• On MovieTome: See the TRAILER for TERMINATOR 4!
Click Here
advertisement
Security Watch : Don't get burned by viruses and hackers.
Welcome to yet another year of viruses
By Robert Vamosi 
Senior associate editor, CNET Reviews
January 7, 2004

When the MiMail.l e-mail virus appeared last month, it got little attention from the media. After all, it was only a minor variant of the MiMail family, and it spread slowly across the Internet, right?

It may not have been the most destructive worm ever, but it turns out that MiMail virtually shut down the Spamhaus Project and SpamCop, two sites where you can report spam abuses.

Failed prediction
The year 2003 was supposed to be the end of e-mail-borne viruses, given that both Microsoft Outlook and antivirus apps have become much better at stopping them. But in 2004, I expect to see more of these pests, especially more spam-related ones like MiMail.l, as professional spammers continue using them both to collect e-mail addresses and to distribute their messages anonymously.

Spammers use viruses...to collect active e-mail addresses.
MiMail.l wasn't the first worm involved with junk e-mail. As early as January 2003, antivirus experts noticed that a worm called Sobig was aiding the sending of spam. By early summer of 2003, there was evidence that Sobig was building a network of what are called open proxies, systems that act as blind intermediary portals to the Internet.

By the time the Sobig.f variant came along in mid-August, the open-proxy network created by earlier variants helped Sobig.f infect more than 1 million PCs worldwide in less than 24 hours, making it the fastest-spreading computer virus or worm on record. The August infection further expanded the open-proxy network, giving future variants the ability to spread even faster.

Open proxies
Lists of these open proxies are quite valuable and are bought and sold in chat rooms and elsewhere on the Net. This is largely because open proxies allow individuals to access the Internet through a remote system's IP address. For professional spammers, this sort of anonymous Net access is a must. It makes it difficult for law enforcement to track the vast quantities of messages spammers send back to their sources.

Large open-proxy networks also help spammers get their messages out faster than sending them through one or two systems. In 2003, e-mail security company MessageLabs found that two-thirds of the spam being circulated on the Internet was relayed through the use of open proxies.

MessageLabs predicts that spam will account for more than 70 percent of e-mail traffic by April of 2004.
Spammers use viruses for more than just creating open proxies. They use viral code to collect active e-mail addresses, too. In the past, spammers bought CDs containing both valid and invalid e-mail addresses, taking their chances that a profitable percentage would be live. But now spammers can infect computers worldwide with viruses that will send hundreds of thousands of active e-mail addresses back to the spammer within hours, then turn around and start flooding those addresses with spam.

MessageLabs predicts that spam will account for more than 70 percent of e-mail traffic by April of 2004. Given that current antispam legislation is largely ineffective, the onus will continue to be on you and me to protect ourselves.

Prevention
What to do? Fortify yourself, of course, as I've been saying throughout 2003 and will continue to say in 2004. In addition to running a good antivirus/firewall combination, such as Trend Micro's PC-cillin Internet Security 2004, on your system, I recommend installing a good spam blocker, such as Norton AntiSpam 2004 or Qurb. The antivirus/firewall app will keep your desktop from sending out spam without your knowledge, and the antispam app will help shield you from the onslaught of unsolicited, incoming mail.

I wish I could promise you that in 2004, we'll see the end of e-mail viruses and spam. Unfortunately, I expect to see even more.

But there is hope. In 2004, Microsoft will start rolling out changes to its Windows Server platform that the software giant says will limit the growth of spam. And by the end of 2004, companies participating in the government's National Strategy to Secure Cyberspace are expected to make recommendations on how to limit the growth of viruses and Trojan horses, among other Internet maladies. It may be a little late, but better late than never, right? I hope I'll have better news for you in 2005.

What do you think? Do you think there's any way to stop e-mail viruses? Why or why not? Tell me about it--TalkBack to me!

  • On CBS.com: Sexy women of CBS




12/17/03
How to stop spam? Don't look to legislation
Congress just approved an antispam bill. But don't get your hopes up. Robert says it's likely to do little to keep junk e-mail out of your in-box. The onus of fighting spam still lies with you.

12/10/03
We need a new national cybersecurity plan--now
The Bush administration's attempts at creating a plan for securing the Internet have been ineffective at best. It's time to start over and remember to protect end users, not just big business.

12/3/03
Why Internet security suites aren't so sweet
In his annual matchup between the latest editions of the Internet security suites from McAfee and Norton, Rob says both offer cool features--as well as some serious flaws.



More commentary
Buzz Report
Molly Wood
Taking a bite out of hype.
Security Watch
Robert Vamosi
Don't get burned by viruses and hackers.
Fully Equipped
David Carnoy
The electronics you lust for.
On Call
Kent German
Solutions for your wireless woes.
Driving It
Wayne Cunningham
What's hot and what's not in car tech.