Windows Premium Guard
Threat Scorecard
EnigmaSoft Threat Scorecard
EnigmaSoft Threat Scorecards are assessment reports for different malware threats which have been collected and analyzed by our research team. EnigmaSoft Threat Scorecards evaluate and rank threats using several metrics including real-world and potential risk factors, trends, frequency, prevalence, and persistence. EnigmaSoft Threat Scorecards are updated regularly based on our research data and metrics and are useful for a wide range of computer users, from end users seeking solutions to remove malware from their systems to security experts analyzing threats.
EnigmaSoft Threat Scorecards display a variety of useful information, including:
Ranking: The ranking of a particular threat in EnigmaSoft’s Threat Database.
Severity Level: The determined severity level of an object, represented numerically, based on our risk modeling process and research, as explained in our Threat Assessment Criteria.
Infected Computers: The number of confirmed and suspected cases of a particular threat detected on infected computers as reported by SpyHunter.
See also Threat Assessment Criteria.
Threat Level: | 100 % (High) |
Infected Computers: | 2 |
First Seen: | April 26, 2012 |
OS(es) Affected: | Windows |
Windows Premium Guard has the appearance of a real security program, but do not be fooled: Windows Premium Guard's interface is just for show. According to ESG security analysts, Windows Premium Guard has no way of fixing a malware infection and is actually a kind of malware itself. Specifically, Windows Premium Guard belongs to a category of malware known as rogue security programs. These are misleading applications that attempt to convince computer users to buy bogus anti-virus software by staging a fake infection on the victim's computer system.
Windows Premium Guard is part of the FakeVimes family of rogue security software. This is a large family of malware that has been infecting PCs around the world since 2009. Windows Premium Guard belongs to a batch of FakeVimes clones that made its appearance in 2012. Examples of malware belonging to this specific group include Virus Melt, Presto TuneUp, Fast Antivirus 2009, Extra Antivirus, Windows Security Suite, Smart Virus Eliminator, Packed.Generic.245, Volcano Security Suite, Windows Enterprise Suite, Enterprise Suite, Additional Guard, PC Live Guard, Live PC Care, Live Enterprise Suite, Security Antivirus, My Security Wall, CleanUp Antivirus, Smart Security, Windows Protection Suite, Windows Work Catalyst. The characteristic that sets apart this recent batch of FakeVimes malware from previous clones in this malware family is the fact that they tend to be bundled with a nasty rootkit component, often some variant of the ZeroAccess rootkit.
Table of Contents
An Overview of the Windows Premium Guard Scam
The main way in which criminals profit from fake security software is by making PC users buy a license of the bogus security application. Computer users are attacked with a variety of misleading security alerts and alarming error messages claiming that the victim's computer is severely infected. Windows Premium Guard then poses as a real security program, but claims that these nonexistent viruses can only be removed with Windows Premium Guard's "full version." Windows Premium Guard also displays a fake system scan and deliberately causes a variety of problems on the victim's computer, such as decreasing system performance and causing browser redirects.
Paying for Windows Premium Guard is not only a waste of money, but also exposes you to identity theft and having your personal information become compromised. Also, ESG malware researchers have detected no actual anti-malware capabilities in the Windows Premium Guard program. You can fool Windows Premium Guard by entering the registration code 0W000-000B0-00T00-E0020 so that Windows Premium Guard will stop displaying its bothersome error messages. On the other hand, this will not delete the Windows Premium Guard infection from your computer. To do that, it is necessary to use a reliable anti-malware program with anti-rootkit capabilities.
SpyHunter Detects & Remove Windows Premium Guard
Windows Premium Guard Video
Tip: Turn your sound ON and watch the video in Full Screen mode.
File System Details
# | File Name | MD5 |
Detections
Detections: The number of confirmed and suspected cases of a particular threat detected on
infected computers as reported by SpyHunter.
|
---|---|---|---|
1. | Protector-xfac.exe | d37032237c1ab112dd11583fe2a8dc0a | 1 |
2. | Protector-mnlu.exe | ff3cb8c27cb3c89247fa0ef55f661dec | 1 |
3. | %AppData%\Protector-.exe | ||
4. | %AppData%\NPSWF32.dll | ||
5. | %AppData%\result.db | ||
6. | %Desktop%\Windows Premium Guard.lnk | ||
7. | %CommonStartMenu%\Programs\Windows Premium Guard.lnk |