News
News
8/30/2005
03:42 PM
Connect Directly
RSS
E-Mail
50%
50%

Accused Zotob Hacker May Be Behind 21 Other Worms

Farid Essebar, 18, also known as "Diabl0," may have written 20 variations of the Mytob mass-mailed worm and one version of the MyDoom worm.

More details are emerging about the hacker history of one of the two men arrested last week on suspicion of creating and distributing the Zotob bot worm earlier in August.

According to the analysis conducted by U.K.-based security vendor Sophos, Farid Essebar, 18, also known as "Diabl0," may have written 20 variations of the Mytob mass-mailed worm and one version of the MyDoom worm.

"It is not unusual for malware authors to leave their handles inside their malicious code, sometimes alongside other messages," said Sophos in a statement. The company said its researchers had found 21 other worms with the Diabl0 handle included in their code.

Of the 21, 20 are Mytob variants, ranging from Mytob.a to Mytob.gz; two of Sophos' most recent Top 10 list of viruses and worms appear to have been authored by Essebar, said Sophos.

"The Mytob worms have made a significant impact on the virus outbreak charts this year, so anything which may prevent future variants from being developed and released must be welcomed," said Graham Cluley, senior technology consultant for Sophos, in a statement.

However, Cluley cautioned -- as have other analysts -- that it's probable other hackers have access to the Mytob source code, a fact that many think is the root cause of the more than 200 variants seen so far this year.

"It appears whoever wrote Zotob had access to the Mytob source code, ripped out the email-spreading section and plugged in the Microsoft exploit," added Cluley.

Comment  | 
Print  | 
More Insights
The Business of Going Digital
The Business of Going Digital
Digital business isn't about changing code; it's about changing what legacy sales, distribution, customer service, and product groups do in the new digital age. It's about bringing big data analytics, mobile, social, marketing automation, cloud computing, and the app economy together to launch new products and services. We're seeing new titles in this digital revolution, new responsibilities, new business models, and major shifts in technology spending.
Register for InformationWeek Newsletters
White Papers
Current Issue
InformationWeek Tech Digest September 24, 2014
Start improving branch office support by tapping public and private cloud resources to boost performance, increase worker productivity, and cut costs.
Flash Poll
Video
Slideshows
Twitter Feed
InformationWeek Radio
Sponsored Live Streaming Video
Everything You've Been Told About Mobility Is Wrong
Attend this video symposium with Sean Wisdom, Global Director of Mobility Solutions, and learn about how you can harness powerful new products to mobilize your business potential.