How to remove hijacker

Malware Description: domain provides the online environment for promoting the dangerous and rapidly propagating rogue anti-spyware called WinPC Defender. FYI: WinPC Defender has been around for a few months but its devastation scope it already hard to measure – it infects computers through trojans or browser hijackers and demands people to pay money for its license, otherwise the compromised system will collapse. is classified as a browser hijacker, which means its activity is closely related to Zlob or Vundo Trojans that infiltrate the target computer without user awareness and modify browser configuration by setting its own default homepage over and over. Consequently, your online activities will get interrupted now and then, and you will keep hitting domain randomly, whether you like it or not. When you visit, you will see tons of misleading information about WinPC Defender being allegedly a cutting-edge solution you should download. The whole idea of hijacker is to convince (or annoy) people into installing the tool promoted on its domain – too bad the program is a rogue, moreover a dangerous one. Please, keep your web-surfing away from site and remove this hijacker if it redirects you. And refrain from downloading WinPC Defender on

Malware Type: Browser Hijackers

Malware Author: Innovagest2000

Threat Level: Critical

Advice: Immediately remove and scan for additional malware Hijacker Free Scanner and Remover: Download Now Screenshot:

How to remove hijacker manually:
Manual removal of hijacker and attendant malware is feasible if you have sufficient expertise in dealing with program files, system processes, .dll files and registry entries.

The associated files to be deleted are listed below:

  • %UserProfile%\Desktop\Launch WinPC Defender.lnk
  • %UserProfile%\Local Settings\Temp\delwdef2008.bat
  • %UserProfile%\Local Settings\Temp\[Random Name].tmp
  • %Program Files%\WinPC Defender\data.dat
  • %Program Files%\WinPC Defender\FwHookDrv.sys
  • %Program Files%\WinPC Defender\HOSTS.hst
  • %Program Files%\WinPC Defender\Manual.url
  • %Program Files%\WinPC Defender\options.xml
  • %Program Files%\WinPC Defender\reserve.dat
  • %Program Files%\WinPC Defender\rules
  • %Program Files%\WinPC Defender\Rules.txt
  • %Program Files%\WinPC Defender\siren.wav
  • %Program Files%\WinPC Defender\Support.url
  • %Program Files%\WinPC Defender\svo.scf
  • %Program Files%\WinPC Defender\temp
  • %Program Files%\WinPC Defender\Uninstall.exe
  • %Program Files%\WinPC Defender\Uninstall_st_st_.exe
  • %Program Files%\WinPC Defender\vfile
  • %Program Files%\WinPC Defender\WDefDemo.exe
  • %Program Files%\WinPC Defender\Web.url
  • %WINDOWS%\ieocx.dll

The related registry entries to be removed are as follows:

  • HKEY_CURRENT_USER\Software\WinPC Defender
  • HKEY_CLASSES_ROOT\CLSID\{96ad72e4-2e2b-4ffc-a5bb-279c2714af12}
  • HKEY_CLASSES_ROOT\Interface\{4B66E1DF-4DE3-4CDA-83B5-11673EADAB0B}
  • HKEY_CLASSES_ROOT\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}
  • HKEY_CLASSES_ROOT\TypeLib\{A54DC52D-7AAD-4D40-A126-337211631EDC}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96ad72e4-2e2b-4ffc-a5bb-279c2714af12}
  • HKEY_CURRENT_USER\Control Panel\don’t load “scui.cpl”
  • HKEY_CURRENT_USER\Control Panel\don’t load “wscui.cpl”
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “sysav”
  • HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run “Content”

Please, be aware that manual removal of hijacker is a cumbersome procedure and does not ensure complete deletion of the malware, due to the fact that some files might be hidden or may automatically reanimate themselves afterwards. Moreover, manual interference of this kind may cause damage to the system. That’s why we strongly recommend automatic removal of hijacker, which will save your time and enable avoiding any system malfunctions and guarantee the needed result.

Download Automatic Remover

Like This Article? Let Others Know!

Related Guides:

Post a Comment: