SystemDefender
SystemDefender Description
SystemDefender is a rogue antispyware program that is spread by other Trojans and/or PC security breaches. SystemDefender runs automatically on startup and tries to persuade the infected PC user into buying their antispyware software via false security pop-ups.
Type: Trojans
How Can You Detect SystemDefender?
SystemDefender Technical Report
As new SystemDefender details are reported by our customers and findings from our Threat Research Center, we will update this section.
The following SystemDefender files with its MD5s were created in the system:
| File Name | File Size | MD5 |
|---|
| SystemDefender_Installer[1].exe | 96328 | 5c8e056f2a4e362555be28986351a5df |
| SystemDefender.exe | 1376256 | 2430af713f2a64c92ab71b78f3d56f57 |
| SystemDefender.exe | 1376256 | 2e1fb8db25da94dacd01847494557090 |
| SystemDefender.exe | 1376256 | 441d594812bde8509a922c179ea04fa5 |
SystemDefender Video Demo
Click on the “How SystemDefender Infects Your Computer” video to see a SystemDefender infection in action! See through the eyes of an unsuspecting Internet user while him/her is being victimized by SystemDefender.
At the end of this video, there’s a link to download SpyHunter’s Free Spyware Scanner. SpyHunter’s Free Spyware Scanner is for detection purposes only. To remove SystemDefender, you must purchase SpyHunter’s full version.
Tip: Turn your sound ON and watch the video in Full Screen mode to fully experience how SystemDefender infects a computer. The video contains clickable buttons.
SystemDefender has typically the following processes in memory:
- SystemDefender_Installer[1].exe
- SpywareLocker.exe
- SystemDefender.exe
SystemDefender created the following directories, files, paths:
- %AppData%\SystemDefender
- %ProgramFiles%\SystemDefender
SystemDefender creates the following registry entries:
- HKEY_LOCAL_MACHINE\SOFTWARE\SystemDefender
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SystemDefender
- SystemDefender
- HKEY_USERS\Software\SystemDefender
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\”SystemDefender” = “”C:\Program Files\SystemDefender\SystemDefender.exe” hide”
Important Article Disclaimer

English 
Deutsch
Español
Français
Portuguese
SystemDefender 











