You are here: silicon.com > Management > SME Director

SME Director

ISPs crippled by spam bug

Backdoor Trojan to blame...

By Andrew Colley

Published: 15 October 2003 09:10 GMT

US-based internet security researchers have confirmed that a worm is behind the sharp jump in spam activity which has seen Australian telco Telstra's BigPond ISP take a battering. Other major global ISPs are also starting to creak under the pressure.

Symantec's US security team said spammers are using a multitude of Windows systems compromised by the worm to send massive amounts of unsolicited email, clogging the messaging systems of major ISPs across the globe.

Symantec believes a variation of the Randex worm, first discovered in August, has inserted a backdoor Trojan named mprox, discovered 30 September, into a large number of Windows-based systems.

Windows-based systems infected by mprox provide spammers with an open relay or "proxy server" for sending email and other messages.

"Spammers are using these distributed proxy servers to send out massive amounts of spam and we're seeing this in lots of locations - we're seeing heavy traffic," said Vincent Weafer, senior director of Symantec Security Response.

Randex attempts to propagate by seeking out systems near its host and attempting to log in to them using simple passwords. Each system it annexes is infected with the Trojan.

Most varieties of Randex affect Windows 2000, Windows NT and Windows XP systems, and according to security researchers the worm was designed to be controlled remotely through an Internet Relay Chat (IRC) channel.

According to Weafer, ISPs began reporting the surge in unsolicited email last week.

Andrew Colley writes for ZDNet Australia

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Mark Crichard Doing business with citizen developers: Beware the legal pitfalls Legal Eye: Make sure your business is protected from potential hazards

Tim Ferguson How CIOs can achieve post-recession success Q&A: McKinsey & Company on living in the 'new normal' business world


  • Jobs
Telecoms/Network Business Analyst + Documentation

We offer comprehensive proactive protection from the increasingly prominent threat of mobile viruses, malware, inappropriate content, unsolicited ...

Network & Security Specialist

The successful candidate must have experience of projects and operations in the following areas: *LAN/WAN implementation and support *Proxy,Firewall, ...

Information Technology Engineer

Maintain and monitor Internet traffic (www, ftp), using Proxy Server/Firewall/Tunnel and VPN technologies. Delivering a full suite of ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: