{"id":9211,"date":"2017-08-22T11:54:54","date_gmt":"2017-08-22T07:54:54","guid":{"rendered":"https:\/\/me-en.kaspersky.com\/blog\/?p=9211"},"modified":"2020-10-13T16:06:30","modified_gmt":"2020-10-13T12:06:30","slug":"not-a-virus","status":"publish","type":"post","link":"https:\/\/me-en.kaspersky.com\/blog\/not-a-virus\/9211\/","title":{"rendered":"Not-a-Virus: What is it?"},"content":{"rendered":"<p>Sometimes, <a href=\"https:\/\/me-en.kaspersky.com\/plus?icid=me-en_bb2022-kdplacehd_acq_ona_smm__onl_b2c_kdaily_lnk_sm-team___kplus___\" target=\"_blank\" rel=\"noopener\">Kaspersky Plus<\/a> pops up a window with a yellow frame and informs the user that \u201cnot-a-virus\u201d has been detected on the computer. Of course, any curious user would wonder why, if something is <em>not a virus<\/em>, an antivirus application would inform them about it.<\/p>\n<p>Actually, your antivirus has reason for concern. Although the object in question is indeed not a malicious program, it\u2019s something you should know about anyhow. Let us delve into the definition of \u201cnot-a-virus,\u201d what kind of applications trigger the warning, and what should you do about those applications.<\/p>\n<p>Generally speaking, Kaspersky Internet Security associates \u201cnot-a-virus\u201d with two types of applications: adware and riskware. Both types are not malicious by nature, so they cannot be called viruses. Still, users should know that they are installed; the applications may do something unwanted.<\/p>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"kis-trial-cyberattacks\">\n<h2>What is adware?<\/h2>\n<p><a href=\"https:\/\/securelist.com\/threats\/adware\/\" target=\"_blank\" rel=\"noopener\">Adware<\/a> is software with advertising material. This type of software can show you advertisements, alter search results, collect user data to show targeted contextual advertising, or all of the above.<img decoding=\"async\" class=\"aligncenter\" src=\"https:\/\/support.kaspersky.com\/images\/852-1-en13-83043.png\" alt=\"\"><\/p>\n<p>Adware technically is not malicious, but there is nothing good about it, either. All hell may break loose when <a href=\"https:\/\/www.kaspersky.com\/blog\/my-big-fat-adware-cleaning\/\" target=\"_blank\" rel=\"noopener nofollow\">a few dozen adware applications sneak onto a computer and start to compete with one another for resources<\/a>.<\/p>\n<p>That said, adware is legitimate software that is installed on computers with the formal consent of users \u2014 the catch is, users may not notice a preselected check box during the installation of another application, and thus agree to install adware. Other instances of such monkey business abound, but they are all alike in one way: If users read everything carefully, then they can decline the adware installation.<\/p>\n<p>If adware does not notify the user of its attempt to install itself on the computer, then Kaspersky Internet Security treats it as a malicious Trojan. In that case, the notification will have a red frame, not a yellow one, and the application will be blocked immediately. By the way, <a href=\"https:\/\/www.kaspersky.com\/blog\/antivirus-notifications\/\" target=\"_blank\" rel=\"noopener nofollow\">you can check out this article<\/a> in which we discuss what the frame colors of notification windows mean in our products.<\/p>\n<blockquote class=\"wp-embedded-content\" data-secret=\"f9qevcW5db\"><p><a href=\"https:\/\/www.kaspersky.com\/blog\/my-big-fat-adware-cleaning\/7262\/\" target=\"_blank\" rel=\"noopener nofollow\">My Big Fat Adware Cleaning<\/a><\/p><\/blockquote>\n<p><iframe loading=\"lazy\" class=\"wp-embedded-content\" sandbox=\"allow-scripts\" security=\"restricted\" style=\"position: absolute; clip: rect(1px, 1px, 1px, 1px);\" title=\"\u201cMy Big Fat Adware Cleaning\u201d \u2014 Daily - English - Global - blog.kaspersky.com\" src=\"https:\/\/www.kaspersky.com\/blog\/my-big-fat-adware-cleaning\/7262\/embed\/#?secret=BwaeZaCFTu#?secret=f9qevcW5db\" data-secret=\"f9qevcW5db\" width=\"500\" height=\"282\" frameborder=\"0\" marginwidth=\"0\" marginheight=\"0\" scrolling=\"no\"><\/iframe><\/p>\n<h3>What is riskware?<\/h3>\n<p><a href=\"https:\/\/securelist.com\/threats\/riskware\/\" target=\"_blank\" rel=\"noopener\">Riskware<\/a> is a slightly different matter. Applications of this type were initially created as useful tools, and they may be used on a computer for their stated purposes. But quite often, malefactors install riskware \u2014 certainly without the user\u2019s knowledge \u2014 to pursue their own goals. You can check out the full list of application types that we consider riskware <a href=\"https:\/\/securelist.com\/threats\/riskware\/\" target=\"_blank\" rel=\"noopener\">here<\/a>.<\/p>\n<p>For example, remote computer management software (remote admin) is considered riskware. If you installed one of these applications yourself \u2014 and you know what you are doing \u2014 then there\u2019s no harm in having it. However, this type of application is frequently included as part of a malware package; in that case, users need to know about it.<\/p>\n<p>Another example is download managers. Many of them do make it easy and convenient to download files, but some of them appear to operate on the brink of breaking the rules, for example, attempting to download extra files while showing a notification using a gray font on a gray background.<\/p>\n<p>Another popular type of riskware is browser toolbars, which may also be adware, depending on their supported features and persistence. And some browser extensions may be considered riskware.<\/p>\n<p>Also, miners fall into the riskware category. Miners are applications for <a href=\"https:\/\/www.kaspersky.com\/blog\/mining-easy-explanation\/\" target=\"_blank\" rel=\"noopener nofollow\">mining bitcoins<\/a>. Needless to say, if it was you who chose to install a miner on your computer, then everything should be all right. But if someone else did it without your consent, then the installed software is consuming your computer\u2019s resources for their gain.