Home Malware Programs Adware Surftastic

Surftastic

Posted: January 31, 2014

Threat Metric

Ranking: 8,991
Threat Level: 2/10
Infected PCs: 8,394
First Seen: January 31, 2014
Last Seen: September 26, 2023
OS(es) Affected: Windows


Surftastic is adware that may be installed onto the Web browser such as Google Chrome, Mozilla Firefox and Internet Explorer. Surftastic may embed an unwanted browser extension, plug-in or add-on that may show a variety of random pop-up advertisements and messages while the PC user is browsing the Web. Surftastic may also show a variety of intrusive pop-up advertisements that may carry coupons with discounts and other sales and offers. Surftastic may press computer users to click on random pop-up ads. Surftastic may try to boost traffic of a questionable websites and benefit from associated links and clicks on ads. Surftastic may unwillingly reroute computer users to unknown websites and disturb the PC user's work on the computer with non-stop pop-up advertisements and messages.

Aliases

Riskware/BrowseFox [Fortinet]Trojan.SuspectCRC [Ikarus]Trojan.BPlug.35 [DrWeb]Yontoo.C [Symantec]Artemis!785934738B28 [McAfee]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\Surftastic\Surftastic.FirstRun.exe File name: Surftastic.FirstRun.exe
Size: 1.08 MB (1088800 bytes)
MD5: 2dbccbf832285eee1f0df86a0a7f03f5
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Surftastic
Group: Malware file
Last Updated: February 3, 2014
%PROGRAMFILES%\Surftastic\bin\utilSurftastic.exe File name: utilSurftastic.exe
Size: 316.7 KB (316704 bytes)
MD5: fd49020840466fb78863a4c7f8709872
Detection count: 83
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Surftastic\bin
Group: Malware file
Last Updated: May 12, 2014
%PROGRAMFILES%\Surftastic\updateSurftastic.exe File name: updateSurftastic.exe
Size: 316.7 KB (316704 bytes)
MD5: 6368524288f0167a86ed7a61bb70af8d
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Surftastic
Group: Malware file
Last Updated: May 12, 2014
%PROGRAMFILES(x86)%\Surftastic\Surftasticuninstall.exe File name: Surftasticuninstall.exe
Size: 241.75 KB (241753 bytes)
MD5: 4ec3f4a5c5975ab5ee9c2dd79f172eef
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Surftastic
Group: Malware file
Last Updated: February 3, 2014

Registry Modifications

The following newly produced Registry Values are:

CLSID{07EEEF8A-080A-4478-94B6-778245D7A04F}{4FC7379F-F682-45F9-BA08-1986B5F938FF}{7964af97-b3d4-4b63-b2d2-185a180f2b28}{861E67AE-B5A7-4EC6-9B02-54AA7825F2DC}{A426A0BB-B14B-484C-8723-A631FDE2300D}{c6673938-a52b-4dc6-af05-783e7e2c8b65}HKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Approved Extensions\{7964AF97-B3D4-4B63-B2D2-185A180F2B28}Software\Microsoft\Internet Explorer\Approved Extensions\{C6673938-A52B-4DC6-AF05-783E7E2C8B65}SOFTWARE\Microsoft\Tracing\Surftastic_RASAPI32SOFTWARE\Microsoft\Tracing\Surftastic_RASMANCSSOFTWARE\Microsoft\Tracing\updateSurftastic_RASAPI32SOFTWARE\Microsoft\Tracing\updateSurftastic_RASMANCSSOFTWARE\Microsoft\Tracing\utilSurftastic_RASAPI32SOFTWARE\Microsoft\Tracing\utilSurftastic_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{7964af97-b3d4-4b63-b2d2-185a180f2b28}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{c6673938-a52b-4dc6-af05-783e7e2c8b65}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C6673938-A52B-4DC6-AF05-783E7E2C8B65}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7964AF97-B3D4-4B63-B2D2-185A180F2B28}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C6673938-A52B-4DC6-AF05-783E7E2C8B65}Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{c6673938-a52b-4dc6-af05-783e7e2c8b65}SOFTWARE\SurftasticSOFTWARE\Wow6432Node\Microsoft\Tracing\Surftastic_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\Surftastic_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateSurftastic_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateSurftastic_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\utilSurftastic_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\utilSurftastic_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{c6673938-a52b-4dc6-af05-783e7e2c8b65}SOFTWARE\Wow6432Node\SurftasticSYSTEM\ControlSet001\services\eventlog\Application\Update SurftasticSYSTEM\ControlSet001\services\eventlog\Application\Util SurftasticSYSTEM\ControlSet001\services\Update SurftasticSYSTEM\ControlSet001\services\Util SurftasticSYSTEM\ControlSet002\services\eventlog\Application\Util SurftasticSYSTEM\ControlSet002\services\Util SurftasticSYSTEM\CurrentControlSet\services\eventlog\Application\Update SurftasticSYSTEM\CurrentControlSet\services\Update SurftasticSYSTEM\CurrentControlSet\Services\Util SurftasticHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Surftastic

Additional Information

The following directories were created:
%PROGRAMFILES%\Surftastic%PROGRAMFILES(x86)%\Surftastic
The following URL's were detected:
Surftastic
Loading...