Introduction Well, let's start this new year with an IRC Botnet commonly identified as Backdoor.AgoBot. The aim of this paper is to show not only the Botnet itself, but also the Evolution of involved Droppers via a classical Reverse Engineering Approach. This time we will deal with .NET Targets, at the same time I want to show, from a classical Forensic point of view how informations can be carved