ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Zotob suspects linked to underground network

Tom Espiner ZDNet.co.uk

Published: 30 Aug 2005 16:55 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

One of the virus writers suspected of creating the Zotob and Mytob worms has been linked to a notorious network of malware creators called 0x90-team.

Finnish antivirus expert Mikko Hyppönen, director of antivirus research at F-Secure, claimed in a blog posting on Monday that a virus writer nicknamed "Diabl0", who is believed to have been behind last week's virus outbreaks, had used the 0x90-team network in order to download malicious code.

F-Secure spokesman Patrick Runald said the 0x90-team (pronounced "zero ex ninety team") was a forum and file-sharing network dedicated to malware. Users could request and share malicious code such as the Zotob, Rbot and SDbot viruses. "Thousands of users used the forum," according to Runald.

The 0x90-team Web site has since been taken completely offline, probably by 0x90-team itself. This is because it was defaced on Saturday by unknown "hacktivists", according to Patrick Runald.

The 0x90-team Web site was hacked with a message which stated that the site had been defaced because it only offered third party products, but no "knowledge", according to Hyppönen. There was also a threat: "If you continue to hold this place to train script kiddies, we will come back."

Two men were arrested at the end of last week on suspicion of authoring both the Mytob and Zotob worms. Farid Essebar, an 18-year-old Moroccon national born in Russia, is suspected of being Diabl0. Atilla Ekici, a 21-year-old Turkish resident, is suspected of operating under the online alias "Coder".

Essebar was arrested in Morocco, while Ekici was arrested in Turkey. They will be prosecuted in the countries in which they were arrested, with the FBI providing the evidence.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
103 out of 208 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:





Related Jobs

Application Support Team Lead - Support Analyst - East Midlands

For more information and to apply online, please visit our dedicated recruitment website http://www.hays.com/jobs/leicestershirecountycouncil ...

SAP Programme/Project Manager

IBM is dedicated to helping clients extend their value network. The successful candidates will be able to :- Consult on business issues and ...

Project Officer

Project Officer London - Who we are We are the Specialist Schools and Academies Trust (SSAT), an independent, not-for-profit membership organisation ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

1 comment