SHARE
Follow this article on Twitter Facebook LinkedIn Bookmark and Share
Home >> Security

Fake security tools still big threat, worms on the rise

Fake security tools still big threat, worms on the rise

By:  Kathleen Lau  On: 03 Nov 2009 For: ComputerWorld Canada Creator

A new edition of the Microsoft Security Intelligence Report reveals the biggest threats to Canadians among worms, trojans, and rogue security software. A Toronto security expert says rogue security tools prey on fear and training

TheNo. 1 offender to Canadian’s PCs in the first half of 2009 was Win32/ZangoSearchAssistant, adware that victims probably don’t even know hit them, according to a recent security report from Microsoft Corp.

ZangoSearchAssistant tricks unsuspecting users into downloading it in the guise of improving search results and producing related links based on user-specific keywords, explained Mohammad Akif, security and privacy lead with Microsoft Canada Co.

“You might think what a stroke of luck, I was just searching for Michael Jackson earlier, and now this offer is popping up,” said Akif. But in reality, the related links are companies in ZangoSearchAssistant’s network.

Most of the Top 25 security threats listed in the seventh version of the Microsoft Security Intelligence Report (SIRv7) are consumer threats, but those of importance to the enterprise include ASX/Wimad and Win32/Renos, said Akif.

Both Trojans, Wimad and Renos have had a presence in the enterprise for some time, as have others, said Akif. “That is the biggest category from an enterprise perspective,” he said.

Wimad, for instance, positions itself as a Windows media file, tricking users into downloading it.

SIRv7 also reported that worm infections rose by nearly 100 per cent compared to the preceding six months, thanks to Conficker and Taterf.

While spikes in infection rates are normal when new attacks are launched, they are usually just a “small bump,” said Akif. “This is a little bit unusual,” he said.

Akif added that the fact that these two worms spread as quickly and effectively as they did is a testament to the strength of these types of threats.

Conficker can spread through an enterprise that didn’t have appropriate security rules in place, said Akif. Taterf, spreading primarily through the online gaming community, could still infect enterprises if the child of an employee had an infected PC from playing online games, and transferred infected files to the parent’s PC, who then transferred them to work, said Akif.


Sign up for our Newsletters












Print |  Views: 1908   |   Rating:offoffoffoffoff  (0 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.




Kathleen Lau Kathleen Lau was a senior writer with ITWorldCanada.com and ComputerWorld Canada from December 2006 to August 2011.In her role as senior writer, she covered broadly technology news and issues r... more

Comments (0)

No Comments!
Name: (required) eMail: (optional)

Your email address will not appear online and will be used only if the editor wishes to contact you personally for additional comments.