Video | Agriculture | Confidence | Economy | Energy | Employment | Finance | Media | Property | RBNZ | Science | SOEs | Tax | Technology | Telecoms | Tourism | Transport | Search

 


Symantec Announces August 2011 Symantec Intelligence Report

News Release


Symantec Announces August 2011 Symantec Intelligence Report

Turbulent Financial Markets Trigger a Return to Stock Pump-and-Dump Spam;
Master Boot Record (MBR) Malware Makes a Comeback

Symantec Corp. (Nasdaq: SYMC) today announced the results of the August 2011 Symantec Intelligence Report, now combining the best research and analysis from the Symantec.cloud MessageLabs Intelligence Report and the Symantec State of Spam & Phishing Report. This month’s analysis reveals that once more spammers are seeking to benefit from fluctuations in the turbulent financial markets, most notably by sending large volumes of spam relating to certain “pink sheets” stocks in an attempt to “pump” the value of these stocks before “dumping” them at a profit.

In a pump-and-dump stock scam, spammers promote certain stocks in order to inflate the price as much as possible so that they may then be sold before their valuation crashes back to reality. The spam for these scams tries to convince the prospective mark that the penny stock is actually worth more than its valuation, or that it will soon skyrocket. Most of these claims are either misleading or false.

A successful pump-and-dump spam campaign will artificially drive up the price of the stock to a point where the scammers decide to sell their shares. This usually coincides with them ending the spam campaign, which in turn reduces the interest in the stock, helping to drive its valuation back to the original low price.

“Scammers can make substantial profits in a matter of days with a well-executed pump-and-dump spam. In the current turbulent environment many people may be convinced to invest in stocks that the scammers claim will benefit from the market turbulence,” said Paul Wood, senior intelligence analyst, Symantec.cloud.

Further analysis also revealed that there were as many new boot time malware (MBR) threats in the first seven months of 2011 as there were in the previous three years. An MBR is an area of the hard disk (usually the first sector) used by a computer to perform start up operations. It is one of the first things to be read and executed by the computer hardware when a computer is powered on, even before the operating system itself.

“MBR infections offer great scope for deep infection and control of computers, which makes the idea attractive to malware creators. Contemporary MBR infection methods are a fairly complex affair usually executed by highly skilled individuals,” Wood said.

Analysis also reveals that while global spam levels were lower in August compared to the previous month, phishing activity increased in August, with many increases coming from attacks related to major brand names such as those related to Apple’s iDisk service and a variety of Brazilian companies and services, including social networking and financial brand names.

Other report highlights:
Spam: In August 2011, the global ratio of spam in email traffic declined to 75.9 percent (1 in 1.32 emails); a decrease of 1.9 percentage points when compared with July 2011.

Phishing: In August, phishing email activity increased by 0.01 percentage points since July 2011; one in 319.3 emails (0.313 percent) comprised some form of phishing attack.

E-mail-borne threats: The global ratio of email-borne viruses in email traffic was one in 203.3 emails (0.49 percent) in August, an increase of 0.14 percentage points since July 2011.

Web-based malware threats: In August, Symantec Intelligence identified an average of 3,441 web sites each day harbouring malware and other potentially unwanted programs including spyware and adware; a decrease of 49.4 percent since July 2011.

Endpoint threats: The most frequently blocked malware for the last month was W32.Ramnit!html. This is a generic detection for .HTML files infected by W32.Ramnit1, a worm that spreads through removable drives and by infecting executable files. The worm spreads by encrypting and then appending itself to files with .DLL, .EXE and .HTM extensions. Variants of the Ramnit worm accounted for 15.8 percent of all malicious software blocked by endpoint protection technology in August.

Geographical Trends:
Spam
• Saudi Arabia remained the most spammed geography, with a spam rate of 84.8 percent.
• China (81.6 percent) overtook Russia (81.1 percent) to become the second most-spammed.
• In the US, 75.8 percent of email was spam and 75.0 percent in Canada.
• The spam level in the UK was 76.5 percent.
• In The Netherlands, spam accounted for 77.4 percent of email traffic, 75.8 percent in Germany, 76.1 percent in Denmark and 73.7 percent in Australia.
• In Hong Kong, 75.2 percent of email was blocked as spam and 73.4 percent in Singapore, compared with 72.8 percent in Japan.
• Spam accounted for 74.0 percent of email traffic in South Africa and 77.0 percent in Brazil.

Phishing
• Phishing attacks in Sweden increased to overtake the UK and become the most targeted geography for phishing in August, with one in 45.3 emails identified as phishing.
• Phishing in the UK also increased, making it the second most targeted country, with one in 79.5 emails identified as phishing attacks.
• Phishing levels for the US were one in 999.3 and one in 229.9 for Canada.
• In Germany phishing levels were one in 928.6, one in 508.2 in Denmark and one in 295.9 in The Netherlands.
• In Australia, phishing activity accounted for one in 914.5 emails and one in 2,178 in Hong Kong; for Japan it was one in 8,115 and one in 2,474 for Singapore.
• In Brazil, one in 445.7 emails was blocked as phishing.

E-mail-borne threats
• Email-borne malware attacks increased to one in 53.2 emails in Sweden, propelling the country to the top of the list with the highest ratio of malicious emails in August.
• Luxembourg was the geography second most under fire in August, with one in 85.1 emails identified as malicious in August.
• In the UK one in 86.5 emails was blocked as malicious.
• Virus levels for email-borne malware reached one in 611.1 in the US and one in 219.6 in Canada.
• In Germany virus activity reached one in 369.2, one in 444.4 in Denmark and in The Netherlands one in 147.6.
• In Australia, one in 797.0 emails were malicious and one in 744.2 in Hong Kong; for Japan it was one in 1,912, compared with one in 918.0 in Singapore.
• In Brazil, one in 392.3 emails in contained malicious content.

Vertical Trends:
• In August, the automotive industry sector continued to be the most spammed industry sector, with a spam rate of 79.0 percent.
• Spam levels for the education sector reached 78.9 percent and 75.5 percent for the chemical & pharmaceutical sector; 75.7 percent for it services, 75.7 percent for retail, 75.4 percent for public sector and 75.3 percent for finance.
• The public sector remained the most targeted by phishing activity in August, with one in 24.8 emails comprising a phishing attack.
• Phishing levels for the chemical and pharmaceutical sector reached one in 720.3 and one in 446.0 for the it services sector; one in 410.5 for retail, one in 94.4 for education and one in 220.7 for finance.
• With one in 24.0 emails being blocked as malicious, the public sector remained the most targeted industry in August.
• Virus levels for the chemical & pharmaceutical sector were one in 334.6 and one in 345.3 for the it services sector; one in 374.6 for retail, one in 94.0 for education and one in 383.0 for finance.

The August 2011 Symantec Intelligence Report provides greater detail on all of the trends and figures noted above, as well as more detailed geographical and vertical trends. The full report is available here.

Click to Tweet: Turbulent markets drive “pump-and-dump” stock scams says August 2011 Symantec Intelligence Report: http://bit.ly/owDLp0

ends

 
 
 
 
 
Business Headlines | Sci-Tech Headlines

BUDGET 2012:
Parliament Debate Live - Video Of Budget 2011
Keith Ng Interactive Graphic: How the Budget Breaks Down
BUDGET 2012 - FULL COVERAGE: Reports / Analysis - Press Kit - Reaction (from everybody) - Previews (from everybody) - Pre-Budget Announcements

Gordon Campbell: On the Budget’s Spreadsheet Victories

It wasn’t as if expectations were sky high, exactly. Chances are, it was always more likely that we’d be seeing Bigfoot rampage through the Beehive lock-up than catch a glimpse of a credible growth agenda from this government. More >>


Sludge Budget Report - Short The Dollar! MEMO: To international bankers FROM: C.D. Sludge Please short the dollar! It'll be good for both you and us. And you know you want to. Greexit, Eurogeddon... watch out... flight to quality and all that. Follow your instincts. The NZ Debt Management Office has been so surprised at the unprecedentedly low interest rates that it can borrow at that it has already entirely pre-funded the 2013 fiscal deficit - all $8 billion of it! More >>

Pattrick Smellie Comment: Doddling along the best we can hope forCriticising Budgets for lacking vision or imagination is like shooting fish in a barrel, but even so, this year's Budget again feels like a missed opportunity. Perhaps it's the intrusion of real world needs that means the government couldn't make better political use of the $558.8 million it expects to gather in its first partial asset sale. More >>

 

BusinessDesk: NZ dollar hits 6-mth low, revives, as EU meets; budget looms
The New Zealand dollar climbed from a six-month low as European Union leaders meet amid talk Greece could leave the euro zone and ahead of the budget locally which is expected to chart the route back to fiscal surplus. More >>

Also:

EARLIER:


Media: Quickflix welcomes probe of Sky TV content deals
ASX-listed Quickflix has welcomed the New Zealand antitrust regulator's probe into Sky Network Television's content deals with internet service providers, saying the issues raised by the Commerce Commission are "serious and real."

Sky's shares sank 8.3 percent to a two-and-a-half month low $5 after the regulator said it will investigate the pay-TV operator's contracts with ISPs and potential barriers to accessing content. The announcement was made after the commission approved a joint venture between Sky and state-owned Television New Zealand to launch a budget pay-TV platform, Igloo.More >>

ALSO:


Fruit FlyMPI: No Fruit Fly Outbreak Detected to Date as Actions Continue
The Ministry for Primary Industries (MPI) reports that testing on samples from fruit fly traps in the Auckland Controlled Area has so far shown no sign of further fruit flies.

However as a precautionary measure, the Ministry continues a large field effort to ensure that if any of the pest insects are present, they are not able to spread from the Avondale area where the one male fly was found last week.
More >>

ALSO:

 
 
 
 
 
Business
Search Scoop  
 
 
powered by newsagent
NZ independent news