NIS2010 - FakeAV was able to make its own rules?!

I have NIS2010 17.6.0.32 on a Windows Vista PC with all of the most recent updates.  Virus free for quite a long time, yay!  Yesterday, while opening lots of googled webpages, I stumbled upon a webpage that evidently forced Google Chrome 5.0.375.17 dev to auto-download and auto-run a Trojan.FakeAV program that named itself "ave.exe".  I had seen the behaviors before .. windows ?defender? says that AV and Firewall are off, a fake 'unregistered' virusscan comes up and tells you that your computer is very infected with lots of different viruses.

 

I quickly removed the virus after a Norton QuickScan - !Without! ever being notified by NAV Autoprotect that I had been infected.  As I researched this further, I found that AVE.EXE was allowed to create some 20 'Program Control' rules allowing itself to communicate on ports 55xxx...

 

Question: How did NAV automatically allow AVE.exe to create its own 'network' program control rules?  Did this trojan 'look' like a valid program, and the auto-settings in NAV allowed it to create such rules?  Is the only way to prevent this from happening again to turn off the automatic program control settings and make everything manual?

 

Next question: How did Chrome auto-download and auto-run this thing? Grrr!  I guess I'll have to post this on the Chrome forums as well!

 

I thank you in advance for any insight that you folks can provide.