- Recommend:
- 0 Comments
Sobig.F Breaks Speed Records
More than 1 million copies appeared in the first 24 hours.
The latest of version of the Sobig Internet virus, Sobig.F, is spreading faster than any virus seen before, according to U.K. e-mail security firm MessageLabs.
"One e-mail in 17 carrying the virus is the biggest we've seen," MessageLabs Chief Information Security Analyst Paul Wood said Thursday.
"Previous incarnations [of Sobig] have gradually evolved and this is now the most prevalent, in our history at least," Wood said.
The virus produced over 1 million copies within the first 24 hours, according to MessageLabs.
Spreading Quickly
The virus has spread quickly due to two factors, according to Wood. The first of these is that Sobig.F can send multiple e-mails simultaneously, whereas previous versions of the worm sent them one at a time, "so it's very, very efficient," he said.
The second reason for the rapid spread is that a bug in previous versions has now been fixed. "The bug meant that many file names were truncated, so that they appeared as .pi instead of .pif and therefore wouldn't run. I don't know what proportion had that problem, but even if it was a third, that's a significant chunk. In this case, they've fixed that," Wood said.
The e-mail message carrying the virus is also interesting, Wood said. "In the e-mail header component--something you don't typically see--the message says it's been through a virus scanner and been cleaned. A private joke on their part, perhaps, and something we haven't seen before," he said.
"The sole purpose of this virus is to generate a number of insecure computers that can be taken control of at will and used to distribute spam, porn, or host Web sites," Wood said.
Hardest Hit
The spread of Sobig.F has calmed down in the past 12 hours, Wood said, but it has hit the home user and small to medium enterprise markets hard. These users are the least likely to have firewalls, mostly relying on antivirus software. "When over one million copies are seen in the first 24 hours, and the antivirus company needs, say, 12 hours to develop updates to their software, there's a big window of opportunity for the virus to take over," Wood said.
Corporations are used to blocking file extensions likely to cause trouble, so they are hit less than they would have been two or three years ago, David Em, U.K. marketing manager for Network Associates' antivirus emergency response team said Thursday.
Home users, on the other hand, have been badly affected, he said. "As people get broadband, and realize they need more protection, hopefully the idea of firewalls will gain currency," he said.
Small businesses have been suffering too, Em agreed. "The tricky thing is that they have an always-on connection but no dedicated IT resource to maintain protection." Antivirus companies like Network Associates are therefore focusing on automatic updates and intrusion prevention products to help small companies, he said.
Would you recommend this story? YES NO
- Recommend:
- 0 Comments
-
ThinkPad Edge E420 Lenovo Style in an Affordable Package
Buy now direct from Lenovo -
ThinkPad X220 Fast and light, with great input ergonomics and battery life, this powerhouse ultraportable is best-of-breed.
Buy now direct from Lenovo -
ThinkPad X120e One of the best netbooks ever, X120e has the best netbook keyboard ever--nothing else comes close
Buy now direct from Lenovo
- Ashampoo PowerUp 3
- 'Here you Have' Virus Tries to Delete Your Security Software
- 'Massive' Epsilon E-Mail Breach Hits Citi, Chase, Many More
- Eset Smart Security 5 Review: Significantly Improved Protection
- G Data InternetSecurity 2012 Review: Top-Notch Antimalware Protection
- iPhone 4S Breaks Apple Preorder Record -- 1 Million in 24 Hours
- Hotmail Mobile Usage Spikes Thanks to iOS 5
- 12 Criteria for Selecting the Best ERP System Replacement An ERP system is your information backbone and reaches into all areas of your business and value chain. Replacing it can open unlimited business opportunities. This white paper explains the 12 criteria that allow you to identify and select the solution that will meet these expectations.
- Leveraging Social Computing Technologies for ERP Applications This white paper details how Web 2.0 technologies support business strategies by improving efficiency, productivity, and collaboration.




















