What is guardgui.exe?
guardgui.exe is a legitimate process file popularly known as Guard GUI Application. It is associated with software Avira AntiVir PersonalEdition developed by Avira GmbH. It is located in C:\Program Files by default.
Malware programmers write virus files with malicious scripts and save them as guardgui.exe with an intention to spread virus on the internet.
Affected Platforms: Windows OS
How to determine if your computer is infected with guardgui.exe malware?
Look out for the these symptoms to check if your PC is infected with guardgui.exe malware:
- Unstable internet connection
- guardgui.exe occupies extra CPU space
- PC processing speed slows down
- Browser often redirects to irrelevant websites
- Browser is bombarded with hordes of popup ads
- Computer screen freezes repeatedly
Take the following steps to diagnose your PC for possible guardgui.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Program Files perform an antivirus scan to get rid of the malware.
How to remove guardgui.exe malware from system using Comodo Antivirus?
Step 1: Download our award-winning Free Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.
Step 4: Restart your PC after the installation gets over
Step 5: Wait for Comodo Internet Security to update the antivirus.
Step 6: Proceed with the quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be notified through an alert screen.
Step 8: Comodo Antivirus will remove guardgui.exe malware from your computer including all other malwares!
No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
---|---|---|---|---|---|---|---|---|---|---|
1 | Avira GmbH | Executable | 2bc8368ac8aaaaf8 fefe9ffe830cd12b fb096b29 |
f6d5a0ce300d4e44 737480e08305457a |
Win32.Kashu. B |
No | 10.00.01.0 7 |
10.00.01.0 7 |
![]() |
N/A |
2 | Avira GmbH | Executable | 19e7af294d646753 aec464954a675b58 622ff0ce |
5e8fb5702813b226 79d8c2db30af5bb7 |
Win32.Kashu. B |
No | 10.00.01.0 7 |
10.00.01.0 7 |
![]() |
N/A |
3 | Avira GmbH | Executable | a49921155d57128a 34c64c3702d2bb23 1c510bed |
0fa384deaecb6c4b 65fe504f660a7dc5 |
Win32.Kashu. B |
No | 10.00.01.0 7 |
10.00.01.0 7 |
![]() |
N/A |
4 | N/A | Executable | cd67b0d06fc0a978 3ba1d9c0002df2a2 8d43f3eb |
586688798e7fe784 ce615fdeab78c5ac |
Win32.Neshta .A |
No | N/A | N/A | ![]() |
N/A |
No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
---|---|---|---|---|---|---|---|---|
1 | Avira Operations GmbH & Co. KG | Executable | 748b442318cf3d6b cc4c7ade26ad4117 04994a7b |
5baf3177bfea1cc2 80f41c46385ceb47 |
Yes | 15.0.32.11 | 15.0.32.11 | ![]() |
2 | Avira Operations GmbH & Co. KG | Executable | a290bc6727101cbd 8cfee40c96217bd3 0f33cb12 |
dedb4d7b3e932cb7 7533548901f9e841 |
Yes | 13.6.20.21 00 |
13.6.20.21 00 |
![]() |
3 | H+BEDV Datentechnik GmbH | Executable | 354beab5f348d0b2 a6f00db61d057e45 cc53c670 |
addafccecec49d36 a982b484a2c5779e |
No | 1.00.00.06 | 1.00.00.06 | ![]() |
4 | Avira Operations GmbH & Co. KG | Executable | 2a42320a0ec20e04 5aacee34ff802c38 7bf04112 |
06eae8b444411372 d9403e3b2038a24e |
Yes | 15.0.36.17 0 |
15.0.36.17 0 |
![]() |