How to remove Strong Malware Defender

Home » Rogue Anti-Spyware » Strong Malware Defender Repair and protect your computer easily. Download Strong Malware Defender removal tool

Strong Malware Defender description

Strong Malware Defender is a fake security tool which is also a copy of Home Malware Cleaner malware. As common for malware, Strong Malware Defender also spreads via trojan horse. Trojan enters the system through its vulnerable places. It downloads and installs itself automatically.

Once installed, Strong Malware Defender starts its fraudulent scans and after it is finished it displays fabricated results. The parasite usually claims that user’s PC has various infections. Your desktop is flooded with all kind of threats, warnings and annoying pop-ups. Malware also will offer you to buy and purchase registered version of Strong Malware Defender. This is all fraud. Do not buy it in any circumstances. Use an effective security tool and delete malware instead.

How to get rid of Strong Malware Defender

This infection can be removed using Spyware Doctor.

Download does not start? Try a mirror download here

Spyware Doctor is widely valued as one of the best AntiSpyware programs available to protect you from Strong Malware Defender and the latest internet security threats. If your computer is infected with Strong Malware Defender we strongly recommend automatic spyware scanner.

How to manually remove Strong Malware Defender

To get rid of spyware such as Strong Malware Defender you need to remove processes, search and delete registry keys, DLL and other Strong Malware Defender related files from your computer.

Take Note: The manual process of removing spyware from your computer is difficult and puts you at risk of damaging your computer. We advise using our automatic Strong Malware Defender remover.

  1. Uninstall Strong Malware Defender from Control Panel
    Start > Settings > Control Panel > Add/Remove Programs. Double click to uninstall.
  2. End these Strong Malware Defender processes:
    PE.exe
    SMa76.exe
    ScanDisk_.exe

    To stop processes press Ctrl + Alt + Del or click Start > Run > type "taskmgr". Select malicious process in the list and click "End Process" button.
  3. Unregister Strong Malware Defender DLL files:
    tjd.dll
    ddv.dll
    sqlite3.dll
    mozcrt19.dll

    To unregister DLL click Start > Run > type "regsvr32 /u PATH_TO_FILE/FILE.dll"
  4. Delete Strong Malware Defender registry entries: HKEY_CURRENT_USER\Software\3
    HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}
    HKEY_CLASSES_ROOT\dumped_patched.DocHostUIHandler
    HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes "URL" = "http://findgala.com/?&uid=7&q={searchTerms}"
    HKEY_CURRENT_USER\Software\Classes\Software\Microsoft\Internet Explorer\SearchScopes "URL" = "http://findgala.com/?&uid=7&q={searchTerms}"
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "IIL" = 0
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "ltHI" = 0
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "ltTST"
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "PRS" = "http://127.0.0.1:27777/?inj=%ORIGINAL%"
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "RunInvalidSignatures" = 1
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "UID" = 7
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform "lib/7.00007"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer "DisallowRun" = 1
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "0" = "msseces.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "1" = "MSASCui.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "2" = "ekrn.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "3" = "egui.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "4" = "avgnt.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "5" = "avcenter.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "6" = "avscan.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "7" = "avgfrw.exe
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "8" = "avgui.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "9" = "avgtray.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "10" = "avgscanx.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "11" = "avgcfgex.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "12" = "avgemc.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "13" = "avgchsvx.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "14" = "avgcmgr.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "15" = "avgwdsvc.exe"
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Strong Malware Defender"
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "CheckExeSignatures" = "no"
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avgiproxy.exe
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cfgwiz.exe
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\fnrb32.exe
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ldpromenu.exe
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ndd32.exe
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pgmonitr.exe
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\signcheck.exe
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VisthLic.exe

    To open registry editor click Start > Run > type "regedit".
    Warning! Manual registry entries editing may cause damage to your system.
    Download Uniblue RegistryBooster 2010 to scan for registry errors.
  5. Search and delete these Strong Malware Defender related files:
    %AppData%\Strong Malware Defender\
    %AppData%\Strong Malware Defender\cookies.sqlite
    %AppData%\Strong Malware Defender\Instructions.ini
    %AppData%\Strong Malware Defender\ScanDisk_.exe
    %AppData%\Microsoft\Internet Explorer\Quick Launch\Strong Malware Defender.lnk
    %CommonAppData%\79b35\
    %CommonAppData%\79b35\SMa76.exe
    %CommonAppData%\79b35\SMD.ico
    %CommonAppData%\79b35\717.mof
    %CommonAppData%\79b35\mozcrt19.dll
    %CommonAppData%\79b35\sqlite3.dll
    %CommonAppData%\79b35\BackUp\
    %CommonAppData%\79b35\HMCSys\
    %CommonAppData%\79b35\Quarantine Items\
    %CommonAppData%\SMICFD\
    %CommonAppData%\SMICFD\SMSIFRIED.cfg
    %StartMenu%\Strong Malware Defender.lnk
    %StartMenu%\Programs\Strong Malware Defender.lnk
    %UserProfile%\Desktop\Strong Malware Defender.lnk
    %UserProfile%\Recent\CLSV.sys
    %UserProfile%\Recent\DBOLE.tmp
    %UserProfile%\Recent\ddv.dll
    %UserProfile%\Recent\eb.drv
    %UserProfile%\Recent\energy.tmp
    %UserProfile%\Recent\fix.sys
    %UserProfile%\Recent\grid.sys
    %UserProfile%\Recent\kernel32.tmp
    %UserProfile%\Recent\PE.exe
    %UserProfile%\Recent\PE.tmp
    %UserProfile%\Recent\ppal.sys
    %UserProfile%\Recent\tjd.dll

Tags

, , ,

Similar Threats

Leave a Reply