eSecurity Planet   Earthweb  
Images Events Jobs Premium Services Media Kit Network Map E-mail Offers Vendor Solutions Webcasts
   eSecurity subjects:
E-Security Planet Webcasts:
Keeping Your Data Secure from the Outside In

Beyond Basic Data Security

more Webcasts...


Search EarthWeb Network

internet.commerce
Be a Commerce Partner
Server Racks
Data Center Solutions
Memory Upgrades
Promotional Golf
KVM over IP
Hurricane Shutters
Shop
Auto Insurance Quote
Disney World Tickets
Career Education
Rackmount LCD Monitor
Corporate Awards
Boat Donations
Dental Insurance

esecurityplanet : Information Security Trends: MyDoom Worm Sweeps Across Internet

Whitepaper: HP StorageWorks All-in-One Storage System: iSCSI Advanced Topics. Click here to open this PDF.

  Managing the Modern Network
Sponsored by HP
In a global economy where information crosses the globe in an instant, and where Web-based applications power business, it's more important than ever to ensure your network is safe from threats and optimized to deliver the data your business needs. »
 
  Business Service Management: Generate Revenue Through IT
Sponsored by HP
IT must now help organizations attract, retain and grow customer relationships and increase customer satisfaction. Business service management (BSM) helps lay the foundation by managing services in dynamic support of business requirements. Learn more. »
 
  Evaluating Software as a Service for Your Business
Sponsored by Webroot
Is Software as a Service just hype, or is something really going on here? See if your company can benefit as SaaS tries to change the face of the enterprise. »
 
  Storage Networking: Configuration and Planning
Sponsored by HP
The most critical part of setting up a SAN is configuring each individual disk array. This guide examines configurations for SAN-attached servers and disk arrays, and looks at the future of IP storage. »
 
  Is Your Disaster Recovery Plan Good Enough?
Sponsored by HP
Preparing for a disaster is more often than not part of the storage planning process, and it is one of the most difficult tasks, since it includes local hardware and software, networking equipment, and a test plan. Learn how to get disaster recovery right. »
 

Related Articles
Sobig's Birthday -- Tracking Most Damaging Virus Ever
DDoS Attacks
Survey: 'Unknown Hackers' Greatest Security Fear
2003 'Worst Year Ever' for Viruses, Worms
eSecurity Glossary
biometrics
encryption
keylogger
malware
phishing
RFID
security
spyware
virus
worm
Search for more eSecurity terms ...
FREE Tech Newsletters

MyDoom Worm Sweeps Across Internet
January 27, 2004
By Sharon Gaudin

MyDoom, by many accounts, is swiftly becoming the fastest spreading virus ever, even surpassing Sobig-F, which carpet bombed the Internet late last summer.

The mass-mailing worm, also known by some security companies as Novarg, hit the wild on Monday and has been racing around the globe infecting computers with backdoor trojans and proxies. MessageLabs, an email security services company based in New York, reports that MyDoom accounts for one in 17 emails today.

As of 11 a.m. today, company analysts say they have stopped 1.2 million copies of the worm. By comparison, the company stopped 1 million copies of Sobig-F in the first 24 hours.

The worm has caused more than $850 million worth of economic damages worldwide in just the first 24 hours, according to mi2g, a security analyst company based in London.

And anti-virus experts say the problem will most likely get worse before it gets better.

''This one is very dangerous,'' says Chris Belthoff, a senior analyst at Sophos, Inc., an anti-virus and anti-spam company based in Lynnfield, Mass. ''It's spreading pretty pervasively and we expect to see it increasing over the course of the day. A lot of people may already have copies sitting in their in-boxes and as time zones wake up and get to work, it may pick up.''

MyDoom spreads via email and by copying itself to any available shared directories used by Kazaa. It harvests addresses from infected machines, and generally uses the words 'test', 'hi' and 'hello' in the subject line.

Analysts say MyDoom is spreading so quickly because it is successfully fooling users into opening firs the email and then the attachment. The email often disguises itself as an email that the user sent that has bounced back. The user, wanting to know why the email failed, opens it up and then sees a text file icon, instead of the icon for an executable.

''From a propagation perspective, it has been effective, much more than we would have suspected,'' says Brian Dunphy, a senior manager at Symantec Managed Security Services, which is based in Alexandria, Va. ''It took a unique twist on social engineering. We've told them not to open executables but this one masquerades as a harmless text file. It's exploiting the end user and their desire to want to open up attachments.''

