Malware

AdWare.Win32.StartSurf.ciki removal

Malware Removal

The AdWare.Win32.StartSurf.ciki is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.StartSurf.ciki virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
dill.orangessmoke.xyz
potato.giraffegiraffe.website

How to determine AdWare.Win32.StartSurf.ciki?


File Info:

crc32: 24B5B202
md5: 0707182e39e5dac603e757d6d3ee211b
name: 0707182E39E5DAC603E757D6D3EE211B.mlw
sha1: 4bf6f92c1d5a489e11e5145b54fb4a69d1c525a9
sha256: 1e2391ad6539fa17eb58147555ba0127c3e3b76d97c950808c4573534e280fb4
sha512: a6bcbaf635c481ab2a8bb59d26ed414492f1c3692a679cf16fd675386577225db9921001e043091dc001664eac5b19d40b7a39c4d7004a5c16921af5678919a5
ssdeep: 24576:RllOJMqPUaua0kDTcdwguHaOT48Xlqf+cWMaVxD:ROzUnaBDgag43J/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

AdWare.Win32.StartSurf.ciki also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00538fbf1 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17914
CynetMalicious (score: 100)
CAT-QuickHealSwbndlr.Dlhelper.V5
ALYacGen:Heur.Mint.Zamg.1
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.50486
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/StartSurf.aab0559e
K7GWTrojan ( 00538fbf1 )
Cybereasonmalicious.e39e5d
CyrenW32/Kryptik.DSV.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GKQR
APEXMalicious
AvastWin32:Kryptik-PQT [Adw]
Kasperskynot-a-virus:AdWare.Win32.StartSurf.ciki
BitDefenderGen:Heur.Mint.Zamg.1
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Heur.Mint.Zamg.1
TencentWin32.Adware.Startsurf.Crf
Ad-AwareGen:Heur.Mint.Zamg.1
SophosIStartSurfInstaller (PUA)
ComodoApplicUnwnt@#i2room5fbv3d
BitDefenderThetaGen:NN.ZexaF.34266.drW@auVK4yc
McAfee-GW-EditionBehavesLike.Win32.Downloader.th
FireEyeGeneric.mg.0707182e39e5dac6
EmsisoftGen:Heur.Mint.Zamg.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.ddfo
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.2807E4D
MicrosoftTrojan:Win32/Occamy.C
GDataGen:Heur.Mint.Zamg.1
AhnLab-V3Malware/Win32.Generic.C2723680
Acronissuspicious
McAfeePacked-FKC!0707182E39E5
MAXmalware (ai score=99)
VBA32BScope.Adware.DownloadHelper
MalwarebytesAdware.DLAssistant
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexTrojan.GenAsa!gL3ncUIiuvM
IkarusPUA.Dlhelper
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.DWTQ!tr
AVGWin32:Kryptik-PQT [Adw]
Paloaltogeneric.ml

How to remove AdWare.Win32.StartSurf.ciki?

AdWare.Win32.StartSurf.ciki removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment