ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Global Tech Threats

Storm worm anniversary brings fresh variants

Tom Espiner ZDNet.co.uk

Published: 18 Jan 2008 17:13 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

The anniversary week of the first Storm worm attack has brought warnings of more Storm variants being sent out in spam.

The attacks are using variants of malicious code known as Troj/Dorf-AP by Sophos and Trojan.Peacomm.D by Symantec.

Sophos researchers believe the spam run is an attempt to dupe users into downloading backdoor code, which will then download further malicious code from the internet.

The social-engineering technique attempts to trick users into clicking on a link in a "Valentine's Day" email, according to a Sophos blog post.

"The body of the email contains a link to an IP-address based website, which is actually one of the many compromised PCs in the Storm botnet," said Sophos. "The website displays a large red heart, while installing malware onto the vistors' PC."

Symantec researcher Hon Lau said that a spam run attempting to exploit St Valentine's Day was perhaps premature.

"I don't know about you, but I feel that this campaign has started a little bit too early," wrote Hon in a blog post. "Maybe the Peacomm creators feel that they need a head start this time, since they started a bit late on their Christmas 2007 campaign. After all they don't want to miss the boat when it comes to gathering more bots for their network."

The original Storm worm code, so named because the first spam run coincided with a severe winter storm in Europe, will reach its first anniversary on 19 January.

Phishers harness Storm worm botnet

Domains associated with the Storm worm botnet are being used to host phishing sites, F-Secure and Trend Micro have warned [10 Jan 2008]

Cracking open the cybercrime economy

Cracking open the cybercrime economy

Hacking for fun has evolved into hacking for profit, and created a business model that is nearly as sophisticated as that of legal software [14 Dec 2007]


Governments prepare for 'cyber cold war'

Security experts have warned that governments are regularly monitoring and attacking the critical national infrastructures of other nations [03 Dec 2007]

Talkback 1 Talkback

Symantec: Storm worm changes tack

The worm's authors have streamlined the code to make it more stable, researchers have claimed [02 Nov 2007]

Storm botnet 'services' could be sold

The Storm botnet could be divided into smaller networks and the individual pieces sold to spammers, security experts warn [16 Oct 2007]

Storm worm: More powerful than Blue Gene?

The criminal botnet controlling millions of PCs may have more computing muscle than the world's most powerful supercomputer [12 Sep 2007]

Storm Worm variant sneaks into blogs

Blogs and bulletin board notices posted by victims of the Trojan horse contain links to malicious websites [28 Feb 2007]

Storm worm resurfaces

The virus has re-emerged but, rather than spreading through executable file attachments in emails, the latest attack is web-borne [17 Aug 2007]

Storm worm stirs up email virus chaos

Variations of the Storm worm have driven global virus levels 60 times higher than their daily average, warns security company Postini [16 Apr 2007]

Talkback 2 Talkbacks

Attack code raises risk for Windows

Windows systems are at greater risk of being compromised, as attack code is made public [17 Apr 2007]

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
2 out of 2 people found this useful


Full Talkback thread

0 comments

More in this Special Report

Governments prepare for 'cyber cold war'

Governments prepare for 'cyber cold war'

There has been a sea change over the past year in the amount of government-sanctioned cyber-espionage, according to some security experts. more

MI5 warns of Chinese digital espionage

MI5 warns of Chinese digital espionage

MI5 has issued a warning to UK businesses that spies in China are conducting a campaign of cyber-espionage against them. more

Burglars plunder Verizon's London data centre

Burglars plunder Verizon's London data centre

Criminals posing as policemen conned their way into a data centre near London's King's Cross station, tying up staff and stealing computing equipment, the Metropolitan Police said on Friday. more

Cyberterrorism: Myth or reality?

Cyberterrorism: Myth or reality?

Following recent accusations of government-sanctioned digitial espionage and alleged hacking attacks from China and Russia, there seems to be evidence that countries are capable of using electronic means to disrupt the computer systems of rival nations. more

Explaining the Estonian cyberattacks

Explaining the Estonian cyberattacks

When it comes to denial-of-service attacks, Jose Nazario has seen just about everything. more

The worst IT security incidents of 2007

The worst IT security incidents of 2007

Despite the message being driven home by governments, consumer groups and industry bodies that IT security is paramount, this year has thrown up a worrying number of serious breaches. more

Cracking open the cybercrime economy

Cracking open the cybercrime economy

Hacking for fun has evolved into hacking for profit, and created a business model that is nearly as sophisticated as that of legal software more

Countering corporate espionage

Countering corporate espionage

Theft of commercially valuable information costs the world's largest companies over £22bn a year, and small firms are just as vulnerable. How can you mitigate the risks to your company? more

Anatomy of a hack attack

Anatomy of a hack attack

With the help of security experts we reconstruct a typical hack attack on two large organisations and walk through the steps that the head of IT should follow in such a case more

Storm worm anniversary brings fresh variants

Storm worm anniversary brings fresh variants

The first anniversary of the Storm worm has brought a fresh wave of variants, security companies have warned more

CIA: Cyberattack caused multi-city blackout

CIA: Cyberattack caused multi-city blackout

The CIA has warned of successful attacks against various countries' critical national infrastructures more

Schneier: Cyber-extortion on the rise

Schneier: Cyber-extortion on the rise

The security expert has warned of an increase in cyber-extortion, but added there is no need for panic about attacks on critical national infrastructures more

Company/Topic Alerts

Create a new alert from the list below:






Related Jobs

SAS Campaign Analysts London Market Research teams upto 35k & benefit

SAS My client, a company that prides itself on being both a market research and data analysis firm requires a SAS Campaign Analyst for the delivery ...

Campaign Manager - Macclesfield - 35k

Campaign Manager role with flexi-time hours based in Macclesfield. You will be responsible for the design, delivery and evaluation of multi-channel ...

Campaign Analyst Avaya/Melitta - 25,000 - 30,000 Yorkshire

A very large Financial Institute are looking to ring in a Campaign Analyst to help with the day to day running of a Melitta and Avaya Dialer system. ...

Sentry Posts Blog

Mobile Linux Better For Mobile Busines...

Mobile Linux Better For Mobile Business Apps? Author: Eric Everson, MyMobiSafe.com As mobile Linux is carving it’s footprint on the future of mobile application development, the... More

Post a comment

DWP downplays security breach

The Department for Work and Pensions (DWP) has admitted that some of its staff have been forwarding passwords with password protected material. An email that was leaked on the 'Dizzy... More

Post a comment

How many headshots does one chairperso...

We got a strange request last week from the head of PR from Russian security experts Kaspersky. It seems although the company was very happy with the interview we recently carried with... More

Post a comment

Featured Talkback

On the contrary, if vendors were forced to stand behind their products it should increase innovation. It would force more, and better , testing before hitting the sales floor, resulting in fewer updates and less downtime for the consumer. At present the EULA removes responsibility from the vendor, and moves it to the user, which is a step backward. Make the vendor responsibility for their code.

By: ator1940

Read full story:
RSA: Vendor liability may stifle innovation