Microsoft sees big jump in Trojan downloaders

By Elinor Mills, CNET News.com
Wednesday, April 23, 2008 09:02 AM

Computer users are increasingly at risk of being lured to Web sites that surreptitiously download malicious software onto their machines, but stolen or lost laptops still represent most of the security breaches reported, according to a new Microsoft report.

Exploits, malicious software, and hacking accounted for 13 percent of all security breach notifications recorded in the second half of last year, while 57 percent of the breaches publicly disclosed involved lost or stolen equipment, the latest six-month Microsoft Security Intelligence Report says.

"Physical security involving personally identifiable information (breaches) far outweighs Internet and virus-related 'soft' scenarios," said Jimmy Kuo, principal architect of the Microsoft Malware Protection Center.

Of the malicious software attacks, there was a 300 percent increase in the number and proportion of Trojan downloaders and droppers that were detected and removed, according to the report.

Win32/Nuwar, also called the Storm Worm, is an example of a Trojan dropper. It arrives in an e-mail, enticing recipients to visit a Web site, and then installs a Trojan on the computer that provides back-door access. The worm has been continually updated to avoid detection and now more than half a million systems have been infected worldwide creating a botnet, the report says.

In another popular Internet attack, people are duped into buying fraudulent or nonexistent security products from rogue companies that instead take the money and sell the credit card information to others. The attackers get the consumer's attention with ads that claim that the computer is vulnerable to hackers and offer to clean it up.

Hackers are also sneaking malware into banner ads that get distributed via online ad networks and end up on high-profile Web sites, Kuo says. Adware increased by more than 66 percent during the second half of last year.

Some other statistics from the report:

  • Microsoft's Malicious Software Removal Tool removed malware from one out of every 123 computers each month during the second half of 2007.
  • The number of new vulnerability disclosures during the final six months of last year declined by 15 percent, representing the fewest disclosures in two years, while total vulnerability disclosures dropped by 5 percent overall in 2007.
  • More than 75 percent of the active phishing pages, which lure e-mail recipients to a malicious site and ask for personal information, used English-language pages, followed by Italian, Spanish, German, French and Turkish. Phishing attempts are being seen increasingly on social networks, as well.

Computer users are advised to apply software updates regularly, enable a firewall on their system and install and maintain antivirus and antispyware programs.

This article was originally a blog post on CNET News.com.


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

Never use dynamic variable names

Internet Security

How to dynamically name variables is a common subject of programming questions. That's a great way to create security problems, though.


Read more »



 
Virtualize your way to cost savings
Build an infrastructure that is flexible, scalable, and economical, as you strive to become a truly agile business.

Red Hat Outlines Its Virtualization Strategy and Roadmap for 2009
» Watch the video




Are telcos new drivers of outsourcing industry?

Blog thumbnail

The recent TPI Index from TPI highlighted an interesting trend where a few very large Telco-to-Telco contracts--instances where one telecommunications carrier outsources its network operations requirements to another telecommunications service..... by Michael Rehkopf

Read more »

Tags

  1. attack
  2. authentication and encryption
  3. blog
  4. data security
  5. e - mail
  6. hacking
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. symantec corp.
  19. viruses and worms
  20. web