Maker tech hub — AI · 3D print · Pi · ESP32 · plus the classic tech archive.

Free ESP32 kit · AI tools directory · Books · Archive

Classic tech archive · 2026 bridge. Historical tip — verify commands and threat context before reusing.

Full archive · Archive → modern map · Start here

Classic tip · Classic

AIM worm

Strange AIM worm going around. It apparently includes an interesting combination of rootkits, a rootkit detector, spyware/adware, and a specialized bittorrent client. The machines can then be control…

Written by

Avery J. Parker

IT veteran, maker educator, and author of Network Ninja, 3D Printing Mastery, and AI Workflow Mastery. Business IT: Diversified Tech Solutions.

Strange AIM worm going around. It apparently includes an interesting combination of rootkits, a rootkit detector, spyware/adware, and a specialized bittorrent client. The machines can then be controlled through IRC. Source seems to be the Middle East...
IM hackers then control a global botnet where their infections can be tested and payloads are pushed. Facetime traced these hackers to the Middle East. The same IM hackers sent movies by way of IRC and their own version of BitTorrent, installing it without consent. Now the IM hackers are back with more, nastier malware, Rootkit Revealer and adware from 180solutions/Zango.
According to the Sunbeltblog it the tease come-on for AIM is the following:
The worm lures victims through the following AOL Instant Messenger with the following messages: “great picture :) http://www.picteurestrail.net/Mastermon/XXXXXX.JPG”, or “not a right time to take a picture haa :-) http://www.picteurestrail.net/Mastermon/XXXXXX.JPG” "not a right time to take a picture haa :-) http://www.pictrail.net/Matelord/XXXXXX.JPG" "not a right time to take a picture haa :-) http://www.picstrailx.net/Mateslord/XXXXXX.JPG"
Be suspicious of links.