Hallo zusammen,

vielleicht ist das wichtig.
CERT ist eine verlaessliche Source :-).

Gruss

Klaus

-----------------------------------------------------------------

There have been numerous incidents recently of a fake upgrade
for MS Internet Explorer being passed around via email. Below
is the partial contents of a CERT Coordination Center advisory
on the subject. Updates to Internet Explorer are available from
Microsoft's site, not via email. In general, do not install
*anything* unless you are sure that it is from a valid source.
The full text of the CERT advisory is at:

http://www.cert.org/advisories/CA-99-02-Trojan-Horses.html

Information and patches for acknowledged MS IE security problems
can be found at:

http://www.microsoft.com/windows/ie/security/default.asp

>From CERT Advisory CA-99-02-Trojan-Horses:

"Recent reports indicate wide distribution of an email message
which claims to be a free upgrade to the Microsoft Internet
Explorer web browser. However, we have confirmed with Microsoft
that they do not provide patches or upgrades via electronic mail...

The email message contains an attached executable program called
Ie0199.exe. After installation, this program makes several
modifications to the system and attempts to contact other remote
systems...

At least one version of the Trojan horse is accompanied by a
message which reads, in part:

As an user of the Microsoft Internet Explorer, Microsoft
Corporation provides you with this upgrade for your web
browser. It will fix some bugs found in your Internet
Explorer. To install the upgrade, please save the attached
file (ie0199.exe) in some folder and run it.

The above message is not from Microsoft."

Antwort per Email an