Spam on the increase a couple weeks after major spam shutdown
Security researchers who warned the shutdown of McColo Corp. would only lower spam levels for a couple of weeks were correct, as one of the largest botnets on the internet, Srizbi, has been resurrected.
After two ISPs stopped offering service to McColo about two weeks ago, global spam mail dropped 70 percent due to the shutdown.
Since last Sunday, spam volume sent rose around 37 percent of the original amount before McColo was pulled offline on November 11.
Srizbi, Asprox, Mega-D, Rustock, and other spam botnets are fully operational again, and in several cases using ISPs located outside of the United States. Any time a botnet is hosted on an ISP not within the United States, it becomes even more difficult to shut down, security experts say.
At least 450,000 infected computers were found connecting to the Srizbi botnet over the past week or so.
In case of termination, Srizbi bots are designed to create a unique web site address that will allow it to look for updates. Botnet masters simply need to register the web domains each hijacked computer is trying to visit, and then they're back in business. Security company FireEye said at least 50,000 Srizbi machines have found new homes, and are now receiving new instructions from Estonian-based servers.
A botnet called Cutwail, which wasn't hosted by McColo, also has reportedly increased its efforts to spam Internet users after the McColo shutdown.
Security analysts expect prior spam levels will be reached at some point in the immediate future. Botnet masters were left temporarily crippled after the demise of McColo, but new hosts and bandwidth should be found soon.
"It seems as though my state-funded math degree has failed me. Let the lashings commence." -- DailyTech Editor-in-Chief Kristopher Kubicki
|
Most Popular ArticlesWindows 8 Dates Leaked, Windows 7 Hits 10 Percent Market Share, IE 8 Now Top Browser February 3, 2010, 9:05 AM Former VP Says Microsoft is "Failing" Despite Windows 7 Profits February 4, 2010, 11:11 AM MIT Creates World's First Computer-Ready Germanium Laser February 5, 2010, 1:20 PM Apple Offers Bounty to Take Yellow IMacs Off UK Owners' Hands February 5, 2010, 10:20 AM Crucial's 6Gbps C300 Hits Stores February 22, Targets Intel February 3, 2010, 12:20 PM
|