Threatscape Report from Fortinet - November 2008 Edition

Top 10 exploitation attempts detected for this period, ranked by vulnerability traffic. Percentage indicates the portion of activity the vulnerability accounted for out of all attacks reported in this edition. Severity indicates the general risk factor involved with the exploitation of the vulnerability, rated from low to critical. Critical issues are outlined in bold:
RankVulnerabilityPercentageSeverity
1Trojan.Storm.Worm.Krackin.Detection36.9Highy
2Worm.Slammer23.2Highy
3IE.IFRAME.BufferOverflow.I0.5Highy
4MS.IIS.Web.Application.SourceCode.Disclosure0.4Mediumy
5MS.Exchange.Mail.Calender.Buffer.Overflow0.4Highy
6TCP.PORT00.3Lowy
7MS.IE.HTML.Attribute.Buffer.Overflow0.3Highy
8MS.GDIPlus.JPEG.Buffer.Overflow0.3Criticaly
9SSH.Client.Buffer.Overflow0.3Highy
10Mambo.Function.Path.Validation0.3Mediumy
Top 10 malware activity by individual variant. Percentage indicates the portion of activity the malware variant accounted for out of all malware threats reported in this edition. Top 100 shifts indicate positional changes compared to last edition's Top 100 ranking, with "new" highlighting the malware's debut in the Top 100. Figure 2 below shows the detected volume for the malware variants listed within the Top 5:
RankMalware VariantPercentageTop 100 Shift
1W32/FakeAlert.D!tr.dldr16.8+1
2W32/Goldun.RV!tr.spy8.8new
3HTML/Goldun.AXT6.9+34
4W32/Goldun.RW!tr.spy6.1new
5W32/Zbot.FQL!tr.spy5.6new
6W32/ZBot.MG!tr.spy4.1new
7W32/Netsky!similar3.7+2
8HTML/Iframe_CID!exploit3.2+3
9W32/Virut.A3.1-3
10HTML/Iframe.DN!tr.dldr2.9+3

Source: http://www.fortiguardcenter.com