Malware

What is “AdWare.Win32.StartSurf.dlkz”?

Malware Removal

The AdWare.Win32.StartSurf.dlkz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.StartSurf.dlkz virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

make.campzephyr.host
create.guitarchange.site

How to determine AdWare.Win32.StartSurf.dlkz?


File Info:

crc32: 8F70B994
md5: 9c86ff025e8d7e93ef8fc0b8b26f5be7
name: 9C86FF025E8D7E93EF8FC0B8B26F5BE7.mlw
sha1: 8ea01642bffc809a52078d5abed7f8203c25cf02
sha256: df2893b76f497deca5171027641be49a23d3b39c48dbe174eff7db01ea9fffc1
sha512: 3e5232bfca626fbcf3c5775e2eb9d8e51bc588e8060d946e06725b70c05883231dfd42b0168194a50f0249bc5087ca0d7e6caa8f1d437fa09ff58e20160302fc
ssdeep: 24576:C6CNUAtrmeuKICxbFZnKVTXHPNmvsfRoU+pCobl7WfMmanUW:0UTZKrbFZnq3PMeoUkCohEMn
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

AdWare.Win32.StartSurf.dlkz also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053e8a41 )
LionicTrojan.Win32.Swizzor.l8Pw
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.13656
CynetMalicious (score: 100)
CAT-QuickHealSwbndlr.Dlhelper.V2
ALYacGen:Heur.Mint.Zamg.1
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3230201
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/StartSurf.bf9b057d
K7GWTrojan ( 0053e8a41 )
Cybereasonmalicious.25e8d7
CyrenW32/Kryptik.FDA.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GLRI
APEXMalicious
AvastWin32:Kryptik-PRB [Adw]
Kasperskynot-a-virus:AdWare.Win32.StartSurf.dlkz
BitDefenderGen:Heur.Mint.Zamg.1
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Heur.Mint.Zamg.1
TencentMalware.Win32.Gencirc.116dbc13
Ad-AwareGen:Heur.Mint.Zamg.1
SophosMal/Generic-S + IStartSurfInstaller (PUA)
ComodoMalware@#1h51hanu0d42i
BitDefenderThetaGen:NN.ZexaF.34170.jvW@a4lUrCki
McAfee-GW-EditionBehavesLike.Win32.Shohdi.th
FireEyeGeneric.mg.9c86ff025e8d7e93
EmsisoftGen:Heur.Mint.Zamg.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.wem
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.2898BAB
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmnot-a-virus:AdWare.Win32.StartSurf.dlkz
GDataGen:Heur.Mint.Zamg.1
AhnLab-V3Malware/Win32.Generic.C2772878
Acronissuspicious
McAfeePacked-FKC!9C86FF025E8D
MAXmalware (ai score=88)
VBA32BScope.Adware.StartSurf
MalwarebytesAdware.IStartSurf
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexPUA.StartSurf!XDuMlVSogj0
IkarusTrojan.Win32.Hrup
FortinetW32/Kryptik.GIST!tr
AVGWin32:Kryptik-PRB [Adw]
Paloaltogeneric.ml

How to remove AdWare.Win32.StartSurf.dlkz?

AdWare.Win32.StartSurf.dlkz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment