sDpqLsKxcF1rD6qtzvvEsaPSfWtJFHvhk:zpb2q0spqoKOFNztLBlfWF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Oefebott rootelil muinawawulsa
InternalName: ILGYECFETUROUT.EXE
FileVersion: 1.7.4.6
CompanyName: xa9Oefebott rootelil muinawawulsa
ProductName: ILGYECFETUROUT
ProductVersion: 1.7.4.6
OriginalFilename: ilgyecfeturout.exe
Translation: 0x0409 0x04e4

AdWare.Win32.StartSurf.brwm also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053b81d1 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17914
CynetMalicious (score: 100)
CAT-QuickHealSwbndlr.Dlhelper.V2
ALYacApplication.Bundler.iStartSurf.1.Gen
CylanceUnsafe
ZillyaTool.ArchSMS.Win32.36235
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaAdWare:Win32/StartSurf.ef0cb779
K7GWTrojan ( 0053b81d1 )
Cybereasonmalicious.2e92b5
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GJAJ
APEXMalicious
AvastFileRepMalware
Kasperskynot-a-virus:AdWare.Win32.StartSurf.brwm
BitDefenderApplication.Bundler.iStartSurf.1.Gen
NANO-AntivirusRiskware.Win32.StartSurf.ffrxbp
MicroWorld-eScanApplication.Bundler.iStartSurf.1.Gen
TencentMalware.Win32.Gencirc.114cf61a
Ad-AwareApplication.Bundler.iStartSurf.1.Gen
SophosGeneric PUA NI (PUA)
ComodoApplication.Win32.Dlhelper.GI@8159ae
BitDefenderThetaAI:Packer.9CCBCF4C21
McAfee-GW-EditionBehavesLike.Win32.Packed.tm
FireEyeGeneric.mg.968e2e82e92b502b
EmsisoftApplication.Bundler.iStartSurf.1.Gen (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1101341
eGambitUnsafe.AI_Score_95%
Antiy-AVLTrojan/Generic.ASMalwS.2711943
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataApplication.Bundler.iStartSurf.1.Gen
Acronissuspicious
McAfeePacked-FKC!968E2E82E92B
MAXmalware (ai score=97)
VBA32BScope.AdWare.StartSurf
MalwarebytesAdware.DLAssistant.Generic
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
IkarusPUA.Win32.Prepscram
FortinetW32/GenKryptik.CFOO!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove AdWare.Win32.StartSurf.brwm?

AdWare.Win32.StartSurf.brwm removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment