Daily Kos

WARNING! computer trojan creating botnet

Sun Aug 05, 2007 at 03:06:58 AM PDT

this is a quick diary to hopefully keep you from making my major mistake last week.

i opened an "ecard" from a "classmate" and loaded the nasty little trojan that is going round since july creating a massive botnet.  this little bugger is wreaking havoc with net activity by inserting into registries the backdoor to making your computer a spam server.

google has pages of info on this little nasty here describing how this particular bug has evaded over 30% of the virus protection programs.

check below for more info...

this particular attack is part of the "STORM worm" that is using the e cards or "greeting cards" to sucker people into downloading the worm that then opens up home computers to serve as the bots for spamming.

3am and i bit - since i am not used to nasties getting through the superb gmail filters... but this one did.

please, folks - don't open anything you don't know to be valid.

and PLEASE! people - STOP sending the damned mass "forwards" of chain emails that keep contaminating inboxes with infected addresses!

here is a bit of bad news

The Storm Worm is Back and He’s Bad
Jimmy Daniels - Filed under: Virus Info

Looks like we get another round of the Storm Worm, and it looks like it could be the biggest virus attack in over 2 years, according to security company Postini. They say this is the most sustained attack they have ever seen, and it has been going on for 9 to 10 days.

   Swidler said in an interview with InformationWeek that the attack started a little more than a week ago, and Postini since then has recorded 200 million spam e-mails luring users to malicious Web sites. Before this attack, an average day sees about 1 million virus-laden e-mails, according to Postini. Last Thursday, however, the company tracked 42 million Storm-related messages in that day alone. As of Tuesday afternoon, Postini researchers were predicting they would see that day between 4 million and 6 million virus e-mails — 99% of them associated with the Storm worm.

   While the number of spam e-mails has dropped significantly, it’s still far above normal levels, so Swidler isn’t ready to say the attack is over.

   The viruses are not embedded in the e-mails or in attachments. The e-mails, many of them otherwise empty, contain a link to a compromised Web site where machines are infected with a generic downloader. This helps pull the computers into the malware authors’ growing botnet, while also leaving them open for further infection at a later date. Source: Storm Worm Erupts Into Worst Virus Attack In 2 Years

This is all about refilling their botnets full of willing computers so they can get back to the bigger fish, making money off of users. They are also sending out e-card spams, and we are at the level now that we were at back in December, one of the biggest months for that kind of spam because of the Christmas holiday. They assumed it would spike for Independence Day, but it has continued until now and shows no signs of letting up. Don’t click on any links in strange emails, and if you get e-cards from someone you know, I would email them first to see if they really sent it or not.

if you slipped up, be prepared to have to re-install your operating system... a clean reinstall.

so, one more word of caution... backup.  backup.  BACKUP!

if your data is worth keeping, you'll have a second drive (preferably removeable) to store it - along with the programs you know and love.

me?  thank god for foxmarks bookmark saver in firefox - and thank god for that little usb portable drive housing holding my old notebook hard drive (where i have all my goodies stored and copied!)

good luck, folks... now, i'm going to bed - too  many all nighters trying to save my system - then two more all nighters reloading the sucker - and i'm not done yet!  but i AM going to bed now.  i am beat! (but at least the puter is working again!)

Tags: technology, teaching (all tags) :: Previous Tag Versions

View Comments | 30 comments