Detecting hoaxes as the spam they truly are

Heather Goudey Computer Associates

Detecting hoaxes as the spam they truly are

When a customer gets a virus warning via email they do not know that it is a hoax until they go looking for 'virus' information from an AV vendor. Customers see this as an anti-virus problem, but largely the AV vendors are focused on detecting real viruses and have tended to overlook this area of customer perception. This is done partly because the AV industry metrics are focused on the number of 'viruses' detected, and partly because the detection of hoaxes is significantly different to the detection of viruses.

With the continued increase in the number of spam emails received each day there has been a corresponding rise in the marketplace penetration of spam filters to 'protect' corporate and home users. These spam filters are very well suited to search email text looking for hoaxes and to issue suitable warnings to alleviate the customers' concern, and perhaps more importantly to educate the customer to the point that they decide not to forward the hoax onto anyone else.

There are a number of implications in adopting spam filter functionality to protect customers from hoaxes. This paper looks into these issues and suggests some solutions for the AV industry.

 del.icio.us  digg this! digg this

Quick Links

Poll
The Japanese government is reported to have commissioned a 'defensive virus'. Is 'defensive' malware ever a good idea?
Yes
No
I don't know
Leave a comment
View 11 comments

99 Subscription Promo

VB100 certification
VB100 This month's VB100 test saw some major changes and a radical overhaul of the VB100 test methodology - for the first time allowing products to use their 'cloud' look-up systems. John Hawes has all the details.
See full results.

Virus Bulletin currently has 224,242 registered users.