serverI got hit with an Injection attack. Cleanup is almost over except that
in a local publication I get this is the connection string:
Servername\Replication\Local Publications\[servername]:tempdb\[<script
src=http://www.bywd.ru/js.js> Everything from <Script.. onward is part of
the Injected string.
I can't start/stop/delete the connection. Where is the connection string
stored so I can manually or programmatically delete the string?
>> Stay informed about: Virus string in Subscriber data -help