Category:
Zombies/Botnets

New Version of GlobalView Mail Reputation Available

Commtouch announced a new version of our GlobalView Mail Reputation Service, that incorporates enhanced reporting as well as enhanced logic capabilities.
From earlier posts you’ve seen that zombies (aka bots) are responsible for almost all of the unwanted mail traversing the Internet. With even a not-very-good reputation service, you should be able to cut those quantities [...]

What Will Zombies/Bots Do Next?

August 3rd, 2008 by Jay | Category: Email Security, Zombies/Botnets | Leave a comment »

During the past several months, I have met with industry thought leaders in network security products and services to discuss the growing threats of botnets, zombies and other ways to describe the issue of compromised hosts.
One of the topics of conversation: what will the bots do next? And do these swiss-army knives of badware [...]

Zombies winning? I disagree.

Commtouch recently announced our Q2 email threat trend report, which indicated, among other things:

Spam levels throughout the second quarter averaged 77%, ranging from a low of 64% to a peak of 94% of all email towards the end of the quarter
10 [...]

Storm Worm “Invades Iran”

Something about the “rockets red glare” of July 4th must have gotten the Storm Wormers in the mood for aggressive action, and the next outbreak has been a faux invasion of Iran, with the following malware web site:

Based on a quick scan of the iran_occupation.exe malware file by VirusTotal, the results show that only 14 [...]

More Chinese Earthquake Malware Blended Threat Messages

June 23rd, 2008 by Rebecca Herson | Category: Email Security, Zombies/Botnets | 1 Comment »

Commtouch detection team informed me that a new blended threat outbreak of Chinese Earthquake messages began earlier today, with a similar modus operandi to the previous outbreak, the main difference being that the URL hyperlinks within the messages are to zombie IP addresses (the X’s in the sample below), rather than fast flux domains in [...]

Malware earthquake hoax

June 19th, 2008 by Rebecca Herson | Category: Email Security, Zombies/Botnets | 1 Comment »

For some people, hearing about China digging itself out of one of the worst earthquakes in recent memory inspires them to do good works, donate money, join the Peace Corps…. For spammers it is merely inspiration for the next wave of social engineering to attempt to recruit a new army of zombies. Building on human [...]

New Love Malware Outbreak

Commtouch detection team identified a new email-borne malware outbreak yesterday, another in the “love” themed attacks. It is a blended threat, with simple love-oriented subjects, and within the body of the email message a hyperlink to a site that downloads a malware file - a Storm worm variant known as Zhelatin or Nuwar. Our lab [...]

Commtouch Research Center – A Cool Botnet Tool

Last month we released our new service – GlobalView Zombie Intelligence. Commtouch Zombie Intelligence is a real-time feed of data containing zombies IPs along with rich information about their activity and behavior.
As a result of our research and development in the field of zombies and bots, we are constantly gathering a vast amount of data [...]

How quickly can a zombie be caught?

Pretty @#$% quickly if you heard Amir Lev, Commtouch’s CTO speaking at the Ferris Webinar yesterday, together with Ferris’ Richi Jennings.
The webinar was about understanding mail reputation services, and Amir gave an overview of different types of reputation services, as well as a sneak peak into Commtouch’s GlobalView Mail Reputation Service, a new version of [...]