Comkill1.6 trojan (WireFire) ---------------------------- Filelength: 4606 bytes Linking type: 4eb9 This is said to be a new release of the Commander viruskiller Comkill by SHI. In reality this is somekind of BBS hacker for the wellknown AMiExpress mailbox system. It will be tried to copy the user.data to the download areas to gain access to the system. Nothing special, this technics are known now for years. Visible texts in the file: 'Hihihihi' 'WIREFIRE' 'bbs:' 'bbs' 'bbs' 'SteelVision' 'Mnenonic' 'ThinG' 'ByteMangler' 'Darkman' 'FlashRoger' 'messenger' '·kEWldUdE·' 'SViNOMiR' 'Darkelf' 'bbs:user.data' 'ram:test.data' 'bbs:node4/playpen/pst-for.txt' 'bbs:node2/playpen/pst-for.txt' 'bbs:node3/playpen/pst-for.txt' 'bbs:node1/playpen/pst-for.txt' The user data will be made avaible under the name pst-for.txt in the user- areas. WireFace trojans are known, WireFire is probably somekind of namecopy. Test by Markus Schmall Detection tested 5.8.1995. [Go back]