Versions of Code Red
Code Red, the original, described here
Code Red II is new code but exploits similar vulnerability as Code Red
- Two variants; initially appeared on 4 Aug.
- No Web defacement nor DDoS but spreads very fast (300 or more threads per victim)
- Installs backdoors in the system, e.g., registry changes, Trojan explorer.exe, disables SFC