Windows
Antivirus — ShieldGuard
Multi-layer detection combining hash matching, YARA rules, and heuristic analysis, with real-time monitoring and a quarantine vault. Built in Rust for a lightweight footprint.
Three detection methods, working together.
No single method is relied upon — threats known and unknown are caught from multiple angles.
Hash Matching + YARA Rules + Heuristics
Combines SHA-256/MD5 hash matching against known malware, pattern matching against 19,000+ YARA rules, and heuristic analysis of suspicious API calls. See our explainer on YARA rules for more.
Real-Time Monitoring
Detects changes to designated folders in real time and warns you of threats immediately.
Quarantine Vault
Detected files are encrypted with AES-256-GCM and quarantined. Easy to restore in case of a false positive.
Ad & Malware Blocking
Blocks connections to ad and malware-serving sites at the DNS level.
Lightweight & Fast
Built in Rust to keep CPU and memory usage minimal while running in the background.
Specifications
| Supported OS | Windows 10 / 11 (64-bit) |
|---|---|
| Detection methods | SHA-256 / MD5 hash matching, YARA rules (19,000+), heuristic analysis |
| Implementation | Rust |
| Quarantine | AES-256-GCM encrypted quarantine vault |
| Price | $6.25 (one-time, no subscription) |
| License | One license per PC |
| Base engine | Built on the open-source PRX-SD (MIT/Apache-2.0), repackaged with a bilingual UI |
Learn more
What Are YARA Rules? How Malware Detection Works — and Where It Fails
A real incident from ShieldGuard's own development: how an overly broad rule triggered false positives on every file.
Windows Defender vs. Third-Party Antivirus
What to look at when comparing the built-in Defender with an additional antivirus product.
What Is Windows Antivirus Software?
Free vs. paid vs. one-time-purchase, and the basics of how to choose.
Frequently asked questions
Can I use this alongside Windows Defender?
Yes, but running multiple real-time antivirus products at once can cause conflicts or slowdowns. We recommend turning off Defender's real-time protection while using ShieldGuard.
What should I do if there's a false positive?
You can restore the file from the quarantine vault. If you suspect a false positive, please contact us.
How is the virus definition database updated?
You can fetch the latest detection data from within the app or via the included command-line tool. An internet connection is required.
Is there a trial version?
A trial version is currently in preparation. Please contact us via the form if you'd like one.
Protect your PC today.
Installation takes minutes, with clear guidance the whole way.
Buy ShieldGuard ($6.25)