Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security FullDisclosure
[Top] [All Lists]

[Full-Disclosure] Who Wrote Sobig?

Subject: [Full-Disclosure] Who Wrote Sobig?
Date: Fri, 29 Oct 2004 12:09:10 -0700 (PDT)
Who Wrote Sobig?

As the one year anniversary of the Anti-Virus Reward
Program bounty for
Sobig approaches, we felt this was an appropriate time
to publicly
release the current state of our Sobig forensic
investigation.
Appropriately, the authors of this document have
chosen to release it
anonymously for many reasons, some of which are:

 * By releasing the information publicly, we hope to
increase tips to law
   enforcement concerning the Sobig authorship and
spur efforts toward
   apprehension of the malware author(s);

 * This document shows how computer forensics can
identify virus authors.
   The computer forensic methods demonstrated
throughout this document
   have been utilized to successfully identify authors
of other viruses
   as well;

 * Our focus is the objective analysis of Sobig. It is
our contention,
   position, and belief that associating this paper
with any specific
   company, organization, group, or individual will
only serve to detract
   from the investigation.

The document is available at:
  http://authortravis.tripod.com/
  http://www.geocities.com/author_travis/

SIZE: 304386 bytes
MD5: 18de5fee31a553c4695f233a3da558c9
SHA1: e56b1ff66b38016de71cbf1376207f2453aa5c4c


                
__________________________________
Do you Yahoo!?
Yahoo! Mail Address AutoComplete - You start. We finish.
http://promotions.yahoo.com/new_mail 

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html

<Prev in Thread] Current Thread [Next in Thread>