Select the directory option from the above "Directory" header!

Menu
Worm planted in fake Microsoft security update

Worm planted in fake Microsoft security update

Malware authors use Microsoft’s schedule to con users.

It's Tuesday, time for more security patches from Microsoft right? Not quite. It seems the malware crowd is exploiting Microsoft's routine of releasing fixes on Tuesdays and sending out fake security emails bent on infecting their targets with a worm.

Windows users familiar with Microsoft's modus operandi will sniff out this scam immediately, though, and not only because of the cracked English in the message. The missive contains the security update in an attachment. Microsoft never sends security updates in attachments.

"Please notice that Microsoft company [sic] has recently issued a Security Update for OS Microsoft Windows," the fake notice reads in typical fractured prose.

It then goes on to give instructions for installing the fake security file, KB453396-ENU.exe. "If nothing changes after you have run the file, probably in the settings of your OS you have an indication to run all the updates at a background routine," it explained

In the signature block of the message is the name of Microsoft Director of Security Assurance Steve Lipner. Lipner's name has been used on bogus security updates before, including attacks in 2008 and 2009.

Graham Cluley, who wrote about the fake security notice for Sophos's Naked Security blog, noticed another bonehead error in the message. "With so much effort being taken by the cybercriminals to hoodwink unsuspecting computer users, though, you would have thought they would have not made an elementary mistake in their forged email header," he penned. "The messages we've seen claim to come from no-reply@microsft.com."

Yes, Microsoft's domain name is misspelled.


Follow Us

Join the newsletter!

Or

Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.

Tags Microsoftonline security

Show Comments