Domestic software vulnerabilities as Web hanging horse, "the new darling"



Installation, upgrade anti-virus software, playing Microsoft patch vulnerabilities, the most basic of Internet users have become anti-virus tools. In the past, one need only lay the patch vulnerabilities, and then promptly virus database update antivirus software, open real-time monitoring can be effective against Web viruses. However, Jiangmin Micro Anti Virus latest monitoring results show that the above method has been virus virus prevention breakthroughs, more and more virus began bypassing the Microsoft vulnerabilities, instead use the vulnerability in domestic applications.

According to monitoring results indicate that, from September 2007 to November this short period of three months, the domestic application of software vulnerabilities has surpassed Microsoft's MS06-14 and MS07-17 Trojan the two most common web vulnerabilities, a web link Ma's "new favorite."

Monitoring results showed that early in September the proportion of Web Trojan using Microsoft vulnerability as high as 90%, while the Trojan horse into the website since October using the proportion of domestic applications, a substantial increase in vulnerability to the November page Trojans use application vulnerabilities made up 45% the proportion of , while the proportion of use of Microsoft vulnerabilities only 30%, web application software linked to Mali with domestic vulnerabilities to spread the virus has become a new trend.

Experts Road, "In recent years, the site has become a Trojan horse linked to the main channel for dissemination of the virus tends to invade all kinds of websites, forums, blog, and in its web page on the Trojan plant, when users browse the Web with a trojan site, if not lay system patches, become infected with Trojan viruses, which includes a variety of online games trojan, QQ Trojan, and internet banking Daohao Trojans and so on, a serious threat to the user's property. and Microsoft's MS06- 14 and MS07-17 are two holes was the most commonly used Web Trojan used in the invasion of computer vulnerabilities, the vulnerabilities padded Fan page on the premises were effectively Trojan invasion.

But as technology continues to upgrade the virus, the virus author has keen from the start using Microsoft's MS06-14 and MS07-17 vulnerability linked to two horses, evolved to use nowadays the most popular application software vulnerabilities linked to horses. This includes a number of players, software vulnerabilities, chat vulnerability, network TV software vulnerabilities, and even some of the loopholes used to download tools will become the mode of transmission. Ourgame loophole, Super Star Reader 0-Day loophole, Thunder 0-Day loophole, PPlive 0-Day loophole, Storm video, etc., has been linked to horse web applications tide victim.

As applications of the user community, while the security of application software can easily be ignored, it will become the virus spread the virus of another "weapon." As computer users sense of safety on the rise, the system can be homogeneous patch has not hit a few, but can really play in time for the application software is not homogeneous patch vulnerabilities, and this also can take the left of the virus machine. Therefore, the only patch the system is not enough to beat Sarkozy, timely padded application software vulnerabilities is nowadays the most effective means of guarding against the virus. "

Jiangmin Anti-virus experts suggest that the majority of users, in addition choose to install with "automatically fix vulnerabilities" and "web anti-horse wall" feature of antivirus software (such as the KV2008), using anti-virus software "vulnerabilities check" feature to automatically check for and fix vulnerabilities outside, with particular attention to updating software versions, to prevent the virus spread using application software vulnerabilities.