Intego: Fake AV Targets Macs
Fake antivirus applications (fake AV for short; or rogues, or scareware), and I’m saying this to make sure that everyone is on board, are applications that claim to be genuine antivirus products in order to scam you out of your hard earned money. Their aim is to scare you into thinking your computer is infected, then ask you to purchase a license to activate the fake AV and remove the infection.
Earlier this week fake AV made the news because security researchers from CA Technologies, IT management software and solutions company with expertise across all IT environments, uncovered a fake AV for mobile that exploited the good name of Kaspersky Lab.
Fake AV once again makes the news because Intego, company that specializes in providing security solutions for Macs, uncovered a fake AV named MAC Defender that targets Macs via SEO poisoning attacks. This means that poisoned results show up when the user performs a search on Google or other search engine; when the user clicks on the poisoned search result, he is directed to a website that displays a fake malware scanner. After the phony scan completes, the user is informed that his machine is infected; JavaScript on the webpage automatically starts the download of a ZIP archive after that.
Once the download completes, if the 'open files after downloading' option is enabled, the archive is decompressed and the user is presented with the setup wizard of MAC Defender. Once the installation process completes, the fake AV will occasionally present the user with a notification that a virus or other security threat has been detected; it will also open adult sites every few minutes, most likely to trick the user into thinking that his machine is genuinely infected.
“This application is very well designed, and looks professional. There are a number of different screens, and the grammar and spelling are correct, the buttons are attractive, and the overall look and feel of the program give it a professional look,” said Intego.
Intego added that a variation of this fake AV called Mac Security has been spotted online. The company’s VirusBarrier X5 and VirusBarrier X6, as well as VirusBarrier Express and VirusBarrier Plus detect the fake AV and its variants.
A video that presents how the fake AV works is available on YouTube here.
Tags: Intego, Security, Fake AV
Earlier this week fake AV made the news because security researchers from CA Technologies, IT management software and solutions company with expertise across all IT environments, uncovered a fake AV for mobile that exploited the good name of Kaspersky Lab.
Advertising
Fake AV once again makes the news because Intego, company that specializes in providing security solutions for Macs, uncovered a fake AV named MAC Defender that targets Macs via SEO poisoning attacks. This means that poisoned results show up when the user performs a search on Google or other search engine; when the user clicks on the poisoned search result, he is directed to a website that displays a fake malware scanner. After the phony scan completes, the user is informed that his machine is infected; JavaScript on the webpage automatically starts the download of a ZIP archive after that.
Once the download completes, if the 'open files after downloading' option is enabled, the archive is decompressed and the user is presented with the setup wizard of MAC Defender. Once the installation process completes, the fake AV will occasionally present the user with a notification that a virus or other security threat has been detected; it will also open adult sites every few minutes, most likely to trick the user into thinking that his machine is genuinely infected.
“This application is very well designed, and looks professional. There are a number of different screens, and the grammar and spelling are correct, the buttons are attractive, and the overall look and feel of the program give it a professional look,” said Intego.
Intego added that a variation of this fake AV called Mac Security has been spotted online. The company’s VirusBarrier X5 and VirusBarrier X6, as well as VirusBarrier Express and VirusBarrier Plus detect the fake AV and its variants.
A video that presents how the fake AV works is available on YouTube here.
Tags: Intego, Security, Fake AV
I Hope you LIKE this blog post! Thank you!
What do YOU have to say about this
blog comments powered by Disqus
Popular News
By George Norman on 28 May 2012
Mozilla introduced a new program meant to educate millions of people, the Mozilla Webmaker program.By George Norman on 26 May 2012
Piriform updated its products, making CCleaner less annoying and Defraggler a lot faster.Related News
By George Norman on 03 Apr 2012
Intego, company that provides security solutions for Mac, unveiled its new logo and new website By George Norman on 05 Jan 2012
This is proof that there are a lot of threats on the web and the perfect example of why you should use a properly good security solution to secure your data against viruses and other malwareBy George Norman on 20 Dec 2011
If you’re going to get a Mac this Christmas, it pays to keep it safe and secure. There are plenty of nasties out there and you don’t want them to infect your system, now do you? The same goes if you By George Norman on 30 Jan 2012
Here is another chance to get Intego products for your Mac OS X-powered machines for a significant discount. Intego is having a sale that is even better thanAdvertising
Hot Software Updates
Top Downloads
2.
Opera5.
Trillian8.
AIM9.
Skype10.
Ad-Aware12.
Nero13.
Google Earth14.
Picasa15.
Winamp16.
iTunes17.
RealPlayer18.
uTorrent19.
eMule20.
WinRAR21.
BitComet22.
WinZip23.
Shareaza24.
CCleaner25.
Recuva26.
Tweak UI27.
CuteFTP Home29.
Adobe Reader30.
NewsPiperBecome A Fan!
Link To Us!
Intego: Fake AV Targets Macs
HTML Linking Code
HTML Linking Code





