Windows Defending Center is a rogue anti-spyware program that uses false security alerts and non-existent infections as a method to make you think that your computer is infected with all sorts of malicious software, including spyware, adware and Trojans. It may also claim that your personal information can be exposed or that your files can be deleted if you won't remove found viruses from your computer. The rogue program asks you to pay for a full version of Windows Defending Center to remove the infections that actually don't even exist. Obviously, it's nothing more but a scam. If you have purchased this program already then you should contact your credit card company and dispute the charges since is not a genuine software and you have been malwaretized. Then use our removal instructions below to remove Windows Defending Center manually or with an automatic removal tool.
When Windows Defending Center is installed it will be configured to start automatically when you login to Windows. Every time you log on to Windows, this annoying malware scanner will pop-up on your computer screen. It will perform a fake system scan and detect numerous viruses but won't allow you to remove them until you purchase it. While the program is running you will also see a constant barrage of fake security alerts and warnings on your computer. These warnings will state that your computer is infected or that someone is trying to steal your passwords and credit card details. These alerts, like the fake infections, are just another attempt of the program to try and convince you that you are infected. What is more, Windows Defending Center may block certain programs to protect itself from being deleted and hijack Internet Explorer and probably other web browsers too.
Recomended: Please use secure encrypted protocol for torrent links.
Torrent link detected!
Receiving this notification means that you have violated the copyright laws. Using Torrent for downloading movies and licensed software shall be prosecuted and you may be sued for cybercrime and breach of law under the SOPA legislation.
Please register your copy of the AV to activate anonymous data transfer protocol through the torrent link.
If your computer is infected with this rogue anti-spwyare application, please do not purchase it and follow the removal guide below to remove Windows Defending Center from your computer as soon as possible. We strongly recommend you to scan your computer with STOPzilla or any other reliable anti-spyware software because Windows Defending Center may come bundled with other malware as well. To make the removal process easier you can register the rogue program using this registration key 0W000-000B0-00T00-E0020.
The latest parasite names used by FakeVimes:
Windows Defending Center manual removal:
Delete registry values:
HKEY_CURRENT_USER\SoftwareMicrosoft\Windows\CurrentVersion\Internet Settings "WarnOnHTTPSToHTTPRedirect" = 0
HKEY_CURRENT_USER\SoftwareMicrosoft\Windows\CurrentVersion\Policies\System "DisableRegedit" = 0
HKEY_CURRENT_USER\SoftwareMicrosoft\Windows\CurrentVersion\Policies\System "DisableRegistryTools" = 0
HKEY_CURRENT_USER\SoftwareMicrosoft\Windows\CurrentVersion\Policies\System "DisableTaskMgr" = 0
HKEY_CURRENT_USER\SoftwareMicrosoft\Windows\CurrentVersion\Settings "net" = "2012-3-11_2?
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Settings "UID" = "origkboryd"
HKEY_LOCAL_MACHINE\SOFTWAREMicrosoft\Windows NT\CurrentVersion\Image File Execution Options\atcon.exe
HKEY_LOCAL_MACHINE\SOFTWAREMicrosoft\Windows NT\CurrentVersion\Image File Execution Options\bipcp.exe
HKEY_LOCAL_MACHINE\SOFTWAREMicrosoft\Windows NT\CurrentVersion\Image File Execution Options\ecengine.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\infwin.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msconfig
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PavFnSvr.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sahagent.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\titaninxp.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wsbgate.exe
%CommonStartMenu%ProgramsWindows Defending Center.lnk
%Desktop%Windows Defending Center.lnk