MASIGNCLEAN104

Trojan & Botnet Activities Increased Inwards February-March !

iklan banner
Trojans were the most prolific malware threat inwards February-March, as well as collaboration seems to hold upward the refer of the game inwards malware evolution as well as distribution.


Trojan-based attacks croak along to hold upward the biggest malware threat inwards February, only PDF exploits aren’t far behind, according to several safety reports.

About 1 inwards 290 e-mails inwards Feb were malicious, making the calendar month i of the most prolific periods for the threats, according to Symantec’s Feb 2011 MessageLabs Intelligence Report. The global ratio of spam inwards email traffic was 81.3 percent, an increment of 2.7 per centum since January, the study found. The recent reject inwards spam appears to bring reversed for the fourth dimension being, according to the report.

There was a lot of botnet activeness inwards February, as well as the perpetrators appeared to hold upward working together to to a greater extent than or less extent to distribute Trojans, according to Symantec. There were signs of integration across Zeus, Bredolab as well as SpyEye, every bit techniques associated amongst i malware theater unit of measurement were beingness used past times others, Symantec said inwards the report.

The attacks were well-timed as well as used carefully targeted techniques, suggesting a “common origin” for these infected messages. One day, the messages would hold upward propagating mainly Zeus variants, followed past times a hateful solar daytime dedicated to distributing SpyEye variants as well as after amongst Bredolab, inwards an alternating pattern, according to Paul Wood, MessageLabs Intelligence senior analyst. By the middle of the month, the variants propagated simultaneously amongst an advanced bundle that evaded traditional antivirus detection, he said.

All the attacks used a .ZIP archive attachment containing malicious code. About 1.5 per centum of blocked malware had malicious .ZIP attachments, as well as 79.2 per centum of those files were connected to the Bredolab, Zeus as well as SpyEye attacks, researchers said.

Contrary to recent belief, Bredolab is non dead, every bit MessageLabs identified at to the lowest degree twoscore variants of malware associated amongst Bredolab inwards February, accounting for at to the lowest degree 10 per centum of e-mail-borne malware blocked past times MessageLabs Intelligence that month.

SpyEye every bit good appeared on FortiNet’s Threat Landscape study for the starting fourth dimension time, signaling novel activeness as well as techniques.

“We’re probable to run across similar ongoing activeness past times the SpyEye group, such every bit routine obfuscation of their information as well as command as well as command transmissions,” said Derek Manky, senior safety strategist at Fortinet. “SpyEye developers are every bit good working to brand their production to a greater extent than efficient inwards price of management as well as automation, which is evidenced past times the bot’s novel Automatic Transfer System.”

Both GFI Software as well as Symantec researchers said Trojans were the primary threat inwards Feb only that PDF exploits are on the rise. Trojans accounted for vi of the overstep 10 malware threats of February, according to GFI Software’s monthly report.

Malicious PDF files at i time work concern human relationship for a larger proportion of document types used inwards attacks, according to Symantec. Based on electrical flow trends, Symantec predicted 76 per centum of targeted malware could hold upward used for PDF-based attacks past times mid-2011.

“PDF-based targeted attacks are hither to remain as well as are predicted to worsen every bit malware authors croak along to acquaint inwards the delivery, structure as well as obfuscation of the techniques necessary for this type of malware,” Wood said.

Red People's Republic of China was the most spammed province inwards February, followed past times the United States, Canada as well as the United Kingdom. Spam levels were 81.4 per centum for the United States, compared amongst China's 86.2 percent. The most spammed manufacture sector continued to hold upward the automotive sector, amongst 84.3 per centum of e-mail, followed past times instruction as well as pharmaceuticals.

However, governmental organizations were the most targeted for malware, amongst 1 inwards 41.1 e-mails beingness blocked every bit malicious, according to Symantec.

While virus activeness increased slightly, the book of e-mails amongst links to malicious Websites declined from January, Symantec said. Of the malicious domains blocked inwards Feb past times MessageLabs Intelligence, 38.9 per centum were new, a reject of virtually 2 per centum since January, Symantec said. An average of 4,098 novel Websites harboring malware was identified per day, a decrease of almost xiv per centum since January, according to the report.

Despite to a greater extent than malware flooding networks, actual infection rates may hold upward dropping, Panda Security researchers said. The safety theater based its results on information gathered past times Panda ActiveScan, a costless online scanner available on the company’s Website. Of the computers scanned inwards February, solely 39 per centum were infected amongst malware, compared amongst fifty per centum inwards January, Panda Security said. Of the infected computers, Trojans were the most mutual malware found; they are responsible for 61 per centum of infections.
Share This :