Malware Defender 2009

Remove Malware Defender 2009.

Title: Malware Defender 2009 Also known as: MalwareDefender 2009, Malware Defender2009, MalwareDefender2009
Type: Spyware
Severity scale:  (71 / 100)

Malware Defender 2009 is a rogue anti-spyware application. It is very similar to System Guard 2009 and Spyware Guard 2009, so we can assume that these applications were created by the same group of scammers. MalwareDefender 2009 is usually promoted along with trojan viruses, such as Vundo or similar. These trojans display fake security alerts and pop-up windows about various security threats and suggest to download Malware Defender 2009 in order to remove those infections or protect the system from further possible infections.

Once installed and active, MalwareDefender2009 is configured to load automatically when user starts his computer. The rogue performs fake system scan and displays various malware infections that can’t be removed until user purchases the full version of Malware Defender 2009. However, all those infections are actually fake. They were made up in order to frighten the user, hopping that he will buy worthless spyware remover. Along with Malware Defender 2009 comes another infection called C:\Windows\System32\wcenter.exe. This trojan may also displays a fake Windows Security Center window with various security problems. It is already obvious that Malware Defender 2009 should be removed as soon as possible after detection. Otherwise it can cause more damage and even decrease system performance.

Related files: uninstall.lnk, Malware Defender 2009.lnk, install.exe, vifwnhzqoe.dll, hdddriver.dll, c.cgm,, svchos.exe, win.exe, wcenter.exe, vmreg.dll, sysexplorer.exe, syscert.exe,, spoolsystem.exe, reged.exe, vbase.vdb, Uninstall.exe, queue.vdb, quarantine.vdb, mbase.vdb, conf.cfg, malwaredef.exe

Malware Defender 2009 properties:
• Changes browser settings
• Shows commercial adverts
• Connects itself to the internet
• Stays resident in background

Malware Defender 2009 snapshot:

Malware Defender 2009 manual removal:

Kill processes:
malwaredef.exe uninstall.exe reged.exe spoolsystem.exe syscert.exe wcenter.exe svchos.exe install.exe

Delete registry values:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “updater”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “malwaredef”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad “DriversLoad”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad “HardwareDrivers”

Delete files:
conf.cfg malwaredef.exe mbase.vdb quarantine.vdb queue.vdb uninstall.exe vbase.vdb reged.exe spoolsystem.exe syscert.exe sysexplorer.exe vmreg.dll wcenter.exe win.exe svchos.exe c.cgm hdddriver.dll vifwnhzqoe.dll install.exe Malware Defender 2009.lnk Malware Defender 2009.lnk Uninstall.lnk

Delete directories:
c:\Program Files\Malware Defender 2009
c:\Documents and Settings\All Users\Application Data\Microsoft\Media Index\Drivers