• On TV.com: NARUTO SHIPPUDEN latest episode
October 15, 2008 3:32 PM PDT

Has Storm stopped sending spam?

by Robert Vamosi
  • Font size
  • Print
  • 2 comments
Share

The daily volume of spam produced by the Storm botnet during 2008.

(Credit: Marshall)

The creators of the Storm botnet have either ceased sending out spam or have moved on to a newer botnet, security researchers have concluded.

Marshal, a security vendor that specializes in spam protection, on Tuesday noted a marked downturn in the amount of spam attributed to hosts infected with Storm within the last month. For the last few weeks other researchers have also noticed the sharp decline.

"We don't know what happened here, if somebody put the kibosh on them or not," said Jose Nazario, a security researcher for Arbor Networks. "In terms of the number of hosts out there, there are still a lot of hosts--they're just sort of quiet."

Storm started and got its name from an infected e-mail promising information about a large winter storm in Europe in early 2007.

At its peak, in mid-2007, Storm accounted for up to 20 percent of all spam sent. Then, in September 2007, Microsoft included a removal signature in its Malicious Software Removal Tool. Security experts say that update alone removed up to a quarter million infected hosts and greatly diminished Storm's ability to produce large spam campaigns despite a few attempts earlier this year.

As CNET's resident security expert, Robert Vamosi has been interviewed on the BBC, CNN, MSNBC, and other outlets to share his knowledge about the latest online threats and to offer advice on personal and corporate security. Listen to his podcast at securitybites.cnet.com or e-mail Robert with your questions and comments.
advertisement
Click Here
Recent posts from Security
Some Avast users must re-install flagged files
Defense Dept. pulls software over privacy issues
Microsoft to plug critical IE hole targeted by exploit code
Google wants to unclog Net's DNS plumbing
Avast update falsely flags good apps as malware
Character limitations in passwords considered harmful
McAfee uncovers riskiest domains
EFF sues feds for info on social-network surveillance
Add a Comment (Log in or register)
by dallas7 October 15, 2008 7:15 PM PDT
There isn't too much to figure out what's happening here. There are several reasons responsible for this as well as other victories in the war against spam and other Internet abuses, one of them being the shutdown of rogue registrars. One of the major soldiers in the trenches can be found at knujon.com which also does a pretty good job of posting up all the news and reports from the battle field.

I also feel the bad guys will be (or are already) shifting more and more of their resources and efforts toward hacking cell phones. Stealing from a computer user generally requires interaction by the user especially since anti-malware software has matured to the point that it's pretty darned effective in squashing automated threats. Soon the unwashed cell phoners numbering in the 100's of millions will be downloading tons of crap without restraint or thought - the kind of crap that will automatically charge for bogus products and services that' ll show up on their phone bills 30 days later (and the phone bills of everyone in their phone book). With that kind of potential, why bother with obsolete schemas while the golden egg is sitting there in some poor sap's cell phone running the free malware laced i'm-so-special ring tone.
Reply to this comment
by Nev October 20, 2008 10:38 AM PDT
An excellent observation dallas7 ..

How many anti-malware / anti-virus programs are readily available for cell phone users ?

Any recommendations ?

Cheers Nev
Reply to this comment
advertisement
Click Here

The yogurt makers of tech: Gadgets to avoid

Don't buy these one-trick ponies--unless you like gizmos that gather dust.

Google wants to unclog Net's DNS plumbing

The Net giant, ever eager for a faster Internet, debuts its Google Public DNS service. With it, Google could become even more central to the Net.

About Security

Online security is threatened by more than hacking and phishing attempts. Check here for the latest updates on software vulnerabilities, data leaks, and rapidly spreading viruses--and learn how to protect your systems.

Add this feed to your online news reader

Security topics

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right