<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
	<link rel="self" type="application/atom+xml" href="https://forum.eggheads.org/app.php/feed/topic/13995" />

	<title>egghelp/eggheads community</title>
	<subtitle>Discussion of eggdrop bots, shell accounts and tcl scripts.</subtitle>
	<link href="https://forum.eggheads.org/index.php" />
	<updated>2007-09-19T16:35:09-04:00</updated>

	<author><name><![CDATA[egghelp/eggheads community]]></name></author>
	<id>https://forum.eggheads.org/app.php/feed/topic/13995</id>

		<entry>
		<author><name><![CDATA[sKy]]></name></author>
		<updated>2007-09-19T16:35:09-04:00</updated>

		<published>2007-09-19T16:35:09-04:00</published>
		<id>https://forum.eggheads.org/viewtopic.php?p=76038#p76038</id>
		<link href="https://forum.eggheads.org/viewtopic.php?p=76038#p76038"/>
		<title type="html"><![CDATA[Trojan detection]]></title>

		
		<content type="html" xml:base="https://forum.eggheads.org/viewtopic.php?p=76038#p76038"><![CDATA[
Post some problems with such bots. A log and a network+channel where them can be observed.<p>Statistics: Posted by <a href="https://forum.eggheads.org/memberlist.php?mode=viewprofile&amp;u=6101">sKy</a> — Wed Sep 19, 2007 4:35 pm</p><hr />
]]></content>
	</entry>
		<entry>
		<author><name><![CDATA[awyeah]]></name></author>
		<updated>2007-09-15T09:39:23-04:00</updated>

		<published>2007-09-15T09:39:23-04:00</published>
		<id>https://forum.eggheads.org/viewtopic.php?p=75947#p75947</id>
		<link href="https://forum.eggheads.org/viewtopic.php?p=75947#p75947"/>
		<title type="html"><![CDATA[Trojan detection]]></title>

		
		<content type="html" xml:base="https://forum.eggheads.org/viewtopic.php?p=75947#p75947"><![CDATA[
@ Tosser^^: Maybe you should refine your search criteria.<p>Statistics: Posted by <a href="https://forum.eggheads.org/memberlist.php?mode=viewprofile&amp;u=4875">awyeah</a> — Sat Sep 15, 2007 9:39 am</p><hr />
]]></content>
	</entry>
		<entry>
		<author><name><![CDATA[Alchera]]></name></author>
		<updated>2007-09-13T17:23:12-04:00</updated>

		<published>2007-09-13T17:23:12-04:00</published>
		<id>https://forum.eggheads.org/viewtopic.php?p=75920#p75920</id>
		<link href="https://forum.eggheads.org/viewtopic.php?p=75920#p75920"/>
		<title type="html"><![CDATA[Trojan detection]]></title>

		
		<content type="html" xml:base="https://forum.eggheads.org/viewtopic.php?p=75920#p75920"><![CDATA[
The current system works well enough. <br><br>DragnLord made an excellent point.<p>Statistics: Posted by <a href="https://forum.eggheads.org/memberlist.php?mode=viewprofile&amp;u=3646">Alchera</a> — Thu Sep 13, 2007 5:23 pm</p><hr />
]]></content>
	</entry>
		<entry>
		<author><name><![CDATA[r0t3n]]></name></author>
		<updated>2007-09-13T15:47:59-04:00</updated>

		<published>2007-09-13T15:47:59-04:00</published>
		<id>https://forum.eggheads.org/viewtopic.php?p=75916#p75916</id>
		<link href="https://forum.eggheads.org/viewtopic.php?p=75916#p75916"/>
		<title type="html"><![CDATA[Trojan detection]]></title>

		
		<content type="html" xml:base="https://forum.eggheads.org/viewtopic.php?p=75916#p75916"><![CDATA[
If we have just a few good/working algothims in one thread, it will be easy to share detection methods. If we all help each other to help ourselfs, we can get a better understanding of trojans and/or have a better working, more accurate trojan detection algothim/system.<p>Statistics: Posted by <a href="https://forum.eggheads.org/memberlist.php?mode=viewprofile&amp;u=6300">r0t3n</a> — Thu Sep 13, 2007 3:47 pm</p><hr />
]]></content>
	</entry>
		<entry>
		<author><name><![CDATA[DragnLord]]></name></author>
		<updated>2007-09-13T00:39:34-04:00</updated>

