Monday 17 October 2011

Guard Online Virus Removal - How To Guide


Guard Online looks exactly as Cloud Protection software and both products are malwares designed by the same family. These products are called ransomware as products like Guard Online do a fake scan of your computer and try to cheat money from you. The creators of this software want to sell a bogus software as Guard Online can't protect your form anything.

Guard Online software was created by on-line scammers and they have a complete team dedicated for creating rogue products. These guys are releasing new bogus products everyday and distributing them on-line through various channels. Such rogue products are mainly promoted on hacked websites and when you visit those sites, Guard On-line virus automatically installed itself in your computer without your knowledge.

Once the installation is done, it will pop-up on your computer's screen and start scanning your computer without your permission. It will tell you that your computer is seriously infected and you need clean out viruses from your computer. See this screen shot of Guard online virus doing fake scan :
Guard Online Virus Doing Fake Scan on My Computer

Showing a List of Running Processes to Look Legitimate
Guard Online will report numerous false infections on your machine and then ask you to purchase full version of Guard Online to remove those infections. If you fall for this trap and buy the rogue software, you'll get a fake activation key. Once you enter that key in Guard Online, It will tell you that now your computer is free from viruses. This is a bogus tactics to trap you and after taking money from you, Guard Online will stop doing malicious things.

Don't get fooled by this rogue software and remove guard online from your computer as soon as possible. Removing this rogue on your computer will do more harm to your PC and lessen the chances of recovery.


Guard Online will do the followings to your computer :

1.  Block all products on your computer and won't let you run any software.
2. Your system will get a lot slow and you'll see random error messages in system tray.
3.  Your antivirus software will get blocked and If you try to run it again, Guard Online malware will forcefully close it down.
4.  Several essentials settings of your computer will get changed by the malware so that you can't remove it easily.
How To Remove Guard Online Virus

Guard Online is a very stubborn software and can't be removed easily by an average computer user.  We have tested behavior of this rogue software in our research lab and found two methods which can help you :
1. Automatic Removal

Automatic Removal method means using a software to remove guard on-line malware.  This removal method is fast, easy and guarantees complete removal of the rogue. If you follow this removal method, It hardly takes 30 minutes to resolve all errors and problems on your PC.

This removal method can be used by anyone. If you are not skilled with computers, don't worry as you just need to download a software and scan your computer for possible infections. Everything else is done automatically by Spyware Doctor. Here are the detailed steps you should follow :


1. Restart your computer and press "F8" key on your keyboard during startup.

2. When you see a menu, select "Safe Mode With Networking" and start your computer. Guard On-line will not be able to run itself in Safe Mode and It will make your job easier.


3. Once your computer boots in safe mode, run Internet Explorer and Download Spyware Doctor . Spyware Doctor is the best malware remover software in the world. After downloading Spyware Doctor,  install it in your computer and update its virus database.

After that, conduct a "Full Scan" of your computer and remove all the infections. That's it! On next reboot, you can boot up your computer in safe mode and everything will be back to normal. 


2. Manual Removal

Manual Removal method is very hard and risky to follow. Among thousands of different files on your computer, It will be always impossible for you to spot the files related to malware. This is why we don't recommend manual removal method and If you delete a wrong file from your computer, your problems will just get worse.

Guard Online virus creates its files with random names. On each computer, this software creates a different filename and that's why It is not possible to mention the correct filename.

Please follow these steps to remove guard online virus manually :

1. Boot up your computer in "Safe Mode with Networking Mode".
2. Run registry editir by clicking on Start--Run, type regedit and click OK. Delete this registry entry :

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "<random>"

Please note that registry is a core part of your computer and editing it incorrectly may harm your computer.
  
3. After deleting above registry entries, please find and delete these files from your computer :

%AppData%\<random>\
%AppData%\<random>\
%AppData%\<random>\
%AppData%\<random> Guard Online.ico
%AppData%\ldr.ini
%StartMenu%\Programs\Guard Online\
%StartMenu%\Programs\Guard Online\Guard Online.lnk
%System%\<random>.exe%AppData%\E77ikC6uQA5hAym (or Similar Random Name)
 %AppData%\GxxTGN9pzF  (or Similar Random Name)
%AppData%\g44tgnOLrfI2dJw   (or Similar Random Name)

Follow above steps and use your common sense to decide If you should delete a particular file. Don't ever delete a file based on your guess because If you delete a system file, Windows will not load and show you a fatal error. At that point, re-installation of your computer will be the only option.

If you want to avoid al the hassles, download Spyware Doctor and remove guard on-line automatically. You'll get rid of the virus and your computer will stay safe forever. 

No comments:

Post a Comment