Nations with low malware rates have better ISPs

27.08.2011
Countries with good national security teams (CERTs) and diligent ISPs show consistently lower rates of malware infection than those states that adopt a less paternalistic approach to security, a new analysis by .

According to statistics drawn from the company's widely-used Malicious Software Removal Tool (MSRT), the countries which have shown notably lower infection rates of malware are Austria, Finland, Germany and Japan.

Using the yardstick of computers cleaned per mile (CCM)*, Austria recorded a normalised rate of 3.3 CCM in Q4 2010, Finland 2.3, Germany 5.3, and Japan 2.3, all significantly below the global average taken from 116 countries of 8.3. These low rates have remained consistent since the first measurements taken in 2007.

Paradoxically, one possible explanation was not the number of malware download sites hosted in each country, which in several of them was somewhat higher for some classes of malware than the levels seen in the US, a country with raised levels of infection at PC level.

Having examined the special conditions and security culture of each country, Microsoft's conclusions are clear - lower infection rates have a lot to do with the intervention by ISPs, security bodies and admins at the earliest point problems are detected.

In all four nations, ISPs are very active in monitoring for traffic indicative of botnets and spam, contacting users they believe to be infected as soon as they notice problem traffic and if necessary disconnecting them until the issue has been addressed. National CERT bodies, meanwhile, go out of their way to support ISPs with up-to-date threat lists drawn from honeynets, darknets and automated malware analysis tools, distributing this data as a matter of course.