BITGUARD.EXE is Adware PerformerSoft

I will tell you in this post how to fix the issue manually and how to clean it automatically using a special powerful removal tool. You can download the removal program for free here:

We received the file BITGUARD.EXE and detected that BITGUARD.EXE is not good.
BITGUARD.EXE is Adware. You should remove the file BITGUARD.EXE.
Kill the process BITGUARD.EXE and remove BITGUARD.EXE from Windows.

Malware Analysis of BITGUARD.EXE
Full path on a computer: %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe

Detected by UnHackMe:

BITGUARD.EXE
Default location: %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe

Removal Results: Success
Number of reboot: 1

BITGUARD.EXE is known as:

Adware.PerformerSoft, ADW_BITBROWSE, Win32:BProtect-A [PUP], BProtector, Application.bProtect.g, InstallBrain (fs), Troj.Undef.(kcloud), Application.BHO.A, a variant of Win32.bProtector.A


Will you remove it?
0 0

Download Removal Tool for Free

People say

Visitor post

BITGUARD.EXE hash:

  • MD5: 2D89ABAC9D439ABAD1E427A467F0687D
The file tries to connect to the dangerous web site.
How to quickly detect BITGUARD.EXE presence?

Registry:
  • HKLM\System\CurrentControlSet\Services\Eventlog\Application\AutoBackupLogFiles: 0×00000000
  • HKLM\System\CurrentControlSet\Services\Eventlog\Application\Update LemurLeap\EventMessageFile: “%WinDir%\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll”
  • HKLM\System\CurrentControlSet\Services\BitGuard\ImagePath: “%Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe”
  • HKLM\System\CurrentControlSet\Services\BitGuard\DisplayName: “BitGuard”
  • HKLM\System\CurrentControlSet\Services\BitGuard\Description: “Your browser protector service”
  • HKLM\System\CurrentControlSet\Services\Update LemurLeap\ImagePath: “”%Program Files%\LemurLeap\updateLemurLeap.exe””
  • HKLM\System\CurrentControlSet\Services\Update LemurLeap\DisplayName: “Update LemurLeap”
  • HKLM\System\CurrentControlSet\Services\Eventlog\Application\Sources: ‘Update LemurLeap WSH WMIAdapter WMI.NET Provider Extension WmdmPmSN WinMgmt Winlogon Windows Product Activation Windows 3.1 Migration WebClient VSSetup VSS VMUpgradeHelper vmtools VBRuntime Userinit Userenv TPVCGateway Tlntsvr System.ServiceModel 4.0.0.0 System.Runtime.Serialization 4.0.0.0 System.IO.Log 4.0.0.0 System.IdentityModel 4.0.0.0 SysmonLog Starter SpoolerCtrs Software Restriction Policies Software Installation ServiceModel Audit 4.0.0.0 SecurityCenter SclgNtfy SceSrv SceCli safrslv SAFrdms RPC Remote Assistance PerfProc PerfOS PerfNet Perfmon Perflib PerfDisk Perfctrs Outlook Offline Files Oakley ntbackup MSSQLSERVER/MSDE MSSOAP MSSHA MsiInstaller MSDTC Client MSDTC MSDMine mnmsrvc Microsoft.Transactions.Bridge 4.0.0.0 Microsoft H.323 Telephony Service Provider Microsoft (R) Visual C# 2005 Compiler LoadPerf HelpSvc Folder Redirection File Deployment EventSystem ESENT DrWatson Dot3Svc DiskQuota crypt32 COM+ COM Ci Chkdsk CardSpace 4.0.0.0 AutoEnrollment Autochk ASP.NET 4.0.30319.0 ASP.NET 2.0.50727.0 Application Management Application Hang Application Error .NET Runtime Optimization Service .NET Runtime 4.0 Error Reporting .NET Runtime 2.0 Error Reporting .NET Runtime Application’
Folders:
  • %Appdata%\Mozilla\Firefox\Profiles\profile.default\extensions\ffxtlbr@babylon.com
  • %Appdata%\Mozilla\Firefox\Profiles\profile.default\extensions\ffxtlbr@delta.com
  • %Appdata%\BabSolution
  • %Appdata%\Delta
  • %Appdata%\SwvUpdater
  • %Programs%\BitGuard
  • %Common Appdata%\Babylon
  • %Common Appdata%\BitGuard
  • %Common Appdata%\BitGuard\2.6.1673.238
  • %Program Files%\Delta
  • %Program Files%\Delta\delta
  • %Program Files%\LemurLeap
  • %Program Files%\Soft 196
Files:
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.dll
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.settings
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\bl
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\dm
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\00
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\01
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\02
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\03
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\10
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\11
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\12
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\13
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\20
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\21
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\22
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\23
  • %Common Appdata%\BitGuard\2.6.1673.238\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\uninstall.exe


I use UnHackMe for cleaning ads and viruses from my friend's computers, because it is extremely fast and effective.




STEP 1: Download UnHackMe for free

UnHackMe removes Adware/Spyware/Unwanted Programs/Browser Hijackers/Search Redirectors from your PC easily.

Free Download

UnHackMe is compatible with most antivirus software.
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10 32 or 64-bit. UnHackMe uses minimum of computer resources.

STEP 2: Double click on UnHackMe_setup.exe

You will see a confirmation screen with verified publisher: Greatis Software. Verified Publisher Greatis Software

Once UnHackMe has installed the first Scan will start automatically

Review the detected threats

STEP 3: Carefully review the detected threats!

Click Remove button or False Positive.

Enjoy!

3 votes, average: 5.00 out of 53 votes, average: 5.00 out of 53 votes, average: 5.00 out of 53 votes, average: 5.00 out of 53 votes, average: 5.00 out of 5 (3 votes, average: 5.00 out of 5)
You need to be a registered member to rate this.
Loading...