Kaspersky's anti-virus software had a hiccup yesterday after it mistakenly started detecting Google's Adsense scripts as malicious code.
Anti-virus vendor Kaspersky has been left with egg on its face after it issued an update to its users falsely identifying Google's Adsense scripts as malicious.
As reported over on
The Register, the false positive left many users receiving unwarranted warnings while browsing perfectly innocuous sites - and with the number of sites relying on Google's Adsense network for their income, it was a pretty major upset.
Worse still, the Adsense false positive comes just hours after the company made a similar mistake with the bit.ly shortening service, adding it to a blacklist of known-bad domains due to its common usage in phishing e-mails - sadly ignoring its common usage elsewhere.
The issue of false positives is one that plagues anti-virus software: if you're too slow to add detection for a piece of malicious code, you leave your users at risk; add the detection in without thorough testing and there could be unintended consequences, as Kaspersky has found to its cost.
It's not a problem unique to Kaspersky, of course: back in 2008 Grisoft's popular AVG anti-virus - available in both free and paid-for editions - added code which detected a rather important Windows system file as malware, deleting the file and leaving many systems
completely unbootable. The same software was responsible for another false positive in 2009, which resulted in iTunes being listed as a
Trojan horse application. In the same year, Computer Associates found its Threat Manager software
detecting Windows XP SP3 as a virus, along with the Cygwin Linux-style compatibility layer.
Unfortunately, it's a problem which is unlikely to go away - at least until we no longer need anti-virus applications.
Any Kaspersky users bit by this bug, or was the update not available for long enough to cause widespread problems? Share your thoughts over in
the forums.
20 Comments
Discuss in the forums ReplyWhile I agree with the sentiment, it's not always a practical solution.
Bit of a fail on Kaspersky's part there...
example: i love people who get popups saying "your computer is infected, click here to install this protection software" - and they actually do it, installing the virus voluntarily xD I'm admired these schemes aren't being used in other OS', like mac os. if people voluntarily install the viruses, giving them admin rights, it doesn't really matter what kind of OS you are using...
+Rep for Kaspersky!
I'd tell you what my secret is, but I don't know myself! lol.
I actually just uninstalled AVG. I started playing Mass effect and my system was utterly crawling - it was like a slideshow. I can run this game flawlessly. I quit back to the desktop and found that an AVG-related executable was consuming a combined 50% of CPU resources - even though I have disabled automatic scans and the updates are scheduled for early morning (I switch the PC on before I go to work - check mail, f'book, these forums...etc...)
As soon as I quit the tray app, it dropped back to the normal 5-10%.
free
http://www.microsoft.com/Security_Essentials/
Nice! Thank you for that, I can install that on my XP box :)