I disagree.
I've never heard of anyone being vulnerable for disabling messenger service
and I certainly never heard of using messenger service as a security alert.
The user is using the appropriate spyware to no avail. Anyone with a half a
brain uses an anti-virus software and a firewall and if they don't, that's
their problem.
And you call yourself a Microsoft MVP!!!
Maybe you should read Microsoft Secrity Bulletin MS03-043 at:
http://www.microsoft.com/technet/treeview/?url=/technet/security/bulletin/MS03-043.asp
Quote from Microsoft: Recommendation: Customers should disable the
Messenger Service immediately and evaluate their need to deploy the patch
Oh there's more. Gibson Reasearch Corporation
http://grc.com/default.htm
Quote: Wednesday, October 15th, Microsoft releases Critical Security
Bulletin MS03-043 warning users that the Windows Messenger Service running
and exposed by default in all versions of Windows NT, 2000 and XP, contains
a "Remote Code Execution" vulnerability that allows any not otherwise
secured and protected Windows machine to be taken over and remotely
compromised over the Internet.
The headline of our "Shoot The Messenger" web page, which I wrote back in
April of this year, reads:
In addition to being a security risk, Windows'
Messenger Service is being used to Spam
Windows users across the Internet.
Last month, USA Today carried a story about Messenger Pop-Up Spam in which
they quote Greg Sullivan, Microsoft's Product Manager for Windows, saying of
the Windows Messenger Service:
"Microsoft views pop-up boxes as a benign
nuisance that does not pose a security risk."
Take your own advise and "please stop deliberately posting potentially
harmful advice."