XLGuarder (XL Guarder) Removal Instructions
July 29th, 2008 | by Alex |XLGuarder Descriptions:
XLGuarder, also known XL Guarder, is the latest counterfeit anti-spyware software that creates hassles for computer users around the world. Just like most fake antispywares, it issues misleading and exaggerated issues. XLGuarder usually installed itself onto your PC without your permission, through Vundo Trojan, Virus or fake software. XLGuarder will display fake system alerts or fake security alerts to trick user to buy the paid version of XLGuarder, in order to remove the potential and reported problems. Not only does it cause your machine to slow down dramatically, it would also put your privacy and data in risk.

Download SpyHunter* Spyware Detection Utility.
Manual Removal Instructions:
Stop XLGuarder Processes:
(Learn how to do this)
XLGuarder.exe
sysutil.exe
sysutil_s.exe
Find and Delete these XLGuarder Files:
(Learn how to do this)
%Windir%\iebho.dll
%Windir%\sysutils\settings.ini
%Windir%\sysutils\sounds\01.wav
%Windir%\sysutils\sounds\02.wav
%Windir%\sysutils\sounds\03.wav
%Windir%\sysutils\sysutil.exe
%Windir%\sysutils\sysutil_s.exe
%Windir%\sysutils\uninstall.exe
%Windir%\sysutils\warning\alertpage.jpg
%Windir%\sysutils\warning\spacer.gif
%Windir%\sysutils\warning\warningpage.html
%Windir%\sysutils\winsystip.exe
%UserProfile%\Start Menu\Programs\Protection\Uninstall XLG.lnk
Remove XLGuarder Registry Values:
(Learn how to do this)
HKEY_CLASSES_ROOT\clsid\{f3642b57-3ea8-4eea-a643-9de138381a57}
HKEY_CLASSES_ROOT\clsid\{f3642b57-3ea8-4eea-a643-9de138381a57}\inprocserver32
HKEY_CLASSES_ROOT\clsid\{f3642b57-3ea8-4eea-a643-9de138381a57}\inprocserver32 threadingmodel
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run XLGuarder
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{f3642b57-3ea8-4eea-a643-9de138381a57}
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run XLGuarder
















One Response to “XLGuarder (XL Guarder) Removal Instructions”
By mike on Aug 18, 2008 | Reply
What fresh bullshit is this? Here I am, just checking
out the sites and this crazy Russian bitch hijacks my
laptop and overpowers my virus protection like it was
NOTHING. I appreciate the help with the high tech
Removal and all, but I think what we really need to do
is hunt down the guy who wrote it and string him up by his
balls. Not kill him. Just leave him there. And put a live feed of
him hanging there on the web where his Trojan horse used to be.
that would be justice…