MyDoom also sets up a backdoor trojan in infected computers, allowing the virus writer or anyone else capable of sending commands to an infected machine to upload code or send spam. The worm also is geared to launch a denial-of-service attack against SCO.com starting Feb. 1. SCO, a Linux company, is embroiled in legal disputes over Linux and open source issues.

Some analysts say the worm is the latest round in the 'Linux wars'.

The worm has a kill date of Feb. 12.

Ken Dunham, director of malicious code at iDefense, Inc., a security and anti-virus company, says the specific kill date leads him to expect the onslaught of MyDoom variants.

''This may be the first of many attacks and we ,perhaps, may see this worm refined in future attacks,'' says Dunham. ''Like we did with Sobig in 2003, we might see copy cat attacks featuring MyDoom in 2004.''

 

Tools:
Add www.esecurityplanet.com to your favorites
Add www.esecurityplanet.com to your browser search box
IE 7 | Firefox 2.0 | Firefox 1.5.x
Receive news via our XML/RSS feed

Information Security Trends Archives

eBook: Evaluating Software as a Service for Your Business. Sponsored by Webroot
Trend Micro InterScan Trial – Block Spam and Viruses Today
Stay up to date! Get real-time news and reviews about the latest innovations in internet technology.
What's The Future Of IT? Find Out By Reading "IT in 2018" Now. Free Registration Required.
Best Practices: Make the Case for IT Investments. Complimentary Independent Report. Download Now!



JupiterOnlineMedia

internet.comearthweb.comDevx.commediabistro.comGraphics.com

Search:

Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

Jupitermedia Corporate Info


Legal Notices, Licensing, Reprints, & Permissions, Privacy Policy.

Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers

Solutions
Whitepapers and eBooks
Microsoft Article: Will Hyper-V Make VMware This Decade's Netscape?
Microsoft Article: 7.0, Microsoft's Lucky Version?
Microsoft Article: Hyper-V--The Killer Feature in Windows Server 2008
Avaya Article: How to Feed Data into the Avaya Event Processor
Microsoft Article: Install What You Need with Windows Server 2008
HP eBook: Putting the Green into IT
Whitepaper: HP Integrated Citrix XenServer for HP ProLiant Servers
Intel Go Parallel Portal: Interview with C++ Guru Herb Sutter, Part 1
Intel Go Parallel Portal: Interview with C++ Guru Herb Sutter, Part 2--The Future of Concurrency
Avaya Article: Setting Up a SIP A/S Development Environment
IBM Article: How Cool Is Your Data Center?
Microsoft Article: Managing Virtual Machines with Microsoft System Center
HP eBook: Storage Networking , Part 1
Microsoft Article: Solving Data Center Complexity with Microsoft System Center Configuration Manager 2007
MORE WHITEPAPERS, EBOOKS, AND ARTICLES
Webcasts
Intel Video: Are Multi-core Processors Here to Stay?
On-Demand Webcast: Five Virtualization Trends to Watch
HP Video: Page Cost Calculator
Intel Video: APIs for Parallel Programming
HP Webcast: Storage Is Changing Fast - Be Ready or Be Left Behind
Microsoft Silverlight Video: Creating Fading Controls with Expression Design and Expression Blend 2
MORE WEBCASTS, PODCASTS, AND VIDEOS
Downloads and eKits
Sun Download: Solaris 8 Migration Assistant
Sybase Download: SQL Anywhere Developer Edition
Red Gate Download: SQL Backup Pro and free DBA Best Practices eBook
Red Gate Download: SQL Compare Pro 6
Iron Speed Designer Application Generator
MORE DOWNLOADS, EKITS, AND FREE TRIALS
Tutorials and Demos
How-to-Article: Preparing for Hyper-Threading Technology and Dual Core Technology
eTouch PDF: Conquering the Tyranny of E-Mail and Word Processors
IBM Article: Collaborating in the High-Performance Workplace
HP Demo: StorageWorks EVA4400
Intel Featured Algorhythm: Intel Threading Building Blocks--The Pipeline Class
Microsoft How-to Article: Get Going with Silverlight and Windows Live
MORE TUTORIALS, DEMOS AND STEP-BY-STEP GUIDES