<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://community.ca.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Search results matching tags 'Security', 'CA Anti-Virus', 'malicious', 'rogue software', 'rossano', 'CA Anti-Spam', 'Windows Vista', 'phishing', 'Win32/GreenAV.A', 'internet explorer', 'rogue security', 'social engineering', and 'Windows Antivirus Pro{dot}exe'</title><link>http://community.ca.com/search/SearchResults.aspx?o=DateDescending&amp;tag=Security,CA+Anti-Virus,malicious,rogue+software,rossano,CA+Anti-Spam,Windows+Vista,phishing,Win32%2FGreenAV.A,internet+explorer,rogue+security,social+engineering,Windows+Antivirus+Pro%7Bdot%7Dexe&amp;orTags=0</link><description>Search results matching tags 'Security', 'CA Anti-Virus', 'malicious', 'rogue software', 'rossano', 'CA Anti-Spam', 'Windows Vista', 'phishing', 'Win32/GreenAV.A', 'internet explorer', 'rogue security', 'social engineering', and 'Windows Antivirus Pro{dot}exe'</description><dc:language>en-US</dc:language><generator>CommunityServer 2007 SP1 (Build: 20510.895)</generator><item><title>GreenAV: rogue security software and social engineering walk together</title><link>http://community.ca.com/blogs/securityadvisor/archive/2009/09/03/greenav-rogue-security-software-and-social-engineering-walk-together.aspx</link><pubDate>Thu, 03 Sep 2009 10:29:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:2919</guid><dc:creator>Rossano Ferraris</dc:creator><description>&lt;p&gt;Recently, an application called Green AV has infected some users’ computers. &lt;br /&gt;&lt;br /&gt;Why Green?&amp;nbsp; Malware authors use social engineering techniques to commit cyber crime by appealing to environmental causes by using a name such as Green AV.&lt;br /&gt;&lt;br /&gt;Green AV is a rogue security software product that tells users that they donate a part of every Green AV software product sold to environmental causes (see Figure 1).&lt;br /&gt;&lt;br /&gt;&lt;a href="http://community.ca.com/blogs/securityadvisor/greenav_website.gif"&gt;&lt;img src="http://community.ca.com/blogs/securityadvisor/greenav_website.gif" border="0" alt="" /&gt;&lt;/a&gt;&lt;br /&gt;Figure 1 – Fake Story by GreenAV&lt;br /&gt;&lt;br /&gt;Once rogueware infects a machine, it causes a stream of pop-ups on the desktop, causing slower performance of the entire computer system (Figure 2).&lt;br /&gt;&lt;br /&gt;&lt;a href="http://community.ca.com/blogs/securityadvisor/fig1.gif"&gt;&lt;img src="http://community.ca.com/blogs/securityadvisor/fig1.gif" border="0" alt="" /&gt;&lt;/a&gt;&lt;br /&gt;Figure 2 – Pop-ups&lt;br /&gt;&lt;br /&gt;Then a fake scan starts on the desktop without the user’s permission (Figure 3):&lt;br /&gt;&lt;br /&gt;&lt;a href="http://community.ca.com/blogs/securityadvisor/fig2.gif"&gt;&lt;img src="http://community.ca.com/blogs/securityadvisor/fig2.gif" border="0" alt="" /&gt;&lt;/a&gt;&lt;br /&gt;Figure 3 – Fake scan&lt;br /&gt;&lt;br /&gt;With fake results (Figure 4):&lt;br /&gt;&lt;br /&gt;&lt;a href="http://community.ca.com/blogs/securityadvisor/fig3.gif"&gt;&lt;img src="http://community.ca.com/blogs/securityadvisor/fig3.gif" border="0" alt="" /&gt;&lt;/a&gt;&lt;br /&gt;Figure 4 – Fake warning results&lt;br /&gt;&lt;br /&gt;We can see the effects of the infection from the screen shots, and these effects are similar to those caused by most rogue security software.&amp;nbsp; The authors used social engineering techniques to lure people to purchase the software by appealing to people&amp;#39;s desire to help the environment.&lt;br /&gt;&lt;br /&gt;CA Security products block and remove this infection which is detected as GreenAV.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Recommendations&lt;/strong&gt;:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;
&lt;div&gt;Keep your security software updated to latest signatures&lt;/div&gt;&lt;/li&gt;
&lt;li&gt;
&lt;div&gt;Never purchase this type of security software since you could be giving your credit card&amp;nbsp;information to fraudsters and making yourself a target of identity theft&lt;/div&gt;&lt;/li&gt;&lt;/ul&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;</description></item></channel></rss>