Malware

Should I remove “Win32/IStartSurf.CC potentially unwanted”?

Malware Removal

The Win32/IStartSurf.CC potentially unwanted is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/IStartSurf.CC potentially unwanted virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Win32/IStartSurf.CC potentially unwanted?


File Info:

name: 8E0E38608205F8DE9B55.mlw
path: /opt/CAPEv2/storage/binaries/f17c7b135ba628e638cc3d0f56e5c7fd23f451f08c78a587896608ca960bcdbd
crc32: 8F6505C6
md5: 8e0e38608205f8de9b551f74ebeb738f
sha1: 06ba0d986eaed11f40b47edaf7c8a1d885a9e938
sha256: f17c7b135ba628e638cc3d0f56e5c7fd23f451f08c78a587896608ca960bcdbd
sha512: c05bf1941f34c411bb1e667900f0f205205dee712b214ce65407ed6b82a4fb9458c680a60a59d40a2f3768e4592b29281c0429ce0e7e961462be971b39d006fa
ssdeep: 768:l1cVhpQI2EQK0iPDh84nScF15GYbWjXO3XJYPVN53aJQh2I4aChHxsWVaHuH+7:TQpQ5EP0ijnRTXJIVN5cQ8IvChOHIa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T164339E5636C0C8F7D46A4A71CAA3DBF6D3B5EF01E9610A575B503FAF39320978606283
sha3_384: cfdc25eebc0bb2278e186efc5dd70df145de81107ff6625ae14e2f17c48bd0e8651c8faeb3b1eceb63bafaf143c6a220
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:46

Version Info:

0: [No Data]

Win32/IStartSurf.CC potentially unwanted also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Application.Bundler.Outbrowse.15
CAT-QuickHealDownloader.Adload.18342
ALYacGen:Variant.Application.Bundler.Outbrowse.15
CylanceUnsafe
K7AntiVirusTrojan ( 00532db71 )
K7GWTrojan ( 00532db71 )
CrowdStrikewin/grayware_confidence_90% (W)
CyrenW32/S-43ed6a3a!Eldorado
ESET-NOD32Win32/IStartSurf.CC potentially unwanted
APEXMalicious
ClamAVWin.Trojan.Agent-1355991
Kasperskynot-a-virus:Downloader.Win32.Agent.ebgx
BitDefenderGen:Variant.Application.Bundler.Outbrowse.15
NANO-AntivirusTrojan.Win32.Agent.dufhqt
AvastWin32:DropperX-gen [Drp]
Ad-AwareGen:Variant.Application.Bundler.Outbrowse.15
SophosGeneric ML PUA (PUA)
ComodoTrojWare.Win32.TrojanDownloader.Agent.DA@5vr2um
TrendMicroTROJ_GEN.R067C0OCI22
McAfee-GW-EditionGenericR-FMG!352EBD611FF2
Trapminesuspicious.low.ml.score
FireEyeGen:Variant.Application.Bundler.Outbrowse.15
EmsisoftGen:Variant.Application.Bundler.Outbrowse.15 (B)
GDataGen:Variant.Application.Bundler.Outbrowse.15
AviraHEUR/AGEN.1233789
MAXmalware (ai score=79)
ArcabitTrojan.Application.Bundler.Outbrowse.15
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
AhnLab-V3PUP/Win32.Downloader.R159834
Acronissuspicious
McAfeeArtemis!8E0E38608205
VBA32Downloader.Agent
MalwarebytesTrojan.IStartSurf
TrendMicro-HouseCallTROJ_GEN.R067C0OCI22
RisingTrojan.Generic@AI.100 (RDML:tuv9geKKacSyPFOkCm0TCg)
YandexPUA.Downloader!uMgiwQmLN/U
Ikarusnot-a-virus:Downloader.Agent
FortinetW32/IStartSurf.CC!tr
BitDefenderThetaGen:NN.ZedlaF.34742.bu4@ay!gPKgi
AVGWin32:DropperX-gen [Drp]
Cybereasonmalicious.08205f
PandaTrj/CI.A

How to remove Win32/IStartSurf.CC potentially unwanted?

Win32/IStartSurf.CC potentially unwanted removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment