Home Malware Programs Rogue Anti-Spyware Programs WinReanimator

WinReanimator

Posted: April 20, 2008

Threat Metric

Threat Level: 10/10
Infected PCs: 68
First Seen: July 24, 2009
Last Seen: April 1, 2020
OS(es) Affected: Windows

ScreenshotWinReanimator is the latest rogue anti-spyware application that may be brought into your computer system by a Trojan, infiltrating your machine via security system cracks, or may be downloaded directly from www.WinReanimator.com. After WinReanimator is executed, it will bombard your desktop with Windows-like threat notifications, such as the following:

"Windows has detected spyware infection!
It is recommended to use special antispyware tools to prevent data loss. Windows will now download and install the most up-to-date antispyware for you
Click here to protect your computer from spyware!"

This message is bogus and cannot be trusted. WinReanimator should be removed immediately to prevent further damage to your system.

ScreenshotScreenshot

Aliases

TROJ_RENOS.AHR [TrendMicro]Adware/XPSecurityCenter [Panda]Trojan.Dldr.FraudLoa.NK [McAfee-GW-Edition]Trojan-Downloader.Win32.Agent.adpk [Kaspersky]Trojan-Downloader.Win32.Agent [K7AntiVirus]Trojan-Dropper.Agent [Ikarus]Trojan:W32/Renos.DK [F-Secure]Win32/Eldycow.FG [eTrust-Vet]TrojWare.Win32.TrojanDownloader.Agent.~FZ [Comodo]SHeur.CDZO [AVG]W32/DownloaderX.ASMV [Authentium]TR/Dldr.FraudLoa.NK [AntiVir]Win-Trojan/Fakeav.9728 [AhnLab-V3]TROJ_RENOS.ADS [TrendMicro]Troj/FakeAle-FV [Sophos]
More aliases (203)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



buritos.exe File name: buritos.exe
Size: 9.21 KB (9216 bytes)
MD5: 5ba90413577dcd989e65d63880ccfc6a
Detection count: 90
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
winivstr.exe File name: winivstr.exe
Size: 308.71 KB (308712 bytes)
MD5: a2a6f65296b1d143902f81f56e113980
Detection count: 64
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
cru629.dat File name: cru629.dat
Size: 6.14 KB (6144 bytes)
MD5: c8824eb4cf42d5d0468d061f7f066ec9
Detection count: 31
File type: Data file
Mime Type: unknown/dat
Group: Malware file
Last Updated: December 11, 2009
4scan[1].exe File name: 4scan[1].exe
Size: 42.49 KB (42496 bytes)
MD5: 22fc2dfe1d04498b4758b598aafed25a
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
qajamowel.dll File name: qajamowel.dll
Size: 10.42 KB (10422 bytes)
MD5: ebc6d71b8367d35ff8b4394ad62bb218
Detection count: 23
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
WinReanimator.dll File name: WinReanimator.dll
Size: 544.76 KB (544768 bytes)
MD5: fc27e823266ee18e8035742abf2f9f92
Detection count: 7
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: April 1, 2020

More files

Additional Information

The following directories were created:
%ProgramFiles%\WinReanimator
The following cookies were detected:
winreanimator

2 Comments

  • Waqar Ahmed says:

    Oh man i cant tell you how much i was worried. I was at the Pc of my little bro and suddenly i had this message that your computer is infected by the ad spyware. I cant tell you i cant be more thankful to spawareremove manual help that i removed it My self ...Thanks

  • Brian Kay says:

    Thank You! Man when it first happen i uninstall it in the start menu and a few days later it came back. I use follow all your directions and finally got rid of it for good this time. Thank You again!

Loading...