Home >> Security

Fake security tools still big threat, worms on the rise

By:  Kathleen Lau On: 03 Nov 2009 For: ComputerWorld Canada Creator

A new edition of the Microsoft Security Intelligence Report reveals the biggest threats to Canadians among worms, trojans, and rogue security software. A Toronto security expert says rogue security tools prey on fear and training

Fake security tools still big threat, worms on the rise
Access to IT World Canada is restricted to registered users, however we're pleased to provide you with 3 temporary guest passes. Obtain unlimited access to all of our content by registering today. For existing registrants, please log in.
1 of 3
Email to a Friend   |  









Print   |   Text Size (+) / (-)   |   Views: 1547   |   Rating:offoffoffoffoff  (0 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.



TheNo. 1 offender to Canadian’s PCs in the first half of 2009 was Win32/ZangoSearchAssistant, adware that victims probably don’t even know hit them, according to a recent security report from Microsoft Corp.

ZangoSearchAssistant tricks unsuspecting users into downloading it in the guise of improving search results and producing related links based on user-specific keywords, explained Mohammad Akif, security and privacy lead with Microsoft Canada Co.

“You might think what a stroke of luck, I was just searching for Michael Jackson earlier, and now this offer is popping up,” said Akif. But in reality, the related links are companies in ZangoSearchAssistant’s network.

Most of the Top 25 security threats listed in the seventh version of the Microsoft Security Intelligence Report (SIRv7) are consumer threats, but those of importance to the enterprise include ASX/Wimad and Win32/Renos, said Akif.

Both Trojans, Wimad and Renos have had a presence in the enterprise for some time, as have others, said Akif. “That is the biggest category from an enterprise perspective,” he said.

Wimad, for instance, positions itself as a Windows media file, tricking users into downloading it.

SIRv7 also reported that worm infections rose by nearly 100 per cent compared to the preceding six months, thanks to Conficker and Taterf.

While spikes in infection rates are normal when new attacks are launched, they are usually just a “small bump,” said Akif. “This is a little bit unusual,” he said.

Akif added that the fact that these two worms spread as quickly and effectively as they did is a testament to the strength of these types of threats.

Conficker can spread through an enterprise that didn’t have appropriate security rules in place, said Akif. Taterf, spreading primarily through the online gaming community, could still infect enterprises if the child of an employee had an infected PC from playing online games, and transferred infected files to the parent’s PC, who then transferred them to work, said Akif.


Sign up for our Newsletters
Access to IT World Canada is restricted to registered users, however we're pleased to provide you with 3 temporary guest passes. Obtain unlimited access to all of our content by registering today. For existing registrants, please log in.
1 of 3
Kathleen Lau Kathleen Lau is a senior writer with ITWorldCanada.com and ComputerWorld Canada since December 2006.In her role as senior writer, she covers broadly technology news and issues relevant to the Canadian en... more

Related Articles

Related Blogs

Comments (0)

No Comments!
Name: (required) spacer eMail: (optional)
Your email address will not appear online and will be used only if the editor wishes to contact you personally for additional comments.

Comment:

spacer