ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Online business Toolkit

Nimda worm causes Internet slowdown

Wendy McAuliffe ZDNet.co.uk

Published: 19 Sep 2001 16:22 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

A new Internet virus, which has been recognised as a hybrid of the Code Red worm, is expected to have a much greater impact on Internet traffic than its predecessor, according to antivirus experts.

Nimda uses multiple methods to attack servers and PCs using Windows software. It combines elements of the Web-based Code Red virus, which targetted servers using Microsoft's Internet Information Server (IIS) software, with a mass-mailing component enabling the virus to propagate on a massive scale. It can also spread across open network shares or across shared drives that allow connections via the username guest without the need for a password.

"It is generating a lot of Internet traffic, and a lot of Web sites have been receiving a lot of bogus requests," said Graham Cluley, senior technology consultant at antivirus firm Sophos. "Web surfers will definitely be seeing a slow-down."

Analysis of the worm's activity by Matrix.org reveals that at 18:00 GMT yesterday, the reachability of Web pages dipped late on Tuesday to 91.3 percent -- a 2 percent drop from the average length of time that it has been taking to load Internet pages in the last 24 hours. Some antivirus experts believe this suggets that the worst of Nimda'a effects may be over. "From a worm-tracking standard, Nimda appears to have peaked already," said David Perry, global director of education at Trend Micro.

Home computers are most at risk from the Nimda virus, as most corporate systems running IIS software will already have been patched against the Code Red exploit. "Nimda is vastly more complex than Code Red as it is able to affect end users' PCs," said Perry.

Nimda arrives as an attachment entitled "Readme.exe", which is programmed to exploit a MIME vulnerability in some versions of Microsoft Outlook, Microsoft Outlook Express and Internet Explorer. The email automatically archives the attachment, enabling the executable file to run without the end user having to double-click on the attachment.

Trend Micro reports that in the last 24 hours, 24,000 infected computers have been identified out of the 60,000 that have visited antivirus.com for scanning.

See the Viruses and Hacking News Section for the latest headlines.

Have your say instantly, and see what others have said. Click on the TalkBack button and go to the Security forum.

Let the editors know what you think in the Mailroom. And read other letters.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
43 out of 96 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:









Related Jobs

McAffee Anti Virus Rollout Engineer CRB Cleared

The role will require the following - - Experienced in field support - Windows 2000 / XP / Vista - Anti - Virus experience For an immediate telephone ...

Implementation Consultant - Calypso or Murex experts required !!

Leading Investment banking consultancy is currently looking for a specialist implementation consultant to join their growing specialist department. ...

McAffee Anti-Virus Rollout Engineer (Field Based)

My West Midlands based client has a requirement for 2 Engineers to rollout McAfee Anti-Virus on to 600+ desktops at multiple sites throughout the ...

Sentry Posts Blog

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

2 comments

Featured Talkback

I wonder, who needs .asia domain? I cannot imagine, what would be useful for Microsoft.asia? Toyota.asia? Then let's register .europe (if .eu is too short). Or perhaps Microsoft.southamerica, Dell.australiaandnewzealand, Coca-Cola.africa... Sound funny? Then why not just use the global and country domains? Or perhaps it is time to drop the domains at all?

By: LadyRoot

Read full story:
Businesses advised to register .asia domains