Advertisement
Promo

Online business Toolkit

Experts play down Nolor worm threat

Patrick Gray ZDNet Australia

Published: 29 Apr 2003 08:29 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Antivirus companies have played down the threat from the Nolor (aka Cailont) mass-mailing email worm -- a "garden variety" virus that spreads by sending itself to Windows address book entries through an executable attachment.

The worm had received the highest distribution rating from Symantec, despite low levels of infections. The high rating was given to the virus because it has the capacity to spread rapidly, John Donovan, managing director of Symantec in Australia and New Zealand, told ZDNet Australia.

"We're not seeing a great infection rate... the ratings are set (according to) the ability of the virus or worm has to send itself out," he said.

One of the reasons the mass-mailer isn't spreading rapidly is because users have finally learned not to open executable attachments, Donovan says.

"It's a combination of technology and policy... most people know they shouldn't execute it. In that way we've almost won the policy war," he added.

The head of technology, Asia Pacific, for Sophos antivirus, Paul Ducklin, says the new virus is nothing to get alarmed about; it's just another mass mailer.

"We have had one copy of the virus reported to us... keep in mind there are several hundred new viruses a month," he said.

The virus tries to tempt users into opening attachments through a number of different subjects. Some of the seem a little odd, such as "run File Attach to extract:BinladenSexy.jpg..." and "The Sexy story and 4 sexy picture of BINLADEN !".

"Sometimes viruses spread for reasons that you couldn't possibly think of... the run of the mill viruses do have a harder time," Ducklin said.

As for infections among government and corporate interests, he said it's unlikely in this case because most larger organisations automatically block executable attachments, but it "depends on whether their following best practice or not".

"It's much less likely to get in (but) many people do allow all types of attachments," he said.


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
42 out of 100 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:







Sentry Posts Blog

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

Post a comment

Beware of keeping your head in the clo...

Information security professionals can look forward to a deepening appreciation for their skills as security continues to be recognised as an essential element for doing business in... More

Post a comment

Civil liberties groups attack file-sha...

Civil liberties and digital rights organisations have strongly criticised Lord Mandelson's Digital Economy Bill. Liberty said in a position paper on Tuesday that the bill, part of... More

Post a comment

Video icon

Video

Google Chrome

Roundup: Full coverage of Google Chrome

The search giant has launched a beta of its own open-source browser, sending a clear challenge to Microsoft in the way it lets users work with applications More

Blog: Google Chrome has Microsoft's code inside, says MS manager

And furthermore, he says, that's a good thing... More

Blog: Google Chrome — nine things we've found since launch

Google must be very happy with the coverage Chrome has gathered. But it's not all good news... More


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters