ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Emerging tech Toolkit

Hackers earn income from spam attacks

Max Smetannikov, Inter@ctive Week ZDNet US

Published: 04 Jul 2001 11:49 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Several small Internet service providers have been shocked to see some of their most unlikely users turn into spammers. But it turns out the users are unwitting tools of a new virus that experts say is the first case they've seen of hackers finding a way to commercially exploit their skills.

The scheme -- seemingly spread across desktops in the form of a virus -- was tested by hackers throughout June, apparently to explore the possibility of infecting home machines with software that would generate unsolicited bulk email without the knowledge of the machines' owners.

"I believe it was a dry run," said Michael Reaves, systems administrator at Adimpleo/FirstNetSecurity.com. Reaves' organisation registered the first case of a "spamming trojan" on 14 June, in the San Francisco Bay area, on Excite@Home's network. He believes a commercial version will soon be launched.

The virus was designed with a simple succession of points and clicks, using a widely available worm-writing tool such as The Visual Basic Worm Generator, experts believe. The virus carries a trojan -- a piece of hacker software that installs itself on users' machines after an email attachment is downloaded.

The trojan--nicknamed the spamming trojan for its function -- then generates spam e-mails from users' accounts, using their names and targeting the people to whom they send e-mail. Got an email from your grandmother advertising the services of an adult Web site? Don't get mad -- her computer's been infected by the spamming trojan virus.

It's the unlikely nature of the users who turned into spammers overnight that caught network administrators' attention in the first place.

"I got an abuse report from somebody in Florida and was very surprised, because we run a very clear network and got just three abuse reports in three years," said Don Lashier, owner of Newport Internet in Oregon. "I checked into it, and the spammer was this middle-age woman we know well." Newport Internet has only 1,000 users, and Lashier knows many personally.

Further investigation revealed the user was unwittingly generating spam, seemingly advertising services on an adult Web site -- with one caveat: the ad had no HyperText Transfer Protocol links, leading Lashier to believe a spamming trojan was being tested.

While individual users generate very little spam -- three or four messages per day - Reaves believes the problem is amplified by the proliferation of distributed, remote systems management tools, which have been used in the past to launch denial-of-service attacks. This time, hackers could use the same topology to generate massive volumes of spam.

"Hackers now can make money," Reaves said.

Jupiter Research estimates the volume of opt-in email will reach 268 billion messages by 2005, generating revenue of $7.3bn. Security experts say some of this cash is bound to end up in spammers' pockets.

The spamming trojan could be prevented by users installing filters to block spam and viruses or by ISPs taking measures to curb spam and increase security.

Is your PC safe? Find out in ZDNet UK's Viruses and Hacking News Section.

Have your say instantly, and see what others have said. Click on the TalkBack button and go to the Security forum.

Let the editors know what you think in the Mailroom. And read other letters.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
40 out of 83 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:





Related Jobs

MDX and CUBE experts,Get into the exciting world of Investment Banking

Seeking an intelligent and experienced Business Intelligence consultant to work on exciting projects, developing reports to advise and improve the ...

Project Manager (Online, End-To-End Web-Site builds )

Project Manager to work for a global Media & Publishing organisation. Our client has offices world-wide and have over 300 publications and related ...

Internet Team Leader

Responsibility for maintaining the integrity of the networks (i.e.providing adequate protection from viruses, spam, hacking, compliance with the Data ...

Discussions

319762 319762

Eve of Distraction

Saturday 26 July 2008, 4:37 AM

1 comment
harpless harpless

SAP goes big business

Friday 25 July 2008, 6:17 PM

1 comment

Blog Posts

Avatar geek

Gateway 450SX4 Laptop Computer

Saturday 26 July 2008, 4:46 AM

0 comments
Avatar geek

Windows XP

Saturday 26 July 2008, 4:41 AM

0 comments

Featured Talkback

While full medical records may be of (dubious) value at rear/base medical facilities, these could be provided much simpler by either physical disk or electronic transfer to an "in theatre" database for individuals posted in. That £80m (and it's associated running costs) could have been far better employed in resuscitating a disbanded infantry battalion or providing a big boost in equipment quality and quantity.

By: 1000215420

Read full story:
Photos: MoD unveils £80m IT health programme