Malware

About “Application.Bundler.iStartSurf.FV” infection

Malware Removal

The Application.Bundler.iStartSurf.FV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Bundler.iStartSurf.FV virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Application.Bundler.iStartSurf.FV?


File Info:

name: C1525AAED1D7FE5D60DF.mlw
path: /opt/CAPEv2/storage/binaries/261cd1bf4b2b65324529ceea09d4d80f0f57d0deccb4a7efde75bd1117a4bdf7
crc32: 689084D1
md5: c1525aaed1d7fe5d60df4184303cfa03
sha1: 4f0413b0c194d2baaf0994e60eb4ffb6d46de984
sha256: 261cd1bf4b2b65324529ceea09d4d80f0f57d0deccb4a7efde75bd1117a4bdf7
sha512: 885fdd684b86dd16e070df5c657165db1c7e6ef346cfdbcaa8ea71754603b996f5a0ac041ca130ec59d7122231dc2157fe3d8b2d031cb7d870bc901bd59d55dc
ssdeep: 24576:dnoDGai2bQaL1WslWUxILsOeIvVRYZVeCTAqY5oNhVAPG4ZnBWa5CpmG8hbSaSmO:GGaJE0ZaW0GKtG8FSUrar8FS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T121D5F109329CFC46C40A94F62E309EEFE4255F91C65FA58623C63B2E87F6EB85F14581
sha3_384: b1d529b31d8968087b8c02a5e16e268df947cbd918bc3b5e99fbd8ff1d66e4760a0208fd76d945f7425b7ac2b2aa8256
ep_bytes: e803040000e98efeffff558becf64508
timestamp: 2018-07-01 15:33:25

Version Info:

0: [No Data]

Application.Bundler.iStartSurf.FV also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Bundler.4!c
AVGWin32:Adware-gen [Adw]
Elasticmalicious (high confidence)
MicroWorld-eScanApplication.Bundler.iStartSurf.FV
FireEyeGeneric.mg.c1525aaed1d7fe5d
CAT-QuickHealPUA.PrepscramRI.S19688420
SkyhighPacked-FIF!C1525AAED1D7
McAfeePacked-FIF!C1525AAED1D7
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Generic.Win32.263869
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0052578b1 )
AlibabaTrojan:Win32/Kryptik.a00bf9fb
K7GWTrojan ( 0052578b1 )
BitDefenderThetaGen:NN.ZexaF.36804.3AW@ayx9LQgi
VirITTrojan.Win32.Vittalia.UFG
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GCMW
CynetMalicious (score: 99)
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderApplication.Bundler.iStartSurf.FV
NANO-AntivirusTrojan.Win32.Kryptik.fetwsq
AvastWin32:Adware-gen [Adw]
TencentTrojan.Win32.Kryptik.gicr
EmsisoftApplication.Bundler.iStartSurf.FV (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen2
DrWebTrojan.Vittalia.13656
VIPREApplication.Bundler.iStartSurf.FV
TrendMicroTROJ_GEN.R002C0PB224
Trapminemalicious.high.ml.score
SophosMal/Isda-D
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Chapak.lk
WebrootW32.Adware.Istartsurf
VaristW32/S-ef1c77a9!Eldorado
AviraTR/Crypt.XPACK.Gen2
MAXmalware (ai score=97)
Antiy-AVLTrojan/Win32.TSGeneric
Kingsoftmalware.kb.a.920
MicrosoftSoftwareBundler:Win32/Prepscram
XcitiumApplication.Win32.Prepscram.GC@7q9mhq
ArcabitApplication.Bundler.iStartSurf.FV
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataApplication.Bundler.iStartSurf.FV
GoogleDetected
AhnLab-V3PUP/Win32.LoadMoney.R230870
VBA32BScope.AdWare.StartSurf
ALYacApplication.Bundler.iStartSurf.FV
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PB224
RisingTrojan.Kryptik!8.8 (TFE:5:BvM3FcswALL)
YandexTrojan.GenAsa!PKOh7RvZnGs
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.DAKE!tr
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/IStartSurf.FV

How to remove Application.Bundler.iStartSurf.FV?

Application.Bundler.iStartSurf.FV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment