Feeds

Telia blocks spam-sending Zombie PCs

Trojans nipped in the bud

  • alert
  • submit to reddit

High performance access to file storage

TeliaSonera, the leading telecommunications group in the Nordic and Baltic regions, will start to immediately block Internet traffic to and from computers that send junk email or spam, the company announced yesterday.

In order to prevent the rapid spread of spam and virus mails, the company will block all Trojan-infected PCs without warning. TeliaSoneria is the first ISP in Europe to take such drastic measures.

So far, most ISPs have only blocked Internet traffic to certain PC ports. In the UK NTL last month started blocking port 135 traffic on its Internet service. Port 135 is generally used for connections to Microsoft Exchange servers on corporate networks, but it was also compromised by the Welchia and Blaster worms.

A PC that is infected with a Trojan can send more than 100,000 spam messages or viruses in a single day. A time lapse of two weeks between the discovery and blocking of computers that send spam is therefore no longer acceptable, TeliaSoneria says. The company emphasises that it is not blocking computers on a permanent basis. Telia will offer assistance to solve the problem and then remove the blocking procedure afterwards.

Whether it will prevent a complete swamping or inundation of viruses remains to be seen. The recent Sobig.F mass-mailing virus carpet-bombed the Internet, causing chaos on corporate networks. Shutting down access to all these computers at the same time may not be possible.

TeliaSonera says that the number of customer complaints related to spam and computer viruses has increased ten-fold from 300 to 3,000 every 24 hours, and that something needs to be done. "The Internet is easy to use, but this constant flood of spam that we are now witnessing is creating costs and problems for our customers and we won't accept it,' Marie Ehrling, head of TeliaSonera Sweden, says.

John Leyden adds: Telia is taking a bold step but the policy should pay off, so long as the company correctly identifies infected machines and is responsive to customer requests to disinfect their PCs. A free AV tools such as AVG from GRISoft is one of the more straightforward ways to clean-up infected machines. We trust Telia's good sense will prevail in temporarily allowing the infected onto the Net to download updates.

Alternatives, which normally involve using RegEdit to delete viral changes to infected PCs, are hazardous.

Meanwhile what is Telia doing to put its own house in order?

Since March, Telia has used the Mail Abuse Prevention System (MAPS) to block email from known senders of electronic junk mail. In addition, Telia plans to introduce general protection against viruses in both incoming and outgoing mail, as well as protection against spam in email that is addressed to receivers outside its network. ®

High performance access to file storage

More from The Register

next story
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
Parent gabfest Mumsnet hit by SSL bug: My heart bleeds, grins hacker
Natter-board tells middle-class Britain to purée its passwords
Web data BLEEDOUT: Users to feel the pain as Heartbleed bug revealed
Vendors and ISPs have work to do updating firmware - if it's possible to fix this
OpenSSL Heartbleed: Bloody nose for open-source bleeding hearts
Bloke behind the cockup says not enough people are helping crucial crypto project
One year on: diplomatic fail as Chinese APT gangs get back to work
Mandiant says past 12 months shows Beijing won't call off its hackers
Call of Duty 'fragged using OpenSSL's Heartbleed exploit'
So it begins ... or maybe not, says one analyst
Experian subsidiary faces MEGA-PROBE for 'selling consumer data to fraudster'
US attorneys general roll up sleeves, snap on gloves
Oz bank in comedy Heartbleed blog FAIL
Bank: 'We are now safely patched.' Customers: 'You were using OpenSSL?'
prev story

Whitepapers

Mainstay ROI - Does application security pay?
In this whitepaper learn how you and your enterprise might benefit from better software security.
Five 3D headsets to be won!
We were so impressed by the Durovis Dive headset we’ve asked the company to give some away to Reg readers.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Mobile application security study
Download this report to see the alarming realities regarding the sheer number of applications vulnerable to attack, as well as the most common and easily addressable vulnerability errors.