ReAnti

GoldSparrow By GoldSparrow in Rogue Anti-Spyware Program | 0 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (1 votes, average: 4.00 out of 5)
Loading ... Loading ...

ReAnti Description

ReAnti is a misleading security program that can infect unsuspecting users’ systems via Trojans, malicious websites or social engineering scams. When inside your PC, ReAnti will create several files with random names and place them in the Windows system folders. The files are actually harmless but will be detected as dangerous when ReAnti launches a fake system scan.

Along with the alarming scan report, warnings messages and frequent pop-ups will be displayed, all informing the user of severe malware infections and a recommendation to purchase the “full version” of ReAnti. Do not fall for this scam! ReAnti is a useless application that should be removed immediately.

Type: Rogue AntiSpyware Programs

How Can You Detect ReAnti?

 
 
 
 

ReAnti Technical Report

As new ReAnti details are reported by our customers and findings from our Threat Research Center, we will update this section.

The following ReAnti files with its MD5s were created in the system:

File Name File Size MD5
setup[1].exe 1736405 a9de713ec4ef5003f1827262f87c25fc
REAnti.exe 1638400 87ff49a28eeb4839dc4a726cf0f0cf75

ReAnti has typically the following processes in memory:

  • nsProcess.dll
  • REAnti.exe

ReAnti created the following directories, files, paths:

  • %ProgramFiles%\REAnti Software\REAnti
  • %AllUsersProfile%\Start Menu\Programs\REAnti

ReAnti creates the following registry entries:

  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\REAnti
  • HKEY_LOCAL_MACHINE\SOFTWARE\REAnti
  • HKEY_CURRENT_USER\Software\REAnti
  • REAnti

Important Article Disclaimer

ESG Support Center

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Furl
  • StumbleUpon
  • Technorati
  • YahooMyWeb
This entry was posted on 11/26/09 and is filed under Rogue Anti-Spyware Program. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Poll

How much money have you spent trying to rid your PC of spyware?
View Results

Archives

Home Sitemap RSS Feed Privacy Policy End User License Agreement Copyright 2003-2010. Enigma Software Group USA, LLC. All Rights Reserved.