Factbites
 Where results make sense
About us   |   Why use us?   |   Reviews   |   PR   |   Contact us  

Topic: Sobig


Related Topics
Kan

In the News (Sun 27 Dec 09)

  
  Sobig worm - Wikipedia, the free encyclopedia
The Sobig Worm was a computer worm that infected millions of Internet-connected, Microsoft Windows computers in August 2003.
Sobig is a computer worm in the sense that it replicates by itself, but also a Trojan horse in that it masquerades as something other than malware.
The Sobig worm was written using the Microsoft Visual C++ compiler, and subsequently compressed using a data compression program called tElock.
en.wikipedia.org /wiki/Sobig   (391 words)

  
 PCWorld.com - Sobig Worm Getting Even Bigger
Sobig is a worm that uses e-mail and shared network folders to infect machines running Microsoft's Windows operating system, according to information posted on the Web site of Helsinki antivirus company F-Secure.
The success of Sobig since it first appeared surprised Hyppönen, who said that Sobig is a comparatively simple worm that lacks many of the sophisticated features that allow a new generation of viruses to spread.
For example, Sobig always arrives in e-mail messages from the same sender, big@boss.com, unlike recent successful worms such as Bugbear or Lirva, which generated their own sender addresses, swapped in trusted sender addresses from sources such as antivirus vendors, or selected them at random from a long list.
www.pcworld.com /news/article/0,aid,108793,00.asp   (777 words)

  
 Panda Software - Virus information
Sobig is a worm that spreads rapidly via e-mail in a message with the text Attached file:, whose sender address is big@boss.com.
When Sobig affects a computer, it sends a message to an specific address and connects to a webpage in order to download a Trojan.
Sobig is very easy to recognize, as it reaches the computer in an e-mail message with the following characteristics:
www.pandasoftware.com /virus_info/encyclopedia/overview.aspx?idvirus=37926&sind=0   (112 words)

  
 BBC NEWS | Technology | Sobig is biggest virus of all
But what may have helped Sobig F spread is the fact that it can be hard for people to be sure they are infected.
Sobig F is not the first time that a spammer has tried to spread a message in this way.
Sobig F was preceded by the MSBlast worm and another program called Welchi that tried to fix the vulnerability used by the worm.
news.bbc.co.uk /2/hi/technology/3169573.stm   (608 words)

  
 G4 - Feature - Sobig, So Scary
A new variant of the old Sobig virus was unleashed on the Internet early this week, and the SoBig.F strain -- the sixth iteration of the worm -- has been filling email boxes all over the world.
The news comes on the heels of nationwide trouble caused by Sobig and other recent viruses, including the Blaster worm, which was released last week, and other new viruses including Nachi and Welchia.
On Wednesday, email security firm MessageLabs called Sobig the "fastest growing virus ever." The company stopped more than 1 million copies of the virus in the first 24 hours of its release.
www.g4tv.com /techtvvault/features/45218/Sobig_So_Scary.html   (677 words)

  
 BBC NEWS | Technology | World wakes up to another virus
Sobig F and Welchi are putting a huge amount of strain on network traffic and are slowing corporate systems, security experts said.
The e-mail traffic generated by Sobig F is threatening to swamp some corporate networks that are already struggling to cope with the Welchi worm that scans for fresh hosts many times faster than last weeks MSBlast virus.
Sobig F has now been seen in 134 countries and currently seems to be most prevalent in the US.
news.bbc.co.uk /1/hi/technology/3164861.stm   (479 words)

  
 Sobig.e - Evolution of the Worm - LURHQ
The reasoning behind the use of proxy servers instead of the more familiar open SMTP relay is explained in the first Sobig paper, and will not be rehashed here.
This time the worm had a shelf-life; a built-in timer to stop it from spreading after a certain date, unlike the first Sobig, which is still circulating in the wild today even though it is unable to deliver its secondary payload.
The Sobig.e initial infection is removed by the second-stage trojan.
www.lurhq.com /sobig-e.html   (1814 words)

