PCTotalDefender
PCTotalDefender is a damn scam, another fake anti-spyware program. Like other rogue antispyware, PCTotalDefender’s game plan is to have you waste about £20 removing “threats” you don’t have.
How does PCTotalDefender do this? PCTotalDefender runs free “security” scans with fake results and PCTotalDefender popups tell you you’re infected with spyware that doesn’t exist. You might have gotten tricked into downloading PCTotalDefender from a website, or maybe everyone’s favorite Trojan, Zlob, installed this crapware onto your computer.
Personally, stuff like PCTotalDefender makes me want to smash my PC into a billion pieces.
Or just remove PCTotalDefender. Either way.
I’ll show you how to get rid of PCTotalDefender for free.
PCTotalDefender Is Ugly

PCTotalDefender.com Is Ugly

Remove PCTotalDefender Automatically, with SmitFraud
Don’t have a lot of time? What with YouPorn.com reading The Guardian, my charity work, and more, neither do I. If you don’t know how to manually delete PCTotalDefender files, and don’t want to learn, here’s how you automatically remove PCTotalDefender.
Before you start, print out these instructions—you’re going to have to restart your computer in Safe Mode. Also, back up your PC in case you make a mistake.
- Download SmitFraudFix for free, and save it to your desktop.
- Reboot your PC in Safe Mode.
- To reboot in Safe Mode using Windows XP, restart your PC, and when a progress bar appears at the bottom of the screen, hit F8 once every second. When you see the Windows Start-up menu, highlight Safe Mode and hit Enter. Your desktop will show up, and make whatever repairs necessary. Then reboot your system and allow it to start up as normal.
- To reboot in Safe Mode using Windows Vista, go Start > Run. Type “MSCONFIG” into the Open field, and click OK. From the BOOT.INI tab, check /SAFEBOOT and click Restart).
- Once your desktop loads, double-click SmitfraudFix.exe.
- After the credits roll, you’ll see a menu. Click option number two, “Clean (safe mode recommended)“. Click Enter and delete your files infected with PCTotalDefender.
- SmitFraudFix will clean your PC. When SmitFraudFix is finished, its Disk Cleanup automatically starts.
- Once Disk Cleanup is done, it’ll ask you, “Registry cleaning – Do you want to clean the registry?” Type in “Y” (yes), and click “Enter“. When Disk Cleanup finishes, restart your PC.
- If your system’s wininet.dll is infected, SmitFraudFix asks you if you want to replace the file. If SmitFraud asks, “Replace infected file?” Type “Y” (yes) to answer and click “Enter“.
- Once that’s finished, restart your system.
- After restarting, a Notepad file might popup with a log of the files SmitFraudFix deleted. If it doesn’t popup, you can find the log as a file rapport.txt in Local Disk C:, the root of your hard drive.
- Restart your system again, in Safe Mode. Once it boots up, go to C:\Windows\Temp. Select “Edit“, select “Select All“, and click “DELETE“. Click “Yes” to confirm you want all these files to get trashed in the Recycle Bin.
- Restart your system one more time, in normal mode. Go to Windows Update and download any critical updates for your computer. You’re done.
Remove PCTotalDefender with Your Bare Hands
You dig a work out. Manually removing PCTotalDefender can be hard and time consuming, but apparently you’re into that. Obviously, I can’t guarantee these instructions will completely remove PCTotalDefender from your system, but it’s worth a try. Just make sure you backup your system before you try to remove PCTotalDefender manually.
Before you start, print out these manual PCTotalDefender removal instructions and close all applications, including your web browser.
- Uninstall PCTotalDefender: Select Start menu > Settings > Control Panel. Double-click “Add/Remove Programs“, and search for “PCTotalDefender”. If you find PCTotalDefender, uninstall PCTotalDefender.
- Stop PCTotalDefender processes: Select Start menu > Run. Type taskmgr, then click on the Processes tab for a list of running processes. Search for PCTotalDefender processes, like “PCTotalDefender.exe“, or any PCTotalDefender processes I list below. Right-click “PCTotalDefender.exe“, and click “End task“.

