Malware

About “AdWare.Win32.StartSurf.cerz” infection

Malware Removal

The AdWare.Win32.StartSurf.cerz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.StartSurf.cerz virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
dill.orangessmoke.xyz
potato.giraffegiraffe.website
a.tomx.xyz

How to determine AdWare.Win32.StartSurf.cerz?


File Info:

crc32: F2989CE6
md5: 7155e7dc893c4688e33bef8f4edccb96
name: 7155E7DC893C4688E33BEF8F4EDCCB96.mlw
sha1: 65f5a8882acbb3b2c2f591aa9c91b358b8856ea1
sha256: de6b79149a99704d7300b2c62a2f3074223b14974241d99bedb5aaaea9e897c4
sha512: 33dc41564f40df7869bb26597414ea919e46cf72af27326cf0161d873f90c5f75aa6f5b33d7915db7e1b40a73bd438ab2308a9296c2a433e700c1cebbfaf3f80
ssdeep: 24576:89/hEsqZPKo/kyidC8GACaLwwLG1W1nbpVh2CMmanUz:i0PKosy+7LX6aFfzMu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

AdWare.Win32.StartSurf.cerz also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053c4231 )
LionicAdware.Win32.StartSurf.2!c
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17914
CynetMalicious (score: 100)
CAT-QuickHealSwbndlr.Dlhelper.V2
ALYacGen:Heur.Mint.Zamg.1
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.51117
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/StartSurf.68769361
K7GWTrojan ( 0053c4231 )
Cybereasonmalicious.c893c4
CyrenW32/S-5da3ff69!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GKQR
APEXMalicious
AvastWin32:Kryptik-PQT [Adw]
Kasperskynot-a-virus:AdWare.Win32.StartSurf.cerz
BitDefenderGen:Heur.Mint.Zamg.1
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Heur.Mint.Zamg.1
TencentMalware.Win32.Gencirc.114d2e9f
Ad-AwareGen:Heur.Mint.Zamg.1
SophosIStartSurfInstaller (PUA)
ComodoMalware@#2ljj0r8v7qq5p
BitDefenderThetaGen:NN.ZexaF.34170.qvW@a8oiiNli
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Backdoor.th
FireEyeGeneric.mg.7155e7dc893c4688
EmsisoftGen:Heur.Mint.Zamg.1 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.28013A4
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Mint.Zamg.1
GDataGen:Heur.Mint.Zamg.1
AhnLab-V3Malware/Win32.Generic.C2720421
Acronissuspicious
McAfeePacked-FKC!7155E7DC893C
VBA32BScope.Adware.DownloadHelper
MalwarebytesAdware.IStartSurf
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexPUA.StartSurf!DUHQd+Rw7+w
IkarusPUA.Dlhelper
FortinetW32/Kryptik.GIST!tr
AVGWin32:Kryptik-PQT [Adw]
Paloaltogeneric.ml

How to remove AdWare.Win32.StartSurf.cerz?

AdWare.Win32.StartSurf.cerz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment