Remove Security Defender virus that forges AV activity

Security Defender UI SnapshotThere has been an interesting cyber security phenomenon taking place since yesterday. A rogue antispyware application called Security Defender appears to have come back to life after an almost one-year break. That’s right, it was early February 2011 that this program was first detected or heard of, and now it’s back. Honestly, that’s not something ordinary for scareware industry. Regardless of the reasons for this, let’s see how bad it is. Actually, almost nothing has changed – the app looks the same and still does the same things. It infects computers under different disguises, for example the trojan may hide in some files that look perfectly safe to download on the web. Once it’s in, there will be some basic files adding followed by a massive brain attack upon the user. Security Defender displays a scan each time you log into Windows. The scanner reports nothing but multiple threats that are incompatible with secure use of your PC. Be advised though that these infections are fictitious, and they are only intended to scare you into doing the next thing which is so much anticipated by the hackers – purchasing the license for the product. Buy not only should you refrain from buying Security Defender’s full version, it’s as well strongly recommended to get rid of this fraud at once.

How to detect and remove Security Defender malware

To ensure Security Defender accurate detection and efficient removal, we strongly recommend using the trusted remover with free scanner.

Download free virus scannerDownload free Security Defender malware scanner
Save the installer to your hard drive and launch now.

If you intend to perform Security Defender manual removal, you need to possess some computer troubleshooting skills. This will require stopping the malignant processes, deleting malware files and registry keys.

Terminate the associated processes:

{random}.exe

Delete Security Defender related files and folders:

%Documents and Settings%\All Users\Application Data\56a10a26-dc02-40f3-a4da-8fa92d06b357_.mkv
%Documents and Settings%\All Users\Application Data\56a10a26-dc02-40f3-a4da-8fa92d06b357_33.avi
%Documents and Settings%\All Users\Application Data\56a10a26-dc02-40f3-a4da-8fa92d06b357_33.ico
%Documents and Settings%\All Users\Start Menu\Programs\Startup\56a10a26-dc02-40f3-a4da-8fa92d06b357_33.lnk
%Program Files%\Security Defender
%Program Files%\Security Defender\Security Defender.dll
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Security Defender.lnk
%UserProfile%\Desktop\Security Defender.lnk
%UserProfile%\Start Menu\Programs\Startup\56a10a26-dc02-40f3-a4da-8fa92d06b357_33.lnk
%Temp%\{random}.dll

Remove the registry keys listed:

HKEY_CLASSES_ROOT\CLSID\{56a10a26-dc02-40f1-a4da-8fa92d06b357}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{56a10a26-dc02-40f1-a4da-8fa92d06b357}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “56a10a26-dc02-40f3-a4da-8fa92d06b357_33″
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “56a10a26-dc02-40f3-a4da-8fa92d06b357_33″

In order to avoid system damage, we advise using the automatic tool which will do the removal job for you.

Important Notice

This site is not related to Security Defender in any way, nor is it affiliated with or owned by its creators. Any information available on antivirustech.com is not to be in any way associated with distribution of this infection.
Our primary and sole mission is to instruct our visitors in the issues of Security Defender virus detection and manual/automated removal methods.
Please bear in mind that manual removal of this malware is not ultimately effective because the corrupted file names can get repeatedly modified or be hidden. Therefore it’s recommended to use the automatic solution to ensure the removal of this scam and eliminate possible risks that may arise due to improper registry and file system manipulations.
The free virus scanner provided on our website is meant for detection only. If you choose to use the tool for malware removal, you will need to buy its full version.

Computer acting up?

All-In-One PC Performance Optimization Software

Leave a Reply