This utility scans a class C or B network for hosts infected with the Code Red II worm. It does this by checking for the presence of /scripts/root.exe which is the backdoor Code Red II leaves behind.
You can download it from the following link: https://packetstormsecurity.com/files/download/31077/FendIIS.pl
Source: https://packetstormsecurity.com/files/31077/FendIIS.pl.html

