You are here: silicon.com > Software > Malware

Malware

Porn spam spike due to Windows hole - CipherTrust

Zombie ranks swell on back of worm...

Tags: zombies, ciphertrust, mocbot, zombie

Published: 23 August 2006 08:25 GMT

Malicious code that exploits a recent Windows hole has led to significant growth in the number of hijacked PCs, according to messaging security company CipherTrust.

On Tuesday, CipherTrust reported a 23 per cent growth in the total number of so-called zombie PCs it has detected. The jump is due to the spread of Mocbot worm variants, CipherTrust said. Mocbot, also known as Cuebot and Graweg, exploits a Windows security flaw for which Microsoft issued a patch with security bulletin MS06-040 on 8 August.

Dmitri Alperovitch, a research scientist at CipherTrust, said: "Around 13 August, the weekend after Black Tuesday, we started seeing a gradual increase in the average number of new zombies. It went up from 214,000 every day in the previous week to 265,000 every day."

Any computer infected by Mocbot will become part of a botnet, a large network of compromised PCs that can be controlled remotely to carry out tasks such as sending spam. In June, Microsoft warned that the threat posed by botnets and zombies was growing fast.

CipherTrust can trace the increase in spam-sending zombies to Mocbot by comparing junk email sent by systems it knows were compromised by the worm to the spam sent by new zombies, Alperovitch said. "They are mostly Rolex spam and porn spam, and they are the same messages that are being sent by these new zombies coming online," he said.

Alperovitch estimated that somewhere between 500,000 and one million machines were hijacked by Mocbot. As a result, more junk mail is soiling the internet, with spam making up 81 per cent of all mail volume this week. "I would not say this has been a huge outbreak but it has been a noticeable change," he said.

Security experts had said the MS06-040 worm appeared to be limited in its spread and only hitting computers running Windows 2000.

Joris Evers writes for CNET News.com

Colin Barker writes for ZDNet UK

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

silicon.com staff Inbox: Social networking can help you secure a job Plus: Open source advocates hit back at CIOs and netbooks fail 'fit for work' test

Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead


  • Jobs
Application Support Developer, Trading/Spread Betting - London

Application Support Developer, Trading/Spread Betting - London You will join a leading product support team with responsibility for any software ...

C++/JAVA Developer required for Financial Spread Betting Firm - 50-55K

A leading City based financial and sports spread betting firm are looking for a senior C++/Java Server side developer to join their leading IT group ...

Web Developer within Spread Betting Organisation.

Contract Role: Web Developer within Spread Betting Organisation. The responsibilities for this role will be to contribute to planning and subsequent ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: