The Storm winds down, but new malware on the up
By Asavin Wattanajantra,
The Storm has dramatically calmed this April, with a MessageLabs report claiming that the Storm botnet was now only at five per cent of its original size.
Storm had been estimated at having compromised two million computers, but there was a 57 per cent decrease in malware-laden emails distributed by the Storm botnet during April.
MessageLabs suggested that the introduction of new malicious software tools which aimed to target and remove Storm infections may have been responsible. Microsoft's Malicious Software Removal Tool had recently been updated for this purpose.
But it wasn't all good news, as the same report said that web-based malware had increased by 23 per cent, with cyber criminals taking advantage of users unfamiliar with the web threat.
Analysis showed that 36.1 per cent of interceptions in April were new, with an average or 1,214 new websites per day harbouring malware, spyware or adware. This was an increase of 619 per day compared to March.
"April was a month of unpredictability with the mighty Storm botnet losing all but five per cent of its anonymous army and web-based malware reaching new levels," said Mark Sunner, chief security analyst at MessageLabs.
The report said that a new botnet called Srizbi, which showed up in 2007, had the potential to overtake Storm as the most notorious botnet.
Of the new threats, Sunner said: "This month we find ourselves fighting the cybercrime battle on many fronts, with the bad guys using an arsenal of weapons in order to detonate spam, viruses, phishing attacks and targeted Trojans."
In the week of the 30th anniversary of the first spam message, MessageLabs also reported on a new spamming technique which was being used to send authenticated spam email through Yahoo SMTP servers.
It accounted for one per cent of all spam intercepted in April, advertising services for Canadian Pharmacy, which the company said were well known for spamming.
It used the SMTP server and a DomainKeys Identified Mail (DKIM) authentication technique which ensured that the email was harder to block.
Related Tags
advertisement
Latest Security Features
How to be a successful online fraudster
Ever wanted to know how easy it is to be an identity thief and earn a fortune? IT PRO reveals all…
- What you need to know about ID cards
- Lessons to learn from a year of data breaches
- Q&A: DNS inventor Paul Mockapetris
- Is the password ill-equipped for the modern world?
- Why is backing up given short shrift?
- Defending Europe against cyber attack
- The present and future of IT security
- I’m an IT manager, get me out of here!
- IT around the world: Russia
Latest Security Reviews
Fortinet FortiGate-3810A
Rating: ![]()
- Clearswift MIMEsweeper Web Appliance ENW
- NetASQ U6000 UTM appliance
- AVG Internet Security SBS Edition 8.0
- Finjan Vital Security Web Appliance NG-6000S
- LogLogic MX2010
- Exclusive: WatchGuard Firebox Core X750e
- Sophos ES4000 Security Appliance
- Microsoft Forefront Security for Exchange and SharePoint
- EXCLUSIVE: Juniper Networks SSG 550 UTM appliance
advertisement
Latest News Videos in Security
Video: Eugene Kaspersky outlines security threats
IT PRO speaks to Eugene Kaspersky, chief executive and founder of Kaspersky Lab.
White papers
Want more background on today's hottest IT trends?
Visit IT PRO's white paper library for more on virtualisation, encryption and other topics.
Register for IT PRO
You'll get exclusive member benefits including free white papers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.



Social Bookmark this article: What is this?