Sophos

Talk to our experts

Find your local press contact

Resources

Info feeds

What are info feeds?

3 January 2007

Top ten malware threats and hoaxes reported to Sophos in December 2006 New Year's greeting worm topples Stratio as most prevalent malware

Sophos, a world leader in IT security, has revealed the most prevalent malware threats and email hoaxes causing problems for computer users around the world during December 2006.

The figures, compiled from Sophos's global network of monitoring stations, show that the long-established Dref malware has made an unexpected return to the top of the threat chart, thanks to two new variants currently causing problems for computer users worldwide.

The Dref-V mass-mailing worm, which poses as a New Year e-card, was discovered on December 30, 2006, and by the following day accounted for 93.7% of infected emails. As a result, Dref - which was first seen in July 2005 - has knocked last month's main offender Stratio (also known as Stration) off the top of the chart. Stratio, currently in fourth place, now accounts for just 7.8% of the total.

The top ten list of malware threats in December 2006 reads as follows:

Position Last
month
Virus Percentage of reports
1NewDref
   35.2%
22Netsky
   22.2%
38Mytob
   10.7%
41Stratio
   7.8%
53Bagle
   5.2%
64Zafi
   4.8%
76MyDoom
   3.3%
89Sality
   2.8%
96Nyxem
   1.3%
10NewStraDl
   0.9%
Others 5.8%

"Dref has been spammed out far and wide in the last few days, and there's a danger that in the rush to get through the backlog of holiday emails, people might return to work and accidentally launch the malicious attachment," said Carole Theriault, senior security consultant at Sophos. "Its social engineering tactics are not new, so most businesses should have adequate defenses in place to tackle the worm. Having spread for only two days during the entire month, it is astonishing that Dref has secured the top position for most widespread piece of malicious code."

The proportion of infected email continues to remain low, at just one in 337 (0.30%), while during December Sophos identified 6,251 new threats, bringing the total number of malware protected against to 207,684.

The top ten hoaxes and chain letters in December 2006 were as follows:

Position Hoax Percentage of reports
1Hotmail hoax
   23.1%
2Olympic torch
   9.4%
3Elf Bowling
   5.6%
4Applebees Gift Certificate
   4.4%
5Sainsbury's gift vouchers
   3.7%
6Bonsai kitten
   3.3%
7A virtual card for you
   3.0%
8ATM Theft
   2.3%
9Meninas da Playboy
   2.2%
10Budweiser frogs screensaver
   2.1%
Others40.9%

Graphics of the above top ten malware chart are available.

About Sophos

Sophos enables enterprises all over the world to secure and control their IT infrastructure. Sophos's network access control, endpoint, web and email solutions simplify security to provide integrated defenses against malware, spyware, intrusions, unwanted applications, spam, policy abuse, data leakage and compliance drift. With over 20 years of experience, Sophos protects over 100 million users in nearly 150 countries with its reliably engineered security solutions and services. Recognized for its high level of customer satisfaction and powerful yet easy-to-use solutions, Sophos has received many industry awards, as well as positive reviews and certifications.

Sophos is headquartered in Boston, US and Oxford, UK. More information is available at www.sophos.com

See also: