搜索
 找回密码
 加入

湖北侦破“熊猫烧香”病毒案 李俊、雷磊等8名犯罪嫌疑人被拘留

yellky 2007-2-14 16:01:10 2060
湖北侦破“熊猫烧香”病毒案 嫌犯获利10万余元

湖北侦破“熊猫烧香”病毒案 嫌犯获利10万余元2007年02月12日18:06

 新华社武汉2月12日电 (记者方政军) 湖北省公安厅12日宣布,根据统一部署,湖北网监在浙江、山东、广西、天津、广东、四川、江西、云南、新疆、河南等地公安机关的配合下,一举侦破了制作传播“熊猫烧香”病毒案,抓获李俊(男,25岁,武汉新洲区人)、雷磊(男,25岁,武汉新洲区人)等8名犯罪嫌疑人。



这是我国破获的国内首例制作计算机病毒的大案。

 据介绍,2006年底,我国互联网上大规模爆发“熊猫烧香”病毒及其变种,该病毒通过多种方式进行传播,并将感染的所有程序文件改成熊猫举着三根香的模样,同时该病毒还具有盗取用户游戏账号、QQ账号等功能。该病毒传播速度快,危害范围广,截至案发为止,已有上百万个人用户、网吧及企业局域网用户遭受感染和破坏,引起社会各界高度关注。《瑞星2006安全报告》将其列为十大病毒之首,在《2006年度中国大陆地区电脑病毒疫情和互联网安全报告》的十大病毒排行中一举成为“毒王”。

 今年1月中旬,湖北省网监部门根据公安部公共信息网络安全监察局的部署,对“熊猫烧香”病毒的制作者开展调查。经查,熊猫烧香病毒的制作者为湖北省武汉市李俊,据李俊交代,其于2006年10月16日编写了“熊猫烧香”病毒并在网上广泛传播,并且还以自己出售和由他人代卖的方式,在网络上将该病毒销售给120余人,非法获利10万余元。经病毒购买者进一步传播,导致该病毒的各种变种在网上大面积传播,对互联网用户计算机安全造成了严重破坏。李俊还于2003年编写了“武汉男生”病毒、2005年编写了“武汉男生2005”病毒及“QQ尾巴”病毒。另外,本案另有几个重要犯罪嫌疑人雷磊(男,25岁,武汉新洲区人)、王磊(男,22岁,山东威海人)、叶培新(男,21岁,浙江温州人)、张顺(男,23岁,浙江丽水人)、王哲(男,24岁,湖北仙桃人)通过改写、传播“熊猫烧香”等病毒,构建“僵尸网络”,通过盗窃各种游戏和QQ账号等方式非法牟利。

 目前,李俊、雷磊等8名犯罪嫌疑人已被刑事拘留。

5 回复

yellky
2007-2-13 10:58:49
楼主
点击查看详情
来在咖啡官方的消息:
Today, Xinhua News Agency reported the arrest of several suspectsbelieved to have been behind the creation and propagation of the W32/Fujacks file infector worm a.k.a infected files with the Panda icon.

In the article, the official Chinese media cited an announcementfrom the Public Security Department of the Hubei Province naming 8suspects including a 25-year old believed to be “WhBoy”, the infamousnickname that is embedded in most variants of W32/Fujacks.
Xinhua’s article in Chinese:
http://news.xinhuanet.com/legal/2007-02/12/content_5731540.htm
Throughout 2006 and continuing into 2007, McAfee Avert Labs has beenclosely monitoring the trends of cyber criminal activities in Asia. W32/Fujacks, amongst other profit-motivated multi-vector attacks, spiked in 2006 and looks to be a trend that will continue in 2007.

Between Q3 and Q4 2006, we saw a spike in the number of reportedvariants of Asian password-stealers and related trojans and fileinfectors. We blogged about this phenomenon with W32/HLLP.Philisvariants in November 2006. What is really beyond these raw figureshowever is the increasing sophistication of Asian malware threats.
Both W32/HLLP.Philis and W32/Fujacksare more than the usual file infectors. These are multi-vector threats,usually including an aggressive downloader that updates itselffrequently, can infect both executable and non-executable filesover insecure media such as open network shares and USB drives, thusslipping through the cracks of loosely managed IT policies. Oncesuccessful, trusted media files can be further infected with maliciouscode or hyperlinks through PE file infection, web-based exploits over HTML or media files targeted against unpatched and vulnerable applications.
This approach of attacks on multiple system and user vulnerabilitiesat multiple layers dramatically increases the criminal opportunitiesfor these malware authors. Indeed, we have seen a comparable rise innumber of associated password-stealer variants reported - aconsiderable source of revenue for the worm seeders.
The lack of law enforcement in China in cyber crime has often beenattributed for the rise in malware threats propagating from thisregion. It is encouraging to see the start of what appears to be theend of the first major case of cyber crime in China with these arrests.At the same time, enterprises need to consistently review and tightenup their current IT strategies to protect against the sophisticatedattacks of today.
yellky
2007-2-13 11:00:08
楼主
:lol 感到惋惜....

怎么高手竟误入歧途了...
admin
2007-2-13 11:56:02
原帖由 yellky 于 2007-2-13 11:00 发表
:lol 感到惋惜....

怎么高手竟误入歧途了...

没办法,现在的牛人就想引起关注:P
ctgwglzc
2007-2-14 12:53:51

熊猫烧香案主犯编出杀毒程序 警方将公布下载

2007年02月14日10:38   荆楚网-楚天都市报 

犯罪嫌疑人李俊在接受调查。
荆楚网(楚天都市报)(记者李波涛) 昨日,仙桃警方媒体通报:将择日在www.xt110.net网站公开“熊猫烧香”杀毒软件,供网民下载。
昨日下午1时30分,记者在仙桃某看守所见到了李俊。据其交待,制作“熊猫烧香”病毒仅用2个月,当初是为“好玩”,现在后悔不已。警方将李俊抓获后,李在看守所里写下杀毒软件程序,交给了警方。经试验,该程序能在几分钟内彻底杀灭“熊猫烧香”病毒。
“熊猫烧香”病毒案告破 8犯罪嫌疑人被抓获
熊猫烧香病毒制造者系自学成材(图)
熊猫烧香嫌犯落网记 “武汉男孩”潜逃未遂
熊猫烧香病毒案侦破 “网络天才”没念过大学
熊猫烧香病毒制作者年仅25岁 称为显示技术高
yellky
2007-2-14 16:01:10
楼主
N人,偶佩服....

PS:惋惜的同时,亦无语....
高级模式
游客