PUA

IStartSurfInstaller (PUA) removal

Malware Removal

The IStartSurfInstaller (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IStartSurfInstaller (PUA) virus can do?

  • Executable code extraction
  • Creates RWX memory

Related domains:

z.whorecord.xyz
a.tomx.xyz
d3vngcy706h320.cloudfront.net
bon.sonjelly.club

How to determine IStartSurfInstaller (PUA)?


File Info:

crc32: 80F1204B
md5: ae20da458fbae28382a0a1bc275d5689
name: setup.exe
sha1: e85d9ff53cb1beb779f18b1aa94f12d090869d51
sha256: 5a68e85218f6ec42d0cbb7e7d87d8242e08c88fac2627c73915fa0245ae8b3e3
sha512: 41d644b76b594c2e5c8b4a9368cdd91863d02c6f8584f356afc6423b73eaec3fedd3cb7cb5443a363ef248e4adb020ab8151b18fb16b383cdeb44dbf75c0369c
ssdeep: 49152:1ZNQhmpdQIg0rK1lWQNyY55CQT4m1+HIqkQNyh0kFJp3yIongj1G+d:3NdQ+G1lWlYest+oqJNyh0kFJ9yIonsF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

IStartSurfInstaller (PUA) also known as:

BkavHW32.Packed.
FireEyeGeneric.mg.ae20da458fbae283
CAT-QuickHealTrojan.SurfSodaInfo.M7
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 0055bb171 )
K7GWTrojan ( 0055bb171 )
Cybereasonmalicious.53cb1b
BitDefenderThetaGen:NN.ZexaF.34084.1IZ@a8JqZlfi
F-ProtW32/Kryptik.AQV.gen!Eldorado
APEXMalicious
GDataWin32.Trojan.Kryptik.OS
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazqRmrau8rlPJXcWDGTisg3Y)
SophosIStartSurfInstaller (PUA)
ComodoApplication.Win32.IStartSurf.VISA@8fniqt
F-SecureTrojan.TR/Dropper.Gen
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
Trapminemalicious.high.ml.score
IkarusPUA.ICLoader
CyrenW32/Kryptik.AQV.gen!Eldorado
eGambitUnsafe.AI_Score_97%
AviraTR/Dropper.Gen
Antiy-AVLGrayWare/Win32.Kryptik.guot
Endgamemalicious (high confidence)
MicrosoftTrojan:Win32/Wacatac.D!ml
Acronissuspicious
McAfeeGenericRXJH-SE!AE20DA458FBA
MalwarebytesTrojan.IStartSurf
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Kryptik.GYRB
SentinelOneDFI – Malicious PE
FortinetW32/Kryptik.BVKS!tr
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360HEUR/QVM20.1.2709.Malware.Gen

How to remove IStartSurfInstaller (PUA)?

IStartSurfInstaller (PUA) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment