Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

13.6.20.2100 8.67%
13.6.20.2100 0.67%
13.6.20.2100 0.67%
13.6.20.2100 0.67%
13.6.20.2100 2.00%
13.6.20.2100 0.67%
13.6.0.1550 3.33%
13.6.0.1550 2.00%
13.6.0.1550 2.00%
13.6.0.778 4.67%
13.6.0.778 6.67%
13.6.0.778 0.67%
13.6.0.652 16.00%
13.6.0.652 0.67%
13.6.0.652 0.67%
13.6.0.652 0.67%
13.6.0.652 0.67%
13.6.0.652 0.67%
13.6.0.400 11.33%
13.6.0.400 4.67%
13.4.0.300 0.67%
13.4.0.232 2.67%
12.3.0.15 24.67%
12.3.0.15 2.00%
12.3.0.15 0.67%
View more

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
DeleteService, OpenServiceW, OpenSCManagerW, CreateServiceW, CloseServiceHandle, AdjustTokenPrivileges, SetServiceStatus, LookupPrivilegeValueW, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, OpenProcessToken
kernel32.dll
VerifyVersionInfoW, VerSetConditionMask, GetVersionExW, GetModuleHandleW, LoadLibraryA, GetTickCount, InterlockedExchange, DecodePointer, IsProcessorFeaturePresent, GetSystemTimeAsFileTime, GetCurrentThreadId, IsDebuggerPresent, SetUnhandledExceptionFilter, DeleteFileW, ReadConsoleInputW, DeleteCriticalSection, QueryPerformanceFrequency, EnterCriticalSection, GetStdHandle, lstrlenW, CreateFileW, SetConsoleMode, LeaveCriticalSection, FreeConsole, Sleep, WideCharToMultiByte, InitializeCriticalSection, WriteFile, SetConsoleScreenBufferSize, QueryPerformanceCounter, GetNumberOfConsoleInputEvents, AllocConsole, SetFilePointer, LocalFree, GetCurrentProcessId, CloseHandle, CreateEventW, InterlockedExchangeAdd, GetProcAddress, GetLastError, GetModuleFileNameW, FormatMessageW, LoadLibraryW, FreeLibrary, OutputDebugStringW, SetEvent, WaitForSingleObject, GetCurrentProcess, DeviceIoControl, UnhandledExceptionFilter, TerminateProcess, EncodePointer, GetStartupInfoW, HeapSetInformation, InterlockedCompareExchange, InitializeCriticalSectionAndSpinCount
msvcp100.dll
DllMain
msvcr100.dll
DllMain
user32.dll
GetSystemMetrics

avguard.exe

Avira Free Antivirus by Avira Operations GmbH & Co. KG (Signed)

Remove avguard.exe
Version:   13.6.0.1550
MD5:   aae3238c2a0b2cf17851b3d06c8ea8c0
SHA1:   20e36e677482385f198cc375001a7c76538d3b13
SHA256:   6f1dfc32e537682deda6102daace075056144ac3e23a766f00b298926f441112

What is avguard.exe?

Avira On-Access Service. This edition of Avira Antivirus is free of charge and runs as a background process which checks every file opened or downloaded. Like many antivirus programs, it can run a full or custom scan to check the PC for malware in order to remove them. It updates its virus definitions automatically everyday by default using the Internet.

About avguard.exe (from Avira Operations GmbH & Co. KG)

Our entry-level antivirus eliminates many forms of malware, including worms, rootkits and costly dialers. System Scanner prevents infection from viruses, worms and Trojans. AHeAD Technology halts unkn

Overview

avguard.exe runs as a service under the name Avira Echtzeit Scanner (AntiVirService) with extensive SYSTEM privileges (full administrator access). It is installed with a couple of know programs including Avira Free Antivirus published by Avira GmbH, Avira Free Antivirus from Avira GmbH and Avira Free Antivirus by Avira GmbH. The file is digitally signed by Avira Operations GmbH & Co. KG which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:avguard.exe
Publisher:Avira Operations GmbH & Co. KG
Product name:Avira Free Antivirus
Description:Avira On-Access Service
Typical file path:C:\Program Files\avira\antivir desktop\avguard.exe
File version:13.6.0.1550
Size:105.55 KB (108,088 bytes)
Certificate
Issued to:Avira Operations GmbH & Co. KG
Authority (CA):VeriSign
Expiration date:Sunday, July 20, 2014
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 10.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Avira GmbH
25% remove
Avira AntiVir Personal includes a branded version of the Ask.com Toolbar, a web browser extenstion that provides search advertising and results. Upon installation the user is presented with the option to install the Ask toolbar. If accepted, the toolbar will be installed in the user's web browser (Internet Explorer, Chrome and Firefox) and will modify the home page and search settings.
Avira GmbH
24% remove
Avira AntiVir Personal includes a branded version of the Ask.com Toolbar, a web browser extenstion that provides search advertising and results. Upon installation the user is presented with the option to install the Ask toolbar. If accepted, the toolbar will be installed in the user's web browser (Internet Explorer, Chrome and Firefox) and will modify the home page and search settings.

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'AntiVirService' (Avira Echtzeit Scanner)
  • AntiVirService

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00485705%
0.028634%
Kernel CPU:0.00202025%
0.013761%
User CPU:0.00283680%
0.014873%
Kernel CPU time:27,558 ms/min
100,923,805ms/min
CPU cycles:24,751,085/sec
17,470,203/sec
Memory
Private memory:136.3 MB
21.59 MB
Private (maximum):46.61 MB
Private (minimum):1.19 MB
Non-paged memory:136.3 MB
21.59 MB
Virtual memory:229.85 MB
140.96 MB
Virtual memory (peak):425.35 MB
169.69 MB
Working set:24.2 MB
18.61 MB
Working set (peak):259.9 MB
37.95 MB
Page faults:1,418,773/min
2,039/min
I/O
I/O read transfer:50.5 MB/sec
1.02 MB/min
I/O read operations:4,511/sec
343/min
I/O write transfer:1.8 MB/sec
274.99 KB/min
I/O write operations:143/sec
227/min
I/O other transfer:48.74 MB/sec
448.09 KB/min
I/O other operations:16,604/sec
1,671/min
Resource allocations
Threads:34
12
Handles:228
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\avira\antivir desktop\avguard.exe"
Owner:SYSTEM
Windows Service
Service name:AntiVirService
Display name:Avira Echtzeit Scanner
Description:“Bietet permanenten Schutz vor Viren und Malware mit der Avira Suchengine.”
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
wow64.dll (Win32 Emulation on NT64 by Microsoft)
Total CPU:0.18410411%
0.272967%
Kernel CPU:0.02420276%
0.107585%
User CPU:0.15990135%
0.165382%
CPU cycles:3,242,481/sec
5,741,424/sec
Memory:252 KB
1.16 MB
avguard.exe (main module)
Total CPU:0.07092912%
Kernel CPU:0.01628248%
User CPU:0.05464663%
CPU cycles:1,270,249/sec
Memory:116 KB
sechost.dll
Total CPU:0.04684376%
Kernel CPU:0.00681364%
User CPU:0.04003012%
CPU cycles:742,025/sec
Memory:100 KB
msvcr100.dll (Microsoft Visual Studio 2010 by Microsoft)
Total CPU:0.02257254%
Kernel CPU:0.00417300%
User CPU:0.01839954%
CPU cycles:351,395/sec
Memory:764 KB
avesvc.dll (Avira Free Antivirus by Avira Operations GmbH & Co. KG)
Total CPU:0.00012176%
Kernel CPU:0.00009132%
User CPU:0.00003044%
CPU cycles:950/sec
Memory:152 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 34.67%
Microsoft Windows XP 27.33%
Windows 7 Home Premium 17.33%
Windows 7 Professional 11.33%
Windows Vista Home Premium 2.67%
Windows 7 Home Basic 2.00%
Windows 8 Pro 1.33%
Windows 7 Enterprise 1.33%
Windows 7 Starter 1.33%
Windows Vista Business 0.67%

Distribution by countryDistribution by country

Malaysia installs about 14.19% of Avira Free Antivirus.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 26.45%
Hewlett-Packard 21.49%
Toshiba 11.57%
Intel 9.92%
Acer 7.44%
Lenovo 6.61%
Dell 6.61%
Compaq 3.31%
Samsung 1.65%
MSI 1.65%
Sahara 1.65%
American Megatrends 0.83%
GIGABYTE 0.83%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE