Advertisement
Promo

Security threats Toolkit

Sober worm hits new heights

Dan Ilet ZDNet.co.uk

Published: 09 May 2005 12:45 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

The Sober.P worm is circulating the Internet in greater quantities than ever, according to an antivirus company on Monday.

Sophos has reported that the mass-mailing worm now accounts for 5.4 percent of all email and 84 percent of virus activity that the company saw over the weekend. That has risen from Friday's figures, which were 4.65 percent of all email and 77 percent of virus activity.

"The strange thing is that we're actually seeing more reports than ever," said Graham Cluley, senior technology consultant for Sophos. "It's increased and it's even worse than last week. We don't know how many people are infected, but those infected are just spewing these emails out."

Cluley said that the second most prevalent virus, Netsky.P, accounted for 0.3 percent of all email viruses, and Zafi.D, the third most popular worm, was just 0.082 percent. "Those have been big viruses, but have been dwarfed by the Sober worm," he said.

Last week, Sophos said that the worm turned off Symantec's antivirus protection and Microsoft's Windows XP firewall on infected machines.

Sober.P — which security companies have variously tagged as Sober.N, Sober.O or Sober.S — travels as an attachment in emails written in English and German. One of the most widely reported emails contains an alluring message stating that the recipient has won free tickets to the 2006 World Cup in Germany, but many other types have also been spotted. Once opened, the virus sends itself to email addresses harvested from the newly infected machine.

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?
78 out of 125 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:




Video icon

Video

Sentry Posts Blog

Met will not reopen phone hack investi...

The Metropolitan Police will not reopen its investigation into alleged phone hacking by the News of the World. In a press statement delivered outside Scotland Yard on Thursday, Assistant... More

Post a comment

FUD over ChromeOS's security already?

It hasn't taken long for the security vendors to wake to the potential of Google's new ChromeOS. The potential that is, to create FUD – fear uncertainty and doubt. In a release today,... More

Post a comment

Feds take DDoS in their stride

The US Department of Homeland Security has said that a series of distributed denial-of-service attacks began on US government networks on 4 July. However, Amy Kudwa, deputy press... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters