July Fourth Week network security Report: China million network again on the malicious domain name list

Source: Internet
Author: User
Keywords Network virus domain name territory

Intermediary transaction http://www.aliyun.com/zixun/aggregation/6858.html ">seo diagnose Taobao guest cloud host technology Hall

Recently, according to the Cncert sampling monitoring results and national information security vulnerability Sharing Platform (CNVD) published data, from July 18 to July 24, China's Internet network Security index overall evaluation as good.

Among them, the number of hosts infected with network virus in the country is about 650,000, a sharp reduction of 45% per cent from last week; The new network virus family 2, with the new number of last week is equal to the number of government sites tampered with 57, compared to the last week 55 increased 2, new information security vulnerabilities 125, increase by 25%, There are 37 high-risk vulnerabilities, equal to the number of last week.

Below, IDC comments the network with everybody concerns in the period from July 18 to July 24, our country Internet network security condition:

I. Network virus activity

The number of hosts infected with the network virus in the territory is about 650,000, a sharp drop of 45% from last week's chain. Among them, the territory by the Trojan or zombie program control of about 89,000, the chain significantly increased by 57%, more than in recent weeks has also increased significantly; the domestic infection of the Conficker worm host about 560,000, the chain significantly down 50%.

(1) According to the China Anti-Network Virus Alliance (ANVA) organized the release of active network virus to learn that the use of web-horse, software fake and bundled download to spread the proportion of network viruses, viruses are still more to exploit system vulnerabilities to attack the system. In this way, we come to understand the malicious virus TOP5 active on the network:

  

(Figure 1) July 18-July 24 malicious viruses active on the network TOP5

(2) in the network virus capture, cncert through a variety of channels to obtain a large number of new network virus files, including the number of new network virus 102, with the new number of the same last week, the number of new network virus family is 2, with the new number of last week is equal. Below, we look at Cncert detected the top five active horse site domain name, active put horse site IP.

  

(Figure 2) Active horse-TOP5 site domain name

  

(Figure 3) Active horse-TOP5 site IP

(3) In the network virus in the process of transmission, often need to use hackers register a large number of domain names. In this virus detection, ANVA focus on a number of malicious domain names for network virus transmission, and statistics of active malicious domain name of the top-level domain name and the main registered domain name agencies.

  

(Figure 4) Active malicious domain name of the top-level domain name and geographical distribution

  

(Figure 5) Active malicious domain names distributed by registered institutions

II. website Security

According to the Cncert monitoring data, during the statistical period, the number of tampered sites in the territory was 775, with a slight increase of 0.25% in the previous week. The number of tampered sites in the territory by type distribution as shown in the following figure, the largest number is still. com and. com.cn Domain name Web site. The gov.cn Domain name class website has 57 (occupies the Territory 7%), the chain growth about 4%.

  

(Fig. 6) The Quantity distribution map of the tampered websites in mainland China

Summary: In the period from July 18 to July 24, China's Internet network Security index overall evaluation as good, as in recent years, no more serious harm to the network security incidents. However, users still need to pay special attention to the need to strengthen the system in time to repair the loopholes and reinforce the installation of security protection software. During the internet, do not easily open the network of unknown sources of pictures, music, video and other documents, do not download and install some unknown software, especially some so-called plug-in programs to prevent network virus infection.

Article by China IDC Review Net original edit, original address:

Http://www.idcps.com/News/20110730/28564.html (if you want to reprint, please specify the source)

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.