pctdf.exe
18647bf490824b42f6cd90172b8dbd13.exe
AntiVirusInstallFree_en.exe
- Delete PCTotalDefender files in Windows Vista and XP: Select Start menu > Settings > Search. Click For Files and Folders…. You’ll see a speech bubble asking you, “What do you want to search for?” Select All files and folders. Type the names of PCTotalDefender files into the search box, including any PCTotalDefender file I’ve listed below. Now select Local Hard Drives, and click Search. As soon as you see a bastard PCTotalDefender file, just delete it.

- Unregister PCTotalDefender DLL files: Select Start menu > Settings > Run. Type “cmd” in Run’s box, and click OK. To switch directories, type “cd” in the command box, hit the Space key, and type the directory where the PCTotalDefender DLL file is located. If you don’t know which directory the PCTotalDefender DLL file is located in, enter “dir” into the command box to see a directory’s contents. To go back one directory, enter “cd ..” in the command box and hit Enter. Once you find the PCTotalDefender DLL file you want to remove, including any of the DLLs I list below, type “regsvr32 /u MadeUpDLLName.dll” (e.g., “regsvr32 /u PCTotalDefender.dll”) and hit Enter. If you delete a DLL by mistake, type “regsvr32 MadeUpWhoopsName.dll” (e.g., “regsvr32 PCTotalDefender.dll”) into your command box, and hit Enter.

rmd.dll
- Unregister PCTotalDefender registry keys: Select Start menu > Run. Type regedit, and click OK. Search for any PCTotalDefender registry keys I list below. To delete these PCTotalDefender registry keys, right-click the PCTotalDefender registry key, select “Modify”, and click “Delete“.

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ieremainder.Remainder\CurVer
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ieremainder.Remainder.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ieremainder.Remainder.1\CLSID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE5F80FD-8A16-4E53-A670-25EDD1152274}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE5F80FD-8A16-4E53-A670-25EDD1152274}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE5F80FD-8A16-4E53-A670-25EDD1152274}\ProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE5F80FD-8A16-4E53-A670-25EDD1152274}\Programmable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE5F80FD-8A16-4E53-A670-25EDD1152274}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE5F80FD-8A16-4E53-A670-25EDD1152274}\VersionIndependentProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{18D792C0-5144-40C0-BBB7-CE4791959DFB}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{18D792C0-5144-40C0-BBB7-CE4791959DFB}\ProxyStubClsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{18D792C0-5144-40C0-BBB7-CE4791959DFB}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{18D792C0-5144-40C0-BBB7-CE4791959DFB}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{BE7E2D8D-C62F-47B0-A42F-1AD5D66EC710}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{BE7E2D8D-C62F-47B0-A42F-1AD5D66EC710}\1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{BE7E2D8D-C62F-47B0-A42F-1AD5D66EC710}\1.0\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{BE7E2D8D-C62F-47B0-A42F-1AD5D66EC710}\1.0\0\win32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{BE7E2D8D-C62F-47B0-A42F-1AD5D66EC710}\1.0\FLAGS
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{BE7E2D8D-C62F-47B0-A42F-1AD5D66EC710}\1.0\HELPDIR
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ieremainder.Remainder
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ieremainder.Remainder\CLSID
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DE5F80FD-8A16-4E53-A670-25EDD1152274}
- Delete PCTotalDefender directories: Select Start menu > My Computer > Local Disk (C:) > Program Files > Show the contents of this folder. Search for “C:\ProgramFiles\PCTotalDefender“, or any PCTotalDefender directories I list below. Right-click these PCTotalDefender directories. Click “Delete“, “Yes“, and “Yes” again to confirm you want to move the PCTotalDefender folder into the Recycle Bin.
- Remove PCTotalDefender desktop icons: Drag and drop any PCTotalDefender icons into your Recycle Bin.
- Change your home page: If PCTotalDefender hijacked your home page, select Start menu > Control Panel > Internet Options > General. Under “Home Page” select Use Default. Enter the URL you want as your home page (for example, “http://www.damntrojan.co.uk”), and select “Apply” and “OK“. Open a new browser window to make sure your home page has changed.
You’re done. Hopefully these PCTotalDefender removal instructions got rid of PCTotalDefender for you. Just so we’re clear on things, I can’t guarantee these instructions will completely remove PCTotalDefender from your computer.
If you tried these instructions to get rid of PCTotalDefender and they didn’t work, throw your computer out the window.
Or consult professionals.
PCTotalDefender Might Be Rogue Anti-Spyware
WTF is Rogue Anti-Spyware?
Rogue anti-spyware is a nice way of saying some anti-spyware software may be a fake. Rogue anti-spyware, at best, is anti-spyware software not proven to protect your PC. Rogue anti-spyware, at worst, is installed by a Trojan or browser security holes, gives you false positives in scans, and pops up fake security alerts to scare you into buying it.
Some rogue anti-spyware even is created by spyware and adware folk, or installs spyware onto your PC.
Sound like a scam?
It is.
If you’re infected with fake anti-spyware like PCTotalDefender, you could see a PCTotalDefender popup posing as a security alert. Maybe it looks like this:

