I think I have a bot in my pc :s Just don't know how to kill it!


Recommended Posts

Guys, since yesterday (13 hours ago) I noticed my email to flood by "Delivery Status Failure" from emails I supposedly sent (Hotmail). The bad part of this is that I DID NOT SEND ANY of those messages. I even checked the 'Sent' status at the Hotmail page but it doesn't show up any of the sent emails.

I've already sent scanning my PC with MS Essentials and nothing has shown up.

The problem seems to be with Outlook because when I run it, email start to flood my inbox about a failure delivery.

What should I do? :s

Guys, since yesterday (13 hours ago) I noticed my email to flood by "Delivery Status Failure" from emails I supposedly sent (Hotmail). The bad part of this is that I DID NOT SEND ANY of those messages. I even checked the 'Sent' status at the Hotmail page but it doesn't show up any of the sent emails.

I've already sent scanning my PC with MS Essentials and nothing has shown up.

The problem seems to be with Outlook because when I run it, email start to flood my inbox about a failure delivery.

What should I do? :s

Download this. Install it, update it and then scan your computer, Use FULL scan.

www.malwarebytes.org

Change your password would be a good start, does it happen with other email programs like Windows live mail ?

Maybe its an Outlook issue ?

Anything stuck in the outbox ?

Nothing stuck in the outbox, and from the 3 accounts I have in Outlook, there's just one which is sending the mass email. I have the messenger program running and nothing fishy pops up.

I'll try with malwarebytes as Scorbing suggested.

Nothing stuck in the outbox, and from the 3 accounts I have in Outlook, there's just one which is sending the mass email. I have the messenger program running and nothing fishy pops up.

I'll try with malwarebytes as Scorbing suggested.

Check the server side too, ie hotmail.com

I definitely recommend changing your password though

I'll be doing that now. It's better to prevent than to be sorry later.

Yep, this is exactly why we were asking the hotmail team to add 2 step verification to hotmail email accounts then the worst you would have got was an sms requesting a log in code (If this is what has happened)

I've checked again, and seems is Outlook that has the problem. All of my emails are sending the delivery notification failure. F*ck. I want to know how did I get it, because I never visit strange websites nor open strange or ****ty emails. Maybe outlook downloaded it without concern and infected the system.

Maybe outlook downloaded it without concern and infected the system.

It doesn't work like that.

I'd change your email password, personally, swap to Gmail (you can still have the same addresses and have your mail forwarded, use it with outlook etc), do a full virus scan.

What anti-virus do you use?

It doesn't work like that.

I'd change your email password, personally, swap to Gmail (you can still have the same addresses and have your mail forwarded, use it with outlook etc), do a full virus scan.

What anti-virus do you use?

I have MSE installed. I used to have Kaspersky but let my subscription fade away.

Could just be someone spoofing your address from somewhere else so you end up getting all the undeliverables or logging into your account remotely. I don't know if hotmail allows you to see IP addresses that have accessed your account but I would check that if they do.

When you logon to hotmail through a browser do the failures still show up or is it only happening when outlook is open?

When you logon to hotmail through a browser do the failures still show up or is it only happening when outlook is open?

It only happens when I have outlook opened. But when I browse the email I do have recorded the failure delivery messages. (But can't see the sent ones)

^ exactly.

Outlook seems to just be downloading your bounces.

You rarely see spam sent from a legit address ;) Its always someone else so all the bounces don't clog up the sending server..

Its childs play to send an email saying it came from address Y. If I send out a million random spam messages to all kinds of bogus email addresses, lots of them will get kicked back to what the return address says it is.

So I am spamming how to enlarge your penis and send to [email protected] and say it came from your address at Y, be it sent from that server or not. So somedomain.com says hey we don't have a lsjfdsf mailbox.. Lets make sure that Y knows that -- and sends it back to Y.. These now fill up your mailbox.. Nothing to do with infection, nothing to do with your mailbox being hacked, etc. Look at the kickbacks -- does it say it was sent from your server? Or somewhere in china or Ukraine, etc.. etc..

^ exactly.

Outlook seems to just be downloading your bounces.

