Windows Ultimate Safeguard
Threat Scorecard
EnigmaSoft Threat Scorecard
EnigmaSoft Threat Scorecards are assessment reports for different malware threats which have been collected and analyzed by our research team. EnigmaSoft Threat Scorecards evaluate and rank threats using several metrics including real-world and potential risk factors, trends, frequency, prevalence, and persistence. EnigmaSoft Threat Scorecards are updated regularly based on our research data and metrics and are useful for a wide range of computer users, from end users seeking solutions to remove malware from their systems to security experts analyzing threats.
EnigmaSoft Threat Scorecards display a variety of useful information, including:
Ranking: The ranking of a particular threat in EnigmaSoft’s Threat Database.
Severity Level: The determined severity level of an object, represented numerically, based on our risk modeling process and research, as explained in our Threat Assessment Criteria.
Infected Computers: The number of confirmed and suspected cases of a particular threat detected on infected computers as reported by SpyHunter.
See also Threat Assessment Criteria.
Threat Level: | 100 % (High) |
Infected Computers: | 4 |
First Seen: | August 4, 2012 |
Last Seen: | January 8, 2020 |
OS(es) Affected: | Windows |
Windows Ultimate Safeguard is a rogue security application in the FakeVimes family of malware, a group of malicious programs that have been active since 2009. ESG security researchers warn computer users that Windows Ultimate Safeguard has no anti-malware capabilities. Malware such as Windows Ultimate Safeguard uses misleading error messages, and other tactics to trick computer users into purchasing useless bogus anti-malware software. Since Windows Ultimate Safeguard cannot detect PC infections and is part of a malware attack itself, this fake security program should be removed with the assistance of a powerful, fully updated anti-malware program.
Table of Contents
Windows Ultimate Safeguard Contains a Dangerous Rootkit Component
Although PC security analysts have been dealing with malware from the FakeVimes family for several years, rogue security programs in this family have started to use new tactics to become more effective and difficult to remove. Since early 2012, ESG malware analysts have observed that bogus security applications from the FakeVimes family of malware have started to use a rootkit component that makes them much more dangerous than previous variants in the FakeVimes family of malware. This rootkit belongs to the Sirefef family of rootkits and can disable many legitimate security programs as well as make the infected computer significantly more vulnerable to other malware attacks. Clones of Windows Ultimate Safeguard that also contain this dangerous rootkit component include programs such as Virus Melt, Presto TuneUp, Fast Antivirus 2009, Extra Antivirus, Windows Security Suite, Smart Virus Eliminator, Packed.Generic.245, Volcano Security Suite, Windows Enterprise Suite, Enterprise Suite, Additional Guard, PC Live Guard, Live PC Care, Live Enterprise Suite, Security Antivirus, My Security Wall, CleanUp Antivirus, Smart Security, Windows Protection Suite, Windows Work Catalyst.
Dealing with Windows Ultimate Safeguard and Other FakeVimes Malware
The main goal of the Windows Ultimate Safeguard scam is to persuade the PC user that their machines are severely infected in an attempt to trick the victim into acquiring an expensive upgrade for this useless rogue security program. To do this, Windows Ultimate Safeguard uses misleading error messages and a fake system scan that will always return alarming results. The presence of Windows Ultimate Safeguard on a computer can also cause browser redirects and other problems, such as general decreased performance across the board.
Since Windows Ultimate Safeguard cannot actually detect or remove malware, this fake security program should be disabled with a reliable anti-malware application. You can stop many of Windows Ultimate Safeguard's most annoying symptoms by entering the registration code 0W000-000B0-00T00-E0020. It is important to remember that 'registering' Windows Ultimate Safeguard does not actually remove this malicious program from your computer but only stops some of its symptoms. Windows Ultimate Safeguard will still need to be removed from the infected computer.
SpyHunter Detects & Remove Windows Ultimate Safeguard
Windows Ultimate Safeguard Video
Tip: Turn your sound ON and watch the video in Full Screen mode.
File System Details
# | File Name | MD5 |
Detections
Detections: The number of confirmed and suspected cases of a particular threat detected on
infected computers as reported by SpyHunter.
|
---|---|---|---|
1. | dbae19be89b393dead5ce7f0ff911ade85b6ed3c8f72a3be482cee9e8ebbd133.exe | f684d4f64ce72902123e55374bff1667 | 3 |
2. | %AppData%\Protector-[RANDOM].exe |