Once again, virus makers try use Microsoft identity to spead their stuff ...
Take a close look at the logo (lacks the cut on the "O" and the connecting line between the "O" and the "S") -- they could do better ...
Off course, the attached file is a W32.Swen.A@mm virus ... which is not even new ...
Off course this virus is speading because of our use of privileged accounts (the virus writes to the registry to HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion and many of its subkeys ... wich only an administrator can do ...
I had earlier today a kind of heated exchange in a newsgroup about setting the aspnet_wp to use the "System" account ... we really should be doing better than that ...
Just to make sure you understand the message : MICROSOFT NEVER SENDS UPDATES BY EMAIL... NOR SHOULD EVER ANY SENSIBLE VENDOR DO...
Remember Me