2009
03.31

Over the past 24 hours I’ve developed a tool which automates the process of scanning an enterprise for machines which are vulnerable to or infected with the Conficker worm which has been getting so much media play.

You will still need to compile nmap, but this should make the scanning of a large or small network a short task.

I’ve included some documentation which you should read before trying this on your own network. Of course, do not alter the nmap commands because a slight change could potentially cause some real issues.

Grab the zip here: http://bitninja.org/confinder.zip
md5 for the shell script: 7e394716ad0690ad3e2623e2c6a8d3f9

@jur1st