You rarely see spam sent from a legit address ;) Its always someone else so all the bounces don't clog up the sending server..

Its childs play to send an email saying it came from address Y. If I send out a million random spam messages to all kinds of bogus email addresses, lots of them will get kicked back to what the return address says it is.

So I am spamming how to enlarge your penis and send to [email protected] and say it came from your address at Y, be it sent from that server or not. So somedomain.com says hey we don't have a lsjfdsf mailbox.. Lets make sure that Y knows that -- and sends it back to Y.. These now fill up your mailbox.. Nothing to do with infection, nothing to do with your mailbox being hacked, etc. Look at the kickbacks -- does it say it was sent from your server? Or somewhere in china or Ukraine, etc.. etc..

I don't think that's the case :s. I'm actually getting emails sent from my email address.

Post the headers of one of these emails or a kickback and we can tell you where it came from exactly! Until you post some details there is no way to know if being sent from your machine or not.

But I can tell you one thing for SURE!! I have not seen a virus/bot/anything that actually uses the local email address when sending anything in years and years and years - its TOO easy to track.. They pull an address from your contacts to use, or make up ****.. They don't actually use your email address when sending. Because that kind of points to the infected box now doesn't it!

first things first, instead of going on and on and on about this, start at the easiest thing to do and work backwards. You should have already done this but guessing you havent yet.

STEP 1: download and install malwarebytes, update the definitions, and run a full scan.

step 2 will depend on the out come of step 1. So do step 1 and tell us if it found anything.

I already did a full scan and did found something in the recycle bin. Deleted and afterwards I had no problems (until now) with the Outlook.

@BudMan:

Here's what had in the body of the email:

(DO NOT CLICK IS SPAM!!!)

http://josephdupnik....fg.htm&dfh=rhcj

And the Subject was left in blank, plus it had my email name on it. Yes, it also came from my email address. Even my uncle asked me what the hell did I send.

BTW: Thanks a lot for the help! :p Malwarebytes did a great job!

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • I'm still rocking iOS 25.x on my primary phone cuz iOS 26 still has usability quirks (mostly aesthetic and thus its UX) which I don't wanna deal with -- and I've been piloting them with all of these updates on my backup phone, so I'm well aware of its "improvements" since iOS 26 was first released (compared to version 26.5.x).
    • Firefox 152.0.4 is out.
    • Then why are you still here?  
    • Glary Utilities 6.44.0.48 by Razvan Serea Glary Utilities offers numerous powerful and easy-to-use system tools and utilities to fix, speed up, maintain and protect your PC. Glary Utilities allow you to clean common system junk files, as well as invalid registry entries and Internet traces. You can manage and delete browser add-ons, analyze disk space usage and find duplicate files. You can also view and manage installed shell extensions, encrypt your files from unauthorized access and use, split large files into smaller manageable files and then rejoin them. Furthermore, Glary Utilities includes the options to find, fix, or remove broken Windows shortcuts, manage the programs that start at Windows startup and uninstall software. All Glary Utilities tools can be accessed through an eye-pleasing and totally simplistic interface. Glary Utilities 6.44.0.48 changelog: Optimized Context Menu Manager: Improved features based on user feedback. Optimized Wipe Free Space: Optimized the interface display for a better user experience. Minor GUI improvements. Minor bug fixes. Download: Glary Utilities 6.44.0.48 | 27.0 MB (Freeware) Download: Portable Glary Utilities | 32.3 MB View: Glary Utilities Homepage | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • why to touch this audio corpse? use aimp
  • Recent Achievements

    • Reacting Well
      Juan Dela earned a badge
      Reacting Well
    • Week One Done
      Collagen Project earned a badge
      Week One Done
    • Reacting Well
      Wakeen1966 earned a badge
      Reacting Well
    • Rookie
      Almohandis went up a rank
      Rookie
    • Apprentice
      jahara21 went up a rank
      Apprentice
  • Popular Contributors

    1. 1
      +primortal
      514
    2. 2
      +Edouard
      266
    3. 3
      PsYcHoKiLLa
      146
    4. 4
      Steven P.
      96
    5. 5
      macoman
      54
  • Tell a friend

    Love Neowin? Tell a friend!