Windows Defence - How To Remove?


Windows Defence is a lates rogue antivirus threat. It is spread by system vulnerabilities, fake video codecs or infected documents and pdf files. You can also get infected if your PC runs unupdated version of Microsoft Windows, as Windows Defence might exploit DLL and shortcut vulnerabilities as attack point. The parasite is similar to other rogues in many ways.

The first symptom of Windows Defense infection is a fake control center (blue shield with lightning) icon in windows task bar. After that you get bombarded by countless alerts and popups that inform you about various infections, hacker attacks and vulnerabilities and you are required to do a Windows Defence scan. These pop-ups announce something like that:

System Alert! Your computer is infected!

Windows has detected spyware infection!

It is recommended to use special antispyware tools to prevent data loss.Windows will now download and install the most up-to-date antispyware for you.

Click here to protect your computer from spyware!

This scan provides fake results: non-existing infected files (you can not find them on your PC for manual deletion) or system files (their deletion would cripple your PC). Then Windows Defense center will ask to pay around 70 USD for removing these threats. Do not pay for it! Your credit card details will be known to creators of Windows Defence, who will surely mis-use this information.

To remove Windows Defense, reboot into safe mode with networking. Then download TDSS Killer from kaspersky and spyhunter . Run both of these tools, delete files Spyware Doctor finds. Then start MSConfig and disable all the entries that launch from within your user folder C:\Users… or C:\Documents and Settings. Most of malicious programs install there and might be missed with antivirus or anti-malware scans. Reboot again.
For minimizing such risks in the future, I recommend running a antimalware suite with real time protection (e.g. full versions of spyhunter , Malwarebytes) all the time.

Automatic Windows Defence removal tools

Note: Reimage trial provides detection of parasites and assists in their removal for free. You can remove detected files, processes and registry entries yourself or purchase a full version.  We might be affiliated with some of these programs. Full information is available in disclosure

Manual removal


Important Note: Although it is possible to manually remove Windows Defence, such activity can permanently damage your system if any mistakes are made in the process, as advanced spyware parasites are able to automatically repair themselves if not completely removed. Thus, manual spyware removal is recommended for experienced users only, such as IT specialists or highly qualified system administrators. For other users, we recommend using Reimage or other tools found on


Windows Defence screenshots


About the author

 - Main Editor

I have started in 2007 after wanting to be more or less independent from single security program maker. Since then, we kept working on this site to make internet better and safer place to use.

September 4, 2010 11:08, September 6, 2010 14:31

3 thoughts on “Windows Defence

  1. Hello!!!
    I have been for hours trying to remove Windows Defence. I installed the Spyware Doctor and it says that my laptop dont have any more infections or threats although, windows defence continues to pop-up in my creen, internet explorer is not working properly and every few minutes, all the windows appear in a massive size and I cant even move the mouse.
    Can you help me please? I am already 4 hours trying to solve this problem.
    Thank you in advance.

  2. Susana : Do an update. It is critical to update removal software to get fresh definitions. In case there is no detections, contact PC Tools support or try other remover.

  3. Don t know how exactly i got in here but i m really glad i ve found it. Neaah… i m starting to believe google is begining to read my mind 🙂 Great work!

Leave a Reply

Your email address will not be published. Required fields are marked *