Print This Article Post Comment Add To Favorites Email to Friends Ezine Ready

Kaspersky Security Bulletin, January - June 2006: Spam Report

By: Home |


Kaspersky Security Bulletin, January - June 2006: Spam Report

Andrey Kalinin, Anna Vlasova
Sep 22 2006
Spam in the First Half of 2006 This report analyzes the volume and types of spam detected during the first half of 2006, and the new approaches and techniques used to send spam. Predictions regarding the future evolution of spam in the second half of the year are also included. The report is aimed at IT security professionals and users who are interested in the problem of spam.
Kaspersky Lab receives and analyzes approximately 300,000 - 500,000 spam emails per day. The spam comes from several sources: dedicated spam traps, samples from email traffic, and samples provided by clients and partners. All incoming spam traffic is automatically classified, and a proportion is also analyzed manually. A unique spam classification system helps maintain detailed records of the volume and types of spam.
Sending Spam: The Technical Details
During the first half of 2006 technologies currently used to send spam continued to evolve steadily. The techniques used by contemporary spammers are multiple, and include the following:
Viruses which target PCs
Distributed management of zombie networks
Systems that make it possible to control PCs and servers remotely
Automatic template-based email generators
The interdependence of these techniques has reached such a level that new innovations in mass mailing will take more than several months to appear. However, at the same time, the methods currently being used to send spam are evolving.
The following are still being used to send spam:
Networks of zombie computers, i.e. botnets.
Web servers and vulnerabilities in popular server-based software.
Botnets
Most spam is sent via botnets. The number of botnets is increasing steadily, while the networks themselves are becoming ever larger. Last year, the Dutch police arrested the creators of a network of 1.5 million PCs - a record which has not yet been broken. This doesn't mean that there aren't other giant botnets out there - it just means that the authorities haven't been able to pinpoint them or their owners yet.
Currently, the controllers of botnets are moving from using IRC to HTTP. Moreover, centralized networks (i.e., those that have several control nodes to which other zombie computers can connect) more and more often have a control center that is located on a dedicated spam-resistant" server1. Thus the dedicated server serves a second purpose, not as a source of spam, but as a control center for botnets.
Decentralized botnets have also become more popular; these are made up of zombie computers that attempt to connect to as many other zombies as possible. Commands are then passed from one computer to another within the network. Such networks can be managed via any of the computers in the network.
In an effort to fight spam, Internet providers that provide services to end users have introduced the following restrictions:
1.Prohibiting sending mail directly to mail relays other than that belonging to the provider. This is in order to monitor all outgoing mail.
2.Restricting the number of outgoing messages sent by one user in a defined period of time. A user may be banned altogether or face stringent restrictions if s/he exceeds the limit.
3.Filtering the content of outgoing emails with the same filters used for incoming mail.
These measures help limit mass mailings from botnets that either send spam directly, or that send large quantities of spam from the same computer, and do not cause problems for the average user. In response, spammers have begun to use a large number of zombie computers to produce spam, thus reducing the number of emails sent from a single machine. . Another method used for mass mailing is to send spam via the provider's mail server, which is identified either by a network scan or via an analysis of the settings in the user's mail client.
________________________________________
1 The term '"Spam-resistant" server' refers to servers leased from a provider which will allow the server to be used to send spam and which will ignore complaints. Usually, such providers are located in countries where there is little or no anti-spam legislation.


Web Servers



Article Source: http://www.eArticlesOnline.com

About the Author:
Founded in 1997, Kaspersky Lab rapidly
became a world leader in information security
software
and antivirus software. We
leverage our expertise to provide cutting-edge protection against all major
cyber threats: viruses, hackers and spam.
Today we have 10 regional offices and partners in over 50 countries creating a
global network. Wherever you may be located, Kaspersky Lab will protect your
PCs, PDAs and networks.
Article Source: The FREE Article Distribution Center


Tags: , , , , , ,

Please Rate this Article

 

Not yet Rated

Click the XML Icon Above to Receive Articles Via RSS!

Recent Related Articles From

  • The Basic Concept Of Anti Spam Softwares And Toolkits
    By: Mohamad Hafeez | Jun 12th 2008
    The Free Anti Spam Guide was developed in the framework on Anti Spam and include a package of recommended anti spam sources, anti spam software, anti spam free guides, anti spam reviews and measures addressing regulatory approaches, enforcement cooperation, industry driven activities, technical solutions, education and awar ... Read

  • What Is Spam
    By: JHON RICKY | Dec 12th 2008
    What is Spam? According to spam abuse .net \"Spam is flooding the Internet with many copies of the same message, in an attempt to force the message on people who would not otherwise choose to receive it. For more detail go to: Read

  • How E-mail Whitelists Work
    By: Matt Garrett | Dec 1st 2006
    E-mail whitelists are the ultimate in spam protection, and go beyond the safeguards used by spam filters and spam blockers to almost completely eliminate the possibility of receiving spam. Whitelists work like fortresses to completely protect the user against invasion.

    Before e-mail from a new address can be ...
    Read

  • Warring On Spam Through Bayesian Spam Filters
    By: Arvind | Jan 7th 2008
    Bayesian Spam Filters war on spam through the following methods: email is assessed on the probability of it being either spam or legitimate; it builds its own list of characteristics; keeps on updating its list, learning from its mistakes, thereby increasing its accuracy. Read

  • Spam Law: What You Should Know About Spam Law
    By: Nicolaas Theron | Nov 16th 2008
    Most spammers get away with it because people do not know how easy it is to let them have it. It is time to blow the whistle instead of just hitting the delete button. Read

  • A Quick Look At Email Spam Filters
    By: Oliver Turner | May 24th 2006
    You must be eagerly finding for a way out to stop receiving Spam mails in your inbox. Take a quick look at email spam filters to get some idea on how to check spam. There are a number of email spam filters that you can use in your computer. For official purposes, you have anti server software spam where the spam filter is l ... Read

  • Spam Blockers When You Need Them The Most

    Whether you are a business user or a home user the one thing which bothers you most and keep filling your inbox are loads of spam you get everyday. And sometimes whatever methods you apply there seems no end to the flow of spam which keeps finding its way to your mailbox. In such scenario using a spam filter or spam blocker ... Read

  • Email Security Solutions Help Protect Your Business From Unwanted Perils
    By: Shelly srikrishnan | Dec 22nd 2010
    Email security solution is fast emerging as a much sought after aspect because of a plethora of reasons and this significance increases exponentially, when the security is meant for large businesses or corporate usage. Read

  • Spam - We Have It, Now How Do We Stop It?

    If your stock performance has matched the percentage rise of email spam, you will be retiring soon. The latest indicators are stating that Spam has nearly doubled in the past year alone. It now affects nearly everyone with an email account. Unfortunately for business, it also carries a rising cost in staff, resources and pe ... Read

  • Finding The Best Anti Spam Solutions
    By: Oliver Turner | Sep 17th 2006
    Before you start finding the best anti spam solutions, there are some simple steps that you will have to take care in order to avoid spam. Make sure that you share your email ID with only those whom you know well. For other services, make use of email services that are web based. Beware of spam bots. They are programs that ... Read


Copyright © 2005-2011 eArticlesOnline, LLC - All Rights Reserved
Terms of Service | Privacy Policy