republican-creole
Search:  

 
 
   News
newer
story category Zotob, Mytob Makers Busted
From Turkey and Morocco
(old news - 06:30PM Friday Aug 26 2005)
tags: security
Techweb reports that two men have been arrested and charged with creating and distributing the Zotob and Mytob worms. Farid Essebar, 18, a Moroccan national born in Russia and known by the moniker "Diabl0," was arrested by Moroccan authorities, while Atilla Ekici, aka "Coder," a 21-year old resident of Turkey, was grabbed by Turkish police. Slashdot points to a good Eweek read that details Microsoft's day-by-day response to the outbreak.

Related:
  1. 37% Of Malware Originates In U.S.
  2. Using PS3's To Forge Site Certificates
  3. PA Man Charged With Selling Hacked Cable Modems
  4. Wednesday Evening Links
  5. New Botnet Targets Routers, Dumb People
  6. FoxNews.com Serving Up Infected Ads?
  7. Uh, Mom? The Air Force Just Attacked Our PC
  8. T-Mobile Systems Hacked?
Forums » Zotob, Mytob Makers Busted
view: topics flat text 
Post a:

GilbertMark
Premium
join:2001-05-02
Gilbert, AZ

Hmm

Yay.

Riss_Centaur
Mod'taur - - - - 4 On The Floor.
Premium,MVM,Ex-Mod 2005-07
join:2004-01-20
other
clubs:

Now what?...

Now this should be interesting to see what happens to them....
BosstonesOwn

join:2002-12-15
Everett, MA
clubs:
·Comcast
·Comcast Formerly ..

Re: Now what?...

said by Riss_Centaur See Profile :

Now this should be interesting to see what happens to them....
Like the rest they will be hired by some company who writes av software then the av company will be promptly bought by a spyware vendor and they will be back in the act.
--
"It's always funny until someone gets hurt......and then it's absolutely friggin' hysterical!"
mooty

join:2001-01-28
Riverdale, GA

in other news....

In other news. . . AOL still sucks

a2nxtcrav3r
Pokes People With Stick
Premium
join:2003-07-13
San Jose, CA
·DSL EXTREME

Re: in other news....

said by mooty See Profile :

In other news. . . AOL still sucks
con
--
i need money

tonyfer

join:2002-08-14
Elizabeth, NJ
clubs:

Re: in other news....

kill tham
hskrfan23

join:2004-03-18
West Sacramento, CA

Re: in other news....

kill them? why? they're not the ones who left the gaping holes these things exploited..maybe some jail time....or government employment to put em on the right track
Endgame
Me Bored
Premium
join:2005-07-07
Crazy World
·Pacific Bell - SBC


1 edit

Squash those 2 worms!

Those 2 fools are little worms themselves and MicroSloth eats their delicious worms for breakfast everyday. Also watch out for those Trojan condom viruses as well, those damn nasty things are all over the pornonet these days!
--
Welcome to the planet Earth, the most primative backwater planet in the MW Galaxy! Give me some fricken lasers to the home FLTTH not FTTH!!!

pokesph
It Is Almost Fast
Premium
join:2001-06-25
Sacramento, CA
clubs:
·Comcast

In Related News..

In related news, Farid Essebar, 18, a Moroccan national born in Russia and known by the moniker "Diabl0," and Atilla Ekici, aka "Coder," a 21-year old resident of Turkey, were both named outstanding 'black-hat' coders, and awarded prizes of $1,000,000 USD each.
--
Webmaster Steve
- - - - - - - - - - - -
»ppnhosting.com
»sphenterprizes.com
»pokemonpalace.net

Xzibit
Wtf Mate?
Premium
join:2002-04-19
Santa Clara, CA
clubs:

Complete bullshit.

Obviously the authorities have no clue how it works.

On august 12, 2005, the code for the "exploit" was released onto the internet, on atleast 20+ "0day exploit" websites.

The code is basically harmless.

These guys and about 1000 others on the internet then took a copy of rxbot / rbot (been around since 2000), adapted rbot to scan and work with the UPNP2 exploit, aka mytob, and people went "omgosdgmomg ITS A WORM!!!"

No, security forum noobs. It's a basic trojan, that he instructed to scan a certain way. He didnt really code anything. And it's not a "worm". Your computer was simply part of a large botnet.
--
Wonderful Thread

CPM

join:2001-08-24
Miami, FL

Russians

Well the Russian. Will only get a slap on the back. They have no computer/internet laws in russia. Then again what do you think all the preteen porn comes from? Russia of course. Since, a 13 year old boy or girl is not a minor in russia..
--
This is what a OG told me. Filthly Rich and Die Lonely. F the benz - F the Rollie, life is what you make it homy.