  
 Sobig.f Examined - LURHQ
The goal of course, is to create spam proxies, as outlined in the two previous papers Sobig.a and the Spam you Received Today and the followup paper Sobig.e - Evolution of the Worm.
The one remaining server was shut down shortly thereafter, but it never "went live", that is, it never contained a valid URL for the second-stage trojan download.
This is an integral part of what makes Sobig; the worm itself it only one part of a larger picture.
www.lurhq.com /sobig-f.html   (750 words)

  
 Sobig lingers despite shutdown date | CNET News.com
Sobig is still rampaging around the Internet, two months after the virus was supposed to have terminated itself.
Although this activity is well below the virus's peak, it is still surprising as Sobig--like several other members of the Sobig family--contained a built-in shutdown date that was supposed to prevent it propagating after Sept. 10.
Once infected by Sobig, a PC would periodically link to 20 Web servers that had been individually hacked by the virus author and try to download a file.
news.com.com /2100-7349-5112207.html   (841 words)

  
 SoBig worm not yet slowing down - Aug. 21, 2003
The other break computer users got was that SoBig hit at a relatively slow time for e-mail traffic, with many people on vacation.
MessageLabs' Sunner said most of the problems from SoBig involve the time and cost of cleaning the worm from computer systems, rather than lost files or the opening of files to outsiders on the Internet, which can be problems with many viruses.
The SoBig worm is the latest in an outbreak that began 10 days ago with the so-called "Blaster" or "LovSan" worm which, by some estimates, infected more than half a million machines running the latest version of Microsoft Windows, the world's dominant operating system.
money.cnn.com /2003/08/21/technology/sobig?cnn=yes   (863 words)

  
 Sobig-F is fastest growing virus ever – official | The Register
The current Sobig virus to email ratio is approximately 1 in 17 and the virus is spreading at such a rate it is expected to continue to stay at high-level status for the next few weeks.
However, like past Sobig viruses, the Sobig-F virus has an expiry date and is set to deactivate on 10 September.
Sobig is a mass-emailing virus that can spoof the sender's address, fooling the user into believing the email is from a legitimate source and then opening the email.
www.theregister.co.uk /2003/08/21/sobigf_is_fastest_growing_virus   (423 words)

  
 Sobig's Birthday -- Tracking Most Damaging Virus Ever
A year to the day after the virulent Sobig virus hit the wild, spawning a family of malicious attacks that would span the next nine months, anti-virus experts are on daily watch for the next vicious attack.
Sobig-A, the first in a run of six variants, hit the wild a year ago today, Jan. 9.
But just because the author of Sobig may be laying low right now, it doesn't mean that the security industry isn't waiting for the next destructive variant to hit.
www.esecurityplanet.com /trends/article.php/3297551   (871 words)

  
 Boston.com / Business / Technology / Computer worm proves to be not SoBig after all
The computer worm was poised to unleash phase two of a global Internet attack yesterday afternoon, but security experts said they had taken steps to thwart the software.
His confidence was based on the virus hunters' success in figuring out SoBig's next move and taking steps to stop it.
The SoBig worm appeared early last week, even as computer users were grappling with outbreaks of Blaster and Welchia.
www.boston.com /business/technology/articles/2003/08/23/computer_worm_proves_to_be_not_sobig_after_all   (522 words)

  
 Re: Sobig.e--description and prevention | Tech News on ZDNet
The latest in a family of Sobig worms is loose on the Internet.
Sobig.e (w32.sobig.e@mm) arrives by e-mail with an attached file and also spreads using shared network files.
Sobig.e may contain a list of NT servers and opens a port (port 123) to send packets to those servers.
news.zdnet.com /2100-1009_22-1021238.html   (478 words)

  
 'SoBig' e-mail virus foiled / Worm was poised to spread new orders to 100,000 computers
Whoever created this virus is not a first-time offender; the current version of SoBig is the sixth iteration to be released this year, and experts believe they were all written by the same hand.
Originally, SoBig appeared to be nothing more than an unusually effective version of a common online bug: the mass mailer, which annoys people by flooding e-mail boxes worldwide with copies of itself, but which does no real damage to hardware.
SoBig is programmed to keep trying to contact its 20 target computers every Friday and Sunday for a few weeks.
www.sfgate.com /cgi-bin/article.cgi?file=/chronicle/archive/2003/08/23/MN303828.DTL   (1399 words)

