Shri writes: > The program was called bd.c and was created on June the 6, so all > the logs I have are too new to be able to do any real kind of > tracking down. Does the code in: http://kaizo.org/mirrors/phrack/phrack58/p58-0x07 look familiar? One of the source files is named bd.c ("backdoor"). Elizabeth