Fake Microsoft update mail

Started by Frands, October 15, 2008, 12:06:00 PM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

Frands

Hi :)

FYI

Tuesday evening Microsoft sent  their  monthly update out. It does this always the second Tuesday of the month and reported it out in advance. this has computer criminals taken advantage of and spammed out an email that claims to be from Microsoft.
They hope that unwary users click on the attachment and become infected.

Email

This email will come from the Microsoft Update Center with the return address securityassurance[at]microsoft.com and the topic Security Update for Microsoft Windows OS.
The attachment of the mail is said to update, but in reality a dangerous file.

The text of the message reads:

    Dear Microsoft Customer,

    Please notice that Microsoft company has recently issued a Security Update for OS Microsoft Windows. The update applies to the following OS versions: Microsoft Windows 98, Microsoft Windows 2000, Microsoft Windows Millenium, Microsoft Windows XP, Microsoft Windows Vista.

    Please notice, that present update applies to high-priority updates category. In order to help protect your computer against security threats and performance problems, we strongly recommend you to install this update.

    Since public distribution of this Update through the official website http://www.microsoft.com would have result in efficient creation of a malicious software, we made a decision to issue an experimental private version of an update for all Microsoft Windows OS users.

    As your computer is set to receive notifications when new updates are available, you have received this notice.

    In order to start the update, please follow the step-by-step instruction:
    1. Run the file, that you have received along with this message.
    2. Carefully follow all the instructions you see on the screen.

    If nothing changes after you have run the file, probably in the settings of your OS you have an indication to run all the updates at a background routine. In that case, at this point the upgrade of your OS will be finished.

    We apologize for any inconvenience this back order may be causing you.


    Thank you,

    Steve Lipner
    Director of Security Assurance
    Microsoft Corp.


    -----BEGIN PGP SIGNATURE-----
    Version: PGP 7.1

    PI60XJUIBAW5WCRKETEEWZ44CFGS4HAI0O9GNPZP9RF716X1KUQ17QOL9SJ3I9K42
    FJ2QG1M8FFDP4EH6LR6DAZ8YWOJ0FABX5HRYFR50N5N1VE89WL4QXA6B03VZJ1YL3
    M0052D1HCW1OXGTTB5Q1KS0P1NTBH17EQALRBGSAZYK87BS9LUL3092XXJLRQZ81V
    N53JLTMXYEP46ABXH9BS0G8W1HCK1U604VESLFW9GN7L9EZBLLACBOVPC8J4PZS85
    2ZACU9E5PLQSP1IAKX8792711WWIYCVESXV==
    -----END PGP SIGNATURE-----


It is not a update but a trojan (Mal/EncPk-CZ)
http://www.sophos.com/security/analyses/viruses-and-spyware/malencpkcz.html
Our greatest glory is not in never falling but in rising every time we fall.
- Confucius
-----
Trend Micro Internet Security


Home Forums:
https://www.landzdown.com/
http://securitygarden.blogspot.dk/
https://www.classicrockforums.com/