System Defragmenter

System Defragmenter Description

Type: Rogue AntiSpyware Programs

ScreenshotSystem Defragmenter aka SystemDefragmenter is a fake anti-spyware program that is part of the FakeSysDef family and disguises as a legitimate application. System Defragmenter is secretly installed onto a PC before bombarding the desktop with fake security alerts and scan reports claiming the detection of dangerous malware. Victims of System Defragmenter are coerced into purchasing its "licensed version" in order to remove all the purportedly detected malware. Of course this is a scam and victims that encounter security notifications from System Defragmenter should use a legitimate security tool to remove this rogueware completely.

The FakeSysdef family is a big family of threats that has among its members Ultra Defragger, HDD Control, Win HDD, Win Defrag, Win Defragmenter, Disk Doctor, Hard Drive Diagnostic, HDD Diagnostic, HDD Plus, HDD Repair, HDD Rescue, Smart HDD, Defragmenter, HDD Tools, Disk Repair, Windows Optimization Center, Scanner, HDD Low, Hdd Fix, PUP.PC Health Kit.ScreenshotScreenshotScreenshot


15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
F-Secure Suspicious:W32/IndoVirus.a!Gemini
F-Prot W32/Banload.C.gen!Eldorado
AhnLab-V3 Win-AppCare/Xema.290816.S
Antiy-AVL VirTool/Win32.VB.gen
AntiVir TR/Virtl.VB.EK
Kaspersky VirTool.Win32.VB.ek
eSafe Win32.TRVirtl.VB.Ek
McAfee Artemis!1C6662F0CA5E
AntiVir TR/Kazy.894.31
McAfee Artemis!FA3F7B06B8D6
AntiVir TR/Kazy.893.38
McAfee Artemis!57F0C8D39BBB
BitDefender Gen:Variant.Kazy.2863
NOD32 a variant of Win32/Kryptik.IAB
AVG Generic20.SRM

Technical Information

Screenshots & Other Imagery

SpyHunter Detects & Remove System Defragmenter

File System Details

System Defragmenter creates the following file(s):
# File Name MD5 Detection Count
1 packupdate107_2204.exe f0d1e74dab39e41abd6af3e98f6ca0ed 16
2 AphedsKjsy.exe 1b6e7017f90eadd5092c808be767e675 16
3 QKNqyUcYtD.exe 9a741d49b65e8dfcc1634240460c3308 10
4 ComboFix.exe 2f4423a7d956c419eb4cf3edd292922b 8
5 rpcmgr.dll 2822da0c584b267ff8c0c009285e8c4f 8
6 themedlg10.dll fce3aa9013a625737c654ebc84657d40 8
7 andy143.exe b71bfe65a8bfcbc6e2b96868643d66bf 8
8 Directory.Eraser.exe 1c6662f0ca5e01396aff6b9a0b5b8280 7
9 85543106.exe fc06b7917e5bdab1ca98f65523d1ee6f 7
10 vsbntlo.exe 39e0dfca3d007c071f798ef04a7ef136 6
11 ebeprikq.exe 787009e2810169f1fbc3dd87a12b517f 4
12 openfile.exe c0e62835a9079005bc0787fe6b1037d9 4
13 nvsvc32.exe 62d8dbe9a4a9cdd64ee9aa9402e4f60d 3
14 msxslt3.exe 67669d9209c7e787a3626a8c578659b9 3
15 hideippla.exe 8e22b4761899ecda5e6d137b7d7e635f 3
16 ctfmon.exe c46632ce2850c5721756b3b546c2f93e 2
17 nidem.exe 57cf9d0771bb49bd5ee6326dac70cfd9 2
18 awddi532.dll c03c2bd50b594790a7d3e7c6ccd06af9 1
19 wscntfywow.exe 0fada1b5b854ee6cfe9d0aaaca75b793 1
20 kbdit32.dll 531be9088a46ca2a88029b9431fdbb39 1
21 atl32.dll acb562c6d7d621ec80264bcd50e4c386 1
22 83519406.exe 6a83e782eb09d4a37a67abbdc3bf3a6a 1
23 quupoby.exe d38fa6f9d3ac3967ab18864734430328 1
24 wizu.exe 240a47fe208c87a39bc2d79f67279ffa 1
25 xyst.exe dedd025c4a7da68348268e2ea5c26892 1
26 w32cap.dll c4c23c189557ed3f70453cdda3177b97 1
27 Ujo.exe 17755ee0215f17dfb852a5211ac3065a 1
More files

Registry Details

System Defragmenter creates the following registry entry or registry entries:
File name without path
System Defragmenter.lnk

Site Disclaimer is not associated, affiliated, sponsored or owned by the malware creators or distributors mentioned on this article. This article should NOT be mistaken or confused in being associated in any way with the promotion or endorsement of malware. Our intent is to provide information that will educate computer users on how to detect, and ultimately remove, malware from their computer with the help of SpyHunter and/or manual removal instructions provided on this article.

This article is provided "as is" and to be used for educational information purposes only. By following any instructions on this article, you agree to be bound by the disclaimer. We make no guarantees that this article will help you completely remove the malware threats on your computer. Spyware changes regularly; therefore, it is difficult to fully clean an infected machine through manual means.