LiamJunket
Premium
join:2002-03-03
Ocean City, NJ
·Comcast

Re: Russians

said by CPM See Profile :

Well the Russian. Will only get a slap on the back. They have no computer/internet laws in russia. Then again what do you think all the preteen porn comes from? Russia of course. Since, a 13 year old boy or girl is not a minor in russia..
He was a Moroccan citizen, just born in Russia. And he was arrested in Morocco, not Russia, and will be subject to Moroccan law.
--
My Web Page
Join Red Room Forum

CPM

join:2001-08-24
Miami, FL

Re: Russians

Well will we see. What happens.. I still think he will get a slap on the back.

LiamJunket
Premium
join:2002-03-03
Ocean City, NJ
·Comcast

Re: Russians

said by CPM See Profile :

Well will we see. What happens.. I still think he will get a slap on the back.
I agree with you that not much will happen to him. Somehow I doubt Morocco cares much about cyber crime.
--
My Web Page
Join Red Room Forum

menumorut
BE an American.

join:2005-07-04
Queens Village, NY

Re: Russians

said by LiamJunket See Profile :

Somehow I doubt Morocco cares much about cyber crime.
There is nothing cyber in Morocco, therefore there are no cybercrimes.
--
Give the world changes at a pace it can absorb.

John Galt
What...me panic??
Premium
join:2004-09-30
Happy Camp

said by LiamJunket See Profile :

He was a Moroccan citizen, just born in Russia. And he was arrested in Morocco, not Russia, and will be subject to Moroccan law.
Oh, sure. Point out the facts...


--
A is A

cao1964

join:2000-08-09
Danville, PA
Maybe they will cut off his hands, its Morocco after all.

MikeMOp

@net.ma

Re: Moroccans

If they cut off his hands,he can still use voice recognisation softs, they will cut off his tongue ...

pcscdma
Chocobo Chocobo Random Battle
Premium
join:2004-01-14
Winterset, IA
clubs:


2 edits

wohoo!

Diabl0 is probably that guy that is consistently number 1 in almost every track in PGR2.
Probably just an 1337 script kiddy. H4x0r3d his way to the top. Little s***.

don't take that too seriously. please. don't. it's not worth it.

spoiler thing is b0rked
--
Posting .sig

Xzibit
Wtf Mate?
Premium
join:2002-04-19
Santa Clara, CA
clubs:

Re: wohoo!

said by pcscdma See Profile :

Diabl0 is probably that guy that is consistently number 1 in almost every track in PGR2.
Probably just an 1337 script kiddy. H4x0r3d his way to the top. Little s***.

don't take that too seriously. please. don't. it's not worth it.

spoiler thing is b0rked
He is a script kiddie. He took rbot and added in the widely available exploit which is available on google.

»www.google.com/search?hl=en&q=HO···e+Search

Hell anyone who knows tee bit of c can compile this easily.
--
Wonderful Thread

obeythelaw
Premium
join:2003-04-16
Bayonne, NJ

All talk about windows viruses

I'm still waiting for these weirdos to make a virus for the Mac. I still don't think many people can do it which pretty much leaves Mac users virus free.

Winerin
Premium
join:2002-03-30
Woodland Hills, CA

Re: All talk about windows viruses

Mac users are boring to exploit...not many use a Mac, so there isn't much to brag about writing a virus/worm for it.

John Galt
What...me panic??
Premium
join:2004-09-30
Happy Camp

Re: All talk about windows viruses

said by Winerin See Profile :

Mac users are boring to exploit...not many use a Mac, so there isn't much to brag about writing a virus/worm for it.
But you can cause SO much damage...!



Someday, someone will not be interested in "notoriety" but inflicting damage.
--
A is A

MoeDumb
I already have a Messiah.
Premium
join:2002-09-23


1 edit
What he said: "Mac users are boring to exploit..."

What he thought: Damn vulnerable Windows POS. Wish I could afford a Mac...


--
"tick...tick...tick..."
»www.jtf.org/

kasperkpc7

join:2005-02-26
00000

Mac has always been the dev platform in my eyes, Unix commands anyone?? Maybe it was the crack but I could swear that XP has Unix commands now too, it'll be a sad day for us all when a default OS install is more *secure* than it is *pretty*.
::Beware the soundserver!!:: aka, speakers that aren't speakers.

kruser
Premium
join:2002-06-01
Saint Louis, MO
clubs:

Maybe follow Pennsylvania law

Maybe if they follow Pennsylvania's case then they can at least perform community service?

How can we regulate the whole internet as in the entire earth?
We can't without an agreement or war.
Which one will it be?

JustAnObservation

@shawcable.net

I gotta wonder....

If these people are clever enough to create these little multifunctional programs in such a short period of time, you would think they would be smart enough to NOT get caught in such a short period of time if at all. I wonder it they are the actual ones or just the fall guys.

