Forum Home
PC World Chat
 
Thread ID: 98962 2009-04-14 08:23:00 gmail account hacked... robsonde (120) PC World Chat
Post ID Timestamp Content User
765012 2009-04-14 08:23:00 have a good friend, her gmail account may have been hacked...

all her contacts got spam from her, headers look clean, message really did come from her gmail account.

question is how was it hacked, it has a good strong password.
if someone did a password reset then she would be locked out....

at this point I am thinking keystroke logger.....
system is clean after a full scan with AVG and malwarebytes.


thoughts??
robsonde (120)
765013 2009-04-14 08:42:00 1) It's not hard to fake an e-mail (i.e. you can make an e-mail that seems to be from one particular person). Then again, you mentioned that all of her contacts received the spam.

2) Has she accessed her gmail account from a public computer recently?

3) Suggest that she changes her password now (which I'm sure you have told her that)

4) I assume a firewall was running throughout the time she accessed the Internet?

Cheers :)
Renmoo (66)
765014 2009-04-14 08:46:00 1) It's not hard to fake an e-mail (i.e. you can make an e-mail that seems to be from one particular person). Then again, you mentioned that all of her contacts received the spam.

2) Has she accessed her gmail account from a public computer recently?

3) Suggest that she changes her password now (which I'm sure you have told her that)

4) I assume a firewall was running throughout the time she accessed the Internet?

Cheers :)

1.) yes it's easy to fake email but I read email headers for a living, it's real..

2.) only accessing from work and home, work is a big and well known IT company so probably safe.

3.) she has been told to change the password.

4.) windows vista's built in firewall + NAT router.
robsonde (120)
765015 2009-04-14 08:57:00 2.) only accessing from work and home, work is a big and well known IT company so probably safe.
.

I have never yet seen any big organisation use anything other than the usual Nortons or McAfee.

None of them are safe,
pctek (84)
765016 2009-04-14 09:44:00 1.) yes it's easy to fake email but I read email headers for a living, it's real..

2.) only accessing from work and home, work is a big and well known IT company so probably safe.

3.) she has been told to change the password.

4.) windows vista's built in firewall + NAT router.

So do the Spam messages actually appear in her sent items?
CYaBro (73)
765017 2009-04-14 09:48:00 Is she accessing Gmail using something other than the web UI - for example, using Outlook/Thunderbird to connect to it? somebody (208)
765018 2009-04-14 09:49:00 So do the Spam messages actually appear in her sent items?

No, that is a bit strange.....



also the spam point the sucker to "please visit www Diorsw com ."

a google search of that gives results of a hacked hotmail account sending the same spam.
robsonde (120)
765019 2009-04-14 09:52:00 Maybe this is what Conflicter does?? somebody (208)
765020 2009-04-14 10:37:00 "Conficker"? johcar (6283)
765021 2009-04-14 10:45:00 "Conficker"?

Indeed. I've seen many variations...suck as Conflicker and Conflicka and now, Conflicter:p
Blam (54)
1 2