Windows IT Pro is the leading independent community for IT professionals deploying Microsoft Windows server and client applications and technologies.
  
  
  Advanced Search 


November 13, 2008

Spam-Be-Gone

RSS
Subscribe to Windows IT Pro | See More News and Analysis Articles Here | Reprints | Or get the Monthly Online Pass—only $5.95 a month!

Something wonderful happened this week: Worldwide, the amount of spam email dropped by roughly two-thirds. How did this happen? A single hosting provider, McColo, was disconnected from the Internet.

Think about that for a second: One hosting company was apparently responsible for up to 66 percent of the worldwide spam generated per day. IronPort, a Cisco subsidiary, estimates that there are about 190 billion spam messages sent per day.

This volume of spam would be impossible, of course, if machines hosted at McColo were actually sending all the spam. Many aspects of modern antispam filtering take into account the origin of the message, including the sender IP address, the sender’s reputation for sending spam, the rate of arrival of messages from the address, and so on. That process makes it more difficult for spammers to operate from a single block of IP addresses.

If you’re familiar with the Folding@home or SETI@home, you already understand the solution spammers have used: Get lots of individual computers to do the work. Spammers have turned to using individual computers—mostly Windows machines—that have been compromised by malware that allows them to be remotely controlled. Groups of these machines, known as botnets, offer a great way to send spam because each individual machine can send messages to various destinations. If you get enough machines in a botnet, you can do all sorts of bad things—apparently including flooding the entire Internet with spam.

McColo’s Internet connection was killed in large measure because of the work of Washington Post blogger Brian Krebs. Krebs worked to gather information about McColo’s operations, then passed that evidence to the upstream Internet providers that connected McColo to the broader Internet. Shortly after Krebs’ initial contact, McColo went dark, resulting in a huge drop in worldwide spam levels.

This is of course good news, but the nature of the modern spam ecosystem means that this drop will probably be temporary. A great deal of spam is sent under the aegis of criminal groups that have access to enough money to quickly reconstitute their operations with another compliant hosting provider. Even a temporary respite is still welcome, though. In the longer term, the IT industry needs to continue to identify effective ways to fight botnet-based attacks, including distributed denial-of-service attacks and spam floods, but that’s a much harder problem to solve.

End of Article



Reader Comments

You must be a registered user or online subscriber to comment on this article. Please log on before posting a comment. Are you a new visitor? Register now




Top Viewed ArticlesView all articles
Microsoft Announces Office 2010 Technical Preview

Microsoft on Monday unveiled the first major milestone of its upcoming Office family of products. Dubbed the Office 2010 Technical Preview, this prerelease version of Office includes Office 2010 Professional and Visio 2010. Other Office 2010 ...

How can I stop and start services from the command line?

...

Where is Microsoft NetMeeting in Windows XP?

...


Related Articles Srizbi Botnet Is Tops in Spam Delivery

What If You Could Take Down a Botnet?

Malware Evolves to Bypass Common Controls

Anatomy of a Botnet

Related Events WinConnections and Microsoft® Exchange Connections

The Easiest Way to Save Time and Money on E-mail and SharePoint Management

Check out our list of Free Email Newsletters!

News and Analysis eBooks Getting Maximum Performance from Your Web-based Applications

Business Process Automation - Managing Cost in Your Enterprise

Spam Fighting and Email Security for the 21st Century

Related News and Analysis Resources Introducing Left-Brain.com, the online IT bookstore
Looking for books, CDs, toolkits, eBooks? Prime your mind at Left-Brain.com

Discover Windows IT Pro eLearning Series!
Clear & detailed technical information and helpful how-to's, all in our trademark no-nonsense format

Test Drive IT Solutions and Get Free Music Downloads
Solve your toughest IT problems with these free downloads and receive 5 free music downloads!


Windows IT Pro Home Register FAQ for Windows WinInfo News
Europe Edition About Us Contact Us/Customer Service Media Kit Affiliates / Licensing  
SQL Server Magazine Office & SharePoint Pro DevProConnections IT Job Hound
Left-Brain.com Technology Resource Directory asp.netPRO ITTV Windows SuperSite 
 
 Windows IT Pro is a Division of Penton Media Inc.
 © 2009 Penton Media, Inc. Terms of Use | Privacy Statement | Reprints and Licensing