<\/p>\n<blockquote class=\"wp-embedded-content\" data-secret=\"JuoXpEnFFm\"><p><a href=\"https:\/\/www.kaspersky.com\/blog\/mining-easy-explanation\/17768\/\" target=\"_blank\" rel=\"noopener nofollow\">Explainer: Bitcoin mining<\/a><\/p><\/blockquote>\n<p><iframe loading=\"lazy\" class=\"wp-embedded-content\" sandbox=\"allow-scripts\" security=\"restricted\" style=\"position: absolute; clip: rect(1px, 1px, 1px, 1px);\" title=\"\u201cExplainer: Bitcoin mining\u201d \u2014 Daily - English - Global - blog.kaspersky.com\" src=\"https:\/\/www.kaspersky.com\/blog\/mining-easy-explanation\/17768\/embed\/#?secret=JNodGOOqru#?secret=JuoXpEnFFm\" data-secret=\"JuoXpEnFFm\" width=\"500\" height=\"282\" frameborder=\"0\" marginwidth=\"0\" marginheight=\"0\" scrolling=\"no\"><\/iframe><\/p>\n<p>By default, <a href=\"https:\/\/me-en.kaspersky.com\/plus?icid=me-en_bb2022-kdplacehd_acq_ona_smm__onl_b2c_kdaily_lnk_sm-team___kplus___\" target=\"_blank\" rel=\"noopener\">Kaspersky Plus<\/a> <em>does not show notifications<\/em> of riskware detection. Now, if you go into the \u201cThreats and Exclusions\u201d section of the settings and check the \u201cDetect other software\u2026\u201d option, then Kaspersky Internet Security will inform you about riskware as well.<\/p>\n<p>Still, it will only inform you. The antivirus does not block or delete riskware by default so as not to hinder the legitimate use of these applications. You will not, in fact, see the word \u201criskware\u201d anywhere in notifications. Only specific information will be shown, telling you if an application is for remote administration, if it is a downloader, or something else.<\/p>\n<p>As soon as riskware starts to download any malware components, it will be reclassified as a Trojan and blocked regardless of whether the \u201cDetect other software\u2026\u201d option is checked.<\/p>\n<h3>Adware or riskware has been detected. What is the next step?<\/h3>\n<p><a href=\"https:\/\/me-en.kaspersky.com\/plus?icid=me-en_bb2022-kdplacehd_acq_ona_smm__onl_b2c_kdaily_lnk_sm-team___kplus___\" target=\"_blank\" rel=\"noopener\">Kaspersky Plus<\/a> shows detection notifications for such applications so that you know that they are installed on your computer. It is possible that you installed them on purpose: As we said, riskware may be very useful. In that case, there is no reason to worry.<\/p>\n<p>It is also possible that another \u201cnot-a-virus\u201d has crawled into your computer without your noticing it. In that case, you need to know if the application is related to either riskware or adware. That is why users are given the chance to choose what to do with the application. If you did not install it, you should probably delete it.<br>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"kis-top3\"><\/p>\n","protected":false},"excerpt":{"rendered":"<p>What should you do if your antivirus detects something it calls \u201cnot-a-virus\u201d? What kind of applications are behind this message, and what is all the fuss about?<\/p>\n","protected":false},"author":675,"featured_media":9212,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[5,7,1486],"tags":[781,542,1427,1426,28,36,1425,1429,1430,1422,1424,499,1428,1423,521,727,145],"class_list":{"0":"post-9211","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-news","8":"category-products","9":"category-threats","10":"tag-ads","11":"tag-adware","12":"tag-filetour","13":"tag-flashget","14":"tag-kaspersky","15":"tag-malware-2","16":"tag-mediaget","17":"tag-miners","18":"tag-nettools","19":"tag-not-a-virus","20":"tag-pornware","21":"tag-products-2","22":"tag-radmin","23":"tag-riskware","24":"tag-threats","25":"tag-toolbars","26":"tag-virus"},"hreflang":[{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/not-a-virus\/9211\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/not-a-virus\/11143\/"},{"hreflang":"ar","url":"https:\/\/me.kaspersky.com\/blog\/not-a-virus\/4951\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/not-a-virus\/12467\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/not-a-virus\/11660\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/not-a-virus\/11178\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/not-a-virus\/14121\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/not-a-virus\/14129\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/not-a-virus\/18512\/"},{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/not-a-virus\/3724\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/not-a-virus\/18015\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/not-a-virus\/9398\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/not-a-virus\/10009\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/not-a-virus\/7291\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/not-a-virus\/14499\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/not-a-virus\/17680\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/not-a-virus\/17729\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/me-en.kaspersky.com\/blog\/tag\/products-2\/","name":"products"},"_links":{"self":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/9211","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/users\/675"}],"replies":[{"embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/comments?post=9211"}],"version-history":[{"count":5,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/9211\/revisions"}],"predecessor-version":[{"id":17471,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/9211\/revisions\/17471"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/media\/9212"}],"wp:attachment":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/media?parent=9211"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/categories?post=9211"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/tags?post=9211"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}