Virus Poses as Windows Security Update

REDMOND, Wash. — Microsoft is warning users not to download a virus disguised as a software update making its way around the Internet.

Ironically, the email ploy purports to be a message from Microsoft warning Windows users that they need to download the security patch to protect against email viruses.

Internet security firm Sophos Labs first reported the scam emails, which use subject lines such as “Update your windows machine,” “Urgent Windows Update” and “Important Windows Update.”

Users who click on the link are sent to a bogus website that claims to host Microsoft security updates but actually infects their computers with the DSNX-05 exploit.

“This criminal campaign exploits the public's rising paranoia about the security of their Windows computers," said Graham Cluley, senior technology consultant for Sophos. “If users fall for it, they may put themselves at risk of being spied upon or having their credit card and online banking details stolen.”

The campaign of bogus emails seems to have been timed to coincide with Microsoft's latest regularly scheduled security update. Sophos and another security firm, Websense, both reported that they had started receiving complaints about the exploit shortly after Microsoft announced it would be releasing the updates.

Infected PCs may be used as “zombie” machines to send continue spreading the exploit, without their owners' knowledge.

Microsoft reiterated that it never sends users mass emails or unsolicited messages containing links to security updates.

“We really want to emphasize with customers that microsoft.com is the only place to get authentic security updates for Microsoft products,” said a company spokesperson.

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Pearl Industry Network Launches 'TrustLink' Verification Platform for Creators

Trade group Pearl Industry Network (PiN) has launched TrustLink, its free verification platform for creators.

FSC Updates Complaint in Tennessee AV Case, AG Motions to Dismiss

The Free Speech Coalition this week filed an amended complaint in its lawsuit challenging the Protect Tennessee Minors Act as unconstitutional, in response to which the Tennessee attorney general motioned for dismissal of the case.

Cherie DeVille Joins Woodhull Freedom Foundation 'Free Speech' Panel

Multi-XMAs winner Cherie DeVille will join the upcoming Woodhull Freedom Foundation panel series "Fact Checked by Woodhull," addressing free speech on Feb. 26.

Wisconsin AV Bill Moves Ahead, Minus Anti-VPN Provisions

The Wisconsin state Senate on Wednesday advanced a bill that would require adult websites to verify the ages of users, but approved an amendment striking proposed language that would have required sites to block virtual private network traffic.

Pineapple Support Introduces 'Wellbeing by PS' Service

Pineapple Support has debuted its new Wellbeing by PS service, providing mental health support packages for companies and agencies.

MyMember.site Integrates Bluesky Functionality

MyMember.site has added Bluesky features to its website management platform.

GirlsDoPorn Defendants Ordered to Pay Victims $75.5 Million

A federal court has ordered former GirlsDoPorn owner Michael Pratt and his co-defendants in the GDP sex trafficking case to pay restitution totaling $75,568,283.47 to 106 victims.

SWR Data Publishes 'Clip Trend' Report

Adult industry market research firm SWR Data has published a report on clip platform performance and sales.

Another German Court Rejects Blocking Orders Against Pornhub, YouPorn

A German court has blocked the Rhineland-Palatinate Media Authority (MA RLP) from forcing telecom providers based within the court’s jurisdiction to cut off access to Aylo-owned adult sites Pornhub and YouPorn.

Ofcom Fines Kick Online Entertainment $1 Million for AV Noncompliance

U.K. media regulator Ofcom on Thursday fined Kick Online Entertainment 800,000 pounds (more than $1 million) for failing to implement age checks as required for compliance with the Online Safety Act.

Show More