Malicious update for Microsoft Outlook / Outlook Express (KB910721)
This morning as I trawled the spam queues a sense of deja-vu descended on me when this subject line caught my eye:
        Update for Microsoft Outlook / Outlook Express (KB910721)
Didn’t I see this a while ago and didn’t it contain a rather nasty Trojan?Â
The format of the October version differs slightly in that it includes a link to a website from which you may download the ‘Microsoft/Outlook/Outlook Express Update’ rather than an attached executable.    Â
The details have also been updated:
  Quick Details
        * File Name: officexp-KB910721-FullFile-ENU.exe
       * Version: 1.5
        * Date Published: Wed, 21 Oct 2009 16:05:06 +0100
        * Language: English
         * File Size: 100 KB

Of course this is not a Microsoft security update, but rather simply another attempt by the malware authors to fool you into installing their Trojan. Encore une fois.
The advice from Sophos remains the same. Visit the genuine Microsoft update site in order to obtain your fixes.
Posted on October 22nd, 2009 by Julie Yeates, SophosLabs UKFiled under: Exploits, Malware, Spam
Windows 7 security - A great leap forward or business as usual?














