Malware

About “AdWare.Win32.StartSurf.chmf” infection

Malware Removal

The AdWare.Win32.StartSurf.chmf is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.StartSurf.chmf virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
dill.orangessmoke.xyz
potato.giraffegiraffe.website

How to determine AdWare.Win32.StartSurf.chmf?


File Info:

crc32: 6C08765C
md5: 38126edb8f7d769b641731feab7a09f2
name: 38126EDB8F7D769B641731FEAB7A09F2.mlw
sha1: 507781930f617e6b747c5f11c64d6e6055e06e1d
sha256: 5b5abef5a5470d9473a219a4c7ae2453627268944b32b6283f768790c25b5789
sha512: 73e38a867e3516a92fa38065c15f3562418acf43bd356bc298daa5bae0f48b1323997aee5920cc00ea5a72417d4f6be719750d0060c4d00dcfc9a3e1b31111ef
ssdeep: 24576:J98bnMQpEmmH5UPfzyLqzkQbdqNhBkJIS:IpNPftoeq7y5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

AdWare.Win32.StartSurf.chmf also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053d2701 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17914
CynetMalicious (score: 100)
ALYacGen:Heur.Mint.Zamg.1
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.50398
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/StartSurf.649ee958
K7GWTrojan ( 0053d2701 )
Cybereasonmalicious.b8f7d7
CyrenW32/Kryptik.DSV.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GKQR
APEXMalicious
AvastWin32:Kryptik-PQT [Adw]
Kasperskynot-a-virus:AdWare.Win32.StartSurf.chmf
BitDefenderGen:Heur.Mint.Zamg.1
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Heur.Mint.Zamg.1
TencentMalware.Win32.Gencirc.10cc3a83
Ad-AwareGen:Heur.Mint.Zamg.1
SophosIStartSurfInstaller (PUA)
ComodoMalware@#wvcgzrhzyyt
BitDefenderThetaGen:NN.ZexaF.34170.zDW@aSukoVpi
McAfee-GW-EditionBehavesLike.Win32.Generic.th
FireEyeGeneric.mg.38126edb8f7d769b
EmsisoftGen:Heur.Mint.Zamg.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.hzb
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2808D48
MicrosoftTrojan:Win32/Wacatac.A!ml
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.StartSurf.gen
GDataGen:Heur.Mint.Zamg.1
AhnLab-V3Malware/Win32.Generic.C2723717
Acronissuspicious
McAfeePacked-FKC!38126EDB8F7D
MAXmalware (ai score=99)
VBA32BScope.Adware.DownloadHelper
MalwarebytesAdware.IStartSurf
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexPUA.StartSurf!zMT1TWuCAO8
IkarusPUA.Dlhelper
FortinetW32/Kryptik.GJJV!tr
AVGWin32:Kryptik-PQT [Adw]
Paloaltogeneric.ml

How to remove AdWare.Win32.StartSurf.chmf?

AdWare.Win32.StartSurf.chmf removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment