Feeds

Sobig-F is fastest growing virus ever – official

Outlook grim

  • alert
  • submit to reddit

Top three mobile application threats

Sobig-F has taken the record as the world's most rapidly spreading virus to date, according to managed services firm MessageLabs, which stopped more than one million copies of the email-borne nuisance since its first appearance earlier this week.

Sobig.F has surpassed the infamous LoveBug, Klez and Kournikova viruses.

Sobig-F, first detected on 18 August, is the sixth variant issued in the Sobig series and appears to be the most sophisticated to date, according to MessageLabs. All initial copies originated from the US, where the virus is currently most prevalent.

Since the first Sobig virus first appeared on 9 January, MessageLabs has intercepted almost three million copies of the virus' variants. MessageLabs detected all strains of this virus proactively, using its heuristics technology.

The current Sobig virus to email ratio is approximately 1 in 17 and the virus is spreading at such a rate it is expected to continue to stay at high-level status for the next few weeks. However, like past Sobig viruses, the Sobig-F virus has an expiry date and is set to deactivate on 10 September.

Said Mark Sunner, MessageLabs' CTO: "The Sobig virus writer's use of an in-built expiry date indicates that he is committed to inventing new and improved versions. Each variant released so far has exceeded the previous one in growth and impact during the critical initial window of vulnerability."

Sobig is a mass-emailing virus that can spoof the sender's address, fooling the user into believing the email is from a legitimate source and then opening the email. The email often contains the following header: "Subject: Re:details" and the text "Please see the attached file for details." The attachment names may include: your_document.pif, details.pif, your_details.pif, thank_you.pif, movie0045.pifm, document_Fall.pif, application.pif, docment_9446.pif.

Once the virus has infected your machine it attempts to connect to a website to download a backdoor Trojan, leaving your computer vulnerable to security breaches by crackers or other viruses. ®

Combat fraud and increase customer satisfaction

More from The Register

next story
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
Heartbleed exploit, inoculation, both released
File under 'this is going to hurt you more than it hurts me'
Canadian taxman says hundreds pierced by Heartbleed SSL skewer
900 social insurance numbers nicked, says revenue watchman
German space centre endures cyber attack
Chinese code retrieved but NSA hack not ruled out
Burnt out on patches this month? Oracle's got 104 MORE fixes for you
Mass patch for issues across its software catalog
Reddit users discover iOS malware threat
'Unflod Baby Panda' looks to snatch Apple IDs
Oracle working on at least 13 Heartbleed fixes
Big Red's cloud is safe and Oracle Linux 6 has been patched, but Java has some issues
prev story

Whitepapers

Mainstay ROI - Does application security pay?
In this whitepaper learn how you and your enterprise might benefit from better software security.
Combat fraud and increase customer satisfaction
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Top three mobile application threats
Learn about three of the top mobile application security threats facing businesses today and recommendations on how to mitigate the risk.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.