System Diagnosis Popup

System Diagnosis Popup Description


“System Diagnosis” Popup is a rogue security alert from rogue anti-spyware program System Guard Center. “System Diagnosis” Popup may read:

“WARNING: Your system and files may be damaged. Install a repairing solution to check and prevent crashes. WARNING YOUR SYSTEM MAY BE RUNNING WITH ERRORS. A reliable Fixing software is scanning your PC for errors. This Fixing Tool will locate errors and damaged files on your system.”

“System Diagnosis” Popup is only meant to make you believe your computer system is infested with spyware. “System Diagnosis” Popup will most likely redirect you to System Guard Center’s website or other malicious websites that sell rogue anti-spyware programs.
Download SpyHunter Spyware Scanner

System Diagnosis Popup Automatic Detection Tool (Recommended)


Is your PC infected with System Diagnosis Popup? To safely & quickly detect System Diagnosis Popup, we highly recommend you run the malware scanner listed below.



File System Modifications

  • The following files were created in the system:
    # File Name
    1 %UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\SystemGuardCenter.lnk
    2 %UserProfile%\Application Data\SystemGuardCenter
    3 %UserProfile%\Application Data\SystemGuardCenter\Logs
    4 %UserProfile%\Application Data\SystemGuardCenter\Logs\scns.log
    5 %UserProfile%\Desktop\QuickInstallPack.lnk
    6 %UserProfile%\Local Settings\Application Data\qip
    7 %UserProfile%\Local Settings\Application Data\qip\data.ini
    8 %UserProfile%\Local Settings\Application Data\qip\SystemGuardCenter_Setup_Dual_en.exe.ini
    9 %UserProfile%\Local Settings\Application Data\UCLN_QIP
    10 %UserProfile%\Local Settings\Application Data\UCLN_QIP\data.ini
    11 %UserProfile%\Local Settings\Application Data\USGC_QIP
    12 %UserProfile%\Local Settings\Application Data\USGC_QIP\data.ini
    13 %UserProfile%\Start Menu\Programs\QuickInstallPack
    14 %UserProfile%\Start Menu\Programs\QuickInstallPack\Contact Us.url
    15 %UserProfile%\Start Menu\Programs\QuickInstallPack\QuickInstallPack on the Web.url
    16 %UserProfile%\Start Menu\Programs\QuickInstallPack\QuickInstallPack.lnk
    17 %UserProfile%\Start Menu\Programs\QuickInstallPack\Uninstall QuickInstallPack.lnk
    18 c:\Documents and Settings\All Users\Application Data\SystemGuardCenter
    19 c:\Documents and Settings\All Users\Application Data\SystemGuardCenter\Bases
    20 c:\Documents and Settings\All Users\Application Data\SystemGuardCenter\Bases\bbv.dat
    21 c:\Documents and Settings\All Users\Application Data\SystemGuardCenter\Bases\Enemies.dat
    22 c:\Documents and Settings\All Users\Application Data\SystemGuardCenter\Status.dat
    23 c:\Documents and Settings\All Users\Desktop\System GuardCenter.lnk
    24 c:\Documents and Settings\All Users\Start Menu\Programs\SystemGuardCenter
    25 c:\Documents and Settings\All Users\Start Menu\Programs\SystemGuardCenter\Launch SystemGuardCenter Options.lnk
    26 c:\Documents and Settings\All Users\Start Menu\Programs\SystemGuardCenter\Launch SystemGuardCenter.lnk
    27 c:\Documents and Settings\All Users\Start Menu\Programs\SystemGuardCenter\Uninstall SystemGuardCenter.lnk
    28 c:\My Downloads
    29 c:\Program Files\SystemGuardCenter
    30 c:\Program Files\SystemGuardCenter\SystemGuardCenter Options.ico
    31 c:\Program Files\SystemGuardCenter\SystemGuardCenter.ico
    32 c:\Program Files\SystemGuardCenter\SystemGuardCenter.xml
    33 c:\Program Files\SystemGuardCenter\unins.ico
    34 c:\Program Files\SystemGuardCenter\unins000.dat

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “QuickInstallPack”HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “SystemGuardCenter”HKEY_CURRENT_USER\Software\SystemGuardCenterHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4CDC21D-43BE-4101-A1EF-E379F134771E}HKEY_LOCAL_MACHINE\SOFTWARE\SystemGuardCenterHKEY..\..\..\..{RegistryKeys}HKEY_CLASSES_ROOT\AppID\iercpt.DLLHKEY_CLASSES_ROOT\AppID\{3A9377A6-BE7F-485D-908C-D44114691389}HKEY_CLASSES_ROOT\CLSID\{D4CDC21D-43BE-4101-A1EF-E379F134771E}HKEY_CLASSES_ROOT\Interface\{59C345BA-3D5E-44E3-9D10-D3848AF15D73}HKEY_CLASSES_ROOT\TypeLib\{A6FBD2E4-1C7E-4EAB-80DD-01DE2645566A}HKEY_CLASSES_ROOT\iercpt.iercptbhoHKEY_CLASSES_ROOT\iercpt.iercptbho.1HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}QuickInstallPackSGC_is1
Posted: February 18, 2009 | By
Share:
Follow Me on Pinterest More More
Threat Level: 1/10
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Rate this article:
Home Malware ProgramsAnnoyances System Diagnosis Popup

Leave a Reply

What is 3 + 9 ?
Please leave these two fields as-is:
IMPORTANT! To be able to proceed, you need to solve the following simple math (so we know that you are a human) :-)