Malware

Should I remove “AdWare.Win32.StartSurf.dlww”?

Malware Removal

The AdWare.Win32.StartSurf.dlww is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.StartSurf.dlww virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

make.campzephyr.host
create.guitarchange.site

How to determine AdWare.Win32.StartSurf.dlww?


File Info:

crc32: B2AD6680
md5: ef28715742abb8981871ce7ead799180
name: EF28715742ABB8981871CE7EAD799180.mlw
sha1: 4c02b6059a5556d29420b40757b1f8c56097fc3f
sha256: 20439f76d7382b991f7056d8f0bdfea15c10dd63214016d09ee96cddb9213f69
sha512: fbfc74285507a9ba05d3e27251cfa23b312d9fbb097f676c5a2e9fe462f1f3d68fe4315fe4f190cd2e28d7e9277f1e4ee90fec5977c7e4ee4e00bfbe00def779
ssdeep: 12288:Sye6eIXTLx9KATx7/TmzdR7qBbLAg2D6f7Sx2kQK/UOS7VmYVUNREOGkQx1Z+qn:SyBdn3KAJTmzOBbLAN6u9JUpnXOGkCj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

AdWare.Win32.StartSurf.dlww also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053e8a41 )
LionicTrojan.Win32.Zbot.lx9X
Elasticmalicious (high confidence)
CAT-QuickHealSwBndlr.Unwaders.AB9
ALYacGen:Heur.Mint.Zamg.1
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.81624
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaAdWare:Win32/StartSurf.902f3851
K7GWTrojan ( 0053e8a41 )
Cybereasonmalicious.742abb
CyrenW32/Kryptik.FDA.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.BCZQ
APEXMalicious
AvastWin32:Adware-gen [Adw]
CynetMalicious (score: 100)
Kasperskynot-a-virus:AdWare.Win32.StartSurf.dlww
BitDefenderGen:Heur.Mint.Zamg.1
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Heur.Mint.Zamg.1
TencentWin32.Adware.Startsurf.Alsi
Ad-AwareGen:Heur.Mint.Zamg.1
SophosIStartSurfInstaller (PUA)
ComodoApplication.Win32.Dlhelper.GL@81g4fd
DrWebTrojan.Vittalia.17867
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.ef28715742abb898
EmsisoftGen:Heur.Mint.Zamg.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.anrr
AviraHEUR/AGEN.1118856
eGambitUnsafe.AI_Score_92%
Antiy-AVLTrojan/Generic.ASMalwS.28958C6
MicrosoftTrojan:Win32/Azorult!ml
GDataGen:Heur.Mint.Zamg.1
AhnLab-V3Malware/RL.Generic.R245870
Acronissuspicious
McAfeePacked-FKC!EF28715742AB
MAXmalware (ai score=100)
VBA32Adware.StartSurf
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexPUA.StartSurf!9Fg8oqnCwZ4
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIST!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove AdWare.Win32.StartSurf.dlww?

AdWare.Win32.StartSurf.dlww removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment