Knowledge

Sobig

Source 📝

25: 394:
announced that they will pay $ 250,000 for information leading to the arrest of the creator of the Sobig worm. Ruslan Ibragimov is attributed to be the original creator of the worm, however this is not
396: 283:
It would contain the text: "See the attached file for details" or "Please see the attached file for details", as well as an attachment as one of the following names:
365:
port 8998 on August 26, 2003 to install some program or update itself. It is unclear what this program was, but earlier versions of the virus had installed the
494: 320:
The Sobig viruses infected a host computer by way of the above-mentioned attachment. When this is started they will replicate by using their own
826: 468: 441: 852: 847: 659: 383:
The Sobig worm was written using the Microsoft Visual C++ compiler, and subsequently compressed using a data compression program called
842: 744: 589: 1060: 739: 547: 384: 676: 461: 671: 599: 108: 324:
agent engine. E-mail addresses that will be targeted by the virus are gathered from files on the host computer. The
89: 931: 770: 61: 46: 499: 489: 454: 228:
As of 2018, Sobig is the second fastest computer worm to have ever entered the wild, being surpassed only by
68: 563: 686: 666: 75: 414: 862: 936: 884: 696: 240: 57: 1199: 1003: 962: 711: 190:
Although there were indications that tests of the worm were carried out as early as August 2002,
35: 1029: 1024: 615: 594: 362: 42: 1117: 1019: 993: 734: 1194: 1055: 568: 373: 8: 760: 390:
The Sobig.F worm deactivated itself on September 10, 2003. On November 5 the same year,
878: 531: 654: 584: 358: 184: 167: 620: 82: 1143: 805: 785: 765: 755: 248: 1169: 1112: 1076: 872: 691: 325: 1188: 1133: 915: 780: 706: 372:
software—a legitimate product—in a configuration allowing it to be used as a
236: 132: 1107: 795: 790: 641: 369: 136: 1081: 978: 800: 729: 649: 1086: 701: 626: 525: 446: 203: 1159: 1138: 391: 24: 1164: 1091: 1050: 998: 910: 810: 681: 377: 180: 983: 895: 366: 244: 1034: 775: 721: 229: 415:"CNN.com - SoBig.F breaks virus speed records - Aug. 22, 2003" 941: 946: 321: 222:
became known and set a record in sheer volume of e-mails.
210:
was released May 31 and fixed the timing bug in Sobig.B.
225:
The worm was most widespread in its "Sobig.F" variant.
239:
in the sense that it replicates by itself, but also a
206:
experts discovered it was a new generation of Sobig.
49:. Unsourced material may be challenged and removed. 198:was released on May 18, 2003. It was first called 357:The Sobig.F variant was programmed to contact 20 1186: 328:that will be searched for e-mail addresses are: 243:in that it masquerades as something other than 442:Timeline of notable computer viruses and worms 179:was a computer worm that infected millions of 462: 194:was first found in the wild in January 2003. 469: 455: 214:came a couple of weeks later followed by 202:, but was later renamed to Sobig.B after 109:Learn how and when to remove this message 548:Sony BMG copy protection rootkit scandal 476: 1187: 247:. The Sobig.F worm would appear as an 450: 315: 251:with one of the following subjects: 47:adding citations to reliable sources 18: 13: 380:to distribute unsolicited e-mail. 14: 1211: 23: 16:Self-replicating malware program 34:needs additional citations for 407: 154:Ruslan Ibragimov (unconfirmed) 1: 400: 879:Kaminsky DNS cache poisoning 623:(findings published in 2010) 7: 435: 10: 1216: 218:on June 25. On August 19, 187:computers in August 2003. 