If your vulnerability deals with the Office Web Components then no warning
should be necessary at this point, since Microsoft already yanked the OWC
downloads (both OWC 9 and 10) from their download pages back in April when
GreyMagic Software uncovered several vulnerabilities in them.
From their
It appears that the file I received installs a new goal.exe in C:\Winnt
which is set to run on startup. Disassembly of the file reveals that it
gathers information about my machine from the registry and attempts to
recover my netscape password from prefs.js. It then emails the information
to