Security - Channel Insider
Empowering the next generation Channel
 

Sponsored Links
  • Cisco Small Business Advantage
  • Register for WES 2010 by February 19 and save $400.
  • up.time Easily Monitors Virtual/Physical/Cloud. Free Trial.
  • Seagate® Barracuda® drives fit every desktop need.
  • MSP Partners helps solution providers stay competitive.
  • Learn more about EnterpriseDB @ the Postgres Center
  • Earn 40-50% margins. Zenith open houses show how.
  • CDW Healthcare offers the IT solutions you need.
  • One number. One voicemail. Sprint Mobile Integration.
  • FREE Sophos Encryption Tool: Encrypt, compress and share files easily.
  • Give your customers more with LSI 6Gb/s solutions.






  • Channel Insider conferred 75 awards to vendor, distribution, solution provider and industry groups for performance excellence. Check out all the winners in the 28 Bull’s Eye Award categories.
    >> Bull’s Eye Central


     

    Conficker Followed up by Scareware-Powered Spam

    in Security


    Article Rating:starstarstarstarstar / 3
    Article Views: 2399

    Rate This Article:
    Add This Article To:
    As heightened security concerns fade along with the Conficker threat, some old and some new pieces of malware, many in the form of scareware, are rearing their ugly heads to cause potential havoc.

    Preparation and persistence helped many to dodge the Conficker threat, and while many may have dodged that bullet, the war against malware is far from over. The recently released Microsoft Security Intelligence Report (SIR), which covers the final 6 months of 2008, indicates that rogue security software threats are on the rise. Those pieces of malware, also known as scareware, has increased significantly and is duping users into revealing important information and opening access to their systems to parties unknown.

    Scareware works by leveraging users’ fears of cyber-attacks by mimicking legitimate advertisements for products that “fix” infected systems. Users are enticed to pay for "full versions" of the offered product to protect their systems from Trojans, worms and other kinds of malware. In reality, both the free and paid for versions of the mock utilities offered are actually malware applications. Those who choose to pay for the mock security software are providing nefarious individuals with credit information, while those who choose to accept “free offers” are setting their systems up to be compromised remotely or at the very least, have their systems turned into zombies spewing spam on a botnet.

    Resource Library:
    While we may thank the hype surrounding Conficker for increasing security awareness, one has to wonder how many new “victims” were recruited by the purveyors of scareware leveraging that hype. Add to that the re-emergence of some old worms, such as W32.Downadup and W32.Waledac, and it becomes easy to see that another malware and spam storm is on the horizon.

    The .C  variant of W32.Downadup is particularly resilient,  it incorporates a previously unseen algorithm to remove itself from the infected host on May 3, 2009, removing most traces that the system has been infected and compromised. Of even greater concern is how W32.Downadup may be linked to W32.Waledac, which steals sensitive information, turns computers into spam zombies, and establishes a back door remote access.

    The pieces are in play and users need to protect themselves from these new merged threats, which may be responsible for the latest increases in spam and have the potentially to power another round of fraudulent and malicious activity.

    Luckily, protection should be simple, just as simple as Conficker – install the latest patches and make sure you are using legitimate anti-malware products. The old buyers axiom still reigns supreme – if it seems too good to be true – then it probably is.

    The questions remain: Did Conficker actually succeed in a way not anticipated? Did thousands, if not millions of users download phony security tools to combat the Conficker threat?  Only time will answer those questions, and perhaps IT professionals will pull together to stamp out the coming threats.

     





    Discuss Conficker Followed up by Scareware-Powered Spam
     
    >>> Be the FIRST to comment on this article!
     

     
     
    >>> More Security Articles          >>> More By Frank Ohlhorst
     



     


    [ci] feeds
    XML
    Add Channel News, Product Reviews, Trends and Analysis to your RSS newsreader or My Yahoo!


    HTML PLAIN TEXT

    Keep on top of news for VARs and Resellers with CI's Weekly Newsletter and Alerts.

     


    CHANNEL RESOURCE CENTER
     
     
    How much time do you spend hunting for enterprise IT content?
    Let Enterprise TechBrief do the work for you. Aggregated content, tech news, product reviews, vendor updates, how-to’s—all you need to boost your efficiencies and cut costs, all from one place.
    enterprisetechbrief.com
     
    Should You Be Using “up.time”?
    Easily Monitor Virtual, Physical, and Cloud based assets, applications and services from a unified Dashboard with up.time. Deep Monitoring across platforms and along with best-of-breed reporting. Over 700 enterprise customers in 32 countries.
    Free Trial Download Here (Virtual Appliance available)
    Managed service providers are using regulatory compliance and industry standards to win business and give customers peace of mind. Join host Larry Walsh of Ziff Davis Enterprise and his guests on Friday, February 19, 2010, at 1:00 pm ET for a discussion of “Compliance as a Service.”
    Register Today