I'm not sure how many people here use irc and use bitchx as a client, but: http://online.securityfocus.com/archive/1/280009 I haven't been able to download the trojan from their ftp site, so I guess they may have it fixed. If you have that version and still have the tarball, check the md5sum to see if it was infected. Mine wasn't. If it was, there might be interesting telnet connections being made from your box. Why drive a car when you can ride a bike? http://attaway.net http://counter.li.org user #142150