hijacked email acct is sending out links!

Discussion in 'Malware Help (A Specialist Will Reply)' started by sshaw13, Feb 9, 2013.

  1. sshaw13

    sshaw13 Private E-2

    First let me say, I have followed the directions - step by step - under READ & RUN ME FIRST. I have various logs to attach to this post.

    Description: I noticed this morning that my inbox (I use Microsoft Outlook to check my @bellsouth.net email) was full of bounced back emails that had been send from my account to various other addresses. Each email was sent to 5-7 recipients. It did not just send to everyone in my contacts list - it was sending to very OLD and outdated addresses that i had not used in years. Also sending to people I have not had in my contacts list in years. It did, however, send to many valid addresses of friends of mine as well. Interestingly, none of the sent emails were in my "SENT" folder on Outlook, however they DID all show up in the "SENT" folder of my mail app on my iPhone, which is linked to check my bellsouth account.

    All emails were made to seem as if they had come from me. They had no subject line and the text of the emails consisted of many different URL's (each email sent out had a different URL link in the text). Then, they were signed with my name and some weird saying or philosophy as a signature. Here are a couple of examples of the emails that were sent out:

    ++++++++++++++++++++++++++++++++++++++++++
    http://polypartisan.org/wordpress/wp-content/plugins/polimorph.php?fxghuwaaepnp






    An evil chance seldom comes alone. (C)Saying
    kqxwiyofp
    -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
    Scott Shaw


    +++++++
    http://jeffersonhillsgolfcourse.com/wp-content/themes/DeepFocus/polimorph.php?ivppsmgsap






    Go confidently in the direction of your dreams. Live the life you have imagined. - Henry David Thoreau lustq -=-=-=-=-= Scott Shaw


    ++++++++++++++++++++++++++++++++++++
    http://putterswap.com/wp-content/uploads/polimorph.php?ebxldnao






    After clouds comes sunshine. (C)Saying
    patvp
    -=-=-=-=-=
    Scott Shaw


    These are only three examples of MANY messages sent out.

    OK, I followed directions under "READ & RUN ME FIRST" for malware removal and I will attach all logs I generated. I hope this is all of them.

    I hope someone can tell me what I should do next to take care of this email hijacking problem!

    Thanks for your time,
    Scott
     

    Attached Files:

  2. sshaw13

    sshaw13 Private E-2

    UPDATE: At 8:30 AM today, the same thing happened with my email account again. One thing I just noticed, though. On the three sample emails I copied in my original post above, I noticed that the actual link in each email was condensed. Here is an example of the full size string of characters:

    http://starbucks-gifts.com/wp-includes/js/imgareaselect/polimorph.php?qauibya

    Another thing I noticed was that in every one of the email links that were sent out, the word "polimorph.php" was in every one. When I googled "polimorph" this morning, it came back as some kind of spell that is used in the online game Wizard 101. My son plays Wizard 101 all the time on my computer. Is that significant, or coincidental?

    Thank you.
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're problems are not due to your PC being infected as your logs are all clean. Perhaps the problem is with your iPhone and where you may have used it. Like in free open wi-fi networks that are not secure.

    Don't know for sure but your PC is clean and you should not be allowing your son to do anything from your user account which is an admin account. If you want to allow him to use the PC, create a restricted user account for him to use.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds