-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Code Red Cleaner first try to detect if Code Red Worm is active in memory and report it. After that if worm is discovered it finds files of worm on the disk and clean-all them. It stops the IIS, removes the execute permission of some directories on registry and if sp2 is installed it applies the appropriate patches. It detects Code Red I,II,III versions and clean up them. Download: http://www.tamersahin.net/downloads/cr.zip Tamer Sahin, feedbackat_private PGP Key ID: 0x51CF215C Fingerprint: 3CEC A96A 11E5 1288 2640 247A 6551 0809 51CF 215C http://www.tamersahin.net -----BEGIN PGP SIGNATURE----- Version: PGPfreeware 6.5.3 for non-commercial use <http://www.pgp.com> iQA/AwUBO3jSFGVRCAlRzyFcEQLQFwCfS1Oj6UmsJvrbvmhf2GVAZoQdhhsAnA45 m0kkU+gf3UOvqvcxZ/52pJat =QRYv -----END PGP SIGNATURE----- ---------------------------------------------------------------------------- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com
This archive was generated by hypermail 2b30 : Tue Aug 14 2001 - 11:34:34 PDT