  
 CNN.com - SoBig.F breaks virus speed records - Aug. 22, 2003
The SoBig virus is the latest in a series of attacks on computers that are costing increasingly more time and money.
The sixth or "F" version of the SoBig infection disguises itself in e-mails which once opened scan a computer for e-mail addresses before sending scores of messages to the addresses it collected via its own inbuilt sending program.
"The SoBig virus writer's use of an inbuilt expiry date indicates he is committed to inventing new and improved versions," MessageLabs' chief technology officer Mark Sunner said.
www.cnn.com /2003/TECH/internet/08/21/sobig.virus/index.html   (668 words)

  
 Sobig Virus Removal Worm Block Sobig Removal Stop Worm Tool Sobig   (Site not responding. Last check: 2007-10-09)
When w32 Sobig spreads via e-mail, it reaches the computer in a message of variable characteristics and an attached file that almost always has a PIF extension.
Sobig Worm (All variants) >Once the worm arrives, it writes itself to several locations on the infected PC and then configures itself to start whenever Windows starts.
Global Sobig Virus Information Center Sobig.C was first seen on Sunday, 1st of June.
www.all-internet-security.com /sobig_virus_removal.html   (458 words)

  
 Technology News: News: Profile of the Superworm: SoBig.E Exposed
SoBig.E constructs outgoing messages using its own mail engine -- based on the Simple Mail Transfer Protocol (SMTP) -- and sends the infecting code in an attached ZIP archive.
The SoBig.E worm might well be the ticket to the promised land for both hackers and spammers -- and both groups stand to profit from it.
SoBig.E -- which continues to spread despite its expiration date -- seems to have broken that trend.
www.technewsworld.com /perl/story/31321.html   (1335 words)

  
 Sobig - susning.nu   (Site not responding. Last check: 2007-10-09)
Sobig är namnet på ett datavirus som sprids via e-post.
Sobig drabbar bara vissa versioner av Microsoft Windows, medan andra operativsystem klarar sig då de inte kan köra Windows-program.
Sobig kan klassificeras som trojansk häst eftersom den maskerar sig som ett ofarligt dokument eller skärmsläckare, eller som en mask eftersom den gör stora delar av spridning av sig själv, om än inte allt.
www.susning.nu /Sobig   (378 words)

  
 Viruslist.com - Information About Viruses, Hackers and Spam   (Site not responding. Last check: 2007-10-09)
The latest variant of the Sobig worm family, Sobig.e, is currently picking up steam across the Internet Over the past 24 - 36 hours Sobig.e has easily been the most active worm out there, with the MessageLabs, a British email filtering outsourcer, alone stopping well over 25,000 copies....
Sobig.e is a worm virus spreading via the Internet as a file attached to infected emails.
From the time of the first appearance of the "Sobig" worm in mid January 2003 three versions have been identified and...
www.viruslist.com /en/viruslistfind.html?rub4=001&findWhere=&findTxt=sobig   (355 words)

  
 New Scientist Breaking News - Next SoBig worm may trigger torrent of spam
A new version of the SoBig computer worm, expected in September, could not just overwhelm networks with infected mail but also lead to a massive increase in spam, according to some experts.
Steve Linford, head of the UK spam-blocking organisation Spamhaus says SoBig.F's predecessor, SoBig.E, led to a marked rise in spam when it was released in June.
SoBig.E infected far fewer machines than SoBig.F, meaning the latest infection could have resulted in an even bigger jump in spam.
www.newscientist.com /news/news.jsp?id=ns99994110   (748 words)

  
 Computerworld > Sobig virus tops charts for 2003
The Sobig email worm that clogged in-boxes in August was the most prolific virus of 2003, according to a top 10 list of viruses published by antivirus software vendor Sophos.
With Sobig, the flow of email was there regardless of whether you had the proper software patches and antivirus updates," Theriault says.
The company was also flooded by calls from customers in the days after the worm began to spread, which vaulted Sobig-F, the sixth version of the worm to appear on the internet, to the list's number one spot, she says.
www.computerworld.co.nz /news.nsf/UNID/F78899E04F807D26CC256DF2000D886F?OpenDocument   (553 words)

