You have commented 339 times on Rantburg.

Your Name
Your e-mail (optional)
Website (optional)
My Original Nic        Pic-a-Nic        Sorry. Comments have been closed on this article.
Bold Italic Underline Strike Bullet Blockquote Small Big Link Squish Foto Photo
-Short Attention Span Theater-
OT - Latest Net worm Looks Like Email from Microsoft
2003-09-21
Be careful out there - MS will not send you files (executables especially!) unless you requested them
The latest virus to hit the Web poses as a security update from Microsoft and takes advantage of a two-year-old weakness in Internet Explorer. Disguised as an official e-mail from Microsoft, the file comes attached to a note asking the recipient to install a "September 2003, cumulative patch" to protect against vulnerabilities in Microsoft’s Internet Explorer Web browser and Outlook and Outlook Express e-mail programs. If installed, the program, known as Swen or Gibe.F, attempts to disable firewall and antivirus software, gather password information and replicate itself via e-mail, as well as the Kazaa peer-to-peer network and Internet Relay Chat instant-messaging.

Internet security firms are reporting a wide distribution of the worm online; McAfee Security rated the malicious program a "medium" risk to home users and a "low" risk to corporate users, who are more likely to have updated security software. The virus-laden e-mail looks like an authentic missive from the Redmond, Wash., software developer (aside from a few grammatical errors), but a spokeswoman for Microsoft said this week that it doesn’t send security updates in e-mail. They’re all distributed through Microsoft’s Web site (windowsupdate.microsoft.com). The Swen virus could affect users running Windows 95, Windows 98, Windows Me, Windows NT, Windows 2000 and Windows XP. It does not affect other operating systems.
Posted by:Frank G

#4  Been getting this e-mail for several weeks now,never opened it.Knew it was fishy because MS update automatically sends update notices.
Posted by: Anonymous   2003-9-22 8:39:05 AM  

#3  Got these this morning, so someone who has my email address probably got hit. No way of knowing who it was...
Posted by: Old Patriot   2003-9-21 8:36:19 PM  

#2  I saw this on Friday. What made me laugh was this message was sent to my Unix shell account address.
Posted by: Bomb-a-rama   2003-9-21 8:16:55 PM  

#1  Thanks, Frank.
Posted by: Matt   2003-9-21 5:14:41 PM  

00:00