To report a botnet PRIVATELY please email: [EMAIL PROTECTED]
----------
Hi
I leave this to the big guys to shut down (especially the dyndns entry).
andrej
msnmsgr.exe de96a3efe2762a4d8d03762e62d4a9ca
## Norman.com extract
[ Network services ]
* Looks for an Internet connection.
* Connects to "chat.carabayllo.com" on port 6667 (TCP).
* Connects to IRC server.
* IRC: Uses nickname |803400248.
* IRC: Uses username ezkieyacagi.
* IRC: Joins channel #FresitaPowers with password Power.
* IRC: Sets the channel mode for channel #fresitapowers to +mnst.
##nslookup chat.CARABAYLLO.COM
Non-authoritative answer:
chat.CARABAYLLO.COM canonical name = irc-unidos.dynu.COM.
Name: irc-unidos.dynu.COM
Address: 69.243.11.39
_______________________________________________
To report a botnet PRIVATELY please email: [EMAIL PROTECTED]
All list and server information are public and available to law enforcement
upon request.
http://www.whitestar.linuxbox.org/mailman/listinfo/botnets