Out Look-Help

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Tuesday, 23 June 2009

Microsoft Updates Spam Emails Spread Malware

Posted on 04:09 by Unknown


Security researches from CA and Sophos warn of two malware distribution campaigns that try to push trojans as Microsoft security updates. One claims to offer a Conficker removal tool, while the other masquerades as an update for Microsoft Outlook and Outlook Express.

"Researchers at Microsoft have been working closely with Symantec, the creators of Norton antivirus, and have come up with a removal tool for the conflicker [sic.] virus," the malicious e-mails intercepted by CA read. "You are hereby immediately advised to download and run the removal tool from the link provided below to make sure you are not infected […]," they go on to advise.

The download link starts with windowsupdate.microsoft.com, but actually points to a .ru domain name. "The email comes from a certain Microsoft[dot]ssl[dot]com whose IP address is 38.100.66.185. This IP address originates from a server which is located in Texas and is not a Microsoft server," Rossano Ferraris, research engineer at CA Internet Security Business Unit, notes.

Visiting the link prompts the download of a file called remtool_conf.exe, that, when run, displays a Symantec EULA and offers to start scanning the computer. However, instead of performing any malware scan, the application contacts another host from where it downloads winupdate.exe, identified by CA as DelfInject CX. The fake removal tool is being detected as FakeScan A.

"Although there has been a decrease in the number of fake Microsoft update emails, the current fake emails are more sophisticated and use a very high profile social engineering technique to lure and trap people," Mr. Ferraris warns.

Meanwhile, Julie Yeates, malware analyst at antivirus vendor Sophos, describes a similarly themed campaign that targets users of the Microsoft Outlook and Outlook Express email clients. "Microsoft has released an update for Microsoft Outlook / Outlook Express. This update is critical and provides you with the latest version of the Microsoft Outlook / Outlook Express and offers the highest levels of stability and security," the messages read.

The attached officexp-KB910721-FullFile-ENU.exe file is actually an installer for Troj/Spy-CU. "It does look plausible, the spelling and grammar are surprisingly correct, for malware authors, but, as ever, one should always be cautious concerning e-mail attachments," Ms. Yeates warns. Windows users are advised to download security fixes through Automatic Updates or from Microsoft's download website directly.
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Posted in Computer Help, Computer Repair, Computer Support, dell support, hp printer repair, increase internet speed, Microsoft office, Microsoft Outlook, Microsoft Support | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • The Improved Calculator In Windows 7
    Windows 7 allows you to calculate fuel economy, distance, and fuel used in gallons or liters. Sometime you need to calculate a vehicle'...
  • Archive a folder manually
    In Outlook, archiving is a way to back up or delete old items, such as e-mail messages, appointments, contacts, tasks, journal entries, note...
  • Tips for Create fast Contacts list
    Follow these tips given below Quickly dial a phone number for a contact Right-click the contact, and then on the shortcut menu, cl...
  • Boot Windows 7 in just under 10 seconds
    Great success is achieved by Microsoft by reducing the boot timing for its latest operating system, Windows 7, to only 10 seconds. This is a...
  • Outlook POP3 Error And SMTP Error
    POP3 Errors Problems that occur with Post Office Protocol 3 (POP3) will affect the receipt and download of your emails. You may receive any...
  • How to Configure Outlook
    Generic Instructions:Note: An example account name was used through the instructions. Please substitute your POP3 email address information ...
  • Windows 7 features – Device Management
    One of the several salient features of Windows 7 is Device Management, which includes device stage and the devices and printer folder makin...
  • Troubleshooting Outlook Express Error 0x800ccc90 Error Code: 0x800ccc90
    When you try to check your email, you get the following error message: There was a problem logging onto your mail server. Your User Name was...
  • How to Specifying Microsoft Outlook as the Default Mail Client
    To specify the Outlook as Default Mail Client follows the steps. Internet Explorer 4.0, 4.01, 5 for Windows 95/98 and Windows NT 4.0 1. I...
  • Gets to know about Windows 7 E Version
    Microsoft introduced Windows 7 Version in reaction to statements made by the European government with respect to Internet Explorer. The EU ...

Categories

  • 24*7 Technical Supports
  • beta microsoft windows 7 release
  • Computer Help
  • Computer Repair
  • Computer Support
  • dell support
  • email errors support
  • email problem
  • Email Problems
  • Email Support
  • Fix Email Problems
  • Fix Outlook Error
  • green pc
  • hp printer repair
  • hp support
  • increase internet speed
  • internet explorer 7
  • iyogi
  • Microsoft Email Support
  • Microsoft Help
  • Microsoft office
  • Microsoft Outlook
  • Microsoft Outlook Support
  • Microsoft Outlook Troubleshoot
  • Microsoft Support
  • microsoft windows 7
  • microsoft windows 7 demo
  • microsoft windows 7 preview
  • microsoft windows vista
  • on windows 7
  • online data backup support
  • online email errors support
  • Online Email Support
  • Online Microsoft Outlook Setup
  • Online Outlook Support
  • Online Tech Support
  • Outlook Configration
  • Outlook Email Error
  • Outlook Help
  • Outlook Support
  • Outlook Tech Support
  • Remote Outlook Support
  • Remote Outlook Troubleshooting
  • remote support
  • remove windows 7
  • Repair PST Files
  • Setup Email
  • Setup New Email
  • spyware removal
  • support email
  • support fix email problems
  • Tech Support
  • Technical Support
  • virus removal
  • windows 7
  • windows 7 how to
  • windows 7 release
  • windows 7 release date
  • windows 7 requirements
  • windows 7 update
  • windows 7 xp
  • windows xp 7

Blog Archive

  • ▼  2009 (24)
    • ►  November (1)
    • ►  October (6)
    • ►  September (2)
    • ►  August (3)
    • ►  July (5)
    • ▼  June (4)
      • Microsoft Updates Spam Emails Spread Malware
      • Archive a folder manually
      • Outlook is located on the same computer
      • Read Outlook Express E-Mail...Without Outlook Express
    • ►  May (2)
    • ►  January (1)
  • ►  2008 (58)
    • ►  December (1)
    • ►  November (4)
    • ►  October (5)
    • ►  September (4)
    • ►  August (4)
    • ►  July (4)
    • ►  June (6)
    • ►  May (6)
    • ►  April (8)
    • ►  March (6)
    • ►  February (10)
Powered by Blogger.

About Me

Unknown
View my complete profile