> It would, however, be pretty niave of us to think that attackers
> find lists of infected machines by other means.
> After all, we promote full disclosure of software vulnerabilities, so why
> not full disclosure of machines infected by worms and trojans that should
> have been cleaned up long ago ?

 great idea, something similar to www.netscan.org perhaps? It's been running
 for years, and IMHO successfully.