Why Rogue Anti-Spyware Sucks
Rogue anti-spyware, like PCTotalDefender, has a few qualities that make it faker than a chest on a Trump chick.
- Fake alerts and false positives: Rogue anti-spyware can drive you crazy with fake security alerts popping up, telling you you’re infected with spyware threats that don’t even exist.
- Copycat images: Rogue anti-spyware sometimes copies the look of real anti-spyware (think of that knock-off Fucci bag you bought your girl friend). More often though, rogue anti-spyware just looks like other fakes.
- High-pressure sales: Rogue anti-spyware will sell you harder than Crazy Gideon pimps an old tape cassette player. Think scare tactics, like fake alerts, and exaggerated “security” scans of your system.
- Poor detection: Besides rogue anti-spyware often plugging in fake threats in security scans, rogue anti-spyware can be sloppy about telling you what you’re really infected with. For instance, rogue anti-spyware might say you’ve got 13 threats, but not what kind of “threats.” Or maybe the rogue says you’re infected with MadeUpParasite, but it doesn’t tell you which files are actually on your computer.
- Weak scans: Rogue anti-spyware might scan your system, but skim over important folders. Though, really, I’d be surprised if it did any scanning at all.
Did PCTotalDefender use these moves to try to get you to buy PCTotalDefender?
PCTotalDefender Could Be a Trojan
WTF Are Trojans?
Remember that college class you took on Greek mythology?
Neither do I.
Trojans get their name from Greek mythology, though — a Trojan is software that acts like a Trojan horse. The same way that Trojan horse looked like a great gift to the Spartans — only it was stuffed full of soldiers — Trojans are software that appear harmless but are really designed to kill your computer.
Trojans often pretend to be a video codec you need to watch porn — really — , maybe a photo attached to email, or some sort of other harmless software. Once you open your gates to a Trojan though, it can spy on you, download more malware, or allow a hacker to do whatever he wants on your machine.
How PCTotalDefender and Trojans Might Infect You
- Websites: When you’re surfing the web, you won’t only get infected when you download some codecs or plugins. Sometimes all you have to do is visit a site and a Trojan secretly downloads itself onto your computer. Scary. Use a browser like Firefox to prevent this — it’s much more secure than Internet Explorer.
- Open ports: If you run any file-sharing applications — and I’m not just talking peer-to-peer music software — you risk opening up your system to infection. It can be as simple as leaving file sharing open on your instant message client. My rule of thumb is to close off every port. Set up a firewall, too, if you don’t already have one.
- Email: Some random person you don’t really remember just forwarded you some hot pictures? Don’t open them. Lots of Trojans are dolled up as harmless looking email attachments that take advantage of security holes in your mail client. Spam blocker software can help, but it’s better just not to open any attachments from people you don’t know.
Popularity: 1% [?]