You are here: silicon.com > Software > Security Strategy

Security Strategy

Virus warning: Code Red variant not a patch on the original

'No cause for concern' say security experts...

By David Becker

Published: 13 March 2003 10:25 GMT

Security experts have said users have little cause for alarm with a variant of the destructive Code Red worm doing the rounds.

Code Red.F, which differs from the original Code Red by only two bytes, began spreading on Tuesday, according to reports from security software makers Symantec, McAfee and F-Secure. The new variant is detected by existing virus signatures for Code Red, according to the companies, and is blocked by patches for Microsoft's Internet Information Server (IIS), which most administrators installed before or during the original Code Red outbreak.

The original Code Red wreaked widespread havoc during the summer of 2001, infecting more than 350,000 web servers running IIS. The infected servers were used to spread the worm and to launch a denial-of-service attack on the main website for the White House.

The first sequel to Code Red also caused widespread damage, but subsequent variations on the worm packed only a minor punch, largely because the IIS hole the worm exploits had already been patched.

According to a security bulletin from Symantec, the main difference in Code Red.F is that it removes the expiration date that prevented the original worm from activating if the year was later than 2001.

Most security firms classified the new variant as a moderate threat, with negligible infections reported so far.

Kevin Haley, group product manager with Symantec Security Response, said the company saw a brief surge of infections in Europe on Tuesday night, but activity has been minimal since then.

"It looks like people learned a lesson with the first Code Red," he said. "They've updated their patches for IIS and kept their [antivirus] definitions current."

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead

Stephen Kleynhans Mind the details with Windows 7 Just because it might work better than Vista, it doesn't mean you can be sloppy


  • Jobs
MS SQL Server 05, IIS 6.0/7.0, ES 03/07 XP/Vista CAMBS TO 30K

Ideally educated to MCP or above you will be skilled in MS SQL Server 2005, MS IIS 6.0 and 7.0, MSES 2003 and 2007 & Windows XP/Vista. With 300% ...

SQL Server DBA - North London - 32,000 - SQL, T-SQL, IIS

SQL Server DBA - North London/Hertfordshire - 32K - SQL, T-SQL, IIS SQL DBA - SQL / T-SQL / IIS My client, a market leading financial/insurance based ...

WinXP/Symantec Ghost/Hardware/Software-Deployment Eng-London

WinXP/Symantec Ghost/Hardware/Software-Deployment Eng-London. My client is looking for a WindowsXP/Symantec Ghost/Hardware/Software-Deployment ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: