Big malware players return during the autumn

Rogue AV market was mostly dead through August and September. Although this might be caused by Chronopay raid, the timing of the raids did not match with the decline. Additionally, we have seen significant shift to different kind of malware: google redirects, new kinds of rootkits, Bitcoin mining software and other kinds of parasites that do not require payment gateway which are easy to shut down.
Well, the nice play is over, and we see at least 3 large fake software families on the rise. The most interesting is Security Sphere 2012. The same guys had distributed biggest amounts of Fake AVs during last year. And that means the summer pause is over.
Interesting to note, that the pause was around 2 months long, quite similar to the one during last year. The timing is off by 2 months (end of May – mid July in 2010, August – September in 2011). Maybe we should call this (un)deserved holidays of malware makers?
Does that mean police got the wrong guy? Not necessarily. A warm place does not stay empty for long, and no single arrest will kill rogue antivirus business. It is a multi-million industry, where bad guys earn much more than good guys. For example, SuperAntiSpyware was bought out for around 8 mil USD only, which is insignificant to profits of Fake Antivirus payment processors.
There are some good news as well. Windows 8 will come with AV pre-installed and some security issues fixed. This should make malware makers life somewhat harder and we will see less aggressive infections. The single fear is that it will reduce overall investment in security software and this would result in poor quality antivirus solutions for everyday user.
At the moment, the best protection is strong Internet Security (or AV+Anti-malware) program and decent internet browsing habits. This will never go out of style.

Related posts:

  1. Malware tactics : impersonating legitimate programs A goal of typical fake antivirus program is convincing you into giving away your credit card details. This can be done in several ways: 1....
  2. Is malware payment gateway shutdown the end of Fake AVs? Several botnets were shut down and the CEO of rogue parmacy and fake antivirus credit card processor was  arrested recently. This resulted in the significant drop...
  3. Do not stop removing malware halfway The popularity of rogue anti-virus programs, such as Security Tool, or the fake Microsoft Security Essentials clones like Think Point, speaks to the fact that...
  4. Fake spyware remover – Malware Defender 2009 in the wild It looks like Spyware Guard 2009 manufacturers have drained last bits of money from their former scam and produced a new “racer” – Malware Defender...
  5. IE Antivirus – just another scam looking for your money IE Antivirus shows that Rogue spyware remover business booms like never before. They have run out of names to label their scams and now use...


Leave a Reply