Obfuscated malware tops list in August

Threats include runtime packing, polymorphism and junk code injection

Written by Clement James

ESET, the Bratislava-based security firm behind the Nod32 antivirus suite, said this week that a high percentage of malware detected in August employed some kind of obfuscation technique.

Threats that use obfuscation techniques to hide their malicious function, such as runtime packing, polymorphism and junk code injection, accounted for 7.58 per cent of malware detected in August.

According to ESET's ThreatSense.Net, which reports detection statistics from millions of client computers around the world, Win32/Obfuscated, a generic name for malware that hides its true intention, was the number one threat to users.

In second place, accounting for 3.4 per cent of malware threats, was Win32/Agent, which includes malware that has Trojan capabilities to connect directly back to a central server or provide a backdoor into the infected machine.

Down from first to third place last month was Win32/TrojanDownloader.Ani.gen, while Win32/Agent.ARK was in fourth place with 2.33 per cent of detections.

"This malware connects to a command and control server that seems to be located in Singapore," said Paul Brook, managing director at ESET UK.

"The purpose of Win32/Agent.ARK seems to be to keep control of an infected system so that it can be used to execute commands on the infected host and download additional software.

"Such botnet software is often able to update itself with new components which add new functionality, and which help it to evade detection by signature-based antivirus software."

Tags:

Further reading

Medion sells laptops with 13 year-old virus

Consumers baffled to find ancient DOS virus   More...

Hackers hit US Consulate General in Russia

Malicious code waiting for web surfers   More...

Skipi worm jumps on Skype users

Beware chat messages bearing jpegs   More...

Organised crime holding off on mobile viruses

Mostly the work of amateurs, say experts   More...

Related articles

Storm malware still blowing strong

One year on and no sign of fading away   More...

2007 Roundup: The march of the botnets

Top 10 malware list for 2007   More...

Agent Trojan targets Asian gamers

Malware attempts to steal usernames and passwords   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

08 Jul 2008

3.67 MBSafe browsing, voice recognition and cyber-criminals More...

07 Jul 2008

2.76 MBLaptops on holiday, gaming in Vietnam and 'unbreakable' encryption More...

04 Jul 2008

5.51 MBPodcast Special: Views from the Valley More...

Poll

EUROPEAN E-COMMERCE

EUROPEAN E-COMMERCE

Are you happy making an online purchase from another European country?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Firefox

Firefox users shown to be safer

Internet Explorer users the worst of the bunch   More...

Internet Corporation for Assigned Names and Numbers

Icann downplays recent site hacks

Redirects were 'limited', says organisation   More...

Advertisement

DNA

Boffins build artificial DNA

Could be used in the ultimate computer   More...

Microsoft

Microsoft outlines appeal against EU fine

Two sides back in court   More...

Advertisement