1152: 1126: 1100: 1069: 1043: 1012: 971: 955: 924: 903: 894: 861: 835: 819: 720: 640: 608: 577: 556: 540: 518: 511: 482: 163: 158: 150: 142: 128: 123: 600:US military cyberattack 590:Cyberattacks on Georgia 564:Cyberattacks on Estonia 595:Sarah Palin email hack 270:Re: Wicked screensaver 735:Jeanson James Ancheta 235:Sobig was not only a 569:Operation: Bot Roast 477:Hacking in the 2000s 273:Re: Your application 43:improve this article 532:Operation Firewall 261:Re: Re: My details 1182: 1181: 1178: 1177: 660:associated events 636: 635: 585:Project Chanology 506: 505: 316:Technical details 308:your_document.pif 293:document_9446.pif 185:Microsoft Windows 173: 172: 168:Microsoft Windows 159:Technical details 119: 118: 111: 93: 1207: 901: 900: 752:str0ke (milw0rm) 621:Operation Aurora 516: 515: 485: 484: 471: 464: 457: 448: 447: 429: 428: 426: 425: 411: 305:your_details.pif 296:document_all.pif 121: 120: 114: 107: 103: 100: 94: 92: 51: 27: 19: 1215: 1214: 1210: 1209: 1208: 1206: 1205: 1204: 1185: 1184: 1183: 1174: 1148: 1122: 1096: 1065: 1039: 1008: 967: 951: 932:Anna Kournikova 920: 890: 865: 863:Vulnerabilities 857: 831: 815: 806:Dmitry Sklyarov 786:Albert Gonzalez 716: 632: 604: 573: 552: 536: 507: 478: 475: 438: 433: 432: 423: 421: 413: 412: 408: 403: 326:file extensions 318: 287:application.pif 249:electronic mail 115: 104: 98: 95: 52: 50: 40: 28: 17: 12: 11: 5: 1213: 1203: 1202: 1200:Computer worms 1197: 1180: 1179: 1176: 1175: 1173: 1172: 1167: 1162: 1156: 1154: 1150: 1149: 1147: 1146: 1141: 1136: 1130: 1128: 1124: 1123: 1121: 1120: 1118:Black Energy 1 1115: 1110: 1104: 1102: 1098: 1097: 1095: 1094: 1089: 1084: 1079: 1073: 1071: 1067: 1066: 1064: 1063: 1058: 1053: 1047: 1045: 1041: 1040: 1038: 1037: 1032: 1027: 1022: 1016: 1014: 1010: 1009: 1007: 1006: 1001: 996: 991: 986: 981: 975: 973: 969: 968: 966: 965: 959: 957: 953: 952: 950: 949: 944: 939: 934: 928: 926: 922: 921: 919: 918: 913: 907: 905: 898: 892: 891: 889: 888: 882: 876: 873:Shatter attack 869: 867: 859: 858: 856: 855: 850: 845: 839: 837: 836:Hacking forums 833: 832: 830: 829: 823: 821: 817: 816: 814: 813: 808: 803: 798: 793: 788: 783: 778: 773: 768: 763: 758: 753: 750: 747: 742: 737: 732: 726: 724: 718: 717: 715: 714: 709: 704: 699: 694: 692:PLA Unit 61398 689: 684: 679: 674: 669: 664: 663: 662: 652: 646: 644: 638: 637: 634: 633: 631: 630: 624: 618: 616:Operation Troy 612: 610: 606: 605: 603: 602: 597: 592: 587: 581: 579: 575: 574: 572: 571: 566: 560: 558: 554: 553: 551: 550: 544: 542: 538: 537: 535: 534: 529: 522: 520: 513: 509: 508: 504: 503: 497: 492: 483: 480: 479: 474: 473: 466: 459: 451: 445: 444: 437: 434: 431: 430: 405: 404: 402: 399: 355: 354: 351: 348: 345: 342: 339: 336: 333: 317: 314: 313: 312: 311:wicked_scr.scr 309: 306: 303: 300: 297: 294: 291: 288: 281: 280: 277: 274: 271: 268: 267:Re: That movie 265: 264:Re: Thank you! 262: 259: 256: 171: 170: 165: 161: 160: 156: 155: 152: 148: 147: 144: 140: 139: 130: 126: 125: 117: 116: 31: 29: 22: 15: 9: 6: 4: 3: 2: 1212: 1201: 1198: 1196: 1193: 1192: 1190: 1171: 1168: 1166: 1163: 1161: 1158: 1157: 1155: 1151: 1145: 1142: 1140: 1137: 1135: 1132: 1131: 1129: 1125: 1119: 1116: 1114: 1111: 1109: 1106: 1105: 1103: 1099: 1093: 1090: 1088: 1085: 1083: 1080: 1078: 1075: 1074: 1072: 1068: 1062: 1059: 1057: 1054: 1052: 1049: 1048: 1046: 1042: 1036: 1033: 1031: 1028: 1026: 1023: 1021: 1018: 1017: 1015: 1011: 1005: 1002: 1000: 997: 995: 992: 990: 987: 985: 982: 980: 977: 976: 974: 970: 964: 961: 960: 958: 954: 948: 945: 943: 940: 938: 935: 933: 930: 929: 927: 923: 917: 914: 912: 909: 908: 906: 902: 899: 897: 893: 886: 883: 880: 877: 874: 871: 870: 868: 864: 860: 854: 851: 849: 846: 844: 841: 840: 838: 834: 828: 825: 824: 822: 818: 812: 809: 807: 804: 802: 799: 797: 794: 792: 789: 787: 784: 782: 779: 777: 774: 772: 769: 767: 764: 762: 759: 757: 754: 751: 748: 746: 743: 741: 738: 736: 733: 731: 728: 727: 725: 723: 719: 713: 710: 708: 707:World of Hell 705: 703: 700: 698: 