U.S. took China’s place for most malware in 2008

SINGAPORE – American Web sites host more malware and computers relay more spam than any other country, the latest security report showed.

As evidence of this, when an American Internet company, accused of collaborating with spammers and hackers, was disconnected from the net in November, the level of spam staggered down 75 per cent.

The ‘Security Threat Report 2009’ was just published by Sophos, the U.K.-based IT security and control firm, which examined the threat landscape over the last 12 months, and predicted the emerging cybercrime trends for 2009.

“Not only is the U.S. relaying the most spam because too many of its computers have been compromised and are under the control of hackers, but it’s also carrying the most malicious Web pages,” said Graham Cluley, senior technology consultant for Sophos. “We would like to see the States making less of an impact on the charts in the coming year. American computers, whether knowingly or not, are making a disturbingly large contribution to the problems of viruses and spam affecting all of us today.”

Sophos’s research reveals that in 2008, organised criminal gangs tripled their attacks against innocent websites, injecting malicious code to infect visiting home users and businesses.

In addition, 2008 has seen concerted campaigns by hackers to pose as legitimate anti-virus vendors, creating new professional-looking websites and applications every day with the intention of scaring users into believing that their computers have been compromised. On average, five new scareware websites were identified each day by Sophos, with the figure peaking at more than 20 per day on occasion.

The report also documented the major Internet attacks of 2008, and showed a rise in hackers spamming out malicious attachments, designed to compromise PCs in order to steal identities, money and resources. By the end of 2008, Sophos was tracking five times more malicious attacks arriving through files attached to e-mails than at the start of the year.

Spammers and malware authors have shown interests in websites such as Facebook – hacking into innocent users’ accounts to take advantage of trusted social networks and send spam and malware.

“The last year proved beyond doubt that Internet hacking gangs are organised like never before, often working across borders to steal money and data from unsuspecting users. The volume of attacks has increased, with hackers using automated systems to break into vulnerable websites or generate new variants of their malware,” said Cluley.

“People need to wake up to the reality that the completely legitimate Web site they are visiting could be harbouring a dangerous malware infection planted by hackers. As we enter 2009, we are not expecting to see these assaults diminish. As economies begin to enter recession it will be more important than ever for individuals and businesses to ensure that they on guard against Internet attack,” he said.

Internet attacks are overwhelmingly orchestrated via networks of innocent home computers that have–unknown to their owners–been commandeered by hackers. Sophos urges home users and businesses to properly defend their personal computers with up-to-date anti-virus software, security patches and firewalls.

Statistics and findings

• Biggest malware threats – SQL injection attacks against websites and the rising tide of scareware.

• New Web infections – one new infected Web page discovered by Sophos every four and a half seconds (Three times faster than in 2007).

• Malicious e-mail attachments – five times more at end of 2008 than at the beginning.

• U.S. hosts the most malware on the Web (37 per cent), usurping China’s position in 2007.

• U.S. computers relay the most spam (17.5 per cent).

• Increasing allegations of state-sponsored cybercrime, as China, North Korea, Russia and Georgia amongst those accused of espionage and assaults via the Internet. T

In 2007, China was responsible for hosting more than 50 per cent of all Web-based malware. This position was taken over by the U.S. in 2008.

The top 10 malware-hosting countries in 2008 are:

1. U.S. 37.0 per cent

2. China (including Hong Kong) 27.7 percent

3. Russia 9.1 percent

4. Germany 2.3 per cent

5. South Korea 2.1 per cent

6. Ukraine 1.8 per cent

7. United Kingdom 1.7 per cent

8. Turkey 1.5 per cent

9. Czech Republic 1.3 per cent

10. Thailand 1.2 per cent

Other malware-hosting countries in Asia are Malaysia (0.1 per cent), Japan (0.1 per cent), Singapore (less than 0.1 per cent). The spam-relaying countries are Philippines (0.9 per cent), Japan (0.6 per cent), Australia (0.6 per cent), and Singapore (0.3 per cent).

(From MIS Asia)

Would you recommend this article?


Thanks for taking the time to let us know what you think of this article!
We'd love to hear your opinion about this or any other story you read in our publication.

Jim Love, Chief Content Officer, IT World Canada

Featured Download

Featured Articles

Cybersecurity in 2024: Priorities and challenges for Canadian organizations 

By Derek Manky As predictions for 2024 point to the continued expansion...

Survey shows generative AI is a top priority for Canadian corporate leaders.

Leaders are devoting significant budget to generative AI for 2024 Canadian corporate...

Related Tech News

Tech Jobs

Our experienced team of journalists and bloggers bring you engaging in-depth interviews, videos and content targeted to IT professionals and line-of-business executives.

Tech Companies Hiring Right Now