Emsisoft Malware-Info
Name: Adware.Win32.AdditionalGuard
Risklevel: Low Risk
Company: ISystem Inc - http://www.additional-guard.com
Description:
Additional Guard is a rogue security program that shows false warning messages and misleading scan results.
Removal instructions for Adware AdditionalGuard:
To delete this malware infection, buy Emsisoft Anti-Malware.
Guaranteed removal of Adware AdditionalGuard.
Run a full scan on all drives and move all detected items to the quarantine.
More details about this danger:
Installation: Installed through EXE
Screenshots:
Used folders:
- C:\Program Files\Mozilla Firefox\searchplugins\
- C:\WINDOWS\system32\
- C:\WINDOWS\system32\drivers\etc\
- C:\WINDOWS\system32\WBEM\Logs\
- C:\Documents and Settings\All Users\Application Data\58969\
- C:\Documents and Settings\All Users\Application Data\WINAGSys\
- C:\Documents and Settings\[USER]\Application Data\Additional Guard\
- C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\
- C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\Profiles\lr1h35z0.default\
- C:\Documents and Settings\[USER]\Desktop\
- C:\Documents and Settings\[USER]\Desktop\BackUp\
- C:\Documents and Settings\[USER]\Desktop\WINAGSys\
- C:\Documents and Settings\[USER]\Recent\
- C:\Documents and Settings\[USER]\Start Menu\
- C:\Documents and Settings\[USER]\Start Menu\Programs\
Used files:
- C:\Program Files\Mozilla Firefox\searchplugins\search.xml
[1208 Bytes] XML File - C:\WINDOWS\system32\COMMAND.COM
[50620 Bytes] COM File - C:\WINDOWS\system32\DOSX.EXE
[53840 Bytes] EXE File - C:\WINDOWS\system32\HIMEM.SYS
[4768 Bytes] SYS File - C:\WINDOWS\system32\MSCDEXNT.EXE
[817 Bytes] EXE File - C:\WINDOWS\system32\REDIR.EXE
[3338 Bytes] EXE File - C:\WINDOWS\system32\drivers\etc\hosts
[7129 Bytes] File - C:\WINDOWS\system32\WBEM\Logs\mofcomp.log
[12071 Bytes] LOG File - C:\WINDOWS\system32\WBEM\Logs\wbemprox.log
[559 Bytes] LOG File - C:\Documents and Settings\All Users\Application Data\58969\WIf4c.exe
[2078720 Bytes] EXE File - C:\Documents and Settings\All Users\Application Data\58969\WINAG.ico
[4286 Bytes] ICO File - C:\Documents and Settings\All Users\Application Data\WINAGSys\winag.cfg
[18377 Bytes] CFG File - C:\Documents and Settings\[USER]\Application Data\Additional Guard\cookies.sqlite
[4096 Bytes] SQLITE File - C:\Documents and Settings\[USER]\Application Data\Additional Guard\Instructions.ini
[1255 Bytes] INI File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\Additional Guard.lnk
[1762 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\Profiles\lr1h35z0.default\prefs.js
[1636 Bytes] JS File - C:\Documents and Settings\[USER]\Desktop\81.mof
[330 Bytes] MOF File - C:\Documents and Settings\[USER]\Desktop\Additional Guard.lnk
[1744 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\mozcrt19.dll
[722392 Bytes] DLL File - C:\Documents and Settings\[USER]\Desktop\sqlite3.dll
[457688 Bytes] DLL File - C:\Documents and Settings\[USER]\Desktop\BackUp\HyperSnap-DX.lnk
[650 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\WINAGSys\vd952342.bd
[11382 Bytes] BD File - C:\Documents and Settings\[USER]\Recent\ANTIGEN.drv
[48 Bytes] DRV File - C:\Documents and Settings\[USER]\Recent\cid.sys
[3 Bytes] SYS File - C:\Documents and Settings\[USER]\Recent\CLSV.dll
[58 Bytes] DLL File - C:\Documents and Settings\[USER]\Recent\DBOLE.dll
[45 Bytes] DLL File - C:\Documents and Settings\[USER]\Recent\DBOLE.drv
[44 Bytes] DRV File - C:\Documents and Settings\[USER]\Recent\DBOLE.sys
[9 Bytes] SYS File - C:\Documents and Settings\[USER]\Recent\eb.dll
[59 Bytes] DLL File - C:\Documents and Settings\[USER]\Recent\eb.exe
[50 Bytes] EXE File - C:\Documents and Settings\[USER]\Recent\eb.sys
[68 Bytes] SYS File - C:\Documents and Settings\[USER]\Recent\eb.tmp
[70 Bytes] TMP File - C:\Documents and Settings\[USER]\Recent\energy.drv
[3 Bytes] DRV File - C:\Documents and Settings\[USER]\Recent\exec.drv
[63 Bytes] DRV File - C:\Documents and Settings\[USER]\Recent\grid.dll
[61 Bytes] DLL File - C:\Documents and Settings\[USER]\Recent\PE.dll
[13 Bytes] DLL File - C:\Documents and Settings\[USER]\Recent\PE.exe
[74 Bytes] EXE File - C:\Documents and Settings\[USER]\Recent\sld.dll
[53 Bytes] DLL File - C:\Documents and Settings\[USER]\Start Menu\Additional Guard.lnk
[1744 Bytes] LNK File - C:\Documents and Settings\[USER]\Start Menu\Programs\Additional Guard.lnk
[1750 Bytes] LNK File
Additional information might be found here:
Search
at Google for
Adware AdditionalGuard
Search at Bing for
Adware AdditionalGuard
Search
at Yahoo for
Adware AdditionalGuard
How can I protect myself from Adware AdditionalGuard?
Important!
You essentially need an antivirus product, that is not only able to clean infections, but also protect your PC permanently from new dangers.
This is the only way to prevent data loss and unnecessary hassle and costs of new installations of your operating system.
Take your chance and buy the multiple awarded protection software Emsisoft Anti-Malware today!
Only $40 for the security of your computer.
Buy Emsisoft Anti-Malware online:
Trust only on the best protection software!
Spring Offer!
Don't miss this: To your bought 1-year license of Emsisoft Anti-Malware or Emsisoft Internet Security Pack or higher you can now get
a free license of the CyberGhost Anonymizer for free.
Your advantage: Surf anonymously and visit websites that are restricted in your country.
Only a few days left! Order here























