With the new crop of email viruses – the ones that fake the return address based on the same sources (address books, web caches, etc.) as the target list – you get a few interesting effects.

The first is that there is a good chance you’ll recieve many copies of the virus from the same source, with different return addresses. I saw this a lot in the recent Sobig outbreak: when our mail server deletes a virus, it logs the sending and receiving addresses and the IP of the connecting server. Some IP addresses would send hundreds of copies of the virus, all to the same recipient, all with different return addresses. So it would look like hundreds of people are sending you the same virus, but in reality, it’s just one infected machine.

The other is the “friend of a friend” effect. You may get the virus from someone who knows you (or has just visited your web page), but it looks like it came from someone who knows them (or someone else whose web page they visited). Two degrees of separation.

Yet another call of “I can’t retrieve email!” Always from Outlook users. If you use Eudora, Netscape – hell, even Outlook Express, you’ll get some sort of error message if it stops working. You can usually solve it by closing the program and starting it up again. But Outlook… Outlook will get into modes where it says it’s connecting, but it will never actually contact the server. Outlook will decide it needs to ask you for your password over and over again. And if you close Outlook, it’s not necessarily gone. Even “Exit and Log Off” doesn’t always do it. No, you have to reboot the %#@! computer. And if you’re lucky, you don’t have to track down the elusive Inbox Repair Tool (which might be in the Start menu. Maybe.)

I swear, if Outlook didn’t have the name Microsoft in front of it, no one would buy it. Maybe the latest version is better, but everything I’ve tried to use or troubleshoot is still just Schedule+ on steroids with email thrown in. Calling Outlook an email program is like calling a big clunky van a race car because you’ve replaced the engine. Outlook Express, for all its rampant security problems, is a much better mail program than its namesake.

Yecch!

Inspired by finding a list of Babylon 5 viruses earlier this week.

Harry Potter virus: Looks like the last file of a virus you just wiped out, until you try to erase it–then it wipes your drive.

Voldemort virus: You can’t get rid of it, only make it dormant. It can be reactivated by the Wormtail virus up to thirteen years later.

Dumbledore virus: Scares off all the other viruses but never seems to actually *do* anything.

Hermione virus: Fills up all available drive space with files of useless information.

Ron virus: Contains code, some of it buggy, from the author’s five previous viruses.

Continue reading

The world of email viruses has changed. In the old days, they would piggyback on the messages you sent, or make your regular mail program send them out while you weren’t looking. These days they send the messages themselves, so they pick a fake return address from the same source as its list of victims: address books, web caches, and so on.

The return address on a virus like Sobig doesn’t mean crap.

So why the heck are all these idiotic virus scanners (*cough* Declude *cough*) sending me messages saying “You sent us a virus!” when a cursory glance at the headers clearly shows that it originated on the other side of the planet?

I’ve already got the server filtering out the virus itself – I’m seriously thinking about filtering out the useless warnings.

I finally saw Terminator 3 this weekend, and something has been bothering me about the ending (aside from watching the end of the world).

Skynet’s a distributed system. Presumably its intelligence scales along with the number of nodes it has. Those nodes are computers all over the world. Those computers are most concentrated in major cities. Skynet launches a global nuclear attack on those major cities. That wipes out a huge percentage of its own computing nodes. It’s also going to take out huge chunks of the Internet’s infrastructure, leaving many of the remaining nodes disconnected from each other.

In its attempt to wipe out humans, Skynet gave itself a world-class lobotomy.

I don’t know about you, but that just doesn’t sound like a winning strategy to me.

Several months ago, Scummy Computer Operations sued IBM claiming that IBM had copied code from UNIX into Linux. They refused to say what code had been copied. Already this sounds fishy. In their initial filing, they insulted the ethics and competence of the entire Open Source community. Eventually they started making wilder and wilder claims. They called into question the entire open source development model. They started threatening Linux users, and made noise about how they were going to start issuing license terms for Linux, without having proven that they actually own anything in Linux. The only specifics anyone’s managed to get out of them involve code IBM wrote itself and contributed to both OSes.

All they had to do was say “This code here is in violation of our copyright.” At which point the Linux kernel developers could look at it, say, “Hmm, that was contributed by so-and-so on such-and-such a date.” (The entire development process is open to the public – SCO could do this themselves.) An investigation could then be made, and the code could be either shown to be not in violation or removed and replaced with something else. Instead, they’ve remained (deliberately?) vague, such that over the course of four months, with the entire source code for Linux available to the entire world, no one has managed to find anything and say, “this must be what they’re complaining about.”

Yesterday Red Hat got fed up and sued SCO, saying the accusations were a load of bull and accusing them of anti-competetive practices.

Now, not only is SCO claiming that Red Hat’s suit proves that SCO is right (they deny it, therefore it must be true!), their licensing terms for Linux would make it more expensive than Windows.

And you know what really makes me sick? SCO’s stock price just went up. These people are deceptive scumbags. They’re making claims that they refuse to back up. They’re setting prices and threatening to go after people for money, but they refuse to prove that they own what they’re selling. Even in the unlikely event that they’re telling the truth and there is UNIX code in Linux, they’ve acted unethically by not giving anyone a chance to correct the issue.

See also: TWikiWeThey: SCO vs. IBM [archive.org] and OSI Position Paper on the SCO-vs.-IBM Complaint

Yes, the American Teleservices Association is suing over the do-not-call list.

The ATA estimates that the do-not-call list will cost as many as 2 million U.S. telemarketing jobs, wiping out almost a third of its industry.

Sounds like a good start.

Maybe they can get jobs that don’t involve annoying the hell out of people in their own homes.

Spam is a problem because it’s pervasive. There are no limits on how many messages one business can send, and very little in the way of entry barriers. If outside controls (societal, legal, or technological) leave it unchecked, it really can destroy email as a useful means of communication. (Consider getting 500 spams with one order confirmation somewhere in the middle.)

Telemarketing does have limits. Even with recorded messages, it takes time to make the call. There’s usually a limited number of outgoing phone lines. And if they’ve got live people making the calls, they can only make as many calls as they have people – and people need paychecks and space to work.

No, the problem with telemarketing is that it’s invasive. The phone just screams for attention, interrupting whatever you’re doing. You can choose when to check your email, or your postal mailbox, but the telephone wants you to answer it now, and even if you choose not to, it keeps ringing until your answering machine takes the call or the caller gives up.

Telemarketers don’t just try to reach you at your mailbox, front door, or living room. They are the only form of advertising I know of that reaches into the bedroom – even when you’re asleep.

And yet these scumbags are defending their “right” to interrupt you while you’re eating dinner, or reading a book, or watching TV. They want to be able to wake you up when you’re sleeping in on Saturday. If you have a cell phone, they can get you at the grocery store. They can get you on your lunch break. Someone can start jabbering about resort condos while you’re in line for Space Mountain.

That’s not protected speech. It’s harassment.

ยปAll pages site-wide with this tag