Re: Antivirus 2008/2009



Here's an analysis of one way a computer gets infected.

http://www.theregister.co.uk/2008/08/22/anatomy_of_a_hack/

--
Kerry Brown
MS-MVP - Windows Desktop Experience: Systems Administration
http://www.vistahelp.ca/phpBB2/
http://vistahelpca.blogspot.com/




"Gregg Hill" <greggmhill at please do not spam me at yahoo dot com> wrote in message news:%23ihQfMiBJHA.2056@xxxxxxxxxxxxxxxxxxxxxxx
Hello!

I just ran into my third new client with "Antivirus 2008" or "Antivirus 2009" rogue malware infection on an XP computer. The first to get hit had Symantec Antivirus Corporate Edition 9.x on it, the second had McAfee that came with the computer, the third has Dell's Trend Micro PC-Cillin 2008. All three had the latest antivirus definitions. I can see the SAVCE system and McAfee getting hit, as neither blocks malware/spyware, but Trend PC-Cillin Internet Security 2008 is supposed to block it.

What is its attack vector?

Does anyone know of consumer AV software that actually prevents this thing from installing?

Thank you!

Gregg Hill


.



Relevant Pages

  • Re: anti-virus
    ... MS Antivirus is known to infect users using the Microsoft Windows ... the malware runs a scan on the computer and gives a false ... The infection affects the Windows registry. ...
    (microsoft.public.windowsxp.basics)
  • Re: TASK MANAGER EXITING
    ... This is symptomatic of virus infection. ... cause this problem usually break antivirus software. ... Do not install drivers from Windows Update. ...
    (microsoft.public.windowsxp.general)
  • Re: Sickening.............
    ... >> If you have not used a firewall and some form of antivirus from the ... > is absolutely neccessary after viral infection. ... that connection. ...
    (microsoft.public.windowsxp.general)
  • Re: Problem regarding Internet Explorer
    ... i've being getting rid of it now for a couple of days. ... infection. ... Norton antivirus, Spyware doctor, and SUPERantispyware. ... Start a new thread and entitle it PING FRANK. ...
    (microsoft.public.windows.vista.general)
  • Re: Antivirus 2008
    ... payroll) and some proprietary programs that are not on the server. ... 100% certain the infection is gone is to flatten and rebuild the system ... newsgroup I assume the computer in question is part of a network. ... Systems Administration ...
    (microsoft.public.windows.server.general)