Computer virus
Arrested man may have been responsible for 20 other viruses

Zotob suspect linked to other viruses

'Clear similarities' with 20 other outbreaks, report security experts

Written by Robert Jaques and Iain Thomson

One of the two men arrested this weekend over the Zotob worm could have authored as many as 20 other viruses, according to security specialists Sophos

Farid Essebar, 18, a Russian resident of Morocco, is believed to use the alias 'Diabl0', a name that appeared in the Zotob A worm code. Sophos has found a similar name in the code of 20 other viruses, including Mydoom-BG and many versions of the Mytob worm

"To the untrained eye Mytob and Zotob can appear quite different: one group of viruses travels via email, the other primarily by exploiting a Microsoft security hole, " said Graham Cluley, senior technology consultant at Sophos. 

"However, when examined by an experienced virus analyst the similarities become clear. It appears that whoever wrote Zotob had access to the Mytob source code, ripped out the email-spreading section, and plugged in the Microsoft exploit."

Microsoft officials said that Zotob and Mytob have been less damaging than other network worms, in part because more customers are aware of the importance of keeping their devices safe by using firewalls, security updates and up-to-date antivirus software.

Brad Smith, senior vice president and general counsel at Microsoft, welcomed the announcement. "We congratulate the Turkish and Moroccan authorities and the FBI for finding and apprehending the alleged authors and distributors of the Zotob and Mytob worms so quickly," he said.

Smith added that Microsoft's Internet Crime Investigations Team supported the investigation with law enforcement agencies immediately following the release of the worms.

Microsoft provided technical information and analytical support to the FBI on this case, which was then shared with Moroccan and Turkish authorities.

"This arrest demonstrates the value of public-private collaboration, the first-class investigative work by the authorities and round-the-clock technical and investigative support provided by our Internet Crime Investigations Team," said Smith.

"The results show clearly that cyber-criminals will be identified, apprehended and held accountable for their actions."

Tags:

Further reading

Turk and Moroccan arrested for Zotob worm

Author caught within two weeks   More...

Zotob worm spreading like sasser

Microsoft worm turned out in less than a week   More...

Experts divided on Microsoft worm threat

Optimists v pessimists   More...

Security

The latest wave of cyber-crimes and acts of vandalism have demonstrated once again that many systems are still vulnerable to attack.   More...

Related articles

Wi-Fi piggybacking rife in the UK

Over half of surfers admit to stealing Wi-Fi internet access   More...

Security expert slams spyware snooping

Computer crime authorities need to tread very carefully   More...

FBI tracked 'teen bomber' using spyware

Anonymous MySpace user infected with 'locator program'   More...

Dutch police nab ABN Amro hackers

14 suspects arrested on money laundering charges   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

08 Jul 2008

3.67 MBSafe browsing, voice recognition and cyber-criminals More...

07 Jul 2008

2.76 MBLaptops on holiday, gaming in Vietnam and 'unbreakable' encryption More...

04 Jul 2008

5.51 MBPodcast Special: Views from the Valley More...

Poll

EUROPEAN E-COMMERCE

EUROPEAN E-COMMERCE

Are you happy making an online purchase from another European country?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Firefox

Firefox users shown to be safer

Internet Explorer users the worst of the bunch   More...

Internet Corporation for Assigned Names and Numbers

Icann downplays recent site hacks

Redirects were 'limited', says organisation   More...

Advertisement

DNA

Boffins build artificial DNA

Could be used in the ultimate computer   More...

Microsoft

Microsoft outlines appeal against EU fine

Two sides back in court   More...

Advertisement