You are here: silicon.com > Software > Security Strategy

Security Strategy

'Netsky' variant belongs to Baba family

A worm by any other name still isn't a treat...

By Dan Ilett

Published: 25 October 2004 09:20 GMT

Antivirus companies have mislabelled a worm they thought belonged to the Netsky virus family, a security expert has said.

Senior technical consultant at Sophos Graham Cluley said that antivirus firms should have labelled the virus as a 'W32/Baba' worm. But, he added, after F-Secure categorised the worm as a Netsky variant, many of other antivirus companies followed their lead.

"The guys in the labs have looked more closely at this and said that this isn't Netsky," Cluley said. "Kaspersky has also found the same thing. It's actually called Baba. As far as we can see, it bears no relation to Netsky."

F-Secure swiftly made a turnaround on its decision and re-labelled the worm as Baba.

F-Secure's director of antivirus research Mikko Hyppönen said: "I think [Cluley] is right. It is complex because there are several families. It's becoming a bit academic. Later on we saw that it was something else. But the bottom line is that it's a mass-mailer."

Cluley said that even though the virus was a Baba variant, it looked as if it was still connected to a South Korean university.

At the time of writing, Symantec still had the virus labelled as Netsky.

Reports stated that the original Netsky author Sven Jaschan was responsible for more than 70 percent of virus infections earlier this year. Jaschan, who was arrested in May, was recently offered a job by German firewall company Securepoint.

Dan Ilett writes for ZDNet UK.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Nick Heath Your top HR tech priorities for next year revealed How to make human resources IT work for you

Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business


  • Jobs
IT Helpdesk Technician - Stratford Upon Avon, Warwickshire

I have an urgent requirement for an IT Helpdesk/Support Technician with excellent skills in Windows Active Directory, SQL Server 2005 databases, ...

Network & Security Specialist

The successful candidate must have experience of projects and operations in the following areas: *LAN/WAN implementation and support *Proxy,Firewall, ...

Firewall Engineer (Security Engineer)

Exposure to and experience with popular enterprise antivirus suites (ie: McAfee, Sophos, Symantec) is highly desirable. Firewall Engineer (Security ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: