I think I have a bot in my pc :s Just don't know how to kill it!


Recommended Posts

Guys, since yesterday (13 hours ago) I noticed my email to flood by "Delivery Status Failure" from emails I supposedly sent (Hotmail). The bad part of this is that I DID NOT SEND ANY of those messages. I even checked the 'Sent' status at the Hotmail page but it doesn't show up any of the sent emails.

I've already sent scanning my PC with MS Essentials and nothing has shown up.

The problem seems to be with Outlook because when I run it, email start to flood my inbox about a failure delivery.

What should I do? :s

Guys, since yesterday (13 hours ago) I noticed my email to flood by "Delivery Status Failure" from emails I supposedly sent (Hotmail). The bad part of this is that I DID NOT SEND ANY of those messages. I even checked the 'Sent' status at the Hotmail page but it doesn't show up any of the sent emails.

I've already sent scanning my PC with MS Essentials and nothing has shown up.

The problem seems to be with Outlook because when I run it, email start to flood my inbox about a failure delivery.

What should I do? :s

Download this. Install it, update it and then scan your computer, Use FULL scan.

www.malwarebytes.org

Change your password would be a good start, does it happen with other email programs like Windows live mail ?

Maybe its an Outlook issue ?

Anything stuck in the outbox ?

Nothing stuck in the outbox, and from the 3 accounts I have in Outlook, there's just one which is sending the mass email. I have the messenger program running and nothing fishy pops up.

I'll try with malwarebytes as Scorbing suggested.

Nothing stuck in the outbox, and from the 3 accounts I have in Outlook, there's just one which is sending the mass email. I have the messenger program running and nothing fishy pops up.

I'll try with malwarebytes as Scorbing suggested.

Check the server side too, ie hotmail.com

I definitely recommend changing your password though

I'll be doing that now. It's better to prevent than to be sorry later.

Yep, this is exactly why we were asking the hotmail team to add 2 step verification to hotmail email accounts then the worst you would have got was an sms requesting a log in code (If this is what has happened)

I've checked again, and seems is Outlook that has the problem. All of my emails are sending the delivery notification failure. F*ck. I want to know how did I get it, because I never visit strange websites nor open strange or ****ty emails. Maybe outlook downloaded it without concern and infected the system.

Maybe outlook downloaded it without concern and infected the system.

It doesn't work like that.

I'd change your email password, personally, swap to Gmail (you can still have the same addresses and have your mail forwarded, use it with outlook etc), do a full virus scan.

What anti-virus do you use?

It doesn't work like that.

I'd change your email password, personally, swap to Gmail (you can still have the same addresses and have your mail forwarded, use it with outlook etc), do a full virus scan.

What anti-virus do you use?

I have MSE installed. I used to have Kaspersky but let my subscription fade away.

Could just be someone spoofing your address from somewhere else so you end up getting all the undeliverables or logging into your account remotely. I don't know if hotmail allows you to see IP addresses that have accessed your account but I would check that if they do.

When you logon to hotmail through a browser do the failures still show up or is it only happening when outlook is open?

When you logon to hotmail through a browser do the failures still show up or is it only happening when outlook is open?

It only happens when I have outlook opened. But when I browse the email I do have recorded the failure delivery messages. (But can't see the sent ones)

^ exactly.

Outlook seems to just be downloading your bounces.

You rarely see spam sent from a legit address ;) Its always someone else so all the bounces don't clog up the sending server..

Its childs play to send an email saying it came from address Y. If I send out a million random spam messages to all kinds of bogus email addresses, lots of them will get kicked back to what the return address says it is.

So I am spamming how to enlarge your penis and send to [email protected] and say it came from your address at Y, be it sent from that server or not. So somedomain.com says hey we don't have a lsjfdsf mailbox.. Lets make sure that Y knows that -- and sends it back to Y.. These now fill up your mailbox.. Nothing to do with infection, nothing to do with your mailbox being hacked, etc. Look at the kickbacks -- does it say it was sent from your server? Or somewhere in china or Ukraine, etc.. etc..

^ exactly.

Outlook seems to just be downloading your bounces.

You rarely see spam sent from a legit address ;) Its always someone else so all the bounces don't clog up the sending server..

Its childs play to send an email saying it came from address Y. If I send out a million random spam messages to all kinds of bogus email addresses, lots of them will get kicked back to what the return address says it is.

So I am spamming how to enlarge your penis and send to [email protected] and say it came from your address at Y, be it sent from that server or not. So somedomain.com says hey we don't have a lsjfdsf mailbox.. Lets make sure that Y knows that -- and sends it back to Y.. These now fill up your mailbox.. Nothing to do with infection, nothing to do with your mailbox being hacked, etc. Look at the kickbacks -- does it say it was sent from your server? Or somewhere in china or Ukraine, etc.. etc..

I don't think that's the case :s. I'm actually getting emails sent from my email address.

Post the headers of one of these emails or a kickback and we can tell you where it came from exactly! Until you post some details there is no way to know if being sent from your machine or not.

But I can tell you one thing for SURE!! I have not seen a virus/bot/anything that actually uses the local email address when sending anything in years and years and years - its TOO easy to track.. They pull an address from your contacts to use, or make up ****.. They don't actually use your email address when sending. Because that kind of points to the infected box now doesn't it!

first things first, instead of going on and on and on about this, start at the easiest thing to do and work backwards. You should have already done this but guessing you havent yet.

