AV Guard Online

What is AV Guard Online?

AV Guard Online is a false security client. The purpose of this malware is to trick users into thinking it's a legitimate antivirus client. This is a clone of several other fake security clients out there including OpenCloud Security, OpenCloud Antivirus, BlueFlare Antivirus, Milestone Antivirus, Wireshark Antivirus, Sysinternals Antivirus, XJR Antivirus, AKM Antivirus 2010 Pro, Your PC Protector.

 How Did I get infected with AV Guard Online?

Normally people get infected with fake security clients from being tricked into installing them. They often pretend to be a video or codec update or a software update. Once the user installs the program they then realize they just installed a virus. There are many other ways users get infected. Trojan downloaders and drive by downloads are common ways to be infected. Only good anti-virus clients are capable of stoping threats like this. If for instance you had Spyware Doctor with Antivirus installed on your computer you would most likely of never gotten infected.

What is AV Guard Online Doing to My Computer Right Now?

The good news is AV Guard Online is not stealing your personal information. In or testings we had a really nasty root kit installed along with this client that was hard to remove. It will block many regular anti-virus clients from installing and may re-direct your web browser.

AV Guard Online

av guard online

» Download AV Guard Online Removal Software

What Do I Do To Remove AV Guard Online?

In order to remove AV Guard Online you have to first kill off the main executable then delete the file traces. The below guide will help to walk you through it. If you had propper anti-virus protection in the first place you most likely would of never of gotten infected. Free antivirus clients are nice but none of them provide the up front real time protection you need from viruses and spyware. Be sure to read the full guide first and you should also run a full scan with Spyware Doctor with Antivirus as well.

Automatic AV Guard Online Removal

Online AV Guard Online Removal Service

computer repair

Remove Proxy Setting so You Can Connect to the Internet Again. Some need this some do not.

This text will be replaced

AV Guard Online Removal Video for Windows 7 and Vista. Works for XP as well but you will need to use the manual guide to locate the file paths.

AV Guard Online Manual Removal Procedures

The first step you must take in order to remove AV Guard Online is to stop the following process. Watch the video for guidance.

  • AV Guard Online.exe ( This file name will mutate and change over time. Expect your file name to be different )

Know File Path Locations

XP

  • C:\Documents and Settings\[Username]\Application Data\

    C:\Documents and Settings\YOUR USER NAME\ApplicationData\Local\Temp\

Vista / Windows 7: One of the below

  • c:\users\[username]\AppData\local\
  • C:\Users\YOUR USER NAME\AppData\Local\Temp\
  • C:\Users\[Username]\AppData\

To Stop this process you can

A. Browse to the file location shown below and re-name the file first and then restart your computer. Then browse to that file location again and delete the file. Take note that you can sort the files by date and help rule out most files and folders. Chances are you will only have a few files that appear within the date range you first became infected.

B.  Boot into Safe Mode and delete the file

C:  Use the Task Manager  to find the location of the file and re-name it then delete after re-boot. Most people will have this disabled and not working. However some users can use it the very second you log into the operating system. You have about 10 seconds to locate the file before the Task Manager will close.

D:  Log-into another users account and see if you can delete the file.

E:  Start the Task Manager the very second you login and terminate the process that way.

The next step in AV Guard Online removal is to delete the following file. You NEED to re-boot your computer first if you re-named the file as you can not remove a file that is running.

If you are unable to find the Executable you need to delete then you should boot into safe mode with Networking and install the Spyware Doctor with Antivirus Client and run a full scan.

KNOWN LOCATIONS OF THIS VIRUS

XP

  • C:\Documents and Settings\All Users\Application Data\AV Guard Online\AV Guard Online.exe %

  • C:\Documents and Settings\All Users\Application Data\AV Guard Online\AV Guard Online.ico %

  • C:\Documents and Settings\All Users\Application Data\AV Guard Online\sysl32.dll %AppData%\AV Guard Online\wf.conf

  • C:\Documents and Settings\All Users\Application Data\AV Guard Online\%UserProfile%\Desktop\AV Guard Online.lnk

Vista / Windows 7:

  • %AppData%\AV Guard Online\AV Guard Online.exe %

  • AppData%\AV Guard Online\AV Guard Online.ico %

  • AppData%\AV Guard Online\sysl32.dll %AppData%\AV Guard Online\wf.conf

  • %UserProfile%\Desktop\AV Guard Online.lnk %

  • StartMenu%\Programs\AV Guard Online\AV Guard Online.lnk

Be sure to run a full virus scan once you are done. This ensures you have gotten all the virus traces and that you have no other malware on your computer.

If you find this threat too hard to remove yourself and need an expert we recommend this remote computer repair. They charge far less than others and are great at what they do.

AV Guard Online Registry Removal Procedures

Editing the Windows Registry is not recommended for most users. One little slip and you can kiss your operating system good by. It's better to just let antivirus software repair and edit the rgistry. You may also want to consider using the PC Health Advisor Trial Here to clean out the registry and scan for other malware.

Here are the registry traces for your refference only. Please help update these traces by posting a comment below

  • HKEY_CLASSES_ROOT\CLSID\{19090308-636D-4e9b-A1CE-A647B6F794BF}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{19090308-636D-4e9b-A1CE-A647B6F794BF}

AV Guard Online Directories:

XP

  • C:\Documents and Settings\All Users\Application Data\AV Guard Online

Windows 7 / Windows Vista

  • %AppData%\AV Guard Online
    %StartMenu%\Programs\AV Guard Online

Conclusion

Like with most Malware the hardest part is simply stopping the main executable. Once you do that it should be smooth sailing. Always run a full virus scan once done to ensure you have no other infections. We like Spyware Doctor with Antivirus. If you require advanced help or just want an expert to remove the virus for than use this computer repair service.

Related Article Keywords: AV Guard Online, Remove AV Guard Online, AV Guard Online Removal, How to Remove AV Guard Online

Speak Your Mind

*

RemoveVirus.org cannot be held liable for any damages that may occur from using our community virus removal guides. Viruses cause damage and unless you know what you are doing you may loose your data. We strongly suggest you backup your data before you attempt to remove any virus. Each product or service is a trademark of their respective company. We do make a commission off of each product we recommend. This is how removevirus.org is able to keep writing our virus removal guides. All Free based antivirus scanners recommended on this site are limited. This means they may not be fully functional and limited in use. A free trial scan allows you to see if that security client can pick up the virus you are infected with.