You are here: silicon.com > Software > Security Strategy

Security Strategy

Virus update: Mydoom is everybody's gloom

First major outbreak of the year is the 'fastest spreading ever'...

By Will Sturgeon

Published: 27 January 2004 17:55 GMT

MyDoom - or Shimg - has become the first major infection of 2004, and while the year is still young it will take some beating if it's not to still be the worst come year-end.

Within 24 hours of it first appearing, MessageLabs had intercepted 1.2 million copies of MyDoom, leading the antivirus vendor to pronounce it the fastest-spreading virus of all time.

While vendors have been quick to point out that the email itself is nothing special, its rate of spread and self-propagation has surprised many.

The virus first appeared in Russia and spread overnight - following the sun as business worldwide woke up to infected inboxes.

Simon Perry, divisional vice president security strategy at Computer Associates, expressed an element of surprise that something almost retro in its design can cause such havoc.

"It's nothing unusual as far as technique - it propagates via address list. But it is doing so very effectively," he said. "It seems that we can still have your bog-standard email blaster giving us grief, even in this day of the vulnerability exploit."

However, Perry made it clear that the writer hasn't left everything to chance. The worm does have some tools in its arsenal to evade detection and aid propagation.

"The main reason it is spreading so effectively is that it is highly adaptive in the email form it takes. It spoofs origin address, alters email title, email content and attachment at random," he said.

To date the most headline grabbing element of the worm's existence has been its apparent anti-SCO mission - leading some to suggest it is the latest offensive in the newly coined 'Linux Wars' as techies air their frustrations at SCO's open-source licensing claims.

Graham Cluley, senior technology consultant for Sophos, said: "The MyDoom worm takes the Linux Wars to a new intensity. It appears that the author of MyDoom may have taken the war of words from the courtrooms and internet message boards to a new level by unleashing this worm which attacks SCO's website."

"If we ever get our hands on MyDoom's creator my guess is that he will be an open-source sympathiser. Of course, it's the last kind of assistance the open-source community would want at this time," added Cluley in a statement.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

  • Jobs
Web Developer, Web Programmer, - Python, LAMP, SQL

You must also have reasonable PC skills, a basic knowledge of Microsoft Operating Systems and a good general knowledge of typical PC software (MS ...

Java, J2EE Developer / Architect - Financial Spread betting

Java, J2EE, Spring framework Senior Developer / Architect with solid Financial Spread betting knowledge and experience required for leading player ...

C#, VB.net Senior Developer - Financial Spread Betting

Agile / Scrum won't go amiss.Fantastic opportunity with a high profile Financial Trading / Brokerage OrganisationAs long as you have the Financial ...

Agenda Setters 2008
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: