Sneaky New Virus Removes Your Antivirus Protection

Thursday, June 23, 2011 |

anvi antivirus

A screen shot of a false online virus ad used by a new retrovirus that tricks users into uninstalling their computer's antivirus software. Credit: Symantec

There’s a new breed of malicious malware program spreading across the Web that tricks users into uninstalling the legitimate antivirus software on their computers. Computer experts have long been aware of the existence of such malware programs known as retroviruses that can kill or disarm security products. When activated, they unleash a world of hurt on the user’s computer and finances.

Called "AnVi Antivirus," the latest retrovirus was discovered by the response team at the security software developer Symantec. The virus is introduced through a software Trojan, which can be picked up by visiting rogue Web sites that show up in search results, through peer-to-peer file transfer or opening an infected email attachment, said Kevin Haley, Symantec’s Director of Product Management for Symantec.


"It’s introduced a new twist," he told TechNewsDaily. "It uses the software’s own uninstall program. This is what makes this one different."

Disabling defenses

The first sign of infection is the display of a message box on the computer screen that asks you to uninstall your existing legitimate antivirus programs because the software is “uncertified and will degrade the computer’s performance."

The box asks you to click "OK" to begin uninstalling the program. It doesn’t make any difference whether you click on the box or not, or whether you try to stop the process by clicking the "close" button. The uninstaller of the antivirus product still executes.

To do this, the malware roots around in your Windows registry to find and launch the uninstaller for your software, Symantec said. The AnVi Antivirus is equal-opportunity malware; it goes after many well-known Security Products by Symantec, Microsoft, AVG, Spyware Doctor and Zone Labs.

The hurt continues after your legitimate antivirus program is uninstalled. "The really bad news is you absolutely have no other anti-virus software," Haley said. "You’re wide open to any other malware out there."

Calling home

The retrovirus will then try to connect your computer to malicious websites to download the AnVi Antivurus, which is the newest member of the malware fraternity that attempts to lure users into opening their wallets to pay for bogus software and Surrender Sensitive Credit Card information . Once it downloads to your computer, AnVi Antivirus announces its presence by launching its installer window and a companion window that offers pricing options for the fake antivirus software.

If you fall for this ruse, you’re left without antivirus protection, a slightly lighter wallet and credit card details at risk.

The antidote to this and other malware attacks, said Symantec, is have legitimate antivirus software and keep it up to date.


Source:- technewsdaily.com

How to Know Your Antivirus is Not Bad

Tuesday, June 7, 2011 |

There are currently many anti viruses on the market but that does not mean that they are all good. It is now becoming hard to determine which one will give you the best computer security. This is not good news for many people who believe in downloading free antivirus software from the internet since many of them are not good for computer security.

It is therefore good, to have in mind some of the most important features of what a good antivirus can offer and these may include the following;

Registry monitoring. The registry stores a record of all programs which are installed on your computer. Some malicious programs may copy themselves to the registry and then to your operating system which may lead you to lose everything on your computer. Therefore, an antivirus which monitors the registry will be a better one

Password protected setting. A good antivirus should ideally have settings which are password protected, there are some computer virus which copy their codes on anti viruses especially those with old definition updates. Password setting will help you against such threats.

Block web content. The best antivirus software should have an option to allow or block web content which you may not need. This will give you an opportunity to deny sites which may be dangerous from downloading on your computer. It will even give you an opportunity to set your security setting to the levels you may want.

Other features of a good antivirus include:
Real time scanning
Suspicious application detection
Cyber crime blocker and
Good firewall

Source: http://goo.gl/zfc7t