logo

Kaspersky deletes itself, installs UltraAV antivirus without warning

ID: ddafc91f-d916-5f65-8fdd-5a6766412d39

STIX ID: report--ddafc91f-d916-5f65-8fdd-5a6766412d39

Feed Name: Bleeping Computer

Date Published: 2024-09-23

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Kaspersky remotely removed its antivirus from U.S. customers and auto-installed Pango Group’s UltraAV (and in some cases UltraVPN) via a software update after the company was added to the U.S. Entity List and faced a sales/update ban effective September 29, 2024. Many users reported surprise installations and reappearance after uninstall, prompting fears of malware-like behavior, while Kaspersky and Pango said customers were notified in-app and by email and that the phased transition aims to prevent protection gaps.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.