To report a botnet PRIVATELY please email: [EMAIL PROTECTED] ---------- I was recently offered a bot with a .pif extension while trolling IRC recently. The name on this one is "sex-cum-4free.pif" but I saw other with .pif as well.
Virus total scans it as (it's packaged fairly well): AntiVir 6.34.0.24 04.19.2006 Worm/Rbot.284672 Avast 4.6.695.0 04.18.2006 no virus found AVG 386 04.19.2006 IRC/BackDoor.SdBot2.AFJ Avira 6.34.0.56 04.19.2006 Worm/Rbot.284672 BitDefender 7.2 04.20.2006 no virus found ClamAV devel-20060202 04.19.2006 no virus found DrWeb 4.33 04.19.2006 no virus found eTrust-InoculateIT 23.71.134 04.19.2006 no virus found eTrust-Vet 12.4.2167 04.19.2006 no virus found Ewido 3.5 04.19.2006 no virus found Fortinet 2.71.0.0 04.20.2006 no virus found F-Prot 3.16c 04.19.2006 no virus found Ikarus n - no virus found Kaspersky 4.0.2.24 04.20.2006 no virus found McAfee 4744 04.19.2006 no virus found NOD32v2 1.1497 04.19.2006 no virus found Norman 5.90.15 04.19.2006 no virus found Panda 9.0.0.4 04.19.2006 no virus found Sophos 4.04.0 04.19.2006 no virus found Symantec 8.0 04.20.2006 no virus found TheHacker 5.9.7.131 04.19.2006 no virus found UNA 1.83 04.18.2006 no virus found VBA32 3.10.5 04.19.2006 no virus found Norman Sandbox is down at the moment, I'll run it through there when it comes back up and post results. thanks, bf _______________________________________________ To report a botnet PRIVATELY please email: [EMAIL PROTECTED] All list and server information are public and available to law enforcement upon request. http://www.whitestar.linuxbox.org/mailman/listinfo/botnets
