Malware - Fake Windows Update Conceals Malware - eWeek Security Watch

Fake Windows Update Conceals Malware

Written By
Brian Prince
Brian Prince
Jan 5, 2011
1 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

Sophos has detected a new AutoRun worm spreading under the guise of being an update for Microsoft Windows.

It is an old ploy, but apparently one effective enough for attackers to keep trying. The malware comes in an e-mail with the subject line “Update Your Windows” as well as a supposed note from Microsoft exec Steve Lipner. The note is quite lengthy, and might even be persuasive were it not for the fact that Microsoft doesn’t send security updates through e-mail. Then, of course, there is the issue of spelling.

“With so much effort being taken by the cyber-criminals to hoodwink unsuspecting computer users, though, you would have thought they would have not made an elementary mistake in their forged e-mail header,” blogged Graham Cluley, senior technology consultant at Sophos. “The messages we’ve seen claim to come from no-reply@microsft.com. That’s right. ‘microsft.’ “

It is not clear how many downloaded the bogus update, but Cluley told eWEEK it was spammed out en-masse. So if you see an e-mail about a Windows update, throw it in your ‘Deleted Items’ folder. And a note to spammers: Try using the spell-check feature.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.