695: 693: 690: 688: 685: 683: 680: 678: 675: 673: 670: 668: 665: 661: 658: 657: 656: 653: 651: 648: 647: 645: 643: 639: 628: 625: 622: 619: 617: 614: 613: 611: 607: 601: 598: 596: 593: 591: 588: 586: 583: 582: 580: 576: 570: 567: 565: 562: 561: 559: 555: 549: 546: 545: 543: 539: 533: 530: 527: 524: 523: 521: 517: 514: 510: 502: → 501: 498: 496: 493: 491: 488:←  487: 486: 481: 472: 467: 465: 460: 458: 453: 452: 449: 443: 440: 439: 420: 416: 410: 406: 398: 397: 393: 388: 386: 381: 379: 375: 371: 368: 364: 360: 352: 349: 346: 343: 340: 337: 334: 331: 330: 329: 327: 323: 310: 307: 304: 302:thank_you.pif 301: 299:movie0045.pif 298: 295: 292: 289: 286: 285: 284: 278: 275: 272: 269: 266: 263: 260: 257: 254: 253: 252: 250: 246: 242: 238: 237:computer worm 233: 231: 226: 223: 221: 217: 213: 209: 205: 201: 197: 193: 188: 186: 182: 178: 169: 166: 162: 157: 153: 149: 145: 141: 138: 134: 133:Computer Worm 131: 127: 122: 113: 110: 102: 91: 88: 84: 81: 77: 74: 70: 67: 63: 60: –  59: 55: 54:Find sources: 48: 44: 38: 37: 32:This article 30: 26: 21: 20: 1061:Sony rootkit 988: 827:Bluehell IRC 796:Dan Kaminsky 791:Sven Jaschan 422:. Retrieved 418: 409: 389: 382: 370:proxy server 359:IP addresses 356: 319: 282: 279:Your details 255:Re: Approved 241:Trojan horse 234: 227: 224: 219: 215: 211: 207: 199: 195: 191: 189: 183:-connected, 176: 174: 137:Trojan Horse 105: 96: 86: 79: 72: 65: 53: 41:Please help 36:verification 33: 1195:Email worms 979:SQL Slammer 801:Samy Kamkar 722:Individuals 687:Level Seven 650:Ac1db1tch3z 629:(2008–2010) 528:(2003–2006) 419:www.cnn.com 290:details.pif 258:Re: Details 146:August 2003 99:August 2023 1189:Categories 866:discovered 853:darksun.ws 848:unkn0wn.eu 756:Lil Hacker 702:ShadowCrew 627:WebcamGate 526:Titan Rain 424:2023-07-31 401:References 395:confirmed. 276:Thank you! 204:anti-virus 177:Sobig Worm 69:newspapers 1160:Conficker 1139:Agent.btz 667:Avalanche 655:Anonymous 512:Incidents 392:Microsoft 1165:Koobface 1144:Mariposa 1092:Stration 1087:Clickbot 1051:PGPCoder 999:Graybird 937:Code Red 911:ILOVEYOU 885:sslstrip 843:ryan1918 820:Darknets 811:Stakkato 749:Digerati 745:Dshocker 712:Sandworm 682:GhostNet 495:Timeline 436:See also 378:spammers 374:backdoor 181:Internet 164:Platform 1170:Waledac 1077:Rustock 1004:Blaster 984:Welchia 916:Pikachu 896:Malware 766:camZero 367:WinGate 245:malware 220:Sobig.F 216:Sobig.E 212:Sobig.D 208:Sobig.C 196:Sobig.B 192:Sobig.A 151:Authors 83:scholar 58:"Sobig" 1134:Asprox 1035:Mydoom 1030:Sasser 1025:NetSky 963:Simile 887:(2009) 881:(2008) 875:(2002) 781:diabl0 776:Cyxymu 771:Coolio 740:SilenZ 642:Groups 385:tElock 230:Mydoom 143:Origin 85:  78:  71:  64:  56:  1108:Storm 1020:Bagle 994:Gruel 989:Sobig 942:Nimda 730:AKill 677:0x1fe 500:2010s 490:1990s 344:.html 200:Palyh 124:Sobig 90:JSTOR 76:books 1153:2009 1127:2008 1113:ZeuS 1101:2007 1082:ZLOB 1070:2006 1056:Samy 1044:2005 1013:2004 972:2003 956:2002 947:Klez 925:2001 904:2000 761:BadB 672:GNAA 609:2009 578:2008 557:2007 541:2005 519:2004 376:for 353:.txt 350:.wab 347:.mht 341:.htm 338:.hlp 335:.eml 332:.dbx 322:SMTP 175:The 129:Type 62:news 697:RBN 363:UDP 361:on 45:by 1191:: 417:. 387:. 232:. 470:e 463:t 456:v 427:. 135:, 112:) 106:( 101:) 97:( 87:· 80:· 73:· 66:· 39:.

Index


verification
improve this article
adding citations to reliable sources
"Sobig"
news
newspapers
books
scholar
JSTOR
Learn how and when to remove this message
Computer Worm
Trojan Horse
Microsoft Windows
Internet
Microsoft Windows
anti-virus
Mydoom
computer worm
Trojan horse
malware
electronic mail
SMTP
file extensions
IP addresses
UDP
WinGate
proxy server
backdoor
spammers

Text is available under the Creative Commons Attribution-ShareAlike License. Additional terms may apply.