English Deutsch Français Italiano Español Português 繁體中文 Bahasa Indonesia Tiếng Việt ภาษาไทย
All categories

I have received "mail delivery failures" and discovered that someone has used my e-mail address to send out spam. the delivery failures are coming back to me because my e-mail address is in the "from" line. I have run virusscan and spyware scan and found nothing. Does anyone know how to fix this or do I just have to change my e-mail address? I really don't want to do that because I have had the same e-mail for 6-7 years. Thank you

2006-10-29 01:59:19 · 8 answers · asked by Lynn 1 in Computers & Internet Security

8 answers

You probably have a trojan that has hijacked your Address book and is stending out these emails trying to infect other computers with a copy of itself. After removing it you should change your password to be on the safe side.

Trojan Removal Procedure.

Removing infections from your computer is never as easy as aquiring them. Malware infections are not meant to be removed, so, it takes TIME and PATIENCE to get rid of them. ONLY RESORT TO A REFORMAT AFTER ALL ELSE FAILS TO REMOVE THE INFECTION.

This procedure works for all Malware. Replace the Ewido and AdAware SE programs with any AntiVirus or AntiSpy program you choose.


Download and Update Ewido (now called the AVG Antispyware). Do not run:

http://www.ewido.net/en/download/...

Download AdAware SE and update. Do the setup. Do not run:

http://www.filehippo.com/download_ad-aware/

AdAware SE Setup:

1. Select "use custom scanning options" then select "customize". Make sure the following options are enabled: "scan within archives," "scan active processes," "scan registry," "deep scan registry," "scan my IE favorites for banned URLs," "scan my Hosts file."

2. Select the "tweak" option. Under "scanning engine," make sure "unload recognized processes and modules during scan" is enabled. Enable "scan registry for all users instead of current users."

3. Under "cleaning engine" turn on "always try to unload modules…," "during removal unload explorer and IE if necessary," "let windows remove files in use at next restart," and "delete quarantined items after restoring."

4. Use the "select drives and folders to scan" option to ensure that your entire hard drive is scanned (if you have more than one hard drive, scan all of them (of course, do not include floppy and CD/DVD).


TEMPORARILY SHOW HIDDEN FILES AND FOLDERS.

1. Click Start, and then click Control Panel.

2. Click Appearance and Themes, and then click Folder Options.

3. On the View tab, under Hidden files and folders, click "Show hidden files and folders", and clear(uncheck) the "Hide protected operating system files" check box.

IMPORTANT: Files are hidden by Windows for a very good reason. It is not wise to experiment with these files. Unfortunately, to successfully remove modern spyware we must turn this protection off temporarily. Please turn the protection back on when you have finished cleaning your system.


EMPTY INTERNET EXPLORER BROWSER CACHE:

1. On the Internet Explorer Tools menu, click Internet Options.

2. On the General tab, in the Temporary Internet Files section, click the Delete Files button. Select the Delete all offline content check box in the confirmation dialogue box that appears, click OK. Click OK again.

RESTART IN SAFE MODE:

To do this you need to hold down or repeatedly tap the F8 key while the computer is booting (when the computer is displaying a black screen with white text). When the boot menu appears, use your keyboard arrows to select "Safe Mode."

Safe Mode can look quite ugly. The color may look bad, and all of your desktop icons will be very large. This is normal.



START THE SCAN WITH ADAWARE SE. THEN DO IT WITH EWIDO.

NOTE: Let AdAware complete its scan. Sometimes AdAware will be unable to remove everything that it finds and will prompt to be allowed to try again after restarting. If that happens, when the scan finishes restart immediately and allow the scan to finish.


When the scan and removal are completed REBOOT COMPUTER. This will restart you in normal mode. DON'T FORGET TO RESET HIDDEN FILES AND FOLDERS.


NEW RESTORE POINT:

The RESTORE POINTS may be infected with the Malware and cannot be used.

HERE'S HOW:

1. Click Start, and then click Control Panel.

2. Click Performance and Maintenance, click System, and then click on the System Restore tab.

3. Select the Turn Off System Restore check box, click Apply, then restart your computer.

4. Return to the System Restore Tab and turn System Restore back on.


TO SET A NEW RESTORE POINT:

1. Click the Start button.

2. Point to Programs, then navigate to Accessories, then System Tools, then click System Restore.

3. Choose Create a restore point, and then click Next.

4. In the Restore point description box, type a name for your restore point, and then click Next.

5. Click OK.

NOTE: If you are using Windows XP Service Pack 2 (SP2) and are unable to access the Internet after removing Malware, there is a command that may fix the problem. It works by resetting the winsock catalogue. Click on Start, then Run and type CMD in the box. Click OK. Type "netsh winsock reset" (no quotes)into the DOS window that appears.


ADDITION INFORMATION ABOUT TROJANS:

There are Trojans that fall into the Smitfraud family. These require the use of a specialized program for removal. Here are two sites that specialize in removing these:


http://www.internetinspiration.co.uk/roguefix.htm

http://siri.urz.free.fr/Fix/SmitfraudFix_En.php

2006-10-29 02:07:19 · answer #1 · answered by Anonymous · 1 0

Hi!

First, change your e-mail password, to something like 123AbCde{]... to make it more difficult to break (crack). Secondly, if a trojan is installed on your computer, someone WILL be able to log in and send mail. If you use a POP3 connection (Outlook, etc), then again, someone WILL be able to send mail. Try securing your PC. A good idea is to increase security for your local area connection (if that is what you use) from firewall settings (aka Trusted area should not include LAN), since trojans ordinarily work across the LAN (local Area Network).
Also, contact your e-mail service provider (ie Yahoo!) and describe the problem. They may offer you further assistance.

Good luck!

2006-10-29 02:20:05 · answer #2 · answered by Robintel 4 · 0 0

It souonds as if your computer has been turned into a zombie: PCs taken over by hackers and used for illicit advertising on the Web without the computer owner even knowing this is occurring.

Perhaps spyware program has been placed on your computer. This program may be communicating with the intruder’s computer (aka the mother computer) through a backdoor communications port on your computer with the intent of controlling your computer. Or this spyware program could download another program that gives the intruder control over your computer (making your computer a so-called zombie).

If you suspect that your computer has been turned into a zombie, you can check with your ISP to find out if heavy e-mail is being sent from your computer.

Networks of zombie computers are rented to criminals.

Be sure that you have a firewall (not the XP firewall), an anti-virus program and several (anti-)spyware programs. You can find links to good security programs at http://komando.com/downloads/categories.aspx?cat=Security

2006-10-29 02:12:31 · answer #3 · answered by williamh772 5 · 0 0

Let me explain>>

Email address can be gusses easily and it is not a difficult to send email address using any one's email address with any of the email programs like Outlook Express,2000.2002,2003.

The spammer's do get the email address easily, it is the password which has to be protected strongly.
We need to use both the upper case and lower case letters, numbers and special characters to keep the password safe and unguessable which is the only case of providing spammer's to use the email address.

2006-10-29 02:59:04 · answer #4 · answered by Naren 2 · 0 0

i really don't think just changing your password would work.. you need 2 have better protection on your comp.. updating your anti is very important,, and then run scan.. then change password.. which one would say 2 change it once a mo.. scaning about every few days or when you feel something is not right.. bummer eh..

2006-10-29 02:35:48 · answer #5 · answered by Anonymous · 0 0

thats a virus go here download the avg free antivirus and spyware remover update it and run it in safe modehttp://myspace.com/computer_works

2006-10-29 02:01:47 · answer #6 · answered by bsmith13421 6 · 0 1

change your password!!!!!

2006-10-29 02:01:03 · answer #7 · answered by kaligurl1229 3 · 0 0

no.

2006-10-29 02:00:04 · answer #8 · answered by Anonymous · 0 1

fedest.com, questions and answers