Advertisment

12mn new IP addresses hijacked by botnets

author-image
CIOL Bureau
Updated On
New Update

BENGALURU, INDIA: McAfee's first quarter threat report revealed that cyber-criminals have taken control of almost 12 million new IP addresses since January, a 50 percent increase since 2008. The United States is now home to the largest percentage of botnet-infected computers, hosting 18 percent of all zombie machines.

Advertisment

Cyber-criminals are building an army of infected, 'zombie' computers to recover from last November’s takedown of a central spam-hosting ISP, according to the new report from Avert Labs.

The November 2008 takedown of McColo Corp dropped spam levels by an estimated 60 percent, but spam quantities are rising as cyber-criminals create new ways to send bulk e-mails. The quick expansion of botnets threatens to boost spam levels back up. In fact, spam volumes have already recovered about 70 percent since McColo Corp went offline. Compared with the same quarter a year ago, spam volumes are 20 percent lower in 2009 and 30 percent below the third quarter of 2008, which had the highest quarterly volumes recorded to date.

Other key findings

Advertisment

“The massive expansion of these botnets provides cyber-criminals with the infrastructure they need to flood the web with malware. Essentially, this is cybercrime enablement,” said Jeff Green, Senior VP, McAfee Avert Labs.

· The Koobface virus has made a resurgence, and more than 800 new variants of the virus were discovered in March alone.

· Servers hosting legitimate content have increased in popularity with malware writers to distribute malicious and illegal content.

Advertisment

· Cybercriminals are increasing their use of URL redirects and Web 2.0 sites to disguise their location.

· Compared to the overall landscape, the Conficker worm represents a small subset of all threat reports. Autorun malware, a vector used by certain Conficker variants, represented only 10 percent of all detections reported during the first quarter.

tech-news