Articles
Search:

Home | Computers | Software | Spyware And Viruses



Computers Worms: The Greatest Threat You've Never Seen







If you worry about computer security, then worms are probably near the top of your list. Although much has been done to combat the threat posed by spyware and adware, computer worms and viruses pose a constant, and constantly changing threat. The following information contains useful background from the fine contributors to Wikipedia and may help you avoid this potent danger.

In short, a computer worm is a self-replicating computer program. It uses a network to send copies of
itself to other systems and it may do so without any user intervention. Unlike a virus, it does not need to attach itself to an existing program. In general, worms always harm the network and consume bandwidth, whereas viruses always infect or corrupt files on a targeted computer.

Email worms spread via email messages. Typically the worm will arrive as email, where the message body or attachment contains the worm code, but it may also link to code on an external website. Poor design aside, most email systems requires the user to explicitly open an attachment to activate the worm, but "social engineering" can often successfully be used to encourage this; as the author of the "Anna Kournikova" worm set out to prove. Once activated the worm will send itself out using either local email systems or directly using SMTP. The addresses it sends to are often harvested from the infected computers email system or files, which can be embarrasing and compromise personal identity. Therefore recipients of email worms should assume that they are not sent by the person listed in the 'From' field of e-mail message (sender's address).

Instant messaging worms spread via instant messaging applications by sending links to infected websites to everyone on the local contact list. The only difference between these and email worms is the way chosen to send the links.

With IRC worms, chat channels are the main target and the same infection/spreading method is used as above: sending infected files or links to infected websites. Infected file sending is less effective as the recipient needs to confirm receipt, save the file and open it before infection will take place.

File-sharing networks worms copy themselves into a shared folder, most likely located on the local machine. The worm will place a copy of itself in a shared folder under a harmless name. Now the worm is ready for download via the P2P network and spreading of the infected file will continue.

Internet worms are those which target low level TCP/IP ports directly, rather than going via higher level protocols such as email or IRC. A classic example is "Blaster" which exploited a vulnerability in Microsoft's RPC. An infected machine aggressivly scans random computers on both its local networ and the public internet attempting an exploit against port 135 which, if successful, spreads the worm to that machine.

Users need to be wary of opening unexpected email, and certainly should not run attached files or programs, or visit web sites which such email link to. However, as the ILOVEYOU showed long ago, and phishing attacks continue to prove, tricking a percentage of users will always be possible.

Anti-virus and anti-spyware software are helpful, but must be kept up-to-date with new pattern files every few days at least.


Information and Articles: http://www.mastersmba.com

Providing Information on various topics, please browse our other Articles for more informative resources, we house information on every topic imaginable so regardless of your needs you can be assured to find the answer here. If you wish to reprint this on your own website, simply click the "Web Version" in the right menu, and you are presented with a pre-formatted document to use.

A lot of the information is written by the Master Article team, and published exclusively on the MastersMBA.com website, and we do our best to research all information to ensure it's as accurate as possible. However at times we also publish documents given to us by other sources, we do examine these documents to ensure they are as accurate and correct as possible however at times they discuss highly specialized fields making it hard to authenticate the validity of every fact in the document. These are written by specialists in their respective fields, and we do trust their integrity and judgment however it's always a good idea when doing any research to consult a number of sources and form your own conclusion based on a number of view points. Also if you are looking for Google Chrome Extensions you can check out that link.

RSS

You can click the XML Icon Above to Read Spyware and Viruses Articles Via RSS!

Design by SEO Info: SEO Forum

Providing Articles on everything from Credit