You are here: silicon.com > Software > Malware

Malware

Microsoft's Sasser bounty hangs on conviction

Informant will only get reward if Jaschen found guilty…

By Robert Lemos

Published: 13 September 2004 09:30 BST

Sven Jaschan, the alleged author of the Sasser worm and several variants of the Netsky virus, was charged this week by German police, but the informant who led authorities to the suspect will have to wait for a promised $250,000 reward, according to Microsoft.

The 18-year-old suspected virus writer has been charged with sabotage, but no court date has yet been set for his arraignment, according to an antivirus expert familiar with the case.

The progress of German police in the case pleased Hemanshu Nigam, head of Microsoft's Anti-Virus Reward Program, which has a $5m pool for rewarding people who ferret out those who release viruses and worms.

"This is a great step forward," said Nigam, a corporate attorney and the primary liaison between the software giant and law enforcement. "This is the first time that charges have been filed in a virus case as a result of the Anti-Virus Reward Program."

The charges are the latest success for Microsoft's virus bounty effort. Although the software giant has placed quarter-million-dollar bounties on the heads of those responsible for the MSBlast worm, the Sobig virus and the MyDoom virus, no arrests have yet been made in those cases. The arrest of the author of a minor variant of the MSBlast worm predated the award program.

Authorities claim that Jaschan has confessed to creating and releasing both Sasser and several variants of the Netsky virus. German authorities arrested Jaschan, a resident of the town of Waffensen, in early May, based on a tip from an informant who had approached Microsoft with credible information.

The Sasser worm and its six known variants have compromised hundreds of thousands of computers running Microsoft Windows, with some estimates putting the number of infected systems in the millions. The Netsky virus and its more than 30 variants, most of which Jaschan is also accused of creating, have likely infected hundreds of thousands of computers as well.

Nigam would not speculate on whether Microsoft would withhold payment if the informant is found to have also written viruses, a suspicion that the German police are reportedly pursuing.

"We would love to provide the reward once a conviction is reached," he said.

The police have not had great success in finding victims of the Sasser worm, according to Graham Cluley, a senior technology consultant at antivirus company Sophos. Law enforcement authorities in Germany have only been in touch with about 150 companies, which, combined, have claimed losses totalling about $150,000, he said.

"I have to wonder how effective the authorities are in getting this information," Cluley said. "I can understand that many companies wouldn't want to come forward, but there should be a lot of universities and small businesses that would file claims against the Sasser author."

Cluley believes that Jaschan created the Sasser worm and Netsky viruses but may have had help writing and distributing them, which could mean more arrests are on the way.

Robert Lemos writes for CNET News.com

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Desktop Support Team Leader - Yorkshire - Support / ITIL

Packaging, Microsoft Office (2003 & 2007), Landesk, Anti-Virus. Title: Desktop Team Leader Department: IT Technical Services Location: Bradford, West ...

Systems Administrator - MCSE, Server, AD, Exchange, IIS, BES,C.London

Laptop management and support including hardware and software - Managing office hardware including printers and scanners - Active Directory ...

Network Security Technician - North London 20 25K+BONUS:

This IT Security Specialist - focuses on Intrusion Prevention, Anti Virus URL & Email Filtering Are you a person that can build upon this companies ...

CIO Agenda 2008
The exclusive silicon.com CIO Agenda 2008 survey looks at the CIO's tech shopping list for the year, examines whether IT budgets are rising or falling and reveals what the pain points are for tech chiefs this year. Find out more in our latest special report.





Quick Sitemap Links: