Home Malware Programs Rogue Anti-Spyware Programs System Defragmenter

System Defragmenter

Posted: October 13, 2010

Threat Metric

Threat Level: 10/10
Infected PCs: 9,071
First Seen: November 22, 2010
Last Seen: October 15, 2021
OS(es) Affected: Windows

ScreenshotSystem Defragmenter (or SystemDefragmenter) is a rogue antispyware program which acts like a genuine system utility. System Defragmenter is designed to create errors on the targeted system and then notifies the user immediately. These errors are real but if System Defragmenter is removed they will all disappear. If System Defragmenter is bought the user will only experience temporary relief from system errors until the rogue gives you a new portion of error reports. These new errors can only be fixed if extra features are purchased. The recommended solution is to remove System Defragmenter immediately using a reliable malware remover.

Aliases

Suspicious:W32/IndoVirus.a!Gemini [F-Secure]W32/Banload.C.gen!Eldorado [F-Prot]Win-AppCare/Xema.290816.S [AhnLab-V3]VirTool/Win32.VB.gen [Antiy-AVL]TR/Virtl.VB.EK [AntiVir]VirTool.Win32.VB.ek [Kaspersky]Win32.TRVirtl.VB.Ek [eSafe]Artemis!1C6662F0CA5E [McAfee]TR/Kazy.894.31 [AntiVir]Artemis!FA3F7B06B8D6 [McAfee]TR/Kazy.893.38 [AntiVir]Artemis!57F0C8D39BBB [McAfee]Gen:Variant.Kazy.2863 [BitDefender]a variant of Win32/Kryptik.IAB [NOD32]Generic20.SRM [AVG]
More aliases (839)

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to System Defragmenter may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

Download SpyHunter's Malware Scanner

Note: SpyHunter's free version is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware tool to remove the malware threats. Learn more on SpyHunter. If you would like to uninstall SpyHunter for any reason, please follow these uninstall instructions. To learn more about our policies and practices, visit our EULA, Privacy Policy and Threat Assessment Criteria .

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\atl32.dll File name: atl32.dll
Size: 363 KB (363008 bytes)
MD5: acb562c6d7d621ec80264bcd50e4c386
Detection count: 94
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32\
Group: Malware file
Last Updated: November 30, 2010
%WINDIR%\wscntfywow.exe File name: wscntfywow.exe
Size: 507.39 KB (507392 bytes)
MD5: 0fada1b5b854ee6cfe9d0aaaca75b793
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\
Group: Malware file
Last Updated: November 30, 2010
%WINDIR%\system32\kbdit32.dll File name: kbdit32.dll
Size: 245.24 KB (245248 bytes)
MD5: 531be9088a46ca2a88029b9431fdbb39
Detection count: 91
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32\
Group: Malware file
Last Updated: November 30, 2010
%WINDIR%\SysWow64\awddi532.dll File name: awddi532.dll
Size: 379.39 KB (379392 bytes)
MD5: c03c2bd50b594790a7d3e7c6ccd06af9
Detection count: 66
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\SysWow64\
Group: Malware file
Last Updated: November 30, 2010
F:\tie n dye\packupdate107_2204.exe File name: packupdate107_2204.exe
Size: 331.77 KB (331776 bytes)
MD5: f0d1e74dab39e41abd6af3e98f6ca0ed
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: F:\tie n dye\
Group: Malware file
Last Updated: November 30, 2010
%TEMP%\QKNqyUcYtD.exe File name: QKNqyUcYtD.exe
Size: 448 KB (448000 bytes)
MD5: 9a741d49b65e8dfcc1634240460c3308
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\
Group: Malware file
Last Updated: November 30, 2010
C:\ComboFix.exe File name: ComboFix.exe
Size: 3.89 MB (3899459 bytes)
MD5: 2f4423a7d956c419eb4cf3edd292922b
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: C:\
Group: Malware file
Last Updated: November 30, 2010
rpcmgr.dll File name: rpcmgr.dll
Size: 474.11 KB (474112 bytes)
MD5: 2822da0c584b267ff8c0c009285e8c4f
Detection count: 19
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: November 30, 2010
%USERPROFILE%\My Documents\Downloads\Directory.Eraser.exe File name: Directory.Eraser.exe
Size: 658.47 KB (658472 bytes)
MD5: 1c6662f0ca5e01396aff6b9a0b5b8280
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\My Documents\Downloads\
Group: Malware file
Last Updated: August 20, 2020
%LOCALAPPDATA%\85543106.exe File name: 85543106.exe
Size: 1 MB (1003008 bytes)
MD5: fc06b7917e5bdab1ca98f65523d1ee6f
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\
Group: Malware file
Last Updated: December 1, 2010
C:\RECYCLER\S-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe File name: vsbntlo.exe
Size: 102.4 KB (102400 bytes)
MD5: 39e0dfca3d007c071f798ef04a7ef136
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-0243936033-3052116371-381863308-1811\
Group: Malware file
Last Updated: November 30, 2010
%APPDATA%\xyst.exe File name: xyst.exe
Size: 65.53 KB (65536 bytes)
MD5: dedd025c4a7da68348268e2ea5c26892
Detection count: 13
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\
Group: Malware file
Last Updated: November 30, 2010
%APPDATA%\wizu.exe File name: wizu.exe
Size: 65.53 KB (65536 bytes)
MD5: 240a47fe208c87a39bc2d79f67279ffa
Detection count: 10
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\
Group: Malware file
Last Updated: November 30, 2010
w32cap.dll File name: w32cap.dll
Size: 59.39 KB (59392 bytes)
MD5: c4c23c189557ed3f70453cdda3177b97
Detection count: 10
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: November 30, 2010
%TEMP%\ebeprikq.exe File name: ebeprikq.exe
Size: 4.16 MB (4162560 bytes)
MD5: 787009e2810169f1fbc3dd87a12b517f
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\
Group: Malware file
Last Updated: November 30, 2010
%COMMONPROGRAMFILES%\openfile.exe File name: openfile.exe
Size: 143.36 KB (143360 bytes)
MD5: c0e62835a9079005bc0787fe6b1037d9
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %COMMONPROGRAMFILES%\
Group: Malware file
Last Updated: November 30, 2010
%WINDIR%\system32\msxslt3.exe File name: msxslt3.exe
Size: 155.64 KB (155648 bytes)
MD5: 67669d9209c7e787a3626a8c578659b9
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\
Group: Malware file
Last Updated: November 30, 2010
%PROGRAMFILES%\Hide IP Platinum\hideippla.exe File name: hideippla.exe
Size: 1.52 MB (1527296 bytes)
MD5: 8e22b4761899ecda5e6d137b7d7e635f
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Hide IP Platinum\
Group: Malware file
Last Updated: November 28, 2019
%APPDATA%\CTFmon\ctfmon.exe File name: ctfmon.exe
Size: 276.86 KB (276865 bytes)
MD5: c46632ce2850c5721756b3b546c2f93e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\CTFmon\
Group: Malware file
Last Updated: November 30, 2010
%WINDIR%\system32\nidem.exe File name: nidem.exe
Size: 315.39 KB (315392 bytes)
MD5: 57cf9d0771bb49bd5ee6326dac70cfd9
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\
Group: Malware file
Last Updated: February 22, 2020
%TEMP%\83519406.exe File name: 83519406.exe
Size: 356.35 KB (356352 bytes)
MD5: 6a83e782eb09d4a37a67abbdc3bf3a6a
Detection count: 2
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\
Group: Malware file
Last Updated: November 30, 2010

More files

Registry Modifications

The following newly produced Registry Values are:

File name without pathSystem Defragmenter.lnk