Description of Security Defender and consequences of its residing on your PC

Security Defender (SecurityDefender) software had been detected before its mass-spreading. Perhaps, due to oversight of its distributors, one of the popups produced by AntimalwareDefender was titled with the name of not yet released product.  Antimalware Defender is a rogue antispyware and this fact has been  a matter of common knowledge since February 1, 2010.
The above does not mean that all properties of to be released rogue software had been predicted before its release. The software in question is quite unique, without prejudice to  its similarity with AntimalwareDefender, and needs individual approach to be properly deleted.
The similarity is quite significant: both unwanted programs are often introduced through fake security update and show popups according to approximately the same schedule and of the same look.   However, they create different entries in the memory of affected PC and interact with it in quite distinct manner.
The above fake security update request is generated by trojan, which is subject to extermination, as well as rogue antispyware in question. Failure to remove Security Defender and the above trojan allows the adware producing misleading security reports while computer system it should improve is restricted in its features due to the adware’s malicious impact, and the trojan would be capable of re-issuing its misleading request and getting updates from remote server to  execute another payload.
Security Defender Technical Details:

  • Full name: Security Defender, Security-Defender, SecurityDefender
  • Version: 2011
  • Type: Rogue anti-spyware
  • Origin: Russian federation

Signs of being infected with Security Defender:

Antimalware security update for Windows is considered to be a beginning of the trickery. The above is a title of popup that fakes Windows alert. As a conclusion, Security Defender adware targets only Windows systems.
Once such alert is shown, you have got initial infection, which is not yet the  adware itself. The initial infection is a trojan which deletion nips the trickery in its bud.

Other infiltration routines are practiced in the adware distribution so that some users have got no option of preventing the adware installation.
Other infiltration routines are practiced in the adware distribution so that some users have got no option of preventing the adware installation.
Once its installation is finished, the adware starts running fake scan. Properly speaking, it does not undertake any system examination and simply generates windows that look like scan progress and summary reflection.
The adware uses  the following expressions in its alerts:

“Security Defender has found malicious software that may cause crash of your computer. Click Remove All button to remove them now”

“Iexplorer.exe is infected with trojan. This worm has tried to use  “” to connect to remote host and send your credit card information”

Security Defender automatival removal:

Manual Removal of Security Defender:

Manual technique  enables you to remove Security Defender fake antispyware without installing any additional software product; on the other hand, being provided with  imitation of protection from the counterfeit, your computer system most likely has got infected with a number of viruses. Because of  that assumption, relevant software (you can pick up the one  suggested above) assistance is recommended to uninstall Security Defender and delete its components, as well as other infections.

Remove Security Defender files and dll’s:

c:\Documents and Settings\All Users\Application Data\56a10a26-dc02-40f3-a4da-8fa92d06b357_.mkv
c:\Documents and Settings\All Users\Application Data\56a10a26-dc02-40f3-a4da-8fa92d06b357_33.avi
c:\Documents and Settings\All Users\Application Data\56a10a26-dc02-40f3-a4da-8fa92d06b357_33.ico
c:\Documents and Settings\All Users\Start Menu\Programs\Startup\56a10a26-dc02-40f3-a4da-8fa92d06b357_33.lnk
c:\Program Files\Security Defender
c:\Program Files\Security Defender\Security Defender.dll
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Security Defender.lnk
%UserProfile%\Desktop\Security Defender.lnk
%UserProfile%\Start Menu\Programs\Startup\56a10a26-dc02-40f3-a4da-8fa92d06b357_33.lnk

Unregister Security Defender registry values:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{56a10a26-dc02-40f1-a4da-8fa92d06b357}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “56a10a26-dc02-40f3-a4da-8fa92d06b357_33”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “56a10a26-dc02-40f3-a4da-8fa92d06b357_33”

