Romanian man to be charged in Blaster release
Dan Sumitru Ciobanu may face 10 years in prison for releasing the Blaster-F worm variant
IDG News Service - A Romanian man will be charged with violating that country's cybercrime laws by releasing a version of the W32.Blaster Internet worm, according to a source involved in the investigation.
Dan Sumitru Ciobanu of Iasi, Romania, may face up to 10 years in prison for allegedly releasing the Blaster-F worm variant, according to Mihai Radu of Softwin SRL, a computer security company in Bucharest, Romania.
Elena Dinu, a spokeswoman for the prosecutor's office attached to the Supreme Court of Justice in Bucharest, declined to comment on the case and referred questions to officials in Iasi. Authorities in Iasi weren't available for comment this afternoon.
Ciobanu will be accused of violating Articles 45 and 46 of Law 161, tough new cybercrime legislation enacted this year, Radu said, reading from a draft statement by Iasi authorities scheduled for release tomorrow. Those articles cover actions that "cause a grave perturbance to the functioning of a computer system" and "unauthorized possession of a computer program especially made to create a grave perturbance to a computer system," Radu said.
Ciobanu was arrested last week and initially denied having released the worm (see story). However, he eventually acknowledged doing so, saying the release occurred by accident as he was testing it on a home computer connected to the Internet, according to the statement. Authorities are still scrambling to determine whether the worm variant he released has infected any computers in his own country, according to Radu.
Softwin researchers are working with law enforcement officials in Iasi to track virus traffic from Ciobanu's computer to machines infected with Blaster-F. So far, they have found infected machines in Belgium and the Netherlands, but none in Romania, he said.
The outcome of that investigation may determine whether 24-year-old Ciobanu is charged with merely attempting to cause damage to computer systems or actually causing damage, he said.
Softwin is also helping Iasi authorities analyze the contents of three computer hard drives in the case, Radu said. Two of those were seized from Ciobanu's home and one from a computer at the photo lab where he worked. A copy of the original virus was found on the hard drive from Ciobanu's work. Of the two drives taken from his home, one had been erased and reformatted and the other was unreadable because of "errors," Radu said.
Ciobanu's case closely resembles that of Minnesota teenager Jeffrey Parson, who was arrested last month for creating and releasing the Blaster-B variant.
Like Parson, Ciobanu's alleged decision to use his online nickname, enbiei, for the virus file was integral to his capture, Radu said. "Enbiei" is a phoneticized version of NBA, the National Basketball Association in the U.S., Radu said.
Romanian authorities may try to make an example out of Ciobanu, Radu said. Blaster-F is the second cybercrime case to surface since the enactment of the cybercrime law, and some fear that Romania will be associated with hackers and computer crime, he said.
Prosecutors will likely seek to have Ciobanu serve some jail time, though probably less than the maximum sentence of 10 years, Radu said.



- Excel 2010 Cheat Sheet
- Register for this Computerworld Insider Cheat Sheet and gain access to hundreds of premium content articles, guides, product reviews and more.
- Overcome Top 7 Admin Challenges of Active Directory
- As Active Directory's role in the enterprise has drastically increased, so has the need to secure the data. Gain insight on creating repeatable,...
- Insiders Can Ruin Your Company. Take Action.
- Did you know that 80 percent of threats to an organization come from the inside? The threat from insiders is often overlooked in...
- Top Solutions and Tools to Prevent Devastating Malware
- Custom malware frequently goes undetected. According to Forrester Research, the best way to reduce risk of breach is to deploy file integrity monitoring...
- Streamline Compliance and Increase ROI
- Streamline, simplify, and automate compliance related activities; especially those that impact multiple business units. This white paper from NetIQ, outlines solutions that will...
- X-Ray of the PCI Process-4 Proactive Steps
- This white paper from Forrester Research Inc., helps break PCI into understandable components. Security and risk professionals will gain knowledge and insight into... All Gov't Legislation/Regulation White Papers
- Optimizing Networks for the Cloud
- Join guest speaker, Rohit Mehra, IDC Director of Enterprise Communications Infrastructure, to explore current trends, discuss best practices for optimizing Data Center and...
- Apps QuickStart Series Part 2: Designing and Deploying SQL Server on VMware vSphere
- Download this webcast to learn about the design considerations for virtualizing SQL workloads, performance and scalability information and high-availability options, as well as...
- Apps QuickStart Series Part 1: Designing and Deploying Exchange 2010 on VMware vSphere
- Download this webcast to learn the virtual hardware design considerations for Exchange 2010, deployment using the building block approach, options for high-availability and...
- Customer Spotlight: How IPC The Hospitalist Company Implemented Oracle on VMware
- Have you been looking to hear about customer's experiences with the new VMware vCenter Site Recovery Manager product? View this webcast to learn...
- Virtualize Business-Critical Applications with Confidence
- Virtualizing business-critical applications has become a key focus for organizations as they move along their virtualization journey. With the launch of VMware vSphere®... All Gov't Legislation/Regulation Webcasts