|
Information on the Code Red II worm
A new variant of the Code Red Worm has been found on
the Internet. As discussed in a new advisory from
CERT, the new variant installs software that
will allow a malicious user gain access to the system and execute commands
on it. Clearly, this raises the stakes for infected systems, and
reinforces the need for customers operating Windows NT 4.0 or Windows 2000
web servers to protect their systems.www.tartoos.com
Like the
original version, the new variant can only
infect systems that have not been patched against the vulnerability
discussed in Microsoft Security Bulletin
MS01-033 (which has been superceded by
MS01-044). Customers who have applied either
patch are at no risk from either variant of the worm.www.tartoos.com
To assist customers in restoring their infected
systems, Microsoft has released a
tool that eliminates the obvious effects of the
worm. The tool has some limitations, and is not a substitute for applying
the patch. However, customers may find it useful in many scenarios.www.tartoos.com
|