マルウエアを見てみたら、IE脆弱性を使うExploitが多かったってお話。

We took a sampling of 89 URLs to catalog the payloads of the malicious code. We found that in virtually all cases, patched Internet Explorer vulnerabilities lay beneath the obfuscation layer. It is fairly common for one page to contain multiple exploits. Here’s a breakdown of the exploits obfuscated:

http://vil.nai.com/images/AvertBlogObfuscatedHtmlChart.gif:large

これは面白いグラフだ。

MS06-014 70%
MS07-017 23%
MS07-004 6%
MS06-046 1%