Remove Security Guard (Security Guard Removal)
March 25th, 2010 | by Alex |Security Guard Descriptions:
Security Guard, also known as SecurityGuard, is the rogue anti-spyware application and one more threat to computer users. The fake software is designed to look legible but, actually, it isn’t worth anything at all. Security Guard is neither able to detect, nor to remove any threats from your machine. Be sure you keep from this virus as far as possible.
The fake software is usually installed together with malicious video codecs, flash updates, or thorugh the sites promoting the rogueware. Keep an eye on the sources you are visiting.
Once installed, Security Guard starts scaring computer users in all the ways it is able to. First, it scans your machine every single time Windows boots up. The next step is to overcrowd them with warnings and alerts of the threats hiding on the PC. Eventually, Security Guard redirects computer users to the purchase page of the application.
Although Security Guard might look legible to you, it is just scam worth nothing at all. Do not install it. Don’t have anything in common with it.
In case, Security Guard has secretly stealed into your machine, follow the removal instructions and get rid of the rogueware manually, or you can use spyware detection tool to remove Security Guard automatically.
Detect Security Guard automatically – Download SpyHunter* Spyware Detection Utility
Security Guard Manual Removal Instructions:
Stop These Security Guard Processes:
(Learn how to do this)
exec.exe
grid.exe
SICKBOY.exe
Find and Delete These Security Guard Files:
(Learn how to do this)
%UserProfile%\Recent\exec.exe
%UserProfile%\Recent\exec.tmp
%UserProfile%\Recent\fan.drv
%UserProfile%\Recent\fix.tmp
%UserProfile%\Recent\grid.exe
%UserProfile%\Recent\kernel32.exe
%UserProfile%\Recent\runddlkey.drv
%UserProfile%\Recent\SICKBOY.exe
%UserProfile%\Recent\tempdoc.tmp
%UserProfile%\Start Menu\Security Guard.lnk
%UserProfile%\Start Menu\Programs\Security Guard.lnk
%UserProfile%\Application Data\Security Guard
%UserProfile%\Application Data\Security Guard\cookies.sqlite
%UserProfile%\Application Data\Security Guard\Instructions.ini
%UserProfile%\Desktop\Security Guard.lnk
%UserProfile%\Recent\ANTIGEN.sys
%UserProfile%\Recent\ANTIGEN.tmp
%UserProfile%\Recent\cb.exe
%UserProfile%\Recent\cid.dll
%UserProfile%\Recent\ddv.sys
%UserProfile%\Recent\eb.dll
%UserProfile%\Recent\eb.drv
%UserProfile%\Recent\energy.exe c:\Program Files\Mozilla Firefox\searchplugins\search.xml
c:\Documents and Settings\All Users\Application Data\345d567
c:\Documents and Settings\All Users\Application Data\345d567\24.mof
c:\Documents and Settings\All Users\Application Data\345d567\mozcrt19.dll
c:\Documents and Settings\All Users\Application Data\345d567\SG345d.exe
c:\Documents and Settings\All Users\Application Data\345d567\SGD.ico
c:\Documents and Settings\All Users\Application Data\345d567\sqlite3.dll
c:\Documents and Settings\All Users\Application Data\345d567\BackUp\
c:\Documents and Settings\All Users\Application Data\345d567\Quarantine Items\
c:\Documents and Settings\All Users\Application Data\345d567\SGDSys\
c:\Documents and Settings\All Users\Application Data\345d567\SGDSys\vd952342.bd
c:\Documents and Settings\All Users\Application Data\SGZIQYEXRD
c:\Documents and Settings\All Users\Application Data\SGZIQYEXRD\SGWNLED.cfg
Remove These Security Guard Registry Values:
(Learn how to do this)
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes “URL” = “http://findgala.com/?&uid=1002&q={searchTerms}”
HKEY_CURRENT_USER\Software\3
HKEY_CURRENT_USER\Software\Classes\Software\Microsoft\Internet Explorer\SearchScopes “URL” = “http://findgala.com/?&uid=1002&q={searchTerms}”
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer “PRS” = “http://127.0.0.1:27777/?inj=%ORIGINAL%”
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “RunInvalidSignatures” = “1″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform “layout/2.01002″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Security Guard”
HKEY_CLASSES_ROOT\SG345d.DocHostUIHandler
HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes “URL” = “http://findgala.com/?&uid=1002&q={searchTerms}”
















