Critical.
Authoritative.
Strategic.
Subscribe to CIO Magazine »

Microsoft update removes rogue antivirus program

Internet Antivirus Pro has been a growing problem since April

Microsoft has taken aim at a rogue antivirus program called Internet Antivirus Pro.

The company's latest update to its Windows Malicious Software Removal Tool, (MSRT) released Tuesday, adds detection for this dubious program, which masquerades as security software.

Like all of these rogue antivirus products, Internet Antivirus Pro tries to trick victims into installing the software.

It pops up a fake warning message and then pretends to scan the victim's computer. But instead of scanning for malicious software, Internet Antivirus downloads password-stealing software that looks for FTP user names and passwords, presumably so that its creators can install their software on Web servers.

Internet Antivirus installs a browser component that displays fake messages, and it also pops up a fake Windows Security Center, Microsoft said in a blog posting Tuesday.

The software has also used the names General Antivirus and Personal Antivirus.

Rogue antivirus software has been on the rise over the past year and was among the most-detected unwanted software on Windows PCs during the second half of last year, Microsoft said in its recent Security Intelligence Report.

Two rogue Trojans, Renos and Zlob, were found on more than 8 million infected machines, Microsoft said. They use similar techniques to get installed on victims PCs.

Internet Antivirus has been around since the middle of 2008, but it became much more of a problem, starting in mid-April, according to Ben Greenbaum, a senior research manager with Symantec.

"It looks like there was a big push," he said. "Either they've started selling it to other groups, or the original authors are making a much larger attempt to get this on people's machines."

This isn't the first time Microsoft has gone after a rogue antivirus program. Last month it issued detection for a program called Winwebsec.

In November, it added FakeSecSen.

Microsoft updated the MSRT as part of its monthly set of security updates.

This month's set of patches was a whopper, with critical updates for Windows, Internet Explorer and Office. In all, the updates fix 31 vulnerabilities.

Join the CIO Australia group on LinkedIn. The group is open to CIOs, IT Directors, COOs, CTOs and senior IT managers.

More about: Microsoft, Symantec
References show all

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
Users posting comments agree to the CIO comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Related Coverage
Related Whitepapers
Latest Stories
Community Comments
Tags: antivirus, malware, Microsoft, windows update
Latest Blog Posts
Whitepapers
  • Award-winning unified information security from Clearswift.
    Fully integrated web and email gateway security solution, providing - protection from inbound threats, policy based encryption, and data loss prevention.
    Learn more »
  • Maximise Software Cost Savings by License Reharvesting, Recycling & Applying Product Use Rights
    Software asset management (SAM) is a complex process that enables organisations to gain control of their software estate from both a license compliance and financial standpoint. In many organisations, SAM represents one of the few remaining ways that substantial IT savings can be realised. McKinsey and Sand-Hill Group estimate that 30% or more of IT budgets are consumed by software license and maintenance costs. By optimising the SAM process, organisations can maximise software utilisation, reduce the risk of non-compliance (audits, fees, penalties), and reduce overall IT costs by as much as 5 to 10% per year. Read on.
    Learn more »
  • Leveraging the Service Catalog to Scale Your MSP Business
    When assessing an MSP’s maturity and prospects, one question provides more insights than any other: “What’s in your service catalog?” A well-defined service catalog can set the framework for growth. The lack of a service catalog can significantly impede an MSP’s ability to scale. This paper explores why the service catalog is so vital, and provides some practical guidelines MSPs can apply in order to ensure their service catalog provides maximum utility and benefit.
    Learn more »
All whitepapers
rhs_login_lockGet exclusive access to Invitation only events CIO, reports & analysis.
Recent comments