Is this a virus or not?!

Thread Solved

Join Date: Dec 2006
Posts: 8
Reputation: Joe Marshall is an unknown quantity at this point 
Solved Threads: 0
Joe Marshall Joe Marshall is offline Offline
Newbie Poster

Is this a virus or not?!

 
0
  #1
Dec 4th, 2006
I have started getting a lot of "Failed delivery" notices, claiming that SPAM emails were sent from my address. These feature the correct address after the @ symbol, but a random collection of letters before it (e.g. one might claim to come from xpqstvz@Rest of my address...).

Is this a virus in my computer, or is someone else just using my email address to generate these (the address leaked out via various web pages when I was organising conferences)?

If is IS a virus, can anyone tell me its name etc. If not, is there anything I can do, short of setting up a new email address and blocking out the previous one?

(note I cannot find anything via an AVG search, and I have both AVG and Zone Alarm running to prevent Outlook Express sending messages without an OK from me).
Reply With Quote Quick reply to this message  
Join Date: Feb 2002
Posts: 12,040
Reputation: cscgal is a glorious beacon of light cscgal is a glorious beacon of light cscgal is a glorious beacon of light cscgal is a glorious beacon of light cscgal is a glorious beacon of light cscgal is a glorious beacon of light 
Solved Threads: 125
Administrator
Staff Writer
cscgal's Avatar
cscgal cscgal is online now Online
The Queen of DaniWeb

Re: Is this a virus or not?!

 
0
  #2
Dec 4th, 2006
Enable authentication on your SMTP server so that anyone can't just use your mail server to send out email.
Dani the Computer Science Gal
Follow my Twitter feed! twitter.com/daniweb
Reply With Quote Quick reply to this message  
Join Date: Dec 2006
Posts: 8
Reputation: Joe Marshall is an unknown quantity at this point 
Solved Threads: 0
Joe Marshall Joe Marshall is offline Offline
Newbie Poster

Re: Is this a virus or not?!

 
0
  #3
Dec 4th, 2006
I will try. However, the computer is in my house, and I live alone!
Reply With Quote Quick reply to this message  
Join Date: Dec 2003
Posts: 6,439
Reputation: DMR will become famous soon enough DMR will become famous soon enough 
Solved Threads: 362
Team Colleague
DMR's Avatar
DMR DMR is offline Offline
Wombat At Large

Re: Is this a virus or not?!

 
0
  #4
Dec 6th, 2006
or is someone else just using my email address to generate these
I just worked through this issue with one of my clients last week, and we found that the "Mailer Daemon", "Failed Delivery", etc. messages were indeed coming from the outside, and were forged. They were not the result of malicious activity on his computer; his system was 100% clean.

If you're getting enough of these incoming emails to bother you, your only choice is to filter them as Spam; the exact method of filtering will obviously depend on your particular mail software/setup. You shouldn't have the filter software automatically delete them though, as you will occasionally get valid "undeliverable" messages in response to emails which you have knowing sent from your computer.
"May the Wombat of Happiness snuffle through your underbrush."
- Ancient Aborigine blessing


Please do not contact me by email or PM for help. We're all volunteers here, and only have so much free time to dedicate to our efforts.

However, if I've been working on a thread with you already, and seem to have "forgotten" your thread, please do send me a message. I try not to let things slip through the cracks, but it does happen sometimes.
Reply With Quote Quick reply to this message  
Join Date: Dec 2006
Posts: 8
Reputation: Joe Marshall is an unknown quantity at this point 
Solved Threads: 0
Joe Marshall Joe Marshall is offline Offline
Newbie Poster

Re: Is this a virus or not?!

 
0
  #5
Dec 6th, 2006
Originally Posted by DMR View Post
I just worked through this issue with one of my clients last week, and we found that the "Mailer Daemon", "Failed Delivery", etc. messages were indeed coming from the outside, and were forged. They were not the result of malicious activity on his computer; his system was 100% clean.

If you're getting enough of these incoming emails to bother you, your only choice is to filter them as Spam; the exact method of filtering will obviously depend on your particular mail software/setup. You shouldn't have the filter software automatically delete them though, as you will occasionally get valid "undeliverable" messages in response to emails which you have knowing sent from your computer.
I think you have it spot on! I tried operating from another computer which has not been connected to the web, and with every available firewall to stop anything being emailed out without my express permission. I still got the same incoming messages. My conclusion, like yours, is that someone has my email address and is doctoring it with the random letters before the @ symbol.

Sadly, although it is possible for me to reject specified incoming addresses, it does not seem possible to ONLY ACCEPT those with the correct full address under Outlook Express (BUT WHY NOT!, if anyone out there is listening!). Even then, if someone sent (say) a joke to "Undisclosed Recipients", it would probably get rejected unless Outlook Express was much more sophisticated than it presently is!

As you also said, I can set it to reject incoming emails which contain specific letters (e.g. x, z, q) which are not in my address, but then if the message happens to be sent to me plus someone else with such letters in THEIR address, it would probably get blocked). I guess I will just have to put up with it, or go to all the hastle of changing my total address!

Thanks for the advice anyway! I hope it is spotted by anyone else with the same problem!
Reply With Quote Quick reply to this message  
Join Date: Dec 2003
Posts: 6,439
Reputation: DMR will become famous soon enough DMR will become famous soon enough 
Solved Threads: 362
Team Colleague
DMR's Avatar
DMR DMR is offline Offline
Wombat At Large

Re: Is this a virus or not?!

 
0
  #6
Dec 6th, 2006
Outlook Express doensn't have a lot of firepower when it comes to filtering/spam blocking, but you can create a Mail Rule which filters based on the sender's name. One common trait I saw with my client's bogus emails was that the sender was always some variation of the usual "undeliverable" mail server auto-responder, so filtering out the sender names "Mailer-Daemon" and "Delivery subsystem" should block most (if not all) of the messages.
"May the Wombat of Happiness snuffle through your underbrush."
- Ancient Aborigine blessing


Please do not contact me by email or PM for help. We're all volunteers here, and only have so much free time to dedicate to our efforts.

However, if I've been working on a thread with you already, and seem to have "forgotten" your thread, please do send me a message. I try not to let things slip through the cracks, but it does happen sometimes.
Reply With Quote Quick reply to this message  
Reply

This thread has been marked solved.
Perhaps start a new thread instead?
Message:



Similar Threads
Other Threads in the Viruses, Spyware and other Nasties Forum
Thread Tools Search this Thread



About Us | Contact Us | Advertise | DaniWeb | Acceptable Use Policy | RSS Feed

©2003 - 2009 DaniWeb® LLC