Spyware free software spyware removal Anti Spyware software free spyware check adware spyware remover anti virus downloadAnti Spyware Software
Spyware Detector - HomeSpyware Detector - PurchaseSpyware Detector - AffiliatesSpyware Detector - Download UpdatesSpyware Detector -FAQSpyware Detector -Contact Us

Home/ Spyware Encyclopedia / Fake Anti Spyware.Win ReAnimator

 Fake Anti Spyware.Win ReAnimator Technical Details
 Category Fake Anti Spyware
 Discovered   2/25/2008 4:54:00 PM
 Modified   2/26/2008 12:52:00 PM
 Threat Level Critical
 Description Win ReAnimator is a fake rogue antispyware, which is installed automatically on the system. After installing exe of Win ReAnimator it creates random and spyware entries in system32 and Windows of its own and scan those entries, which are fake. Win ReAnimator may give you exaggerated security scans and/or popup fake security alerts to try to scare you into buying Win ReAnimator. Having Win ReAnimator in your PC means a sharp drop of PC speed, aggressive pop upping, sometimes with very long and annoying bleeping, extension of gapes in the PC protection for other members of this lovely malware family.
 Summary The hosts file was updated with the following url-to-ip mappings: n/a
The following http urls were started:
www.winreanimator.com
www.softcashier.com
Generated smtp traffic: n/a
Connection(s) established with remote IRC Server: n/a
The following hidden entries created: n/a
The following internet connection was established:
202.47.29.30:80
 Processes   WinReanimator.exe
 Drivers   Rlb85.sys, beep.sys, secdrv.sys
 Folder Created   %PFDIR%\WinReanimator
 Pop-ups Details  
 Browsed Sites   56lu15n.cn
Behavior
1) Without user information, automatically installs on the system.
2) It scans fake entries, which is not present in the system.
3) This is rogue antispyware tool and distributed by using porno.
4) High risks are typically installed without user interaction through security exploits.

When the Fake Anti Spyware is executed, it creates the following files:
 
Name Version Publisher Signature (MD5) File Size (in Bytes)
..\alesumehur.bat     C805DDA772856FBF9E375AC87E4BF921  
..\awemipiq.ban     20B10549A37FC02C9E53652F3E840DF6  
..\nuxadakam.bat     43E7F11670BE47DB19190178FB80E6D6  
..\nuxadakam.bat       19911
..\utunohi.exe     3203fdd03ba8be47a6244aa5eaa2f627 10606
..\xygaxup.com       13263
..\xygaxup.com     89e8d09cbb363a42d2aeb214e595f589 13263
..\WinReanimator.lnk     62DA77356D86E84381FDB1F10097C247  
..\winreanimator.lnk       1498
..\Common Files\obiqudixez._dl     CDC4F6DD3818F261F34C5C6D092C5C94  
..\Common Files\wivog.reg     D542B2B12A348865622226C9FFDC5983  
..\winreanimator\htmlayout.dll     818ee10d4350f8c2ad9e5ec223aa7c0c  
..\winreanimator\install.exe     0b7e4011e57e2608d331708caf1ffe47 101860
..\winreanimator \winreanimator.dll     fc27e823266ee18e8035742abf2f9f92 544768
..\winreanimator \winreanimator.exe 1.0.0.1   ffc2d446d30abd5ad2b09b1c8486ed7b 595476
..\installer.exe     0b7e4011e57e2608d331708caf1ffe47 101860
..\lydeguxi.reg       10188
..\system32\lydeguxi.reg     9793652BBF5E4C3CC04A727A37F00A7A  
..\ixujer.db     A70C8130A8ADF8F65DD3A6A52C82A140  
..\ixujer.db       10783
..\osuvebyw.db     3E196D8B0758E842C3B62AEA123EAB8C  
..\osuvebyw.db       14853
..\owecotovuh.com       14445
..\owecotovuh.com     247569b0cae786c1c0c0f41cfb0c50fc 14445
..\yfusuw.vbs     EEFE25D1B3ABAE554EFE11E2530C9A5C  

 When the Fake Anti Spyware is executed, it creates the following Registry entries:
 
..\software\microsoft\windows\currentversion\run\"winreanimator"
..\software\winreanimator

 Snapshot

Recommendation to remove Fake Anti Spyware.Win ReAnimator
Spyware Detector can remove Fake Anti Spyware.Win ReAnimator, and thousands of other Spyware definitions, automatically and instantly. Click here to download Spyware Detector and scan for free.
Download Spyware Detector and Scan for FREE
 
Personalized e-Mail support by our Research Team. You send an "Export Log" report to us, we then add new definition and you eliminate spyware found on YOUR PC in the next Live Update. So, not only do you benefit but the whole community enjoys the feedback. 
Speed up your computer and increase browsing performance by deleting Spyware & Adware
Enjoy continuous protection and security with frequent spyware definition updates so you never have to worry about new threats and outdated software.
Surf the web with confidence knowing your online activities aren't being tracked, and your confidential data is secure from prying eyes.
 
Free Spyware Scan
 Search Threats
Testimonials

Read More
Information Desk
Spyware & Adware Categories we scan
  
List of Spyware &
Adware we remove
Submit a Threat
Submit a threat to be reviewed by our research team

Submit a Threat