  
 Organised crime behind Sobig - virus expert - ZDNet UK News
A leading antivirus expert has voiced concerns that users and organisations are going to be so busy worrying about the sheer size of the Sobig infection that they will "take their eyes off the ball" in terms of the real threat.
"Sobig smashed all the records in terms of pure numbers, but that's not nearly the whole story," said Simpson.
Simpson explained that the purpose of getting Sobig onto the computer is not to cause damage or purely to drive wide and rapid spread, but to gain control of machine, by downloading a Trojan and gain access to information such as bank details for the purpose of fraud.
news.zdnet.co.uk /software/0,39020381,39115886,00.htm   (608 words)

  
 Unzip at your peril - it may be Sobig worm, says Sophos
W32/Sobig-E, first seen 25th June, is the fifth variant of the Sobig worm - but varies from its older siblings as it spreads itself in the form of a ZIP file.
Indeed nearly all of the Sobig worms have had limited lifespans.
If the virus writer continues with this pattern, Sophos says it would not be surprised if a sixth version of the worm were released shortly after the demise of Sobig-E. Sophos issued protection against the W32/Sobig-E worm at 16:35 GMT on Wednesday, 25 June 2003.
www.sophos.co.uk /virusinfo/articles/sobige.html   (303 words)

  
 Sobig Slows, But Experts Warn Of Next Attack > Sobig Slows, But Experts Warn Of Next Attack > August 21, 2003   (Site not responding. Last check: 2007-10-09)
Sobig, which has spread at a record rate across the Internet, slowed Wednesday, but virus experts warned computer users to prepare for the next variant that could come as early as mid-September.
Experts speculate that Sobig, which only affects Windows-based PCs, could be the work of a virus writer employed by a spammer.
Sobig, which struck a week after a separate virus, dubbed Blaster, wreaked havoc among computer users globally, clogged corporate networks and flooded computer users' email boxes with messages.
www.techweb.com /wire/story/TWB20030821S0016   (768 words)

  
 Sobig Worm, Sobig.F, Anti-Virus, PC Security, Internet Security
Central Command, a provider of PC anti-virus software and services, cautions Internet users of the next possible Sobig cyber attack on or about September 11th, 2003.
Discovered on August 19, 2003, Worm/Sobig.F is estimated to have infected millions of systems worldwide and may draw on them to be part of a cyber army focusing a digital assault against major online services.
"The virus author(s) of Sobig have developed a predictable pattern of releasing new variants soon after the current version de-activates itself," said Steven Sundermeier, VP Products and Services at Central Command, Inc. "If the past repeats itself we could be looking at a newly constructed creation shortly after September 10th.
www.internetpressoffice.com /sobig_worm_blaster_2.htm   (312 words)

  
 Slashdot | So, Who Wrote Sobig?
The Sobig virus, as it was affectionately named by its the anti-virus industry, infected hundreds of thousands of computers within just a few short hours.
Sobig was so virulent that on November 5, 2003 Microsoft, in coordination with the FBI, Secret Service, and Interpol, setup the Anti-Virus Reward Program.
Sobig was a virus specifically designed to aid the anonymity of spammers.
it.slashdot.org /it/04/11/01/1410229.shtml?tid=220   (4253 words)

  
 PCWorld.com - Sobig May Be Working for Spammers
But the number and the sophistication of such attacks have increased dramatically over the past two months--just as the Sobig worm has accelerated.
In June, the UK-based e-mail security firm MessageLabs identified a version of the Sobig worm that could turn computers into open proxies--machines that can be exploited to send spam via remote commands.
Also in June, researchers at Kaspersky Laps suggested that the latest version of Sobig may have used a spam engine to spread quickly, hinting at another link in technique.
www.pcworld.com /news/article/0,aid,112261,00.asp   (762 words)

Try your search on: Qwika (all wikis)

Factbites
  About us   |   Why use us?   |   Reviews   |   Press   |   Contact us  
Copyright © 2005-2007 www.factbites.com Usage implies agreement with terms.