To report a botnet PRIVATELY please email: [EMAIL PROTECTED]
----------
Hi
I leave this to the big guys to shut down (especially the dyndns entry).

andrej

msnmsgr.exe de96a3efe2762a4d8d03762e62d4a9ca

## Norman.com extract
[ Network services ]
     * Looks for an Internet connection.
     * Connects to "chat.carabayllo.com" on port 6667 (TCP).
     * Connects to IRC server.
     * IRC: Uses nickname |803400248.
     * IRC: Uses username ezkieyacagi.
     * IRC: Joins channel #FresitaPowers with password Power.
     * IRC: Sets the channel mode for channel #fresitapowers to +mnst.


##nslookup chat.CARABAYLLO.COM
Non-authoritative answer:
chat.CARABAYLLO.COM     canonical name = irc-unidos.dynu.COM.
Name:   irc-unidos.dynu.COM
Address: 69.243.11.39


_______________________________________________
To report a botnet PRIVATELY please email: [EMAIL PROTECTED]
All list and server information are public and available to law enforcement 
upon request.
http://www.whitestar.linuxbox.org/mailman/listinfo/botnets

Reply via email to