Emergic CleanMail, Weekly Security Report
May 16, 2005
Emergic CleanMail : Weekly Spam Statistics
Mumbai -03/05/2005 Spam statistics for corporate India stays constant at 80%. Last week saw a rise in DoS and DHA attacks from spammers using Zombies. Overall 67.25% of mails were blocked due to its origin from an Open Relay or a Zombie machine. The Sober variant (Sober.p) remained in limelight this week and clogged the servers with virus and spam traffic.
Virus of the Week
W32.Sober.P@mm
W32.Sober.P@mm is a mass-mailing worm that sends itself as an email attachment to addresses gathered from the compromised computer. It uses its own SMTP engine to spread. The email may be in either English or German. Its considered to be extremely dangerous and has high distribution capabilities.
Top 5 virus in India
a) Worm.SomeFool.P- 23.03%
b) W32/Netsky.P@mm - 13.89 %
c) HTML.Phishing.Bank-1 8.18 %
d) W32/Sober.O@mm- 7.76 %
e) Worm.Sober.P - 6.35 %
ECM Alert : Nazi Spams ruling the e-mail traffic
The EU parliamentary elections seems to have a great impact on the E-mail traffic. The Nazi Spammers chose this occassion to send out spams containing references from World War II, abusing the allied forces for slaying innocent women and children or links to some articles on German website talking about Nazi culture and critizing the minority community. This huge influx of spams comes in after an outbreak of Sober.P worm (a stable version of Sober.O) which is understood to be authored to assist the Nazi spammers in creating a "Zombie" army. Spammers have been coordinating closely with Virus Authors to use viruses as a new medium of spamming as opposed to using Bulk Mailers which is now depricated in the spamming community. Last few virus outbreaks saw a beta version of this kind of viruses in which the virus authors were apparently trying to figure out the best way to send across a spam.
The statistics in this report are estimated on the basis of the mail traffic arriving on the Netcore's Emergic CleanMail servers with an average of 1 million mails hitting the servers daily. The statistics represent the mail traffic for Corporate Indian Clients and doesn't account for traffic to free email addresses.
|