Crafty Chinese malware writers.
Microsoft has discovered a Trojan that aims to sever the connection between a device and the cloud antivirus (AV) service that is meant to protect it.
The Bohu Trojan, which targets Windows machines, contains three main functions: evade detection, install a filter that blocks traffic between the device and service provider, and prevent the local installation from uploading data to the server.
The attack appears to aim to knock out the additional layer of security that many antivirus companies have added to bolster defences and reduce the processing burden of ever-expanding signature databases.
Source [Trojan built to disable cloud antivirus - Security - Cloud - iTnews
Edit by EricJH: removed the all bold; we hear you…