May 14, 2004

Agobot Trojan author released in Germany

Man charged with creating the malicious computer program

A 21-year-old man who was arrested in Germany last Friday and charged with creating a malicious computer program called Agobot was released from police custody Friday.

The man, who has not been named, was being held following his arrest because of fears he might flee the country. He was required to surrender identity papers and report regularly to police as a condition of his release, according to Ullrich Heffner, a police spokesman in the southwestern state of Baden-Württemberg.

German police arrested the man in the southern town of Waldshut and charged him under the country's computer sabotage law for attacks on computers in Germany, the U.K. and the U.S. linked to Agobot and Phatbot. Five other men were also charged in connection to the so-called Trojan programs, but were not taken into custody, according to Horst Haug, a spokesman for the State Bureau of Investigation in Baden-Württemberg.

A "self-taught" hacker, the man was arrested following tips in recent weeks from the U.S. Federal Bureau of Investigation. Police searched the suspect's home and seized computer hardware, software and documents, he said.

Agobot is a Trojan horse program that surreptitiously runs on computers that use Microsoft Corp.'s Windows operating systems, providing malicious hackers with secret access to the compromised system. Since first appearing in October 2002, the program's source code has been released on the Internet, spawning hundreds of new versions of the Trojan, including variants called Gaobot, Phatbot and Polybot.

E-mail messages from the Agobot author indicated that he wanted to leave Germany to avoid military service. That information, coupled with the arrest for creating the Trojan, prompted authorities to keep the man behind bars for almost a week, according to a police statement.

The investigation into Agobot is continuing, Heffner said.

In an coordinated, but unrelated action, police arrested an 18-year-old German man, identified in news reports as Sven Jaschan, in the northern state of Lower Saxony last Friday. The man subsequently confessed to having created both the Sasser Internet worm and an e-mail worm called Netsky.

On Tuesday, police in Lower Saxony arrested five more men in connection with distributing the Sasser and Netsky worms, then later released them without charge, a police spokesman said Thursday.

One of the young men arrested confessed to having been involved with distributing the Netsky worm, released earlier this year, but he has not been charged in relation to that case, spokesman Frank Federau said.

 

Close

On Twitter now

Security

Powered by Twitter

On Twitter now

additional resources
White Paper - How to Improve Delivery of Advanced Web Applications

White Paper

Virtual Workforce: The Key to Expanding The Business While Cutting Costs

Get the independent advice and expertise you need to support a virtual workforce.

Go inside:
The three-step approach to making a virtual workforce a reality.
The four flavors of client virtualization technologies.
The three key initiatives that solve IT challenges.
Download now »
White Paper: Successfully Secure Your Wireless LAN With Wi-Fi firewalls.

White Paper

Addressing Linux Threats Leveraging Fewer Resources

The increase in Linux popularity has increased the frequency and sophistication of malware attacks. Read this 2 page white paper now to learn how you can protect your Linux environment with real-time protection that is certified by all major Linux vendors.

Download now »
White Paper - The 2009 Handbook of Application Delivery

White Paper

The 2009 Handbook of Application Delivery

Ensuring acceptable application delivery will become even more difficult over the next few years. As a result, IT organizations need to ensure that the approach that they take to resolving the current application delivery challenges can scale to support the emerging challenges. This handbook elaborates on the key tasks associated with planning, optimization, management and control and provides decision criteria to help IT organizations choose appropriate solutions.

Download now »
White Paper - Is Your Backup System Outdated?

White Paper

Mid-range Storage Considerations

A common misconception is that mid-range storage requirements are dramatically different than that of a larger enterprise. Mid-range storage users may require less capacity, but they have similar functionality and management requirements. This ESG paper examines mid-range storage needs and reviews a new solution that adjusts size while retaining value, performance and functionality.

Download now »

Security Central Newsletter

Stay informed of the latest security threats and fixes.

White paper

Log Management: How to Develop the Right Strategy for Business and Compliance

This white paper provides guidance on how to develop a strategic approach to managing and monitoring logs, a key function required for compliance with many regulatory mandates and a critical defense against security threats.

Download now! »

White paper

The Essential Series: Security Information Management

Learn about the processes and technologies that support security information management (SIM) operations, as well as the business case for SIM. The series examines different options for implementing SIM and gives you evaluation criteria for selecting the best option for your organization.

Download now! »

White paper

Aberdeen: Choosing and Consuming Managed Security Services

Learn the strategies, actions, and capabilities that Best-in-Class organizations employ and technologies they choose to obtain superior performance against various security performance metrics. This report provides guidelines for identifying which security solutions to consume as a MSS and defines best practices for choosing and managing MSSPs.

Download now! »
©1994-2010 Infoworld, Inc.