ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Virus writers exchange coded insults

Munir Kotadia ZDNet.co.uk

Published: 03 Mar 2004 13:30 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Security researchers have discovered that the authors of MyDoom and Bagle are exchanging insults with the author of Netsky using text that is hidden inside the virus's code.

Since Friday, more than 10 variants of the Netsky, Bagle and MyDoom worms have been discovered. Mutants spreading in the past 24 hours have contained messages that indicate the authors of MyDoom and Bagle have teamed up against Netsky's author, antivirus experts said.

Finnish security company F-Secure on Tuesday reported that Bagle.J contained a line of text that said: "Hey, NetSky, f*ck off you b*tch, don't ruine our bussiness, wanna start a war?"

Mydoom.G, which was released on the same day, also contained a message to Netsky's author: "to netsky's creator(s): imho, skynet is a decentralized peer-to-peer neural network. we have seen P2P in Slapper in Sinit only. they may be called skynets, but not your shitty app."

In response, the latest Netsky variant (F), which was discovered on Wednesday morning, contained the message: "Skynet AntiVirus - Bagle - you are a looser!!!!".

Graham Cluley, senior technology consultant for antivirus company Sophos, told ZDNet UK he believes the insults are flying because the authors of Bagle and MyDoom are not happy that Netsky has received so much publicity. "The author of Bagle is rather upset that the Netsky guy is taking all the headlines and getting most of the attention," he said. "Like any community, the virus writers often are at war with each other -- rather like politicians -- but their war of words is taking place on users' desktops and users' email systems."

To get their messages across, the worm writers are constantly changing their code to ensure they keep one step ahead of the antivirus companies.

"They are just tweaking them just enough -- and getting a big kick out of seeing the antivirus companies reacting and posting information on their sites," said Cluley. "We are the ones that are all suffering. I would much rather they ranted at each other on message boards instead of in raw code."

This isn't the first time worm authors have included a message in their malware. For example, the MSBlast worm, which caused so much damage last summer, contained a message directed at Microsoft chairman Bill Gates: "I just want to say LOVE YOU SAN!! billy gates why do you make this possible ? Stop making money and fix your software!!"

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
105 out of 239 people found this useful


Company/Topic Alerts

Create a new alert from the list below:











Related Jobs

Websphere Message Broker Consultant

My client, a financial insitution requires a Websphere Message Broker consultant to join their programme. Ideal candidates will have excellent ...

TECHNICAL AUTHOR / WRITER London - URGENT - MEDIA GIANT!

Technical Author role - My leading Media client is looking for 2 expeirenced Technical Authors to join their growing team based in Middlesex. Key ...

Technical Services Representative

Basic understanding of networks including TCP/IP and Peer-2-Peer networking - Ability to communicate technical information on phone or email to a ...

Sentry Posts Blog

Mobile Linux Better For Mobile Busines...

Mobile Linux Better For Mobile Business Apps? Author: Eric Everson, MyMobiSafe.com As mobile Linux is carving it’s footprint on the future of mobile application development, the... More

Post a comment

DWP downplays security breach

The Department for Work and Pensions (DWP) has admitted that some of its staff have been forwarding passwords with password protected material. An email that was leaked on the 'Dizzy... More

Post a comment

How many headshots does one chairperso...

We got a strange request last week from the head of PR from Russian security experts Kaspersky. It seems although the company was very happy with the interview we recently carried with... More

Post a comment

Featured Talkback

On the contrary, if vendors were forced to stand behind their products it should increase innovation. It would force more, and better , testing before hitting the sales floor, resulting in fewer updates and less downtime for the consumer. At present the EULA removes responsibility from the vendor, and moves it to the user, which is a step backward. Make the vendor responsibility for their code.

By: ator1940

Read full story:
RSA: Vendor liability may stifle innovation