Shop, Swipe and Smile. With SmartSwipe it is that easy.


Oct 22
2009

Symantec Report on Rogue Security Software/Scareware

Posted by Greg Hluska in SecurityOnline Scams

On October 19, 2009, Symantec released its Report on Rogue Security Software. This report is very short (under 50 pages), yet it is full of extremely useful information on the rise of scareware. As well, Symantec's web site (linked to above) has a huge amount of supplementary information on scareware.

We have been talking about scareware since Daniel McCann's second post on the SmartSwipe blog. So, the facts that scareware is booming and that it is one of the most unethical scams in an internet that is full of scams should not be new.

Mainstream media picked up on one truly startling fact from the report. Symantec tracked 250 different separate pieces of scareware. And, they received reports that these 250 pieces of software had been attempted to be installed roughly 43 million times. 43 million attempted installations in the 12 month period from July 1, 2008 to June 30, 2009. Scareware is truly widespread and thousands of innocent people are falling victim every single day.

However, in my opinion, the most interesting aspect of the Symantec report is the attention the authors paid to the business of scareware. For example, many pieces of scareware are delivered through complex and lucrative affiliate programs. Affiliates can sign up on a distribution site, where they receive all the files and the technical support they need to carry out these scams. When the affiliates are up and running, they get paid for every successful installation. The actual payment varies according to the distributor and the country the software was installed in. So, scareware installed in the United States is worth more (to an affiliate) than scareware that is installed in Mexico.

To entice affiliates, one particular distributor stole a strategy from the world of multi-level marketing and reported exactly how much money its top affiliates made. At one point, its top affiliate was making over $300,000 a month infecting innocent people with useless (and ultimately harmful), fake security products.

Another part of the report goes even deeper into the crime model behind scareware. Many scareware distributors are so sophisticated that they have actually set up their own payment processors to avoid losing money in extra 'chargeback' fees!

All of this creates a very dangerous environment in which one scam can be used to commit many other cases of fraud. Let's pretend that I downloaded some scareware and decided to purchase a full license. The distributor of that product now has:

  • software installed on my computer
  • my credit card number
  • my personal information (such as an active email account, my name, my address and other contact information)
What do you think will happen next? Will the fraudsters sell my email address to other fraudsters? Will I start getting tons of spam and phishing attempts? Will they use my credit card number to make fraudulent purchases? Will they sell my credit card number (and other personal information) to the highest bidder?

Luckily, as alawys, there is hope on the horizon. While not all lawmakers have caught up to 21st century crime, some states have devised incredibly, strong laws to deal with these kinds of fraudsters. For example, Washington State has a Computer Spyware Act which makes it illegal to entice a user to download software under the (false) premise that it is required for the safe operation of his/her computer. Under this law, Washington State can shut down fraudsters and order them to pay restitution to their victims.

Detailed, on-point legislation like this is a necessary first step for combating cyber-crime. It is a huge step up from the maze of fraud charges and consumer protection statutes that some jurisdictions must navigate to shut down cyber-criminals.

Trackback(0)
Comments (5)Add Comment
0
http://www.jordans-nikeshoes.c...an-11.html
written by Nike Air Jordan 11, October 26, 2011
Same problem. Also the black fabric on the heel stained my Nike Air Max Mens 24-7. Not a deal breaker at all, but thought it’s worth mentioning.Nike Air Max Mens Tzone may seem like a chore for some, but for the select few, it is the best feeling in the world Nike Air Max Mens Wright . There is nothing quite like facing the open road early in the morning and watching the sun come up Mens Nike Dunk SB High . Of course, the right gear makes it all the better Womens Nike Dunk SB Low . There are many different types and brands of Mens Nike Running Shoes out on the market and in order for you to make the best possible Nike Sandals choice you have to answer a few simple questions.
0
http://www.newera-fittedhats.c...-Mets.html
written by New York Mets Caps, October 26, 2011
Justin Duchsherer can shore up the pitching rotation for the Baltimore Orioles Caps. Duchsherer, who seemed forever on the DL in his years with the Oakland Athletics Caps, signed with the Orioles this week.It’s good to hear the Cleveland Indians Caps deny emphatically rumors that they might trade away Grady Sizemore.I got to watch Giambi play in his prime with the Boston Red Sox Caps and the Chicago Cubs Caps.He edged Dusty Baker, whose Cincinnati Reds Caps took the Central Division but didn’t win a playoff game, by one vote.I have no quarrel with Black, who did a fine job keeping the Chicago White Sox Hats in the division lead most of the season.Just when you thought it was safe to put the rest Colorado Rockies Caps of this season on cruise control, the Detroit Tigers Caps and Florida Marlins Caps have attempted to enter the postseason highway with weekend sweeps of the wild-card leaders.Now, is it likely that both Houston Astros Caps andKansas City Royals Caps are doing nothing more than annoying the Los Angeles Angels of Anaheim Hats andLos Angeles Dodgers Caps by causing them to tap on the brakes with less than three weeks to go?I took them for an easy 3 mile run Milwaukee Brewers Caps and was rewarded with blisters on the outer sides of my heels Minnesota Twins Cap. I’ve never had that happen to me after only 3 miles. I really wanted to like New York Mets Caps so I wore them on a few more training runs.
0
Microsoft Office
written by Microsoft Office, November 10, 2011
I will keep your new article. I really enjoyed reading this post, thanks for sharing.
0
nike air max
written by nike air max, December 07, 2011
I’ve never had that happen to me after only 3 miles. I really wanted to like New York Mets Caps so I wore them on a few more training runs.
0
Outlook 2010
written by Outlook 2010, December 27, 2011
So, Office 2010 Outlook acts like the bridge between your social and Microsoft Office 2010 your professional life.

Write comment
smaller | bigger

busy
Powered by Azrul's MyBlog for Joomla!