Anti-Virus White Papers
What is Code RedII?
Overview The method of infection is the same with the former versions of the CodeRed worm. The worm uses a well known IIS (Internet Information Server) security hole, which exploits the ISAPI Indexing Service buffer overflow. Unlike Code Red, CodeRed.C does not attack any single IP or deface websites, rather it drops a trojan, Trojan.VirtualRoot, on to the infected web server. Therefore, CodeRed.C contains a more malicious and damaging payload (this payload will leave infected victims vulnerable to any potential attacker accessing their webserver).
| Publisher | Central Command, Inc. | File Format | HTML |
|---|---|---|---|
| Date Published | August 2003 | ||
| Format | White Papers | ||
| Topics | |||



