Digital Life
Windows tweaks, fixes, utilities, solutions and news
-
Feb4No Comments
Important: System Guard 2009 is a rogue anti-spyware program that displays false and exaggerated scan results. So, never believe the warning by System Guard 2009 or pay for it.
Use tool to remove System Guard 2009
1. We can use Malwarebytes’ Anti-Malware to remove it easily.
Automated Removal Instructions for System Guard 2009 using Malwarebytes’ Anti-Malware:
www.bleepingcomputer.com/malware-removal/remove-system-guard-20092. They are also many other removal tool on internet. I have not tested them.
Manully remove System Guard 2009
1. Stop System Guard 2009 Processes:
systemguard.exe
2. Find and Delete these System Guard 2009 Files:
c:\WINDOWS\reged.exe
c:\WINDOWS\spoolsystem.exe
c:\WINDOWS\sys.com
c:\WINDOWS\syscert.exe
c:\WINDOWS\sysexplorer.exe
c:\WINDOWS\vmreg.dll
c:\WINDOWS\system32\winscenter.exe
c:\Program Files\System Guard 2009
c:\Program Files\System Guard 2009\conf.cfg
c:\Program Files\System Guard 2009\mbase.vdb
c:\Program Files\System Guard 2009\quarantine.vdb
c:\Program Files\System Guard 2009\queue.vdb
c:\Program Files\System Guard 2009\systemguard.exe
c:\Program Files\System Guard 2009\uninstall.exe
c:\Program Files\System Guard 2009\vbase.vdb
c:\Program Files\System Guard 2009\quarantine
c:\Documents and Settings\User\Desktop\System Guard 2009.lnk
c:\Documents and Settings\User\Start Menu\Programs\System Guard 2009
c:\Documents and Settings\User\Start Menu\Programs\System Guard 2009\System Guard 2009.lnk
c:\Documents and Settings\User\Start Menu\Programs\System Guard 2009\Uninstall.lnk
c:\Documents and Settings\All Users\Application Data\winlogon.exe
c:\Documents and Settings\All Users\Application Data\Microsoft\Network\svchost.exe
c:\Documents and Settings\All Users\Application Data\Microsoft\Network\track.sys
c:\Documents and Settings\All Users\Application Data\Microsoft\Network\DLLs
c:\Documents and Settings\All Users\Application Data\Microsoft\Network\DLLs\c.cgm
c:\Documents and Settings\All Users\Application Data\Microsoft\Network\DLLs\eewhptdpyl.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\Network\DLLs\ieModule.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\Network\DLLs\moduleie.dll3. Remove System Guard 2009 Registry Values:
HKEY_CLASSES_ROOT\CLSID\{77C96E10-FDA7-4AA7-B318-0631C0D27DBB}
HKEY_CLASSES_ROOT\CLSID\{AB6DAA8C-F726-4FDD-8B06-9537C5878612}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\System Guard 2009
HKEY_LOCAL_MACHINE\SOFTWARE\System Guard 2009
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “systemguard”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad “ieModule”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad “InternetConnection”
