About the download, AVZ Antiviral Toolkit is a light program that needs less free space than many software in the category Security software. It's a very popular software in countries such as India, Latvia, and United States.

AVZ Antiviral Toolkit is meant to be a complete antimalware solution that integrates several modules intended to keep users safe of spyware, adware, dialers, Trojans, backdoors and many other threats coming from the daily use of an e-mail account, or from apparently friendly downloads. The analysis of registry files, memory modules and media devices is considered for a heuristic checking of the system, based on a huge data base of digital signatures.

Description is inaccurate. AVZ is more of diagnostics and manual cleanup tool, rather than usual antivirus scanner.It has own engine and it's Kaspersky engine that uses some of its parts, not the other way. Databases are different as well.Overall this is great tool but for advanced usage, it doesn't work like launch and forget.

AVZ Antiviral Toolkit è definibile come un antivirus manuale con avanzati e numerosi tool di sicurezza integrati. Da usare come complemento per il normale antivirus. Non richiede installazione. Consigliato solo a utenti molto esperti

AVZ Antiviral Toolkit è uno strumento avanzato di sicurezza. È in grado di effettuare scansioni del sistema in profondità alla ricerca di rootkit, keylogger, trojan e altri tipi di malware. La velocità di analisi è molto elevata. Ottimo da usare quando il tuo classico antivirus non riesce a rimuovere un malware annidato nel tuo Windows. Abilitando i moduli AVZGuard e AVZPM potrai attivare la protezione in tempo reale di AVZ Antiviral Toolkit.

Note that for many APT's (advanced persistent threats), it is trivial to build a one-off, custom, unique hostile application that can be downloaded by a victim. These may not be flagged by a scan due to encryption of the binary. In some cases, it is necessary to profile the network activity to detect an incursion. This is one of the ways that products such as FireEye and Trend Deep Security differ from a traditional client-based antivirus application.

To get re-infected, it would imply a dropper of some kind or rootkit-hidden program that is re-downloading software after a cloak; is the user running with elevated privileges? In which case the only way to get rid of the re-infection is to reformat the computer and completely start over, even blowing away the boot sector. If something is cloaked in the background and re-downloading software that is detected, this would wipe it completely.

Otherwise you would have to resort to checking the user's browsing habits. Do you have a proxy system that monitors web browsing activity? Can its logs tell you what sites your user is visiting around the time of the infection? (If the software is being downloaded via http your proxy may also be possibly configured to block the download site, depending on what it is...that can help prevent some re-infection vectors)


