Skip the navigation

Comcast cutting off 'spam zombies'

It's cutting off Internet service for some customers whose computers are relaying spam

By Paul Roberts
March 9, 2004 12:00 PM ET

IDG News Service - Internet service provider Comcast Holdings Corp. is cutting off service for some customers whose computers are being used to relay spam messages, according to a company spokeswoman.
Comcast has been contacting customers whose machines are being used as "zombies" to forward unsolicited commercial e-mail with warning messages. In some cases, the company has cut off Internet access to customers, some of whom are unaware that their systems are sending out the e-mails, said Jeanne Russo, a spokeswoman for Comcast's cable division.
The decision to cut off spam zombies isn't new, but it's part of an "ongoing effort" to protect the company's network and its customers from abuse at the hands of hackers and spammers. Comcast declined to comment on whether it's stepping up its efforts to shut down the spam zombies, but the company will increase its efforts to match any increase in spam, Russo said.
Philadelphia-based Comcast is a leading provider of high-speed Internet access in the U.S., with more than 5.2 million subscribers to its high-speed data services. It's also the leading sender of e-mail, according to IronPort Systems Inc.'s e-mail analysis service SenderBase.
The company has long been a target of antispam activists, who have complained that Comcast's large home-user customer base contributes to the spam epidemic, said Johannes Ullrich, chief technology officer of SANS Institute Inc.'s Internet Storm Center. Malicious hackers also prey on unprotected systems, installing remote-access software that allows machines to be enlisted in distributed denial-of-service attacks against Internet domains, he said.
Recent published reports have suggested that spammers may be acting in concert with virus writers, such as the author of the Sobig virus, to build networks of insecure and virus-infected home machines that are used to distribute spam.

"Comcast is one of the favored networks of spammers, because Comcast customers have a lot of bandwidth and usually aren't secured against common [software] vulnerabilities," Ullrich said.
The Internet Storm Center recorded scanning activity characteristic of virus-infected machines from about 10,000 Comcast machines on Sunday, Ullrich said.
At the same time, SenderBase records show what appear to be the Internet Protocol addresses of more than 40 Comcast customers who have sent out more than 100,000 e-mail messages per day, with many sending close to 1 million daily e-mail messages.
In addition to letting spam be sent from its network, Comcast allows traffic over its network that's destined for communications ports, such as Port 445, that are favorites of malicious hackers, Ullrich said.
Ullrich said the Internet Storm Center tells Comcast when it finds infectedhosts by sending a message to a Comcast e-mail address set up to receive complaints about abuse. Typically, the company doesn't respond directly to such reports, but it has moved to shut down infected hosts after receiving complaints, he said.
Comcast said it's aware of the problem and is alerting customers who were hacked and helping them to secure their computers.
Customers booted from the network can frequently have their access restored after taking steps to prevent future infection, Russo said.
While Comcast's network may be one of the biggest spam conduits on the Internet, the company isn't alone in wrestling with the spam problem, Ullrich said. "It's a combination of high bandwidth and unsophisticated users," he said. "Comcast is not that different from AT&T or DSL [Digital Subscriber Line] providers."

Reprinted with permission from IDG.net. Story copyright 2010 International Data Group. All rights reserved.
Additional Resources
Forrester Consulting - Optimizing Users and Applications in a Mobile World
WHITE PAPER
Solving application issues over the WAN requires careful consideration. Based on their independent research, Forrester Consulting offers recommendations on how to tackle application performance issues, insufficient bandwidth and the inability to quickly restore users in a disaster.

Read now.

Security KnowledgeVault
WHITE PAPER
Security is not an option. This KnowledgeVault Series offers professional advice how to be proactive in the fight against cybercrimes and multi-layered security threats; how to adopt a holistic approach to protecting and managing data; and how to hire a qualified security assessor. Make security your Number 1 priority.

Read now.

Cut Communications Costs Once and for All
WHITE PAPER
New IP-based communications systems are being deployed by small and midsized businesses at a rapid rate. Learn how these organizations are enabling faster responsiveness, creating better customer experiences, speeding office or mobile interactions, and dramatically reducing existing communications costs.

Read now.

Networking White Papers
Digital Transformation: Creating New Business Models Where Digital Meets Physical
Individuals and businesses alike are embracing the digital revolution. Social networks and digital devices are being used to engage government, businesses and civil...
Make the Connection: Better Network Connectivity Drives Transformation
Network connectivity is more than just plumbing. Leading organizations today see high-performance network connectivity as a critical enabler of competitive advantage, and not...
Virtualizing Government Infrastructure
All server virtualization solutions are not created equal. The more-with-less agenda for government agencies is tailor-made for server virtualization, which is evolving into...
Moving Service Management to SaaS
Today, organizations can enjoy similarly substantial benefi ts by migrating their IT service management functions to a software-as-a-service model. This paper shows how...
Achieving 360 Degree Network Visibility with Nimsoft
360° network visibility is critical for ensuring continuous availability of networks, servers, and applications-anything less could
have costly bottom-line implications.
All Networking White Papers
Networking Webcasts
Optimizing Networks for the Cloud
Join guest speaker, Rohit Mehra, IDC Director of Enterprise Communications Infrastructure, to explore current trends, discuss best practices for optimizing Data Center and...
Unified Communications 101
What's the best way to implement a unified communications solution for your organization?
Try the OptiView® XG on your network - FREE
The OptiView® XG is the first dedicated tablet with automated network and application analysis -- fastest way to root cause. XG raises the...
Apps QuickStart Series Part 2: Designing and Deploying SQL Server on VMware vSphere
Download this webcast to learn about the design considerations for virtualizing SQL workloads, performance and scalability information and high-availability options, as well as...
Apps QuickStart Series Part 1: Designing and Deploying Exchange 2010 on VMware vSphere
Download this webcast to learn the virtual hardware design considerations for Exchange 2010, deployment using the building block approach, options for high-availability and...
All Networking Webcasts
Newsletter Sign-Up

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all newsletters | Privacy Policy
IT Jobs