Microsoft digs up zombie network horror
Posted on 28 Oct 2005 at 12:19
Microsoft has revealed the true scale of the 'zombie' threat in an experiment that has founded 13 investigations into spam operations.
The company says it intentionally set up a zombie computer, stuck it online for three weeks and watched what happened.
Although the machine was configured so that it wouldn't actually send out any spam itself, it was quickly identified as a new recruit to the zombie networks and enlisted for spamming duties.
Reseachers noted 5m requests for connections to the machine over the period and attempts to send 18m spam messages carrying advertising for 13,000 websites.
'The widespread use of zombie computers to commit crimes over the Internet presents a very real danger to law-abiding computer users,' said Tim Cranton, director of Internet Safety Enforcement Programs at Microsoft. 'This is precisely why Microsoft initiated this investigation into zombies and took legal action. As a result, we have identified more than a dozen spamming operations exploiting zombie networks to send millions of illegal spam messgaes. We will continue our investigations and will maintain a steady, concerted effort to indentify and target criminals to help make the Internet safer.'
Microsoft is also working with the Federal Trade Commission on the Operation Spam Zombies initiative, that seeks to encourage ISPs to take action against any zombie systems they identify on their networks.
In addition Microsoft set up its Postmaster and Smart Network Data Services monitoring last May, which allows ISPs to identify ip addresses on their network that are sending spam to Microsoft's Hotmail email service.
And spam is not the only problem. Networks of 'zombie' computers, or botnets, can be used to launch phishing attacks, seed new viruses, launch denial of service attacks and be put to other sinister uses.
However, the emphasis is still on education and encouragement of best practices. There is as yet no legal requirement for consumers to have security software on their machines, or for ISPs to shut out identified compromised machines on their networks.
Both Microsoft and the FTC offer top tips for consumers on how to stay safe online. The UK Government also launched its own Get Safe Online campaign yesterday.
Author: Matt Whipp
advertisement
- Need a bit of extra Christmas cash? Grass up your boss, says BSA
- Photoshop Mobile on Android review: first look
- ATI Radeon HD 5970: 42% more expensive in the UK
- Office 2010 Beta – 32-bit or 64-bit – The Choice is Clear
- Why Britain's watchdogs have fewer teeth than goldfish
- Tabbed documents: how to make Office 2010 great
- Outlook 2010 People Pane – does it spell death to Xobni
- Microsoft Outlook 2010 screenshots
- Co-Authoring in Word 2010 and SharePoint Foundation 2010
- Microsoft Outlook 2010 screenshots: Backstage view
- Getting to grips with Microsoft's IT Health Environment Scanner
- Virtualise your servers
- The changing face of travel gadgets
- Build your own distributed file system
- The bulletproof Dell that costs an arm and a leg
- Microsoft Office 2010 Technical Preview: Q&A
- Lawnmowers, the TyTN II and one odd insurance request
- There'll never be a bulletproof OS
- How far can we trust apps?
- Five nice touches in Outlook 2010
advertisement
Printed from www.pcpro.co.uk

