SystemDefender
SystemDefender is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
General information:
Malware Name: |
SystemDefender |
Malware Type: |
Rogue Security Program |
Company Name: |
SystemDefender |
Company URL: |
http://www.system-defender.com/
|
Threat Level: |
Medium Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
SystemDefender provides you the software SystemDefender that detect and remove viruses, worms and trojans at once. Keep your files safe from Internet Threats. Protect your privacy by detecting and cleaning spywares and blocking their activities of
identity theft automatically. It provides you complete protection against spyware, adware, browser hijackers, Trojans, keyloggers and more. It also cleans your internet activity records with just 1 click. Now you can keep your online actions private.
Spyware Description:
SystemDefender is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
Characteristics/Symptoms:
-> It shows false Warning messages. -> It also shows misleading scan Results. -> It can also install through Trojan exploits. -> It also uses aggressive advertising.
Additional information might be found here:
Processes Running:
SystemDefender.exe
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Documents and Settings\All Users\Start Menu\Programs\SystemDefender\SystemDefender.lnk |
650 |
Shortcut |
C:\WINDOWS\.protected |
unknown |
PROTECTED File |
C:\WINDOWS\system32\drivers\etc\.protected |
unknown |
PROTECTED File |
Folder information Created after Installation:
Folder Location |
C:\Documents and Settings\All Users\Start Menu\Programs\SystemDefende |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_CURRENT_USER |
\Software\SystemDefender\Shield |
|
HKEY_CURRENT_USER |
\Software\SystemDefender\Shield\Application Agent Checkpoints\Internet Explorer URLs |
|
HKEY_CURRENT_USER |
\Software\SystemDefender\Shield\Application Agent Checkpoints\Startup Registry Files |
Options |