Beware of fake Microsoft patches in scam emails

The machines we love to hate

Moderator: Wiz Feinberg

User avatar
Wiz Feinberg
Posts: 6117
Joined: 8 Jan 1999 1:01 am
Location: Mid-Michigan, USA
State/Province: Michigan
Country: United States

Beware of fake Microsoft patches in scam emails

Post by Wiz Feinberg »

I want you all to be aware that scammers are sending out fake Windows patches again, in spam email runs. The messages look like official Microsoft emails, and may contain images pulled from Microsoft and have forged Microsoft email addresses in the headers.

The new scams have an attachment with a zip file, which contains a Trojan Hrose program, currently identified as TROJ_AGENT.AZZZ and also a clickable link to another downloadable Trojan, named: TROJ_AGENT.AZAZ. This information comes from reverse-engineering captured emails in a honeypot, at Trend Micro.

So, if you should receive one of these messages, claiming that they got your email address from your registering MS Office, or another MS application, delete, delete, delete!
"Wiz" Feinberg, Moderator SGF Computers Forum
Security Consultant
Twitter: @Wizcrafts
Main web pages: Wiztunes Steel Guitar website | Wiz's Security Blog | My Webmaster Services | Wiz's Security Blog