TrendMicro Fake Antivirus (FakeAV) Removal Tool Beta

Discussion in 'other anti-virus software' started by sg09, Apr 15, 2011.

Thread Status:
Not open for further replies.
  1. sg09

    sg09 Registered Member

    Joined:
    Jul 11, 2009
    Posts:
    2,811
    Location:
    Kolkata, India
    Supported OS

    Go here
    http://esupport.trendmicro.com/0/Fake-Antivirus-FakeAV-Removal-Tool.aspx

    Via raymond.cc forum
     
  2. icr

    icr Registered Member

    Joined:
    Sep 6, 2008
    Posts:
    1,589
    Location:
    UK
    Nice software but still needs to work on FPs I installed it on system infected with rogues and it detected them all but in addition with this it also found some FPs
     

    Attached Files:

    • AV.png
      AV.png
      File size:
      104.6 KB
      Views:
      11
  3. J_L

    J_L Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    8,738
    Another new free security tool, thanks for informing.
     
  4. sg09

    sg09 Registered Member

    Joined:
    Jul 11, 2009
    Posts:
    2,811
    Location:
    Kolkata, India
    Last Updated: 5/16/2011 8:57 PM
     
  5. treehouse786

    treehouse786 Registered Member

    Joined:
    Jun 6, 2010
    Posts:
    1,411
    Location:
    Lancashire
    tried it yesterday, crashed my pc, first program to crash my pc in a very long time. will wait for it to mature before adding it to my anti-malware toolkit.
     
  6. andyman35

    andyman35 Registered Member

    Joined:
    Nov 2, 2007
    Posts:
    2,336
    Did it fully remove all the threats it found or did it leave anything behind?
     
  7. icr

    icr Registered Member

    Joined:
    Sep 6, 2008
    Posts:
    1,589
    Location:
    UK
    It did remove all the detected rogues but FP was a concern for me:)
     
  8. andyman35

    andyman35 Registered Member

    Joined:
    Nov 2, 2007
    Posts:
    2,336
    Flagging up components of such a well-known application as Virtualbox is a bit worrying,certainly enough not to recommend this tool to inexperienced users.However it's very promising that it completely blitzed your test rogues.
     
  9. El_Man

    El_Man Registered Member

    Joined:
    Sep 2, 2007
    Posts:
    13
    I got one of these Fake Antivirus things on my PC last night. I removed it, but should I be worried that it slipped completely past NOD32? (4.2, and up to date) o_O

    I did get a warning of a malicious website, but the Fake AV got itself installed nonetheless...
     
  10. J_L

    J_L Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    8,738
    Did you remove it with this tool?
     
  11. gery

    gery Registered Member

    Joined:
    Mar 8, 2008
    Posts:
    2,175
    i downloaded and scanned my pc and nothing found .
     
  12. Kernelwars

    Kernelwars Registered Member

    Joined:
    Aug 12, 2010
    Posts:
    2,155
    Location:
    TX
    good u have no infection my friend.. you are good:)
     
  13. gery

    gery Registered Member

    Joined:
    Mar 8, 2008
    Posts:
    2,175
    yep ZA Antivirus does it all.
     
  14. El_Man

    El_Man Registered Member

    Joined:
    Sep 2, 2007
    Posts:
    13
    No, Safe Mode and manual wiping of the executable in the All Users directory. NOD32 removed the infected files in the Java cache, and scans with Malwarebytes and Spybot say all clear now.
     
  15. carat

    carat Guest

    "Great" tool :rolleyes:
     

    Attached Files:

    • tm.png
      tm.png
      File size:
      101.5 KB
      Views:
      643
  16. gery

    gery Registered Member

    Joined:
    Mar 8, 2008
    Posts:
    2,175
    lol:D :D
     
  17. carat

    carat Guest

    I didn't know that AVG is a fake AV :D
     
  18. Victek

    Victek Registered Member

    Joined:
    Nov 30, 2007
    Posts:
    6,220
    Location:
    USA
    It has seemed that way to me sometimes LOL.

    Regarding the RM Fake AV removal tool I just ran it on my laptop. It took 50 minutes to scan about 70 processes, which is pretty slow if you're working in the field. It also flagged a legit program I use called Zentimo (a variant of USB Safely Remove).

    One thing I like about TM Fake AV Tool is the internal updater. The program doesn't appear to have local signatures so the updater must be for the client (?) Is the tool doing cloud verification ala Hitman Pro?

    Since it doesn't require an install it should run OK from a USB key after booting a rescue disk, such as UBCD4WIN - that would be useful. They just need to speed it up and make it more accurate.
     
  19. carat

    carat Guest

    It seems to be the latest FP master tool :thumb: :D Well done TrendMicro ... :doubt:
     
  20. Zyrtec

    Zyrtec Registered Member

    Joined:
    Mar 4, 2008
    Posts:
    534
    Location:
    USA
    Hello,

    Even when Trend Micro is not my favorite AV, I think we should not be so hasty in judging this Fake AV removal tool since it's on early stages [probably a beta version] and they still need to fine tune it.

    Anyone remembers Norton Power Eraser when it first came out as a beta?
    It had a huge problem with FPs but now they have fine tuned it and it has even been integrated to NIS 2012.

    Bottom line, give it some time until it reaches a RC stage.


    Regards,


    Carlos
     
  21. dazed1

    dazed1 Registered Member

    Joined:
    Mar 2, 2011
    Posts:
    161
    Integrated in the package as an aditional tool/pogram, or in the NIS engine ?
     
  22. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
    Quote from programm site
    "Solution:
    To help clean the FakeAV infection, download the FakeAV Removal Tool. This tool is still in the beta stage."
     
  23. carat

    carat Guest

    Well done again :rolleyes: Stay away ...
     

    Attached Files:

    • tm.png
      tm.png
      File size:
      111.4 KB
      Views:
      384
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.