Re: How do I know if this email is legitimate Microsoft email?

From: Alun Jones [MS MVP] (alun_at_texis.com)
Date: 10/02/03


Date: Thu, 02 Oct 2003 15:52:49 GMT

In article <085d01c38559$58ce1430$a301280a@phx.gbl>, "cyberpltops975" <cyberpltops975@aol.com> wrote:
> In my email inbox on my Yahoo account, I have had three
>messages telling me to use the Microsoft patch right away.

1. Did you subscribe to a Microsoft mailing list?

Are the emails from any Microsoft mailing list to which you subscribed?

While there are some suggestions that organisations on the periphery of
Microsoft (bcentral, say) are somewhat "loose" with their definition of
"solicited", the security unity at Microsoft are front-and-center when it
comes to user privacy. They don't send spam. At all. Even for patches.

2. Did the message have an attachment?

Microsoft don't send emails with attached executable content. If they want
you to run a patch, they'll tell you where to find it on their site, and
it'll be available in Windows Update.

3. Did Windows Update tell you that you need to be patched?

If not, then you most likely don't need to be patched. You can always visit
Windows Update any time you want, to see if there are any new patches - me,
I like to keep Automatic Update running on the machines I use, but then I
don't have to pay extra for bandwidth.

>The subject was preceded by the icon paperclip like one on
>a square white rectangular box. Since I understand
>Microsoft has been attacked by the awful virus, I am
>checking to see if this is a case of virus attack. I hope
>I can hear from you very soon because they are saying my
>computer has already been infected with Virus that cannot
>be fixed by the virus scan I subscribe to.

It's not so much that Microsoft have been attacked, as it is that _anyone_
can send messages pretending to be _anyone_, including Microsoft. In the
past, this has been pretty obvious, because the emails have been poorly
spelled, badly worded, and in general didn't look like Microsoft's output.
It's rather like someone knocking on the door, claiming to be a Microsoft
representative, but offering only a piece of cardboard with "Microsoft,
honest" scrawled on it in crayon.

The latest batch are more professional in appearance - as if the guy turned
up to your door with an embroidered Microsoft shirt, and had a van parked in
your driveway with professional looking Microsoft decals. But he's still
not from Microsoft, and he's still out to do you no good.

Delete the emails, and go visit Windows Update for your patches. Please.

[Because people who are running these viruses are now spending much of their
processor time and Internet bandwidth sending me thousands and thousands of
copies of the virus. And I don't appreciate that.]

Alun.
~~~~

[Please don't email posters, if a Usenet response is appropriate.]

-- 
Texas Imperial Software   | Find us at http://www.wftpd.com or email
1602 Harvest Moon Place   | alun@texis.com.
Cedar Park TX 78613-1419  | WFTPD, WFTPD Pro are Windows FTP servers.
Fax/Voice +1(512)258-9858 | Try our NEW client software, WFTPD Explorer.


Relevant Pages

  • Re: I keep getting mass email from MS security with a virus attached
    ... to lock down broadband PC's when someone is sending emails ... got to go filter those emails now. ... >by a virus that downloaded a proxy server that allows ... >> Microsoft but the attachment is a virus. ...
    (microsoft.public.security.virus)
  • Re: Cant download critical patches from Win Update
    ... Did you click on these emails? ... NOT from Microsoft, and that is probably why you cannot access Windows ... > The Windows Update Error page is the same on both the XP clients and on ... > "Alan" wrote in message ...
    (microsoft.public.windows.server.sbs)
  • RE: SMTP sending failure, connection is dropped by remote host
    ... If you use smarthost to send internet emails, could you use DNS to send ... I will be here waiting for your updates. ... Microsoft CSS Online Newsgroup Support ... This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)
  • Re: Patch emails containing viruses
    ... > immediately" from Microsoft containing the Dumaruu virus! ... > the technician warned me that these emails have become ... How to report Virus-SPAM ...
    (microsoft.public.security.virus)
  • RE: Email Problems Exchange 2003 SP2, Outlook 2003 for Exchange Cl
    ... 821910 How to troubleshoot for Exchange Server 2003 transport issues ... Microsoft CSS Online Newsgroup Support ... This newsgroup only focuses on SBS technical issues. ... users received old emails that should be sent weeks ago. ...
    (microsoft.public.windows.server.sbs)