Home    Forum    Search    FAQ    Register    Log in
Post new topic  Reply to topic Page 1 of 1
 
Malicious Microsoft Security Update Spammed Out Before Patch
Author Message
Reply with quote
Post Malicious Microsoft Security Update Spammed Out Before Patch 
 
Hackers are trying to infect innocent computer users with a malicious Trojan horse disguised as a Microsoft security update, in the hours before the software giant issues genuine critical patches as part of its monthly “Patch Tuesday” cycle.

The emails, which have the subject line “Security Update for OS Microsoft Windows” and claim to come from Steve Lipnser at , try to fool unsuspecting computer users that the attached file is a high priority update that should be installed by users of various flavours of Microsoft Windows.


Image


However, running the attached file infects Windows computer users with the Mal/EncPk-CZ Trojan horse, and could give hackers control over your PC. The file attached to the file is named KBxxxxxx.exe (where ‘xxxxxx’ is a randomly generated number) in order to disguise itself as a knowledgebase file.

Computer users need to learn that Microsoft never sends out security updates as email attachments, and that they should always visit the genuine Microsoft website (or use automatic updating processes) to keep their systems current.

The attack appears to have been timed to coincide with Microsoft’s genuine monthly patch cycle. On the second Tuesday of each month (known as “Patch Tuesday”), the firm issues security patches for its software and operating systems, and it has announced a series of updates which will be made available tomorrow.

Sophos is intercepting the malicious emails spammed out by the hackers, which read as follows:

Dear Microsoft Customer,

Please notice that Microsoft company has recently issued a Security Update for OS Microsoft Windows. The update applies to the following OS versions: Microsoft Windows 98, Microsoft Windows 2000, Microsoft Windows Millenium, Microsoft Windows XP, Microsoft Windows Vista.

Please notice, that present update applies to high-priority updates category. In order to help protect your computer against security threats and performance problems, we strongly recommend you to install this update.

Since public distribution of this Update through the official website http://www.microsoft.com would have result in efficient creation of a malicious software, we made a decision to issue an experimental private version of an update for all Microsoft Windows OS users.

As your computer is set to receive notifications when new updates are available, you have received this notice.

In order to start the update, please follow the step-by-step instruction:
1. Run the file, that you have received along with this message.
2. Carefully follow all the instructions you see on the screen.

If nothing changes after you have run the file, probably in the settings of your OS you have an indication to run all the updates at a background routine. In that case, at this point the upgrade of your OS will be finished.

We apologize for any inconvenience this back order may be causing you.

Thank you,

Steve Lipner
Director of Security Assurance
Microsoft Corp.


by Graham Cluley, Sophos





____________________
The more you lose yourself in something bigger than yourself, the more energy you will have!!
Offline Yahoo Messenger View user's profile Send private message Visit poster's website
Download Post Back to top Page bottom
Display posts from previous:   
HideWas this topic useful?

 

You are not authorized to rate this topic

Average Rate Minimum Rate Maximum Rate Number Of Rates
0.00 0 0 0
Share this topic
blinkslist.com blogmarks.net co.mments.com del.icio.us digg.com newsvine.com facebook.com fark.com feedmelinks.com furl.net google.com linkagogo.com ma.gnolia.com meneame.net netscape.com reddit.com shadows.com simpy.com slashdot.org smarking.com spurl.net stumbleupon.com technorati.com favorites.live.com yahoo.com DIGG ITA Fai Informazione KiPapa Ok Notizie Segnalo

Post new topic  Reply to topic  Page 1 of 1
 

Users browsing this topic: 0 Registered, 0 Hidden and 1 Guest
Registered Users: None


 
Permissions List
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum
You cannot post calendar events in this forum