		<published>2007-09-13T00:39:34-04:00</published>
		<id>https://forum.eggheads.org/viewtopic.php?p=75908#p75908</id>
		<link href="https://forum.eggheads.org/viewtopic.php?p=75908#p75908"/>
		<title type="html"><![CDATA[Re: Trojan detection]]></title>

		
		<content type="html" xml:base="https://forum.eggheads.org/viewtopic.php?p=75908#p75908"><![CDATA[
<blockquote class="uncited"><div>There are so many posts on this forum about trojan/spambot detection etc etc...<br><br>Can we maybe make one post with every single detection regexp/algothim etc so then its easier than to search the forum for however long to find some decent piece of code to detected trojans/pjens/spambots or whatever people call them...</div></blockquote>Isn't almost like saying "Why don't we put ALL threads into a single topic in a single forum since they all deal with eggdrops?" (Yes, that's an exaggeration.)<br><br>There are too many different kinds of spambots/floodbots/trojans/proxies out there to effectively lump them all into a single thread, and that's not even taking into consideration that different networks can have different services and/or methods to handle things of this type.<p>Statistics: Posted by <a href="https://forum.eggheads.org/memberlist.php?mode=viewprofile&amp;u=4461">DragnLord</a> — Thu Sep 13, 2007 12:39 am</p><hr />
]]></content>
	</entry>
		<entry>
		<author><name><![CDATA[awyeah]]></name></author>
		<updated>2007-09-12T22:24:57-04:00</updated>

		<published>2007-09-12T22:24:57-04:00</published>
		<id>https://forum.eggheads.org/viewtopic.php?p=75905#p75905</id>
		<link href="https://forum.eggheads.org/viewtopic.php?p=75905#p75905"/>
		<title type="html"><![CDATA[Trojan detection]]></title>

		
		<content type="html" xml:base="https://forum.eggheads.org/viewtopic.php?p=75905#p75905"><![CDATA[
I have seen there are only a few threads related to trojans/drones/spambots and infected clients on the forum. Since they vary from network to network and from channel to channel as well as I've seen it makes a difficult criteria to specify a single thread which can be used in general for every type.<br><br>Furthermore the threads I have searched and gone through are already out dated, since new trojans come out like daily and old ones for which detection solutions have been found or exist aren't likely to cause a threat , since they aren't present anymore. The only threads focussed basically on this forum are regarding random nick/ident/realname drones.<br><br>Some algorithms (such as in <em class="text-italics">allprotection.tcl</em> for drones), nick scorers in <em class="text-italics">xchannel.tcl</em> and <em class="text-italics">spambuster.tcl</em> all, and the one I use (not available publicly) which I am aware of are ways to detect random patterns.<br><br>If anyone is into this area for research on trojans, help would be appreciated by posting ideas and comments if they have encountered specific type of trojans on their IRC network and channels and figured a way to detect them or we could help to detect them by looking at the criteria for detecting them.<p>Statistics: Posted by <a href="https://forum.eggheads.org/memberlist.php?mode=viewprofile&amp;u=4875">awyeah</a> — Wed Sep 12, 2007 10:24 pm</p><hr />
]]></content>
	</entry>
		<entry>
		<author><name><![CDATA[r0t3n]]></name></author>
		<updated>2007-09-12T13:48:01-04:00</updated>

		<published>2007-09-12T13:48:01-04:00</published>
		<id>https://forum.eggheads.org/viewtopic.php?p=75893#p75893</id>
		<link href="https://forum.eggheads.org/viewtopic.php?p=75893#p75893"/>
		<title type="html"><![CDATA[Trojan detection]]></title>

		
		<content type="html" xml:base="https://forum.eggheads.org/viewtopic.php?p=75893#p75893"><![CDATA[
There are so many posts on this forum about trojan/spambot detection etc etc...<br><br>Can we maybe make one post with every single detection regexp/algothim etc so then its easier than to search the forum for however long to find some decent piece of code to detected trojans/pjens/spambots or whatever people call them...<p>Statistics: Posted by <a href="https://forum.eggheads.org/memberlist.php?mode=viewprofile&amp;u=6300">r0t3n</a> — Wed Sep 12, 2007 1:48 pm</p><hr />
]]></content>
	</entry>
	</feed>
