Trojan.IStartSurf

ThreatDown is now the name of the Malwarebytes line of business products. References to Malwarebytes below reflect the amazing technology used to first identify the threat.

Short bio

Trojan.IStartSurf is Malwarebytes’ detection name for a family of adware and hijacker bundlers.

Type of infection

Trojan.IStartSurf is a bundler, The term bundler usually refers to a single installation file containing two or more programs. Many bundlers are found on freeware download sites. The Trojan.IStartSurf bundlers sometimes include other Trojans that protect the adware components against removal.

Malicious behavior

Users of affected systems may see unwanted advertising not originating from the sites they are visiting or their browser opening with a startpage that they did not set themselves.

Protection

Malwarebytes blocks Trojan.IStartSurf

Home remediation

You can use the Malwarebytes Anti-Malware Nebula console to scan endpoints.

Nebula endpoint tasks menu

Choose the Scan + Quarantine option. Afterwards you can check the Detections page to see which threats were found.

On the Quarantine page you can see which threats were quarantined and restore them if necessary.

Associated threats