STEP 1: download and install malwarebytes, update the definitions, and run a full scan.

step 2 will depend on the out come of step 1. So do step 1 and tell us if it found anything.

I already did a full scan and did found something in the recycle bin. Deleted and afterwards I had no problems (until now) with the Outlook.

@BudMan:

Here's what had in the body of the email:

(DO NOT CLICK IS SPAM!!!)

http://josephdupnik....fg.htm&dfh=rhcj

And the Subject was left in blank, plus it had my email name on it. Yes, it also came from my email address. Even my uncle asked me what the hell did I send.

BTW: Thanks a lot for the help! :p Malwarebytes did a great job!

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Google pitches Spanner as one database for all AI agents with these new featues by Karthik Mudaliar Google Cloud is introducing new features within Spanner, its distributed database, as a place where enterprises should keep their data, using which AI agents could make smarter and better decisions. In a detailed blog post, Google highlighted quite a few features coming to Spanner, including relational data, graph relationships, vector search, key-value access, full-text search, and operational analytics together in one database architecture. Google says that today's systems aren't well-made for AI agents. There could be data that is present in one system, search indexes in another, embeddings in a vector database, and relationship data in a graph database. This fragmentation isn't great for AI agents to do their jobs because they don't have access to all of this data in one place. This is where Google is positioning Spanner as a solution. Spanner is already a globally distributed relational database with strong consistency, and Google wants its customers to see it as a broader data layer for AI applications. The company introduced something called Spanner Graph, along with integrated vector search, full-text search, a Cassandra-compatible key-value endpoint, and a columnar engine for analytical queries on operational data. Google also added that its ScaNN-powered vector search can support indexes with more than 10 billion vectors, while the columnar engine can make some analytical scans up to 200 times faster. All of this isn't just exclusive to the Google Cloud Platform, and there's support for multi-cloud as well. This comes via Spanner Omni, which Google says is a downloadable, containerized version of Spanner that can run on Kubernetes and in environments outside Google Cloud, including Microsoft Azure and AWS, and even on-premises infrastructure as well as edge deployments. Google says that customers who are interested in the full-featured edition should contact the company, and there's no word on commercial availability or separate pricing. Those interested can read the full blog by Google Cloud, which details these features individually.
    • Kalmuri 4.2.5 by Razvan Serea Kalmuri is your all-in-one, portable screen capture and recording solution designed for speed, simplicity, and flexibility. Whether you need a full-screen snapshot, a custom area, a scrolling webpage, or smooth video recording, Kalmuri delivers with ease. Capture text instantly from images with built-in OCR, keep floating images on top for quick reference, and use the precise color picker for perfect design matching. Customize hotkeys to work your way and share results instantly with built-in upload options. Kalmuri runs without installation, making it ideal for USB use, and offers an intuitive interface that’s easy to learn. Kalmuri key features: Video recording support (designation of whole screen and area) Whole screen, active program, window control, area application Extract text from images using optical character recognition (OCR). Support for PNG, JPG, WEBP, BMP, GIF file formats MP4 video recording powered by FFmpeg for high-quality results Full web page capture Share the captured image on the web Color extraction function Printer output Hotkey settings Adjustable via keyboard for area capture (Arrow key, Ctrl+Arrow key, Shift+Arrow key) File name format (sequential, datetime) Free to use it at work, at home, in government offices, at school, etc. Using Kalmuri portable for video recording Kalmuri’s portable version doesn’t include FFmpeg, which is required for video recording. Without it, you’ll get an “error FFmpeg.exe not found” message. To fix this, download FFmpeg from the provided link, extract it, and place FFmpeg.exe in Kalmuri’s folder. Kalmuri will then recognize it automatically, allowing you to start recording in high quality instantly. Kalmuri 4.2.5 changelog: Fixed an intermittent crash when using Area Capture Improved stability for Area Capture and screen recording Resolved a capture issue that could occur right after startup Download: Kalmuri 4.2.5 | 24.2 MB (Freeware) Download: Kalmuri Portable 4.2.5 | 2.1 MB View: Kalmuri Website | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • They have lots of info on me, I have a facebook account and have done so for years, it was the thing to have then. My phone number is not on it. I don't have the Facebook app on my phone these days, just the messenger part, and only for a couple of people to contact me, most will text me via SMS or phone. I agree, Meta, like others, even without an account will know something about me. Just have to try and keep some things private Also, never saw the need for Whatsapp, people used to ask for me to join it, but as I said to them, I have SMS and a phone, use that, or email
  • Recent Achievements

    • First Post
      rosiecharles earned a badge
      First Post
    • Reacting Well
      Juan Dela earned a badge
      Reacting Well
    • Week One Done
      Collagen Project earned a badge
      Week One Done
    • Reacting Well
      Wakeen1966 earned a badge
      Reacting Well
    • Rookie
      Almohandis went up a rank
      Rookie
  • Popular Contributors

    1. 1
      +primortal
      517
    2. 2
      +Edouard
      273
    3. 3
      PsYcHoKiLLa
      143
    4. 4
      Steven P.
      100
    5. 5
      macoman
      54
  • Tell a friend

    Love Neowin? Tell a friend!