To report a botnet PRIVATELY please email: [EMAIL PROTECTED]
----------
Hello,

I believe this is a Peobot variant. 

I assume your looking at ip 83.98.158.185 (domain home.played.co.uk)

:)

The following MD5's relate to that net:

0647e45b3dbd2b78e544bf0cdf073286
697cf9cbc76dfb6b23b2e9db49544bc6
7356c3fb4a1ea347cf37a511ad654f8e
95750dfdf87650c00f0e6acafa2c4607
9a9116ec2356be595be0e0ea8177b64a
b157395d008f5dd47966b156e652c3c8
dd5a39c1281a7a7cb0a1978aa5412fd8
3cb85c292e0c1dcd6ee86335e3139a02

Regards,
Nicholas



On Monday 19 June 2006 11:20, Rob wrote:
> To report a botnet PRIVATELY please email: [EMAIL PROTECTED]
> ----------
> Hi guys,
>
> discovered a botnet with the topic as:
>
>  * ipscan s.s dcom2 -s ][ * bothook -s ][ * wormride -s
>
>
> Do you know what type of bot uses this?
>
> Thanks
>
> Rob
> _______________________________________________
> To report a botnet PRIVATELY please email: [EMAIL PROTECTED]
> All list and server information are public and available to law enforcement
> upon request. http://www.whitestar.linuxbox.org/mailman/listinfo/botnets

-- 
Nicholas Albright
Shadowserver.org
http://www.shadowserver.org



Attachment: pgpbR6nsfGscI.pgp
Description: PGP signature

_______________________________________________
To report a botnet PRIVATELY please email: [EMAIL PROTECTED]
All list and server information are public and available to law enforcement 
upon request.
http://www.whitestar.linuxbox.org/mailman/listinfo/botnets

Reply via email to