Scareware Tricks Users Into Removing Antivirus Software
Version of the widespread "retrovirus" CoreGuard Antivirus, called AnVi Antivirus, aims for many well-known AV programs, warns Symantec.
![]() | |
Slideshows: 12 CIOs' 'Career Killer' Pet Peeves | |
| (click for larger image and for full photo gallery) |
The trick up the software's sleeve is that it actually uses legitimate antivirus programs' own uninstallers to get users to uninstall the software.
More Hardware Insights
Webcasts
- SMB Server Guide: Meeting Email, Virtualization, and Business Application Challenges
- Powering your Business with IBM's New 2s General Purpose Servers
White Papers
- Business Value of Blade
- Solitaire Interglobal, Ltd. Research paper; Getting the Most Out of Your IP Platforms with Virtualization
Reports
More >>In particular, if a user executes a malicious file -- generally dubbed Trojan.FakeAV by Symantec -- it launches a system-level popup window warning them that their currently installed antivirus product isn't certified and is compromising system performance, and should be uninstalled. Regardless of whether or not a user clicks "ok" or simply closes the window manually, AnVi then launches the legitimate antivirus software's uninstaller. At that point, a user would need to click the actual "uninstall" button for the software to be removed.
Interestingly, the malicious file -- which may be installed by malware, drive-by downloading, visiting fake antivirus websites, or come bundled with other software -- actually searches out currently installed antivirus software in the Windows registry subkey, then "launches the uninstaller for certain legitimate antivirus software," said Symantec.
At the same time, the malicious file attempts to download AnVi Antivirus, a new clone of retrovirus CoreGuardAntivirus2009, not to be confused with the Vormetric technology of the same name. Once activated, "the program reports false or exaggerated system security threats on the computer," said Symantec. "The user is then prompted to pay for a full license of the application in order to remove the threats."
However, the fake antivirus program itself is the threat, and provides no antivirus functionality.
As virtual servers, storage, and applications become the norm in the data center, vendors are offering products to consolidate host communications into a single channel and manage that channel with a central appliance. Get the lowdown on the various options before diving in. Download our report here (registration required).
Related Reading
| To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy. |
Subscribe to RSSResource Links
Related Webcasts
- SMB Server Guide: Meeting Email, Virtualization, and Business Application Challenges
- Powering your Business with IBM's New 2s General Purpose Servers
- Protecting End Users Against Emerging Threats
- Best Practices in SMB Desktop Virtualization
- CTO to CTO: Scott Davies, VMware, and Jim Davies, Mitel, Give Voice to the Virtual Desktop
This Week's Issue
Free Print Subscription
SubscribeCurrent Healthcare Issue
- InformationWeek Healthcare CIO 25: Our second annual honor roll of the health IT leaders driving healthcare's transformation.
- EHR Unreadiness: Only a small percentage of physicians planning to apply for Meaningful Use funds have e-health record systems capable of achieving most of the requirements. .
- And much more!
- Read the Current Issue
Related Whitepapers
- Solve the 6 Top Problems in Your Data Center
- Gartner Research Picking the Right Server Type to Solve Your Data Center Space, Power and Heat Problems
- ComputerWorld Tech Dossier: HP ProLiant DL360p & DL380p Gen8 Severs: Power, Flexibility & Serviceability
- Top 10 Myths About Virtualizing Business-Critical Applications
- Total Economic Impact Of VMware vSphere: Virtualizing Mission-Critical Oracle Databases
Featured Broadcast
In his book, The New Know: Innovation Powered by Analytics, Thornton May suggests that the key to business success is discovering truth and value from overwhelming amounts of data. This excerpt summarizes 10 fundamental realities for organizations moving forward.
Learn More













