Solved smadav 2012 vs other anti-viuses

zeamann

Cyber Daily-dreamer
Power User
Local time
4:49 AM
Messages
135
Location
Kiritimati Island, Rep of Kiribati
can anyone please enlighten me as to how effective is smadav compared with other anti-viruses like free versions such as: MSE, AVIRA, AVAST, etc...

hoping to hear from anyone soon.

best regards and God Bless.
 

My Computer My Computer

At a glance

Windows 7 Ultimate x64 SP1Intel Core i3-3110M CPU @ 2.4GHz, 2 Core (s),...4.0GB RAMIntel HD Graphics 4000
Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba Satellite C875
OS
Windows 7 Ultimate x64 SP1
CPU
Intel Core i3-3110M CPU @ 2.4GHz, 2 Core (s), 4 Logical Proc
Memory
4.0GB RAM
Graphics Card(s)
Intel HD Graphics 4000
what is SMADAV 2012? Antivirus?:D
 

My Computer My Computer

At a glance

32 bit
OS
32 bit
smadav 2012 appears to be one of many fake antivirus programs...
...but it is one that I've not seen or heard of until your post.

If you have installed it, here is one way to try and get rid of it:
How to Uninstall SmadAV Antivirus | Anvisoft

The installer is seen as an infection by TrendMicro-HouseCall via virustotal.com:
https://www.virustotal.com/file/28d...2b8b414053578b0bb22e4a874ab740956c1/analysis/

I've submitted the installer to Microsoft, but I doubt anything will come of that:
https://www.microsoft.com/security/...onId=e6be323e-898a-48fe-87eb-bb4a6267b498&n=1


I installed smadav 2012 into a W7 pro virtual machine to see how it would do against 10 pieces of malware that I've collected from computers that I've cleaned.

Just starting smadav 2012 gets me this:

no-cert.JPG


And smadav 2012 did not detect any of the 10 pieces of malware as bad.

failed.JPG


smadav 2012:
Does not offer a way to uninstall itself via the normal programs and features option.
So I looked in the Start menu, hoping that there was an uninstall option there...
...there was no entry at all on the Start menu to start or uninstall smadav 2012.
So I looked in the Program Files area where it was installed - no uninstaller there either.

Unlike many fake AV tools that I've tested, smadav 2012...
...does not install a service
...can easily be killed via task manager
(e.g. no service or other app watching to restart it)
(thus, not very good antivirus protection if smadav 2012 was real)
...does actually read files during its fake scan
...has a home page
...has a forum (down for maintenance :-)
...has a facebook page
...has a twitter account
...accepts donations
(as opposed to demanding payment to cleanup fake infections)
...acts like a real antivirus tool in many ways
...has a convincing readme file (what I could read of it)


When I ask smadav 2012 to update itself, it tells me that it is already up to date and a few seconds later, it causes network traffic - connecting to its homepage. The same thing happens when I ask its "smart-updater" file to run, I'm told that I'm up to date prior to any network traffic.

So, smadav 2012 is either a horrible attempt at an antivirus program or it is a fake av tool seeking donations.

Explorer did crash while smadav 2012 was installed - but that could have been due to all of the tools that I had monitoring smadav's activity (or lack thereof).

I stopped smadav, installed MSE and scanned the same 10 sets of files mentioned above:

mse1.JPG


Here are the details on just one of the files:

psw.JPG

While MSE did remove all 10 pieces of malware, MSE did not prevent any of those 10 pieces from being installed in computers when they were new attacks. In other words, I get a call to clean a computer that was "protected" by MSE. I find the source of the infection and manually clean it up (keeping a copy of the files and submitting them to Microsoft). Eventually, MSE listed those files as bad and offered to clean them up as shown above.
 
Last edited:

My Computer My Computer

At a glance

W7 Pro SP1 64biti78GBIntel HD Graphics
Computer type
Laptop
Computer Manufacturer/Model Number
Employer provided Dell Latitude
OS
W7 Pro SP1 64bit
CPU
i7
Memory
8GB
Graphics Card(s)
Intel HD Graphics
Hard Drives
crappy SSD
Antivirus
Employer mandated Symantec Endpoint Protection
Browser
Pale Moon 64bit, IE11 64bit & Chrome 64bit
thank you so much UsernameIssues for your most elaborate and detailed explanation and fact regarding this fake av. now i know what to spread around to my brothers and sisters who are already boasting smadav 2012.

thank so much again and God Bless,
 

My Computer My Computer

At a glance

Windows 7 Ultimate x64 SP1Intel Core i3-3110M CPU @ 2.4GHz, 2 Core (s),...4.0GB RAMIntel HD Graphics 4000
Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba Satellite C875
OS
Windows 7 Ultimate x64 SP1
CPU
Intel Core i3-3110M CPU @ 2.4GHz, 2 Core (s), 4 Logical Proc
Memory
4.0GB RAM
Graphics Card(s)
Intel HD Graphics 4000
Back
Top