FrEn

E-mail Print

Free malware removal tool to remove Malware Defender 2009

Written by Administrator  |  Tuesday, 26 May 2009 06:27
AddThis Social Bookmark Button

Malware Defender 2009 is a rogue, ie malware that pretends to be an Antivirus when in reality it is a malware. It is a wolf in sheep's clothing. It conducts a fake scan of your system; you are warned by a fake alarm that there are more malwares on your system. It’s true indeed, there is really a malware in your system but I think the only malware on your system is Malware Defender 2009 (MalwareDefender 2009). It invites you to purchase a license to remove malware, do not, it's a scam, you need a license for a malware? This so-called Antivirus tries to scam you.

Malware-Defender-2009

To remove Malware Defender 2009

  • Download this free removal tool for Malware Defender 2009
  • Extract it
  • Launch
  • Click on the delete button

Malware Defender 2009 will be removed from your system in 10s. Restart your computer when it’s finished.

  • malwaredef.exe
  • %DesktopDir%\Malware Defender 2009.lnk
  • %Programs%\Malware Defender 2009\Malware Defender 2009.lnk
  • %Programs%\Malware Defender 2009\Uninstall.lnk
  • %CommonAppData%\Microsoft\Media Index\Drivers\hdddriver.dll
  • %ProgramFiles%\Malware Defender 2009\conf.cfg
  • %ProgramFiles%\Malware Defender 2009\malwaredef.exe
  • %ProgramFiles%\Malware Defender 2009\mbase.vdb
  • %ProgramFiles%\Malware Defender 2009\quarantine.vdb
  • %ProgramFiles%\Malware Defender 2009\vbase.vdb
  • %ProgramFiles%\Malware Defender 2009\queue.vdb
  • %ProgramFiles%\Malware Defender 2009\uninstall.exe
  • %CommonAppData%\Microsoft\Media Index\Drivers
  • %Programs%\Malware Defender 2009
  • %ProgramFiles%\Malware Defender 2009
  • %ProgramFiles%\Malware Defender 2009\quarantine

Newly registry key created by the malware

  • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{34357730-A110-4A31-AF65-8FE4805B5CB3}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{34357730-A110-4A31-AF65-8FE4805B5CB3}\InprocServer32
  • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72F3EE23-2C4E-42D4-BAE2-311372A59DF2}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72F3EE23-2C4E-42D4-BAE2-311372A59DF2}\InprocServer32
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malware Defender 2009
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet
  • HKEY_LOCAL_MACHINE\SOFTWARE\Malware Defender 2009
  • HKEY_LOCAL_MACHINE\SOFTWARE\Malware Defender 2009\Lic

Newly registry values created byt the malware

  • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{34357730-A110-4A31-AF65-8FE4805B5CB3}\InprocServer32
    • (Default) = "%CommonAppData%\Microsoft\Media Index\Drivers\hdddriver.dll"
    • ThreadingModel = "Apartment"
  • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72F3EE23-2C4E-42D4-BAE2-311372A59DF2}\InprocServer32
    • (Default) = "%CommonAppData%\Microsoft\Media Index\Drivers\ffabzdxeva.dll"
    • ThreadingModel = "Apartment"
  • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72F3EE23-2C4E-42D4-BAE2-311372A59DF2}
    • (Default) = "DriversLoad"
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    • malwaredef = "%ProgramFiles%\Malware Defender 2009\malwaredef.exe"
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
    • HardwareDrivers = "{34357730-A110-4A31-AF65-8FE4805B5CB3}"
    • DriversLoad = "{72F3EE23-2C4E-42D4-BAE2-311372A59DF2}"
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malware Defender 2009
    • DisplayName = "Malware Defender 2009"
    • UninstallString = "%ProgramFiles%\Malware Defender\uninstall.exe"
    • InstallDate = "61165710590"

 

Download

 

 

Add comment


Security code
Refresh

Related articles
Latest posts
  • Free malware removal tool for Guard Online

    Written by %s admin 10/10/2011
    Guard Online is a another rogue Antispyware from the OpenCloud and AV Guard Online familly, it's a malware that pretends to be an Antivirus. Guard Online conducts a fake scan of your system; you are…
  • Free malware removal tool to remove AV Guard Online

    Written by %s admin 05/10/2011
    AV Guard Online is a another rogue Antispyware from the OpenCloud familly, it's a malware that pretends to be an Antivirus. AV Guard Online conducts a fake scan of your system; you are warned by a…
  • Free removal tool to remove Security Guard 2012

    Written by %s admin 05/10/2011
    Security Guard 2012 is a another rogue Antispyware from the OpenCloud familly, it's a malware that pretends to be an Antivirus. Security Guard 2012 conducts a fake scan of your system; you are warned…
  • Free removal tool for Advanced PC Shield 2012

    Written by %s admin 01/10/2011
    Advanced PC Shield 2012 is a another rogue Antispyware, it's a malware that pretends to be an Antivirus. Advanced PC Shield 2012 conducts a fake scan of your system; you are warned by a fake alarm…
  • Security Sphere 2012 Free Removal Tool

    Written by %s admin 01/10/2011
    Security Sphere 2012 is another spyware from the Security Tool family. Security Sphere 2012 is not a legit program; it's a fake, a counterfeit. Security Sphere 2012 claims to fix your system, but…
.
Information | Contact

© All Rights Reserved. net-studio.org 2009