Home page logo

fulldisclosure logo Full Disclosure mailing list archives

Who Wrote Sobig?
From: Author Travis <author_travis () yahoo com>
Date: Fri, 29 Oct 2004 12:52:40 -0700 (PDT)

Who Wrote Sobig?

As the one year anniversary of the Anti-Virus Reward
Program bounty for
Sobig approaches, we felt this was an appropriate time
to publicly
release the current state of our Sobig forensic
Appropriately, the authors of this document have
chosen to release it
anonymously for many reasons, some of which are:

 * By releasing the information publicly, we hope to
increase tips to law
   enforcement concerning the Sobig authorship and
spur efforts toward
   apprehension of the malware author(s);

 * This document shows how computer forensics can
identify virus authors.
   The computer forensic methods demonstrated
throughout this document
   have been utilized to successfully identify authors
of other viruses
   as well;

 * Our focus is the objective analysis of Sobig. It is
our contention,
   position, and belief that associating this paper
with any specific
   company, organization, group, or individual will
only serve to detract
   from the investigation.

The document is available at:

SIZE: 304386 bytes
MD5: 18de5fee31a553c4695f233a3da558c9
SHA1: e56b1ff66b38016de71cbf1376207f2453aa5c4c

Do you Yahoo!?
Yahoo! Mail - You care about security. So do we.

Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]