
Today I had to clean another one of those fake anti-virus programs off of a machine at work. This one was called Personal Antivirus and bore a striking resemblance to AVG Free (which I use myself and usually recommend to others).
Here’s the AVG console:
And here’s Personal Antivirus:
Look familiar? In this particular case, neither our corporate Symantec anti-virus nor Malwarebytes (both with current definitions) detected the fake program. I eventually had to clean it off manually myself.
These things are really sneaky. How can we educate the average user to tell these two apart? I mean, other than the fact that they had to click on something in a web browser to get the fake one installed in the first place, once “installed” they look and act like the real thing (well, except for all the fake alerts they throw up). Arrrrgh!