… I would have saved the thousands of viral emails (as well as bounced viral emails that were bounced for having attachments, as opposed to invalid address) that I’ve gotten on account of w32.sobig.f@mm. Then I would have harvested them for their email addresses.
Because of the way the worm works, the From addresses on these are generally valid, operating email addresses. Spammer heaven. I am sure the spammers have already thought of this and are harvesting now.
The beautiful thing is that I’m getting far less actual spam. I’m not doing hard counts, but I believe the real-spam amount has dropped to about half, which I think might have to do with networks becoming too choked to allow shady mail servers to deliver before they have to be offline.
Thank goodness sobig doesn’t actually damage infected computers. If it did, it would be category 5, the worst kind of malicious software. For frame of reference, there has never been a category 5 virus/worm.
That’s not to say there’s been no harm done. I’m seeing networking issues, mail server system issues, people’s disk usage going over quota - there are plenty of secondary effects of that much traffic.