Search-engine spam targeting popular news items

The earthquakes in Haiti and Chile, the Toyota recall, and Apple’s iPad are just some of the search terms that cybercriminals are using to corrupt search-engine results, according to McAfee’s first-quarter Threats Report released Tuesday.Following a significant rise in search-engine spam last year, the bad guys are adopting the latest items in the news to trick search engines into indexing links that lead to malicious Web sites, the report says. Like other professionals, cybercriminals use analytics and page ranking to determine the most popular search terms to use to capture their victims, a trend that was prominent in the first quarter of the year. see:McAfee Reveals the Top Five Malware and Spam Trends Worldwide in Q1 2010 Threats Report
McAfee Inc. today unveiled its McAfee Threats Report: First Quarter 2010, which uncovered that a USB worm has taken the No. 1 spot for top malware worldwide. Spam trends show that email subjects vary greatly from country to country with diploma spam out of China and other Asian countries on the rise. Earthquake news and other major 2010 events drive poisoned Web searches, and U.S.-based servers host the majority of new malicious URLs.Threats on portable storage devices took the lead for the most popular malware. AutoRun related infections held the No. 1 and No. 3 spots due to the widespread adoption of removable devices, mainly USB drives. A variety of password-stealing Trojans rounded out the top five. Those include generic downloaders, unwanted programs and gaming software that collects statistics anonymously. Unlike past studies, the popularity of these threats ranked consistently worldwide.While spam rates remain steady, their subjects vary considerably from country to country. One of this quarter’s biggest discoveries was that China, South Korea and Vietnam have the most significant diploma spam, which promotes the purchase of forged documents to establish qualifications for items such as jobs. Singapore, Hong Kong and Japan have exceptional rates for Delivery Status Notification spam indicating a possible issue with preventative mail-filtering capabilities.”Our latest threat report verifies that trends in malware and spam continue to grow at our predicted rates,” said Mike Gallagher, senior vice president and chief technology officer of Global Threat Intelligence for McAfee. “Previously emerging trends, such as AutoRun malware, are now at the forefront. We were also surprised to find some of geographic difference in spam related topics, such as the volume of diploma spam coming out of China.”McAfee also found that Thailand, Romania, the Philippines, India, Indonesia, Colombia, Chile and Brazil have a higher portion of malware infections and spam. These countries have experienced significant Internet growth over the past five years and are lagging in security awareness.Attackers are leveraging major news events to poison Internet searches. Haiti and Chile earthquake disasters led the list (No. 1 and No. 2, respectively). The Toyota recall, Apple iPad and NCAA March Madness followed. Referred to as search engine manipulation, cybercriminals continue to use analytics and page-ranking logic to exploit hottest search terms and drive traffic to malicious websites.At 98 percent, the United States hosts the majority of new malicious URLs in Q1 2010, as rated by McAfee® TrustedSource® technology. The massive share of new malicious URLs hosted in the U.S. is due to the location of many different Web 2.0 Services, most of which are provided with U.S. locations. Within the remaining 2 percent, China hosted 61 percent and Canada hosted 34 percent.For a full copy of the Q1 2010 Threats Report, please visit:

Leave a Reply

Your email address will not be published.

This site uses Akismet to reduce spam. Learn how your comment data is processed.