Information about Vista Guard
Vista Guard is a rogue antispyware application that spreads on computer systems through Trojan viruses. It infiltrates completely secretly without any notification to the user. Once inside the program is configured to start automatically with each computer reboot. Vista Guard appears only on Windows Vista Operating System. If a system is running Windows XP, the program will change the name to XP Guard, in case of Windows 7 it will go under a name of Win 7 Guard. No matter which name it goes with it still causes same consequences.
Vista Guard starts its activity as soon as it infiltrates to the system. It first of all launches a scanner and pretends to look for system infections. Then Vista Guard claims to detect a bunch of different files that pose risk to your system. In order to remove them you are asked to make a payment for Vista Guard. In addition to a fake scanner, the program displays fake security notifications that threaten about spyware infection detected on your system. Here are a few examples of them:
Vista Guard Firewall Alert
Vista Guard has blocked a program from accessing the internet
Internet Explorer is infected with Trojan-BNK.Win32.Keylogger.gen
Private data can be stolen by third parties, including credit card details and passwords.
System danger!
Your system security is in danger. Privacy threats detected. Spyware, keyloggers or Trojans may be working the background right now. Perform an in-depth scan and removal now, click here.
System Hijack!
System security threat was detected. Viruses and/or spyware may be damaging your system now. Prevent infection and data loss or stealing by running a free security scan.
Privacy threat!
Spyware intrusion detected. Your system is infected. System integrity is at risk. Private data can be stolen by third parties, including credit card details and passwords. Click here to perform a security repair.
Stealth intrusion!
Infection detected in the background. Your computer is now attacked by spyware and rogue software. Eliminate the infection safely, perform a security scan and deletion now.
Vista Guard is also responsible for blocking your Internet Explorer or Firefox. Once it infects your system, you won’t be able to open most of the websites and instead you will receive this notification:
Internet Explorer alert. Visiting this site may pose a security threat to your system!
Possible reasons include:
- Dangerous code found in this site's pages which installed unwanted software into your system.
- Suspicious and potentially unsafe network activity detected.
- Spyware infections in your system
- Complaints from other users about this site.
- Port and system scans performed by the site being visited.Things you can do:
- Get a copy of Vista Guard to safeguard your PC while surfing the web (RECOMMENDED)
- Run a spyware, virus and malware scan
- Continue surfing without any security measures (DANGEROUS)
Ignore such statements and instead remove Vista Guard from your computer as soon as you can. It’s a rogue application without a slightest doubt.
Vista Guard Facts
- Vista Guard pretends to increase security of your PC
- Vista Guard free version will show popups, alerts and fake results to convince you to pay
- Vista Guard creators will not deliver license keys upon paying or the full version will not be functional
- Vista Guard might be used to download and advertise other malicious software
- Vista Guard might disable some of your PCs or its programs functions
Manual Vista Guard removal instructions
MSASCui.exe
HKEY_CLASSES_ROOT\pezfile
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\pw.exe" /START "%1" %*
HKEY_CURRENT_USER\Software\Classes\pezfile\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\pw.exe" /START "%1" %*
HKEY_CLASSES_ROOT\.exe\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\pw.exe" /START "%1" %*
HKEY_CLASSES_ROOT\pezfile\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\pw.exe" /START "%1" %*
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\pw.exe" /START "C:\Program Files\Mozilla Firefox\firefox.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command "(Default)" = "%UserProfile%\Local Settings\Application Data\pw.exe" /START "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\pw.exe" /START "C:\Program Files\Internet Explorer\iexplore.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "AntiVirusOverride" = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "FirewallOverride" = "1"
%UserProfile%\AppData\Local\MSASCui.exe
%UserProfile%\Local Settings\Application Data\pw.exe
%UserProfile%\Local Settings\Application Data\MSASCui.exe





1 comments

