CashOn spyware tops threat list

By Victoria Ho, ZDNet Asia
Tuesday, October 02, 2007 04:46 PM

CashOn, an adware toolbar plug-in, has topped security company Fortinet's global list of high-risk threats for the month of September.

According to a report released today, the amount of adware "almost doubled in volume since August", moving up from fourth to first place in September.

CashOn showed up in 13.9 percent of all threats detected by Fortinet. Its activity rate was also twice its volume growth, the report found. CashOn first made Fortinet's top 10 list in August.

CashOn is installed without the user's permission once downloaded, and it finds its way onto users' systems through downloaded files or exploits on Web sites. Once it is downloaded, CashOn changes the user's browser settings such that each time the browser is loaded, the user is directed to the CashOn Web site.

Fortinet said 99.8 percent of the spyware's activity is based in Korea. CashOn resides on a Korean top-level Web site domain and acts as a gateway to various other Korean-based shopping sites, said Fortinet.

According to the security vendor, other players besides CashOn may be behind the spyware distribution campaign.

Derek Manky, Fortinet security research engineer, said in a statement: "In order to make profits from [an e-commerce site], there is a need for exposure, which requires an effective seeding strategy."

Manky warned computer users to guard against such cyber threats. "Users need to continue to educate themselves on [spyware threats] to ensure that they have the necessary protection to guard against future outbreaks," he said.


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

Use shades of gray to enhance scale in Excel

Microsoft Office Suite

Excel's palette is generous, but don't throw buckets of pigment all over your spreadsheets just because you can.


Read more »



Ultimate 2012 recovery site: the moon

Blog thumbnail

Have you seen the disaster movie "2012"? A friend from Control Risks and I did, and we reluctantly concluded we wouldn't be able to write off the cost of our..... by Nathaniel Forbes

Read more »

Tags

  1. attack
  2. authentication and encryption
  3. blog
  4. data security
  5. e - mail
  6. hacking
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. symantec corp.
  19. viruses and worms
  20. web