|
|
|
A Peek at MSRT November Threat Reports |
Si vous voulez bloquer ce service sur vos fils RSS
Si vous voulez nous contacter ou nous proposer un fil RSS
Menu > Articles de la revue de presse : - l'ensemble [ tous | francophone] - par mots clé [ tous] - par site [ tous] - le tagwall [ voir] - Top bi-hebdo de la revue de presse [ Voir]
Présentation : By continuing to include new variants of the existing threat families, the MSRT has removed malware from more than 1.5 million machines three days after its release on 10 November. This month we ve also added Win32 FakeVimes and Win32 PrivacyCenter to the MSRT detection and have removed these new rogues from more than 110,000 machines. A lot of the top threat families are no strangers if you refer to our previous blog posts, or our recent published Security Intelligence Report. Out of these prevalent threat families worldwide, 8 are password stealers collecting online game credentials, online banking passwords or other user identities of users online accounts. 8 of them are fake security products or trojan downloaders for rogues. The MSRT now covers the following most high profile rogues Win32 FakeVimes Win32 PrivacyCenter Win32 FakeScanti Win32 FakeSecsen Win32 FakeXPA Win32 Yektel Win32 Winwebsec Win32 InternetAntivirus Win32 FakeSpypro Win32 FakeRean 5 are trojan downloaders or droppers, a threat category which is often an infection vector to deliver drive-by malware to the victims computers. Win32 Koobface is still on top 25 though it has dropped out of top 10. Online Social Network sites such as Facebook continues to boost their security hardening to protect their customers and we welcome their actions. Win32 Zlob had dropped out of the list in recent months after being extremely prevalent for almost three years. We observed that the Zlob authors appeared to move to somewhere else in our Oct 2008 blog and Jan 2009 blog. Family Computers Cleaned Most Significant Category Notes Taterf 239,870 Worms online game PWS Alureon 141,358 Miscellaneous Trojans data stealing trojans modifying DNS settings Bancos 138,803 Password Stealers Monitoring Tools Brazil online banking PWS Renos 115,970 Trojan Downloaders Droppers AV rogues downloaders FakeXPA 96,466 Miscellaneous Trojans AV rogues Yektel 90,982 Trojan Downloaders Droppers AV rogues FakeVimes 78,749 Miscellaneous Trojans AV rogues Cutwail 78,161 Trojan Downloaders Droppers Spambot FakeSpypro 57,534 Miscellaneous Trojans AV rogues Frethog 54,764 Password Stealers Monitoring Tools online game PWS Bredolab 48,323 Trojan Downloaders Droppers mass downloader IRCbot 40,259 Backdoors old spambot with traditional C C Vundo 38,481 Miscellaneous Trojans adware downloaders Koobface 36,300 Worms web2.0 worm targets social networking sites Brontok 35,531 Worms mass-mailing e-mail worms PrivacyCenter 34,726 Miscellaneous Trojans AV rogues Banker 28,293 Password Stealers Monitoring Tools Brazil online banking PWS Banload 25,166 Password Stealers Monitoring Tools Brazil online banking PWS Jeefo 23,887 Viruses parasitic file-infector virus Virut 22,549 Viruses viruses evolved with backdoor behaviors FakeRean 20,603 Miscellaneous Trojans AV rogues FakeScanti 20,222 Miscellaneous Trojans AV rogues Parite 20,076 Viruses Prevalent viruses in Asia Lolyda 19,210 Password Stealers Monitoring Tools online game PWS RJump 18,452 Worms Worm targeting removable devices As usual we encourage you to run Microsoft Security Essentials, which contains the full AV signature set from the MMPC, or another reputable AV product, to protect your internet activities. Scott Wu -- MMPC
Les derniers articles du site "Microsoft Malware Protection Center" :
- MSRT May Threat Reports and Alureon - MSRT May 2010 On the Offensive Against the Odious Oficla - Updating Pays Security Dividends - MSRT April Threat Reports Alureon - Announcing Microsoft Security Intelligence Report, Volume 8 - A case of mistaken identity - Gamania Ill-gotten game gains - Internet Café, DirectX, and Online Games - Active Exploitation of CVE-2010-0806 - Bots, bots, and again bots
Menu > Articles de la revue de presse : - l'ensemble [ tous | francophone] - par mots clé [ tous] - par site [ tous] - le tagwall [ voir] - Top bi-hebdo de la revue de presse [ Voir]
Si vous voulez bloquer ce service sur vos fils RSS :
- avec iptables "iptables -A INPUT -s 88.191.75.173 --dport 80 -j DROP"
- avec ipfw et wipfw "ipfw add deny from 88.191.75.173 to any 80"
- Nous contacter par mail
| Mini-Tagwall des articles publiés sur SecuObs : | | | | sécurité, exploit, windows, attaque, outil, microsoft, réseau, audit, metasploit, vulnérabilité, système, virus, internet, usbsploit, données, source, linux, protocol, présentation, scanne, réseaux, scanner, bluetooth, conférence, reverse, shell, meterpreter, vista, rootkit, détection, mobile, security, malicieux, engineering, téléphone, paquet, trames, https, noyau, utilisant, intel, wishmaster, google, sysun, libre |
| Mini-Tagwall de l'annuaire video : | | | | curit, security, biomet, metasploit, biometric, cking, password, windows, botnet, defcon, tutorial, crypt, xploit, exploit, lockpicking, linux, attack, wireshark, vmware, rootkit, conference, network, shmoocon, backtrack, virus, conficker, elcom, etter, elcomsoft, server, meterpreter, openvpn, ettercap, openbs, iphone, shell, openbsd, iptables, securitytube, deepsec, source, office, systm, openssh, radio |
| Mini-Tagwall des articles de la revue de presse : | | | | security, microsoft, windows, hacker, attack, network, vulnerability, google, exploit, malware, internet, remote, iphone, server, inject, patch, apple, twitter, mobile, virus, ebook, facebook, vulnérabilité, crypt, source, linux, password, intel, research, virtual, phish, access, tutorial, trojan, social, privacy, firefox, adobe, overflow, office, cisco, conficker, botnet, pirate, sécurité |
| Mini-Tagwall des Tweets de la revue Twitter : | | | | security, linux, botnet, attack, metasploit, cisco, defcon, phish, exploit, google, inject, server, firewall, network, twitter, vmware, windows, microsoft, compliance, vulnerability, python, engineering, source, kernel, crypt, social, overflow, nessus, crack, hacker, virus, iphone, patch, virtual, javascript, malware, conficker, pentest, research, email, password, adobe, apache, proxy, backtrack |
|
|
|
|
|