Network World
Wednesday, February 10, 2010
DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Storm worm, other botnets, kept spam levels high in 2007

Spam accounted for an average of 80% of all e-mail traffic in 2007, Commtouch reports

Botnets helped keep spam output at consistently high levels last year, and global spam reached rates as high as 96% of all e-mail traffic during 2007, according to a report from Commtouch.

Other stories on this topic
Australian airports to deploy body scanning technology 2/9/2010
Google teaming up with the NSA: should you be worried? 2/6/2010
EPIC files FOIA request over reported Google, NSA partnership 2/4/2010
Powered by Inform

Why a social networking strategy is needed
02/09/10
When I'm not being a journalist and leaping wide clauses in a single bound or moving faster than a speeding cursor, I adopt my alternate persona: Mark Gibbs, mild-mannered consultant. Well, perhaps not so mild-mannered.

Victoria to tip in $3M to spy on bushfires
02/09/10
Victoria’s troubled bushfire alert system may be bolstered with a fleet of fire-detection cameras after a $3 million government trial announced today is completed.

The 12 most popular newsletters of all time
02/09/10
This week will be the final week of the Network Architecture newsletter as penned by me. Before we say goodbye in Thursday's issue, I'd like to take a fond look back at the biggest hits.

According to data collected by Commtouch, a security firm that specializes in protecting e-mail, the global spam rate averaged around 80% of all e-mail traffic throughout the year (compare antispam products).  

Although the spam rate dipped to as low as 60% in the second quarter of 2007, it spiked back up in the third and fourth quarters, peaking at 96% of all e-mail output early in the fourth quarter. Commtouch says that botnets -- which are networks of infected zombie hosts that are used to carry out distributed denial-of-service attacks and massive spam campaigns -- were the major culprits behind the spam outbreaks.

The most disruptive botnet, says the firm, was the Storm worm botnet, which researchers estimate contains more than 1 million infected machines. In the fourth quarter of 2007, for instance, the Storm botnet launched an MP3 spam campaign that enticed unwitting users into downloading malware by offering them free music through infected sound files. The firm says that this particular attack accounted for 7% to 10% of all global spam traffic at its peak.

In addition to its MP3 attacks, the Storm botnet launched a series of holiday-themed spam attacks that included dancing skeleton graphics for Halloween and Christmas e-mails that enticed users with promises of "sexy girls" who would "give you that special Santa treatment."

Commtouch warns that the Storm botnet has yet to be used to its full potential and that its activity in 2007 "may come to be seen as merely the calm before the Storm compared to what 2008 has yet to bring." Part of the reason that the Storm botnet has been so difficult for security pros to tackle, the firm notes, is that it has an elaborate defense system that aggressively attacks anyone who attempts to reverse engineer it. Additionally, Commtouch says it is virtually impossible to track down Storm's botmaster, because its command and control is executed through a peer-to-peer network.

React: Give us your thoughts on the issues here.
Start a public discussion with other Network World users on this article (scroll up to send this article to a colleague).
Log In | Register for an account (Why you should)

Note: Register to have your user name appear; otherwise your comment will show up as "Anonymous."

*Anonymous comments will only appear once they are approved by the moderator.

Copyright 2008 Network World Inc.