BrowserSafeguard

BrowserSafeguard

Known Adware

by Adknowledge, Inc.

What is BrowserSafeguard?

BrowserSafeguard is software application developed by Adknowledge, Inc.. It is most commonly found on computers running Windows 7 with nearly 61.22% of installations running this operating system. BrowserSafeguard's installer is typically 2.00 MB in size and installs around 2 files.

BrowserSafeguard is most popular in the United States with 86.67% of installations residing in this country.

BrowserSafeguard adds 2 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times.

About BrowserSafeguard?

RocketTab is a software licensed by Rich River Media and commonly bundled with BrowserSafeguard. It is distributed through various adware bundlers such as optimum-installer, FUSION INSTALL, and Tint Installer. Upon installation, the program also installs a Trusted Root certificate (DO_NOT_TRUST_FiddlerRoot), which can compromise the security of the PC by allowing BrowserSafeguard actions to be trusted. The software runs silently in the background at startup. Additionally, BrowserSafeguard.Proxy functions as a web proxy that intercepts internet traffic and performs modifications, including injecting advertisements.

Multiple virus scanners have detected malware in BrowserSafeguard.

BrowserSafeguard.exe (MD5: ca46ec59e2d891757f529a913a43d9c7) has been flagged by 31 scanners:
Scanner Software Result
Bkav FE W32.Clode85.Trojan
Comodo Security ApplicUnwnt
McAfee Adware-Bsafeg!CA46EC59E2D8
McAfee-GW-Edition Adware-Bsafeg!CA46EC59E2D8
Lavasoft Ad-Aware Trojan.GenericKD.1731590
Agnitum Outpost PUA.Agent!
Avira AntiVir TR/Rogue.5030432
avast! Win32:Malware-gen
AVG Downloader.BCQ
AVware iBryte
Baidu-International Adware.MSIL.iBryte.BE
Bitdefender Trojan.GenericKD.1731590
Emsisoft Anti-Malware Trojan.GenericKD.1731590 (B)
ESET-NOD32 MSIL/Adware.iBryte.E
Fortinet FortiGate Adware/IBryte
F-Secure Trojan.GenericKD.1731590
G Data Trojan.GenericKD.1731590
IKARUS anti.virus PUA.MSIL.Cellbi
K7 AntiVirus Trojan ( 0049c3c31 )
K7GW Trojan ( 0049c3c31 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
MicroWorld-eScan Trojan.GenericKD.1731590
NANO AntiVirus Trojan.Win32.Graftor.dcjdmt
nProtect Trojan.GenericKD.1731590
Rising Antivirus PE:Trojan.Win32.Generic.16E8DED7!384360151
Sophos Generic PUA PO
Symantec PUA.Gen
Tencent Msil.Adware.Ibryte.Kgh
Trend Micro TROJ_GEN.R0CBC0EGR14
TrendMicro-HouseCall TROJ_GEN.R0CBC0EGR14
VIPRE Antivirus iBryte

Software Behaviors

Scheduled tasks:
  • uninstall.BrowserSafeguard.exe is scheduled as a task named 'BrowserSafeguard Update Task' (runs daily at 5:44 PM).
  • BrowserSafeguard.exe is scheduled as a task with the class '{593E3D21-FD4B-4BE6-97AB-58D510AF1779}' (runs on registration).

Startup Entries

Startup tasks:
  • uninstall.BrowserSafeguard.exe is automatically launched at startup through a scheduled task named BrowserSafeguard Update Task.
Registry entries:
  • uninstall.BrowserSafeguard.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'BrowserSafeguard Update Task' and executes as "C:\users\user\appdata\Local\BrowserSafeguard\uninstall.BrowserSafeguard.exe" /CheckUpdate=true.
  • BrowserSafeguard.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'BrowserSafeguard' and executes as "C:\users\user\appdata\Local\BrowserSafeguard\BrowserSafeguard.exe".

Software Details

URL:
https://www.browsersafeguard.com
Support:
Installation path:
C:\Program Files\Browsersafeguard
Uninstaller:
"C:\Program Files\Browsersafeguard\uninstall.browsersafeguard.exe" /u /UserID=a84f9fbe-72f3-44c8-8246-a3fddf82d75c /SourceID=myfreedownload_iewin732_a
Size:
2.00 MB
Language:
English

BrowserSafeguard Executable Details

Primary executable:
BrowserSafeguard.exe
Name:
BrowserSafeguard
Path:
C:\Program Files\Browsersafeguard\BrowserSafeguard.exe
MD5:
ca46ec59e2d891757f529a913a43d9c7
SHA-1:
SHA-256:
Files installed by BrowserSafeguard
File Type Filename MD5
EXE
340de8e4f50a3748d116c3a98aeb97f6
EXE
ca46ec59e2d891757f529a913a43d9c7