August 2009 - Top MSRT Detections
August 2009 - Top MSRT Detections
http://blogs.technet.com/mmpc/archive/2009/08/27/msrt-august-top-detection-reports.aspx
http://blogs.pcmag.com/securitywatch/2009/08/microsoft_lists_top_10_windows.php
QUOTE: This month the MMPC added a new threat family, Win32/FakeRean, to the MSRT. You can refer to Hamish’s blog post, “Win32/FakeRean and MSRT” for more details on this fake, or rogue, security software. As of August 24, the MSRT had cleaned FakeRean from 162,328 infected machines. The following table shows data gathered from the MSRT since its August release.
Win32/Taterf noticeably still holds first place in the MSRT’s top detections. This is a family of worms that spread via mapped drives in order to steal login and account details for popular online games. Taterf is closely related to Win32/Frethog, another MSRT family added at the same time as Taterf, and also found in the above list. We believe that the two are based on the same source code due to the similarities between them. Since they were first added, these two families have been ranked near the top and this month is no exception. You can revisit a previous blog post about this threat for more in-depth details.
-----------------------------------------------
Family .... Threat .. Machines
-----------------------------------------------
Taterf .... 544,662 .. 463,000
Renos ..... 308,789 .. 228,973
Alureon ... 249,101 .. 211,441
FakeRean .. 219,359 .. 162,328
Bancos .... 173,134 .. 158,152
Koobface .. 274,769 .. 134,139
Frethog ... 140,218 .. 132,827
Cutwail ... 166,284 .. 110,840
Rustock ... 98,673 ... 90,788
Tibs ...... 93,175 ... 84,081