github ionuttbara/windows-defender-remover release_def_12_5_4_0
second release of 12.5.4

latest releases: release_def_12_8, release_def_12_7_2, release_def_12_7...
10 months ago
  • fixes errors for installing, uninstalling UWPs in Windows 10 22H2 (applying cumulative updates with Y pressed) ( i don't guarantee if that is working for Windows 11, where are problems with Moment Updates.) (to apply hotfix, download this version and press Y to get in work)
  • i consider removing of AppInfo Service (Application Information Service) with this script because the programs before to to be opened, are scanned with consent.exe even UAC is disabled. Removal of AppInfo Service will neutralize consent.exe and the app will open faster (bigger executables are starting faster. This will work together with UAC disablation of legacy version of removing (AppInfo disabled/removed with UAC enabled is not good for 🪟, Also disablation of AppInfo Service with UAC disabled from UserAccountControlSettings.exe will not work.). (i will add UAC disabling to be added in Safe methods in next version of the script).
    Or if you want to disable/enable Windows Defender with Antivirus ,and Security Services, you will use SAFE Methods
    ⚠️For these people who applied this version and have problems with application running after AppInfo service removal, they will create a reg file with the code provided below:
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Appinfo]
"DependOnService"=hex(7):52,00,70,00,63,00,53,00,73,00,00,00,50,00,72,00,6f,00,\
  66,00,53,00,76,00,63,00,00,00,00,00
"Description"="@%systemroot%\\system32\\appinfo.dll,-101"
"DisplayName"="Application Information"
"ErrorControl"=dword:00000001
"FailureActions"=hex:ff,ff,ff,ff,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
"ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
  74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
  00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
  6b,00,20,00,6e,00,65,00,74,00,73,00,76,00,63,00,73,00,20,00,2d,00,70,00,00,\
  00
"ObjectName"="LocalSystem"
"RequiredPrivileges"=hex(7):53,00,65,00,41,00,73,00,73,00,69,00,67,00,6e,00,50,\
  00,72,00,69,00,6d,00,61,00,72,00,79,00,54,00,6f,00,6b,00,65,00,6e,00,50,00,\
  72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,49,00,6e,\
  00,63,00,72,00,65,00,61,00,73,00,65,00,51,00,75,00,6f,00,74,00,61,00,50,00,\
  72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,54,00,63,\
  00,62,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,\
  65,00,42,00,61,00,63,00,6b,00,75,00,70,00,50,00,72,00,69,00,76,00,69,00,6c,\
  00,65,00,67,00,65,00,00,00,53,00,65,00,52,00,65,00,73,00,74,00,6f,00,72,00,\
  65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,\
  00,44,00,65,00,62,00,75,00,67,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,\
  67,00,65,00,00,00,53,00,65,00,41,00,75,00,64,00,69,00,74,00,50,00,72,00,69,\
  00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,43,00,68,00,61,00,\
  6e,00,67,00,65,00,4e,00,6f,00,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,\
  00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,49,00,6d,00,70,00,65,00,\
  72,00,73,00,6f,00,6e,00,61,00,74,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,\
  00,65,00,67,00,65,00,00,00,53,00,65,00,43,00,72,00,65,00,61,00,74,00,65,00,\
  50,00,65,00,72,00,6d,00,61,00,6e,00,65,00,6e,00,74,00,50,00,72,00,69,00,76,\
  00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,4c,00,6f,00,61,00,64,00,\
  44,00,72,00,69,00,76,00,65,00,72,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,\
  00,67,00,65,00,00,00,53,00,65,00,53,00,79,00,73,00,74,00,65,00,6d,00,45,00,\
  6e,00,76,00,69,00,72,00,6f,00,6e,00,6d,00,65,00,6e,00,74,00,50,00,72,00,69,\
  00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,00,00
"Start"=dword:00000004
"Type"=dword:00000020

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Appinfo\Parameters]
"ServiceDll"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
  00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
  61,00,70,00,70,00,69,00,6e,00,66,00,6f,00,2e,00,64,00,6c,00,6c,00,00,00
"ServiceDllUnloadOnStop"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Appinfo\Security]
"Security"=hex:01,00,14,80,a0,00,00,00,ac,00,00,00,14,00,00,00,30,00,00,00,02,\
  00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
  00,00,02,00,70,00,05,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
  05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
  20,02,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,05,04,00,00,00,00,\
  00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,06,00,00,00,00,00,14,00,00,01,\
  00,00,01,01,00,00,00,00,00,05,0b,00,00,00,01,01,00,00,00,00,00,05,12,00,00,\
  00,01,01,00,00,00,00,00,05,12,00,00,00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Appinfo\TriggerInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Appinfo\TriggerInfo\0]
"Action"=dword:00000001
"Data0"=hex:32,00,30,00,31,00,65,00,66,00,39,00,39,00,61,00,2d,00,37,00,66,00,\
  61,00,30,00,2d,00,34,00,34,00,34,00,63,00,2d,00,39,00,33,00,39,00,39,00,2d,\
  00,31,00,39,00,62,00,61,00,38,00,34,00,66,00,31,00,32,00,61,00,31,00,61,00,\
  00,00
"DataType0"=dword:00000002
"GUID"=hex:67,d1,90,bc,70,94,39,41,a9,ba,be,0b,bb,f5,b7,4d
"Type"=dword:00000006

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Appinfo\TriggerInfo\1]
"Action"=dword:00000001
"Data0"=hex:35,00,66,00,35,00,34,00,63,00,65,00,37,00,64,00,2d,00,35,00,62,00,\
  37,00,39,00,2d,00,34,00,31,00,37,00,35,00,2d,00,38,00,35,00,38,00,34,00,2d,\
  00,63,00,62,00,36,00,35,00,33,00,31,00,33,00,61,00,30,00,65,00,39,00,38,00,\
  00,00
"DataType0"=dword:00000002
"GUID"=hex:67,d1,90,bc,70,94,39,41,a9,ba,be,0b,bb,f5,b7,4d
"Type"=dword:00000006

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Appinfo\TriggerInfo\2]
"Action"=dword:00000001
"Data0"=hex:66,00,64,00,37,00,61,00,30,00,35,00,32,00,33,00,2d,00,64,00,63,00,\
  37,00,30,00,2d,00,34,00,33,00,64,00,64,00,2d,00,39,00,62,00,32,00,65,00,2d,\
  00,39,00,63,00,35,00,65,00,64,00,34,00,38,00,32,00,32,00,35,00,62,00,31,00,\
  00,00
"DataType0"=dword:00000002
"GUID"=hex:67,d1,90,bc,70,94,39,41,a9,ba,be,0b,bb,f5,b7,4d
"Type"=dword:00000006

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Appinfo\TriggerInfo\3]
"Action"=dword:00000001
"Data0"=hex:35,00,38,00,65,00,36,00,30,00,34,00,65,00,38,00,2d,00,39,00,61,00,\
  64,00,62,00,2d,00,34,00,64,00,32,00,65,00,2d,00,61,00,34,00,36,00,34,00,2d,\
  00,33,00,62,00,30,00,36,00,38,00,33,00,66,00,62,00,31,00,34,00,38,00,30,00,\
  00,00
"DataType0"=dword:00000002
"GUID"=hex:67,d1,90,bc,70,94,39,41,a9,ba,be,0b,bb,f5,b7,4d
"Type"=dword:00000006

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Appinfo\TriggerInfo\4]
"Action"=dword:00000001
"Data0"=hex:30,00,34,00,39,00,37,00,42,00,35,00,37,00,44,00,2d,00,32,00,45,00,\
  36,00,36,00,2d,00,34,00,32,00,34,00,46,00,2d,00,41,00,30,00,43,00,36,00,2d,\
  00,31,00,35,00,37,00,43,00,44,00,35,00,44,00,34,00,31,00,37,00,30,00,30,00,\
  00,00
"DataType0"=dword:00000002
"GUID"=hex:67,d1,90,bc,70,94,39,41,a9,ba,be,0b,bb,f5,b7,4d
"Type"=dword:00000006

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Appinfo\TriggerInfo\5]
"Action"=dword:00000001
"Data0"=hex:30,00,66,00,37,00,33,00,38,00,65,00,32,00,30,00,2d,00,37,00,33,00,\
  63,00,30,00,2d,00,34,00,63,00,61,00,38,00,2d,00,61,00,61,00,36,00,61,00,2d,\
  00,38,00,64,00,66,00,65,00,66,00,35,00,34,00,35,00,66,00,65,00,61,00,38,00,\
  00,00
"DataType0"=dword:00000002
"GUID"=hex:67,d1,90,bc,70,94,39,41,a9,ba,be,0b,bb,f5,b7,4d
"Type"=dword:00000006


Don't miss a new windows-defender-remover release

NewReleases is sending notifications on new releases.