
Statistics collected using the Kaspersky Security Network (KSN) cloud service indicates that Russia is the most dangerous for users. In the third quarter of this year, 52.77% of the computers of the Russian segment of KSN were subjected to attacking programs, Kaspersky Lab reported.
KSN is a system of distributed global monitoring of real threats and their centralized analysis, to which the owners of the latest versions of personal products of the Kaspersky Laboratory are connected on a voluntary basis.
It allows you to carry out automated collection and sending information about all the attempts of infection in the LC, as well as about all unknown suspicious files, loaded and executed on user computers-from websites, investments of electronic letters, peering nets, etc.
Kaspersky Security Network includes subsystems of geographically distributed continuous global threat monitoring on user computers, delivery of collected information to centralized servers of the LC, analyzing the received data and creating means of protection against new threats, and operational transfer of the created protection tools to users.
In the second place of this rating is Belarus (in this country, 44.19% of the PC are under threat of infection), China is closed by three (41.29%).
Following the leaders are Kazakhstan (40.68%), Ukraine (39.16%), the United States (38.13%), India (37.61%), Bangladesh (36.00%), Sri Lanka (35.95%) and Saudi Arabia (33.99%).
Sources of harmful programs exist in almost every country, but 83% of all sites used to disseminate malware are located in only 10 states. The leader of this rating is the United States, where a quarter of all sources of infection is located.
In total, according to the statistics collected by KSN, more than half a billion attempts to infect PC infection with harmful programs were blocked in the third quarter.
One of the main events of the third quarter was the attack of the Stuxnet worm. To infect the system, this malignor first used not one, but at once four Windows-vuluity.
A feature of the worm was the use of stolen digital certificates of RealTec and Jmicron, thanks to which Stuxnet hid for a long time from antiviral radars.
Digital certificates and signatures play an important role in the field of IB, confirming the legality of a particular application. Therefore, in 2010, an increased interest in digital signatures from the developers of malicious programs was noted. So, the theft of certificates has become one of the functions of the sensational Trojan Zeus.
The events of the third quarter indicate that point, targeted attacks are ready to come to a large -scale viral epidemics to replace. With the help of modern technologies, the harmful program is able to overcome several echelons of protection and impress a single, but important goal.
The current threat is also an increase in the number of malicious files with digital certificates.