AND.......if they can make these things go out and erase each other, then why can't the internet task force or whoever unleash antiviruses onto the net with voluntary prompts from voluntarily visited websites with full disclosure of what it does while it is doing it? Oh wait, then large corporations like symantec who pay off people to prevent this would not make any money through fear and uncertainty.

AnonProxy
Proxy of Anon
Premium
join:2001-05-12
ß

CHOP of their hands!

CHOP of their hands!

kruser
Premium
join:2002-06-01
Saint Louis, MO
clubs:

Re: CHOP of their hands!

You mean "off" and not "of" correct?

GilbertMark
Premium
join:2001-05-02
Gilbert, AZ
·Cox HSI

Ugh

Winerin you just proved how narrow your vision is with this uneducated comment:

"Mac users are boring to exploit...not many use a Mac, so there isn't much to brag about writing a virus/worm for it."

No one has the skill to do it. It's not about it being boring or not. The Mac OS is based on UNIX which has been around for decades and grew out of an environment where people tried to crash the OS to make it better.

Go back to your Windows machine and IM your 1337 friends.
Derfel

join:2004-06-06
Winnipeg, MB

Re: Ugh

Is that some sort of challenge?
Goldengamego
Premium
join:2004-02-22
Okemos, MI


1 edit
said by GilbertMark See Profile :

Winerin you just proved how narrow your vision is with this uneducated comment:

"Mac users are boring to exploit...not many use a Mac, so there isn't much to brag about writing a virus/worm for it."

No one has the skill to do it. It's not about it being boring or not. The Mac OS is based on UNIX which has been around for decades and grew out of an environment where people tried to crash the OS to make it better.

Go back to your Windows machine and IM your 1337 friends.
You’re kidding right? UNIX machines get cracked all the time.

Get your facts strait. UNIX as a design has been around for decades, the code OSX is based off of has not.
--
Because Goldengamegod won't fit:p

Unregistered user



When will MS and the general public wake up?

When will MS and the general public wake up? MS needs to make damn sure that they build an OS that's more secure from the ground up, and the general public needs to actually pay attention to security on a regular basis.

I'm not saying this just because we have yet another trojan/worm/whatever. I'm saying it because, up to now, these things have been either written by script kiddies or those just looking for some props from their peers. At some point, and I have to think it's sooner rather than later, someone is going to unleash something truly evil. It's one thing for a worm to cause a computer to act as a spam relay or DDoS zombie. You can usually wipe the thing off and go about your day. However, it's quite another thing if it spreads quietly over the course of a few days or weeks, then wakes up, grabs all the financial data it can find, packs it up and sends it over the Net to some server in Russia or China, then overwrites your hard drive with random data, or, even worse, does a bad flash of every reprogrammable device it can find in your PC, which, these days, is about everything.

I firmly believe that someone will do something like this sooner or later, and the results will be catastrophic.
fitzov

join:2005-01-13
Mansfield Center, CT

I'm confused

How can someone be smart enough to create a virus that the world is afraid of, yet not go to a public internet cafe inconspicuously so as to not get caught?
Derfel

join:2004-06-06
Winnipeg, MB

*sigh*

What unoriginal handles.

Mr Fuji

@69.156.x.x

Re

quote:
Farid Essebar, 18, a Moroccan national born in Russia and known by the moniker "Diabl0," was arrested by Moroccan authorities, while Atilla Ekici, aka "Coder," a 21-year old resident of Turkey, was grabbed by Turkish police.
PWNED
some_1

join:2005-08-28
40000

It's true

farid essebar is a script kidding he use this exploit for his worm the first one called mytob the second is zotob! but for people how say that there are no hacker's in Morocco !

" Chaos Computer Club Maroc" is one of the team's in this
country

more there is no cyber crime law in Morocco!

CCCma

@proxad.net

About CCC.ma

Hello,
Sure, we have started CCC Morocco two years before..our main goal was to prevent from this kind of easy attacks.
CCC.ma is a group of security consultants from the old days (not sk .. not crackers...not defacers) ... it is so easy to deface nowadays...right !! anyone can do it ... but what most of us should do is to work against this kind of behaviour ...

Diabl0 made a mistake..he will pay for it and in the other hand, i hope that he will be get off this hook .. he is just a kid... and many moroccan kids are playing with Internet in order to get themselves free from the hard days they are living there ...

I hope ppl all around the world will not think that we are only defacers and virii writers...

Peace for all !
G(°°)
Www.ccc.ma
Forums » Zotob, Mytob Makers Busted


Saturday, 04-Jul 18:21:39 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 9.5 years online! © 1999-2009 dslreports.com.republican-creole