New User? Need help? Click here to register for free! Registering removes the advertisements.

Computer Cops
image image image image image image image image
Donations
If you found this site helpful, please donate to help keep it online
Don't want to use PayPal? Try our physical address
image
Prime Choice
· Head Lines
· Advisories (All)
· Dnld of the Week!
· CCSP News Ltrs
· Find a Cure!

· Ian T's (AR 23)
· Marcia's (CO8)
· Bill G's (CO11)
· Paul's (AR 5)
· Robin's (AR 2)

· Ian T's Archive
· Marcia's Archive
· Bill G's Archive
· Paul's Archive
· Robin's Archive
image
Security Central
· Home
· Wireless
· Bookmarks
· CLSID
· Columbia
· Community
· Downloads
· Encyclopedia
· Feedback (send)
· Forums
· Gallery
· Giveaways
· HijackThis
· Journal
· Members List
· My Downloads
· PremChat
· Premium
· Private Messages
· Proxomitron
· Quizz
· RegChat
· Reviews
· Google Search
· Sections
· Software
· Statistics
· Stories Archive
· Submit News
· Surveys
· Top
· Topics
· Web Links
· Your Account
image
CCSP Toolkit
· Email Virus Scan
· UDP Port Scanner
· TCP Port Scanner
· Trojan TCP Scan
· Reveal Your IP
· Algorithms
· Whois
· nmap port scanner
· IPs Banned [?]
image
Survey
How much can you give to keep Computer Cops online?

$10 up to $25 per year?
$25 up to $50 per year?
$10 up to $25 per month?
$25 up to $50 per month?
More than $50 per year?
More than $50 per month?
One time only?
Other (please comment)



Results
Polls

Votes: 987
Comments: 19
image
Translate
English German French
Italian Portuguese Spanish
Chinese Greek Russian
image
image worm: Security HeadLines: MyDoom Net Worm Scores Hit, Knocks Out SCO Site image
Worms
MyDoom Net Worm Scores Hit, Knocks Out SCO Site
Sun February 01, 2004 07:31 AM ET

By Bernhard Warner, European Internet Correspondent

LONDON (Reuters) - The MyDoom Internet worm claimed its first scalp Sunday, paralyzing the Web site of American software firm SCO Group with a massive data blitz.

In a statement issued Sunday morning, the Utah-based company confirmed MyDoom knocked its site, http://www.sco.com, out of commission.

Internet traffic began building momentum Saturday evening and by midnight Eastern Time the SCO Web site was flooded with requests beyond its capacity, the statement read.

While we expect this attack to continue throughout the next few weeks, we have a series of contingency plans to deal with this problem and we will begin communicating those plans on Monday morning, Jeff Carlon, worldwide director of Information Technology infrastructure, The SCO Group, said in the statement.

The speed and severity of the attack surprised security officials. It was spectacularly successful, said Mikko Hypponen, research manager at Finnish anti-virus firm F-Secure.

As intended, Sco.com was the only discernible victim on Sunday. There were no other reports of outages or slowdowns elsewhere online due to the worm.

MyDoom.A, also known as Novarg or Shimgapi, emerged on Monday in the form of a spam e-mail message that contained a well-disguised virus attachment.

It was programmed to take control of unsuspecting computer users' PCs from which it would launch a debilitating denial-of-service attack on SCO Sunday.

SCO has drawn the ire of the so-called open source programming community who object to SCO's claims they have copyright control over key pieces of the Linux operating system.

The MyDoom attack trigger was set for 1609 GMT Sunday. But with so many computer clocks incorrectly set, the infected machines began firing off data requests at SCO.com hours earlier, Hypponen said. It will only get worse for SCO as time goes on, he added.

SCO is not alone. Microsoft Corp has been targeted by a second variant of MyDoom, dubbed MyDoom.B. That attack is timed to kick off Tuesday.

The MyDoom.B variant, which is also programmed to attack SCO, has not spread nearly as rapidly as MyDoom.A. MyDoom.A is believed to have infected hundreds of thousands, and possibly over one million, PCs.

Both Microsoft and SCO have issued $250,000 rewards for tips leading to the arrest and conviction of the author or authors, which some security experts believe can be traced to Russia.

In building an army of zombie PCs over a six-day span, the MyDoom outbreak underscores a new digital security threat for corporations, governments and news operations.

Security officials and law enforcement experts believe such viruses will only become more sophisticated and could be used to silence entities for a commercial or ideological stance.

This is an effective weapon to censor your critics, Hypponen said.

Security officials have warned computer users to delete suspicious e-mail messages that appear to come from Mail Administrator and other official-looking addresses that contains a file attachment.

A free patch capable of wiping the program from an infected machine is available at many anti-virus sites including http://www.sophos.com/virusinfo/articles/maindoom.html and http://www.f-secure.com/v-descs/novarg.shtml.
Source: Reuters
Posted on Sunday, 01 February 2004 @ 11:30:21 EST by phoenix22
image

 
Login
Nickname

Password

· New User? ·
Click here to create a registered account.
image
Related Links
· TrackBack (0)
· Linux.com
· Microsoft
· OpenSource
· HotScripts
· W3 Consortium
· Spam Cop
· More about Worms
· News by phoenix22


Most read story about Worms:
W32.Welchia.Worm-L4*

image
Article Rating
Average Score: 5
Votes: 1


Please take a second and vote for this article:

Bad
Regular
Good
Very Good
Excellent


image
Options

Printer Friendly Page  Printer Friendly Page

image
"Login" | Login/Create an Account | 0 comments
Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register