Zotob Authors Sentenced in Morocco

By Scott M. Fulton, III | Published September 12, 2006, 7:42 PM

Two convicted developers of a worm designed last year to infect Windows 2000-based systems were sentenced today to one and two years in prison, Maghreb Arabe Presse is reporting this afternoon.

Farid Essebar, age 19, was sentenced to two years imprisonment by a court in his native Morocco for his part in producing the W2K worm, dubbed Zotob, which utilized a mass-mail attachment to copy itself into the Windows SYSTEM32 directory. From there, it would launch a process intended to preclude users from accessing certain Web sites, mainly from anti-virus vendors.

By testing the temper of security companies, Essebar and his accomplice, Achraf Bahloul -- now age 22 and sentenced to one year in jail -- managed to raise threat levels for the worm to critical levels. The FBI and Middle Eastern law enforcement agencies, at one point, worked together in an international manhunt, which at one point pegged as many as 16 suspects, according to the FBI.

The fact that there were so many suspects raised suspicions even further, as some security analysts warned of a kind of worm-writing war going on amongst members of the digital underground.

As it turned out, they were partly right: The two convicted writers did indeed want to show off for their friends and rivals. But they didn't do too great a job of it, as bugs in their own code actually prevents the payload from achieving its main objective to spread itself further.

CNN was among the many news agencies whose systems were affected by the spread of Zotob through the mail attachment, which did work. At one point, reporters in the network's own Atlanta headquarters were able to capture live images of their systems continually rebooting -- a product of the defective code -- without ever leaving the main studio.

Microsoft's most recent edition of its Malicious Software Removal Tool continues to detect and delete the multiple strains of Zotob that resulted from this little skirmish in one of the shallower corners of the digital underground.

Comments

View comments by with a score of at least

CNN's computers rebooting live. What a memorable TV moment. Maybe Larry King could interview the worm sometime?

Score: 0

|

"little skirmish in one of the shallower corners of the digital underground"

Nice!

Score: 0

|

Bing gets geekier with new Wolfram Alpha integration

Microsoft's Bing is now teamed up with Wolfram Alpha for computational search results.

HP to acquire 3Com for $2.7 B in cash, focus on China

A long and uncertain comeback trail comes to an end for the one-time network equipment giant.

Universities reject Kindle DX as a textbook replacement

Two universities running Kindle DX pilot programs have rejected the device.

Snow Leopard and Windows 7 still can't crack the netbook problem

Apple has killed Atom support in OS X 10.6.2 and Windows 7 Starter Edition is stripped of "basic" functionality.

Facebook for iPhone developer goes from Apple supporter to 'I quit!' in 3 months

Fed up with Apple's App Store policies, the developer of Facebook for iPhone has bailed on the iPhone.

Bing vs. Google rematch on video search

After Microsoft folds some old MSN Video features back into Bing, do they add to the search engine's functionality or take away?

New EU telecoms framework mandates user consent before getting cookies

Do you want a cookie? No. Do you want a cookie? No. Do you want a cookie? No. Do you want...Are you annoyed yet? That's a preview of 2011.

The Samsung Intrepid: A nice phone, if you can accept Windows Mobile

Samsung appears to have built solid enough hardware, but it's the software that seems uncomfortable and unintuitive.

A real beta process at work: Mozilla fires up Firefox 3.6 Beta 2

In the clearest sign yet that public input really does help the development process, a flurry of bug detections provoked Mozilla to release Beta 2 of the next Firefox.

Kindle for PC opens in beta, underwhelms

Amazon has opened the beta of Kindle for PC, a companion to the Kindle, but little else.

European ministers approve watered-down 'neutral net' language

The latest provision in the EU's telecoms regulatory framework would let businesses cancel individuals' Internet access, if they go to court first.