NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home / News / Microsoft / Patches and Vulnerabilities

Patches and Vulnerabilities


Microsoft Security Bulletin Drops Trojan Horse

For Genuine Windows

By Marius Oiaga, Technology News Editor

27th of June 2007, 11:10 GMT

Adjust text size:



Enlarge picture
Along with hardcore pornography, and promises of images with the latest pop idols barely clothed, Microsoft Security Bulletins are next in line as the preferred incentives in Windows attacks. This because it all comes down to trust. And security updates released by Microsoft carry sufficient legitimacy to dispel any concerns on behalf of unsuspecting victims. Security company Sophos has just warned of a fake Microsoft Security Bulletin that is
being aggressively spammed, designed to infect Windows computers with the Mal/Behav-112 Trojan horse.

"The campaign is attempting to appear as a notification for a new "0-day vulnerability" for Microsoft Outlook, but in reality its purpose is to install a Windows-based Trojan. The greeting is personalized (Dear: ), mentions you are subscribed to the "Microsoft Windows Update mailing list", and asks you to download the patch from: http://windowsupdate.microsoft.com/ outlook/update-0-day/download.aspx?id=63852?," revealed a member of the SophosLabs.

Fake Microsoft Security Bulletin
Enlarge picture
Sophos revealed that the spam is targeted, and as such contains the identification data of the recipient. The message informs of a fresh zero-day vulnerability in Microsoft Outlook, allegedly labeled with a Critical severity rating because it allows for remote code execution. The email also informs users that in excess of 10,000 machines have been compromised and urges them to deploy the fake security update.

"Once the link is clicked, a request is not made to "microsoft.com" but instead to one of many compromised sites hosting a Trojan, proactively detected by Sophos as Mal/Behav-112. An interesting feature of this campaign is the target's full name, and in most cases the organization they are associated with, is mentioned within the message. The samples we have received also lists a bogus Microsoft Windows Licence key, all in an attempt to make the message look legitimate to the recipient," Sophos added.

TAGS:

Microsoft | security | exploit
Read by 882 user(s) | Add comment | Link to this article TWEET THIS


Article rating:
Fair (2.8/5) 5 vote(s)    

Subscribe to news | Print article | Send to friend

© Copyright 2001-2009 Softpedia
Contact:

 

 

SEARCH THE NEWS ARCHIVE :




Today's News
| Yesterday's News | News Archive


MORE RELATED ARTICLES:


Download June 2007 Microsoft Security Releases ISO Image for Windows Vista

Security Holes in Windows Vista Grow Wider/Allow for Complete Takeover

Microsoft Upgrades Windows Live OneCare

Microsoft's Windows Live OneCare 1.5 Tops Kaspersky Anti-Virus 6.0

Windows Vista Security Updates Infested with Malware

Is Vista Secure?

Could Security Have Killed Windows Vista Virtualization Freedom?

Where Microsoft Patches Go, Exploits and Attacks Soon Follow

Internet Explorer Is in a Lamentable Condition

User opinions:

No user comments yet.
Be the first to express your opinion using the form below!

Share your opinion:

Your Name:
Your Email Address:
(will not be used for commercial purposes)
Solve this to prove you're not a bot: =
Your review/opinion:

 




Windows tabGames tabDrivers tabMac tabLinux tabScripts tabMobile tabHandheld tabGadgets tabNews tab

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   ENTER NEWS SITE   |   ENGLISH BOARD   |   ROMANIAN FORUM