Microsoft: Competing AV vendors need to remember who the bad guys are

Some vendors, particularly in China, are playing hardball to get their antivirus products installed

AV vendors, in fierce competition for users, should remember that cooperation is key in fighting malware, a top Microsoft security official said Friday.

Data sharing between vendors has resulted in a drop in the overall number of malware families affecting computers, said Dennis Batchelder, director of the Microsoft Malware Protection Center, at a conference of the Association of Antivirus Asia Researchers in Sydney.

The numbers of computers encountering one of those top 20 families of malware have dropped from 24 million a month to 13 million a month over the last two years, he said.

Batchelder said the data covers broad-spectrum malware and not mobile threats or so-called "advanced persistent threats," a label usually attached to more sophisticated, targeted attacks.

The improvement is due in part to better cooperation among security companies, which in turn have become a lot better at automating the processing of new malware samples and using big data and cloud computing to analyze it, Batchelder said.

But there are new companies into the antimalware field, which sometimes don't play fairly, he said.

"We have to remember who the bad guys are," Batchelder said. "It's not each other."

Antivirus software is a money spinner for the industry even though experts say it may miss highly targeted attacks. But it is still recommended that consumers use an AV product, as it can block standard malware that steals login credentials or personal data.

But Batchelder said in the last year he has seen several antivirus products wrapped into bundles of unrelated software. He saw one example where AV was included in a fake Java update. The AV program was legitimate, but the same installation technique is used by hackers to trick people into installing malware.

"If we're not careful, AV is going to turn into unwanted software," he said.

In China, antivirus vendors have at times engineered their products to remove their competitors' products from people's computers, he said.

In other cases, users may be blocked from running an AV program unless another application is removed, such as a chat app. The situation may occur if a software company isn't a pure play security vendor and offers other products, such as a search toolbar. That essentially turns AV into a weapon, Batchelder said.

Remedying the scenario means holding marketing departments accountable, Batchelder said.

"If we fall in a heedless pursuit of competitors, we hurt our customers," he said. "We have a job to do."

Send news tips and comments to jeremy_kirk@idg.com. Follow me on Twitter: @jeremy_kirk

Join the newsletter!

Or

Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.

Tags MicrosoftmalwareExploits / vulnerabilitiesDesktop security

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Jeremy Kirk

IDG News Service
Show Comments

Father’s Day Gift Guide

Brand Post

Most Popular Reviews

Latest Articles

Resources

PCW Evaluation Team

Luke Hill

MSI GT75 TITAN

I need power and lots of it. As a Front End Web developer anything less just won’t cut it which is why the MSI GT75 is an outstanding laptop for me. It’s a sleek and futuristic looking, high quality, beast that has a touch of sci-fi flare about it.

Emily Tyson

MSI GE63 Raider

If you’re looking to invest in your next work horse laptop for work or home use, you can’t go wrong with the MSI GE63.

Laura Johnston

MSI GS65 Stealth Thin

If you can afford the price tag, it is well worth the money. It out performs any other laptop I have tried for gaming, and the transportable design and incredible display also make it ideal for work.

Andrew Teoh

Brother MFC-L9570CDW Multifunction Printer

Touch screen visibility and operation was great and easy to navigate. Each menu and sub-menu was in an understandable order and category

Louise Coady

Brother MFC-L9570CDW Multifunction Printer

The printer was convenient, produced clear and vibrant images and was very easy to use

Edwina Hargreaves

WD My Cloud Home

I would recommend this device for families and small businesses who want one safe place to store all their important digital content and a way to easily share it with friends, family, business partners, or customers.

Featured Content

Product Launch Showcase

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?