To report a botnet PRIVATELY please email: [EMAIL PROTECTED]
----------
I was recently offered a bot with a .pif extension while trolling IRC
recently. The name on this one is "sex-cum-4free.pif" but I saw other
with .pif as well.

Virus total scans it as (it's packaged fairly well):
AntiVir 6.34.0.24       04.19.2006      Worm/Rbot.284672
Avast   4.6.695.0       04.18.2006      no virus found
AVG     386     04.19.2006      IRC/BackDoor.SdBot2.AFJ
Avira   6.34.0.56       04.19.2006      Worm/Rbot.284672
BitDefender     7.2     04.20.2006      no virus found
ClamAV  devel-20060202  04.19.2006      no virus found
DrWeb   4.33    04.19.2006      no virus found
eTrust-InoculateIT      23.71.134       04.19.2006      no virus found
eTrust-Vet      12.4.2167       04.19.2006      no virus found
Ewido   3.5     04.19.2006      no virus found
Fortinet        2.71.0.0        04.20.2006      no virus found
F-Prot  3.16c   04.19.2006      no virus found
Ikarus  n       -       no virus found
Kaspersky       4.0.2.24        04.20.2006      no virus found
McAfee  4744    04.19.2006      no virus found
NOD32v2 1.1497  04.19.2006      no virus found
Norman  5.90.15 04.19.2006      no virus found
Panda   9.0.0.4 04.19.2006      no virus found
Sophos  4.04.0  04.19.2006      no virus found
Symantec        8.0     04.20.2006      no virus found
TheHacker       5.9.7.131       04.19.2006      no virus found
UNA     1.83    04.18.2006      no virus found
VBA32   3.10.5  04.19.2006      no virus found

Norman Sandbox is down at the moment, I'll run it through there when
it comes back up and post results.

thanks,
bf
_______________________________________________
To report a botnet PRIVATELY please email: [EMAIL PROTECTED]
All list and server information are public and available to law enforcement 
upon request.
http://www.whitestar.linuxbox.org/mailman/listinfo/botnets

Reply via email to