MyDoom Targets RIAA

SILICON VALLEY – There is no question at this point that the creator of the MyDoom virus has a very anti-establishment, counter-culture viewpoint when it comes to using innocent computer users as tools to wreak havoc on some of the largest corporations in the world, security experts are saying.

So far the deadly email virus that functions as a detonator for specific websites has targeted the SCO Group, a politically unpopular organization because of its recent patent claims against developers of Linux operating systems; Microsoft Corp, which is perceived by many as being a ruthless money maker; and now the Recording Industry Association of America (RIAA), despised by many computer users for enforcing its copyright claims against file-sharers.

The RIAA is currently in litigation against 531 individuals accused of uploading music files to file-sharing services.

Security experts announced Wednesday that MyDoom.F is the newest variant in the chain of viruses that started in January as MyDoom.A and infected up to one million computers worldwide in just two days.

Similar to its predecessors, MyDoom.F is programmed to use infected computers like automatons and wage an attack on the RIAA with intent to overwhelm the system and shut it down.

"It's still getting around, and it's destructive," a security expert said. "We're worried. The longer people keep their PCs on, the more files they risk losing. This worm keeps going back to attack again and again."

The new and destructive element that MyDoom.F comes equipped with is an uncanny ability to randomly delete Microsoft Word and Excel files, databases, and photo files. According to experts, it is rare to see a computer virus actually destroy files.

According to security experts Sophos, MyDoom.F searches for and deletes 40 percent of files with extensions of AVI, BMP, DOC, JPG, MDB, SAV and XLS. Unlike earlier variants of the MyDoom worm, this version does not have a "suicide date" at which point it stops spreading. The virus also appears to have been signed by its author in the following manner:

".-==I am "Irony", made by jxq7==-."

So far MyDoom.F has not been successful in its attempt to disable the RIAA's website, but traffic has been slowed, experts say.

The virus is also programmed to take another strike at Microsoft Corp., which it previously attempted to shut down after a prolonged, and some say indefinite denial-of-service attack a few weeks ago.

And while security experts are saying that Mydoom.F is not as fast or as deadly as the variants that came before, it has already infected three percent of all email traffic worldwide, compared to 60 percent of all email that the first variant claimed.

Experts are warning users to steer clear of attachments and subject headers that say anything similar to: "Approved," or "Your Credit Card," or "You use illegal file-sharing." According to Sophos, there are dozens of potential email headers the virus might be traveling under.

Attached files containing the virus will have an extension of EXE, SCR, COM, PIF, BAT, CMD or ZIP.

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Pornhub Releases 2025 'Year in Review' Report

Pornhub has released its “Year in Review Insights” report for 2025, the 12th edition of the site’s annual statistics, data analysis, and infographic initiative.

Washington AV Bill Jumps on 'Health Warning' Bandwagon

A new age verification bill in the Washington state legislature would require adult sites to post notices warning users of alleged health risks, despite a previous federal court ruling against such requirements.

BranditScan Launches '25 Days of Christmas' Promo

BranditScan has launched its 25 Days of Christmas promotion.

MelRose Michaels Named Host of Online Industry Edition of XBIZ Honors

Performer and entrepreneur MelRose Michaels will MC the online edition of the 2026 XBIZ Honors, set for Wednesday, Jan. 14, at the Kimpton Everly Hotel in Hollywood.

Irish Regulator: EU States to Ramp Up AV Enforcement for Smaller Sites

A representative of Irish media regulator Coimisiún na Meán told legislators that Ireland and other EU states are preparing to expand enforcement of age verification regulations to include smaller adult sites, British newspaper The Times is reporting.

Sansyl Group Acquires Blue Donkey Media

Sansyl Group, parent company of AdultPrime Network, has acquired Blue Donkey Media B.V., owner of Dutch adult site Meiden van Holland, among several other erotic websites and television channels.

Pineapple Support to Hold Mental Health Summit

The annual Pineapple Support Mental Health Summit is taking place Dec. 15-17.

Ofcom Fines AVS Group $1.3 Million for AV Noncompliance

U.K. media regulator Ofcom on Wednesday imposed a penalty of one million pounds, or approximately $1.3 million, on AVS Group Ltd. after an investigation concluded that the company had failed to implement robust age checks on 18 adult websites.

Updated: Aylo to Help Test EU Age Verification App

Pornhub parent company Aylo plans to participate in the European Commission’s pilot program for its “white label” age verification app, a spokesperson for the company has confirmed.

Missouri Lawmaker Attempts to Revive 'Health Warnings' for Adult Sites

A Missouri state representative has introduced a bill that would require adult sites to post notices warning users of alleged physical, mental, and social harms associated with pornography, despite a previous federal court ruling against such requirements.

Show More