Packet Level Virus Scanning Network Appliances?
Tiber asks: "I had the pleasure of locking down the servers for a large company against the Slapper/Sapphire worm over the weekend. It wasn't enjoyable, less so because I knew I'd have to face it again come Monday when all our users brought their business laptops in. Sure enough, Monday morning, all hell broke loose on our networks. It got me thinking, instead of routers 'dumb' routers, does someone make a network appliance that does worm scanning inside the packets and log attacks? Perhaps someone has a project they know of that does this?"
Sorry. I'm sorry, but I have 0 sympathy for you. You--or your bosses, or their bosses--have chosen Microsoft homogenuity. Losing your weekends to patching their crap is the price you pay for making that recommendation.
More constructively--instead of figuring out how to do Microsoft's work for them, how about getting an open source solution working on, say, OS X or Linux? Then at least the whole problem is yours--and you're not trying to fix someone else's crap, which you paid a dear price for, afterall.
Or you can spend your weekends that way, and your Mondays, too. I prefer doing other things with my time off, so I recommend other solutions.
--
$tar -xvf