iTech
Follow us onFollow us on Twitter
Pelco
ISC Solutions
Source 44
iTech
Reboot Communications

Autorun-Based Malware Leads E-Threat Report

Trojan.AutorunInf.Gen heads up May 2010 threats

With a percentage of 13.24 of the global malware, May’s top e-threat was s Trojan.AutorunInf.Gen - a generic mechanism to spread malware using flash drives, memory cards or external hard-disk drives, according to BitDefender. Some families of malware, amongst which is the infamous Downadup clan, use this approach to trigger further infections.
 
Ranking second in this month’s e-threat report, Win32.Worm.Downadup.Gen also known as Kido or Conficker is responsible for 5.84 percent of the global infections. Relying on a Microsoft® Windows® vulnerability, this worm spreads on computers in the local network and restricts users’ access to Windows Update and security vendors’ web pages. Microsoft has remedied this problem in the most recent versions, but computer users need to update their operating systems and antivirus solutions.
 
Last month faced a wave of rogue AVs that apparently spread to this month as well. And that is why Trojan.FakeAV.KUE ranks third with a percentage of 5.11 of the total amount of infections. This detection covers JavaScript code - hosted either on malicious sites and/or innocent victim sites that have been infected – that’s used to trigger fake alerts on websites connected to the placement of rogue antivirus software.
 
The fourth place at 2.68 percent is taken by Win32.Sality.OG, the only file infector of this chart. This malicious e-threat appends its encrypted code to executable files (.exe and .scr binaries); furthermore it deploys a rootkit and kills antivirus applications running on the computer it can hide its presence on the infected machine.
 
In fifth place there is the newcomer Trojan.Swizzor.2, with 2.12 percent of the total number of the global infections. This detection deals with an obfuscated downloader that usually opens the way for further malicious software.
 
BitDefender’s May 2010 Top Five E-Threat list includes:

  1. Trojan.AutorunINF.Gen 13.24%
  2. Win32.Worm.Downadup.Gen 5.84%
  3. Trojan.FakeAV.KUE 5.11%
  4. Win32.Sality.OG 2.68%
  5. Gen:Variant.Swizzor.2 2.12%
  6. Other 71.01%
Bookmark and Share

Resource Centre Categories