Remarkit

Remarkit

Known Adware

by Revizer Technologies

What is Remarkit?

Remarkit is software application developed by Revizer Technologies. It is most commonly found on computers running Windows 7 with nearly 60.00% of installations running this operating system. Remarkit's installer is typically 1.00 MB in size and installs around 11 files.

Remarkit is most popular in the United States with 47.37% of installations residing in this country.

Remarkit adds 2 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times.

About Remarkit?

This adware functions as an extension or add-on within a user's Internet browser, injecting various forms of advertising such as search-related ads, banners, video ads, text-links, and popups/popunders. These advertisements are typically inserted into the header or footer of web pages, and the software also transforms words on viewed pages into hyperlinks linked to advertisements. Classified as adware and/or a potentially unwanted program (PUP) due to its behavior, the software is typically distributed through third-party installers that may include it as an additional or sponsored offer.

Multiple virus scanners have detected malware in Remarkit.

Re-markitWFpIsw.exe (MD5: a6c65011f9187919af4b83563929b756) has been flagged by 40 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.AddLyrics.10
AegisLab AdWare.MSIL.DomaIQ
Agnitum Outpost PUA.Agent!
AhnLab-V3 Adware/Win32.Gen
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
avast! Win32:Malware-gen
AVG Generic5.AVAW
Avira Adware/AddLyrics.10.48
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.AddLyrics.bAO
Bitdefender Gen:Variant.Adware.AddLyrics.10
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Comodo Security Application.Win32.Adware.WDUnlocker.A
Emsisoft Anti-Malware Gen:Variant.Adware.AddLyrics.10 (B)
ESET-NOD32 a variant of Win32/AdWare.AddLyrics.AO
Fortinet FortiGate Riskware/AddLyrics
F-Prot W32/AddLyrics.A.gen!Eldorado
F-Secure Gen:Variant.Adware.AddLyrics.10
G Data Gen:Variant.Adware.AddLyrics.10
K7 AntiVirus Unwanted-Program ( 004a8e8a1 )
K7GW Unwanted-Program ( 004a8e8a1 )
Kaspersky not-a-virus:AdWare.Win32.Agent.alrl
Kingsoft AntiVirus Win32.Troj.Agent.al.(kcloud)
McAfee RDN/Generic PUP.x!clh
McAfee-GW-Edition RDN/Generic PUP.x!clh
MicroWorld-eScan Gen:Variant.Adware.AddLyrics.10
NANO AntiVirus Riskware.Win32.Agent.damffm
Qihoo-360 Win32/Virus.Adware.960
Sophos AddLyrics
Symantec Trojan.Gen.2
Tencent Win32.Risk.Adware.Lohq
Trend Micro TROJ_GEN.R0CBC0EFN14
TrendMicro-HouseCall TROJ_GEN.R0CBC0EFN14
Vba32 AntiVirus AdWare.Agent
VIPRE Antivirus Trojan.Win32.Generic!BT
Zillya Adware.Agent.Win32.9495
Avira AntiVir Adware/Agent.286720.8
Dr.Web Trojan.Lyrics.60
Panda Antivirus Trj/CI.A
Rising Antivirus PE:Trojan.Win32.Generic.16EBD23E!384553534
Re-markitWFp161.exe (MD5: 11f5a05cf5cbb0e7f308f06135e338f5) has been flagged by 5 scanners:
Scanner Software Result
avast! Win32:Adware-BNS [PUP]
Baidu-International Adware.Win32.AddLyrics.AK
ESET-NOD32 a variant of Win32/AdWare.AddLyrics.AK
Symantec WS.Reputation.1
TrendMicro-HouseCall Suspicious_GEN.F47V0621
Re-markitWFp.exe (MD5: f88f36b16fc7763bb799bfa001b7928a) has been flagged by 32 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.Generic.941587
AhnLab-V3 Adware/Win32.AddLyrics
Avira AntiVir Adware/Agent.286720.8
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
avast! Win32:Malware-gen
AVG Generic5.AWZA
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.AddLyrics.BAM
Bitdefender Adware.Generic.941587
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Comodo Security ApplicUnwnt
Dr.Web Trojan.Lyrics.60
Emsisoft Anti-Malware Adware.Generic.941587 (B)
ESET-NOD32 a variant of Win32/AdWare.AddLyrics.AS
Fortinet FortiGate Adware/Agent
F-Secure Adware.Generic.941587
G Data Adware.Generic.941587
K7 AntiVirus Riskware ( 0040f01a1 )
K7GW Riskware ( 0040f01a1 )
Kaspersky not-a-virus:AdWare.Win32.Agent.akws
McAfee RDN/Generic PUP.x!cgl
McAfee-GW-Edition RDN/Generic PUP.x!cgl
MicroWorld-eScan Adware.Generic.941587
NANO AntiVirus Riskware.Win32.Agent.czjuez
Panda Antivirus Trj/CI.A
Rising Antivirus PE:Trojan.Win32.Generic.16EBD23E!384553534
Sophos Generic PUA BL
Symantec Trojan.Gen.2
Tencent Win32.Risk.Adw.Eehj
TrendMicro-HouseCall TROJ_SPNR.15GA14
Vba32 AntiVirus AdWare.Agent
VIPRE Antivirus Trojan.Win32.Generic!BT
173.dll (MD5: c040435bd93a23b3adc0dfdd76b6e7a2) has been flagged by 2 scanners:
Scanner Software Result
Symantec WS.Reputation.1
TrendMicro-HouseCall Suspicious_GEN.F47V0621
RemarkitW34.exe (MD5: 934fd396ec54ac901d13984934855775) has been flagged by 41 scanners:
Scanner Software Result
Antiy-AVL Trojan/Win32.SGeneric
avast! Win32:Adware-BQB [PUP]
Baidu-International Adware.Win32.AddLyrics.BAF
ESET-NOD32 a variant of Win32/AdWare.AddLyrics.AF
Malwarebytes PUP.Optional.AdLyrics.A
Sophos AddLyrics
Lavasoft Ad-Aware Gen:Variant.Adware.AddLyrics.10
AegisLab AdWare.MSIL.DomaIQ
Agnitum Outpost PUA.Agent!
AhnLab-V3 Adware/Win32.Gen
AVG Generic5.AVAW
Avira Adware/AddLyrics.10.48
AVware Trojan.Win32.Generic!BT
Bitdefender Gen:Variant.Adware.AddLyrics.10
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Comodo Security Application.Win32.Adware.WDUnlocker.A
Emsisoft Anti-Malware Gen:Variant.Adware.AddLyrics.10 (B)
Fortinet FortiGate Riskware/AddLyrics
F-Prot W32/AddLyrics.A.gen!Eldorado
F-Secure Gen:Variant.Adware.AddLyrics.10
G Data Gen:Variant.Adware.AddLyrics.10
K7 AntiVirus Unwanted-Program ( 004a8e8a1 )
K7GW Unwanted-Program ( 004a8e8a1 )
Kaspersky not-a-virus:AdWare.Win32.Agent.alrl
Kingsoft AntiVirus Win32.Troj.Agent.al.(kcloud)
McAfee RDN/Generic PUP.x!clh
McAfee-GW-Edition RDN/Generic PUP.x!clh
MicroWorld-eScan Gen:Variant.Adware.AddLyrics.10
NANO AntiVirus Riskware.Win32.Agent.damffm
Qihoo-360 Win32/Virus.Adware.960
Symantec Trojan.Gen.2
Tencent Win32.Risk.Adware.Lohq
Trend Micro TROJ_GEN.R0CBC0EFN14
TrendMicro-HouseCall TROJ_GEN.R0CBC0EFN14
Vba32 AntiVirus AdWare.Agent
VIPRE Antivirus Trojan.Win32.Generic!BT
Zillya Adware.Agent.Win32.9495
Avira AntiVir Adware/Agent.286720.8
Dr.Web Trojan.Lyrics.60
Panda Antivirus Trj/CI.A
Rising Antivirus PE:Trojan.Win32.Generic.16EBD23E!384553534

