Albinos Defender does not rely on user’s tolerance to its alerts so that its most complex in techie terms part is dedicated to self-defense. It is not that users are so silly to delete such efficient scanner, but the frequency of its alerts is so high that even the most credulous and inexperienced users are rather inclined to get rid of Albinos Defender, than to trust it.
It does not respond to most of the user’s commands and often cannot be found through the All Program in Start Menu, if installed in Windows.
The main business of the program is to make users believe they are infected and thus to offer a seemingly timely treatment, which is available, however, only after paid registration of the counterfeit.
In the meantime, another part of the program is busy to protect the installed scamware by means of detecting and blocking suspicious processes.
  • Full name: Albinos Defender, AlbinosDefender
  • Type: Rogue anti-spyware
  • Origin: Russian Federation, Ukraine

Signs of being infected with Albinos Defender

There are no doubts that user sooner or later finds out the name of the infection and thus personalizes it. The software product might, in some instances, try to hush up its name in order to prevent users from finding the remedy against it.
It may start with alert that, perhaps, according to the design of hackers, proves that the program is fair and safe and there is no need to worry at all. The ploy is as old as software counterfeiting. Its idea is to make an appearance of approval or even request of host system for the program installation. It is understood there is a trojan alert that fakes system notification.
Such alert is misleading, but an important sign of the cyber rogue identification as it might be first instance of direct reference to the adware name. The next one may happen days of system time later.
Common sign of the rogue introduction is its main window or program menu, in particular, its scan sub-window. Besides, there are several dozens of alerts issued on behalf of Albinos Defender.
Albinos Defender automatical removal:

There are multiple benefits of protecting computer system with reliable security solution. It is pity that counterfeits acting in this field abuse user’s credit.
Manual Removal of Albinos Defender:

Remove Albinos Defender files and dll’s:

HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\BrowserEmulation “TLDUpdates” = ’1′
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command “(Default)” = ‘”%Documents and Settings%\[UserName]\Local Settings\Application Data\[random].exe” -a “%1″ %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command “(Default)” = ‘”%Documents and Settings%\[UserName]\Local Settings\Application Data\[random].exe” -a “%1″ %*’
HKEY_CLASSES_ROOT\.exe\shell\open\command “(Default)” = ‘”%Documents and Settings%\[UserName]\Local Settings\Application Data\[random].exe” -a “%1″ %*’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command “(Default)” = ‘”%Documents and Settings%\[UserName]\Local Settings\Application Data\[random].exe” -a “%Program Files%\Mozilla Firefox\firefox.exe”‘
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command “(Default)” = ‘”%Documents and Settings%\[UserName]\Local Settings\Application Data\[random].exe” -a “%Program Files%\Mozilla Firefox\firefox.exe” -safe-mode’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command “(Default)” = ‘”%Documents and Settings%\[UserName]\Local Settings\Application Data\[random].exee” -a “%Program Files%\Internet Explorer\iexplore.exe”‘
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center “AntiVirusOverride” = ’1′
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center “FirewallOverride” = ’1′

Unregister Albinos Defender registry values:

%Documents and Settings%\All Users\Application Data\[random]
%Documents and Settings%\[UserName]\Local Settings\Application Data\[random].exe
%Documents and Settings%\[UserName]\Local Settings\Temp\[random]