Software Behaviors

Services:
  • Re-markitWFp161.exe runs as a service named 'Remarkit' (Re-markit) "Re-markit".
Scheduled tasks:
  • Re-markitWFpIsw.exe is scheduled as a task named 'Remarkit_wd' (runs daily at 11:33 PM).
  • RemarkitW34.exe is scheduled as a task named 'Remarkit Update' (runs daily at 1:46 PM).

Startup Entries

Startup tasks:
  • Re-markitWFpIsw.exe is automatically launched at startup through a scheduled task named Remarkit_wd.
  • Re-markitWFp.exe is automatically launched at startup through a scheduled task named Remarkit Update.
  • RemarkitW34.exe is automatically launched at startup through a scheduled task named Remarkit Update.

Software Details

URL:
–
Support:
–
Installation path:
C:\Program Files\re_markit
Uninstaller:
C:\Program Files\Re_markit\Uninstall.exe
Size:
1.00 MB
Language:
English

Remarkit Executable Details

Primary executable:
RemarkitW34.exe
Name:
Remarkit
Path:
C:\Program Files\re_markit\RemarkitW34.exe
MD5:
934fd396ec54ac901d13984934855775
SHA-1:
–
SHA-256:
–
Files installed by Remarkit
File Type Filename MD5
EXE
39839b4e3efe1788e9975ead28d2fa0b
EXE
a6c65011f9187919af4b83563929b756
EXE
11f5a05cf5cbb0e7f308f06135e338f5
DLL
79fb6064ad697970f50375c0a8c80936
EXE
f88f36b16fc7763bb799bfa001b7928a
DLL
173.dll
Malware
c040435bd93a23b3adc0dfdd76b6e7a2
DLL
d86d3587514fdb457750896ee89ac1bd
XPI
a645bce54fecc692a543a5319b207b1e
DLL
33654e0c2c646ccc763eb9a6bf0d8214
XPI
3679b8aa17b932a724052190b3be0359