Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

leftyladyfrommo

(18,868 posts)
Wed Oct 8, 2014, 07:50 PM Oct 2014

does this sound like a computer virus?

My friend had her e-mail hacked. A letter went out to her contacts stating she was in Turkey and desparately neededmoney tocome home. Everybody she e-mails to got a letter. And all her contact disappeared. Does that sound familiar to anyone? She has AOL and has an old system. Happeneda 2nd tme a few days later.

13 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies

pinboy3niner

(53,339 posts)
5. Some are more benign, just spamming your contact list with ads
Wed Oct 8, 2014, 08:02 PM
Oct 2014

Though any embedded links may or may not be unsafe.

PeaceNikki

(27,985 posts)
6. There's no 'virus' or 'trojan. It's a phishing scam.
Wed Oct 8, 2014, 08:03 PM
Oct 2014
http://www.theguardian.com/money/2011/aug/05/beware-hackers-take-over-gmail-account

Your friend was impacted because they clicked on something they shouldn't have and entered credentials for their email account.

From the article:

"Corrigan thinks he might have an idea how it all started. "Several weeks previously I'd received emails from two friends containing nothing in the way of a usual greeting, just a nondescript link to click on. With one of them, I stupidly did click on the link but nothing coherent happened. I phoned the friend, who said he hadn't sent me a message."

He says that after the scam came to light he looked in his Googlemail settings and found a ymail.com address as well as his own Gmail.com address. "The ymail.com address was forwarding all my mail to somewhere else and was central to the scam. I didn't put it there. I've since killed it, but is my computer still infected? I don't know. The experience caused turmoil for a lot of people. Many fear their own email accounts have been infected. As for me, it has caused electronic havoc because I have lost two years' records of various conversations, including a large number important to my work."

Warpy

(111,277 posts)
7. Yep, she needs to run her antivirus program just in case
Wed Oct 8, 2014, 08:03 PM
Oct 2014

and if that doesn't clear it up, she can download free AVG and Malwarebytes and usually they'll take care of it.

If she's on Farcebook, that's the more likely culprit. These bastards comb that site for people with a lot of family and friends and target them that way.

However, she needs to let the AOHELL tech staff to it if she's not on FB.

PSPS

(13,603 posts)
8. Not a virus
Wed Oct 8, 2014, 08:19 PM
Oct 2014

I did a forensic investigation on these and found that they are sent through the account after it is hacked. In other words, your friend's AOL account has been hacked (i.e., the password was guessed or otherwise discovered.)

Have your friend log into her AOL account at www.aol.com and do two things:

1. Change the password; and,
2. Change any challenge questions such as "mother's maiden name."

If her password doesn't work and she can't log into her account at www.aol.com, she can click on "Forgot your password" to accomplish #1.

leftyladyfrommo

(18,868 posts)
9. Her old password was "whirling dervishes"
Thu Oct 9, 2014, 10:31 AM
Oct 2014

I can't believe anyone just guessed that one.

Is there a backdoor way that they come in?

leftyladyfrommo

(18,868 posts)
11. I don't know.
Thu Oct 9, 2014, 10:37 AM
Oct 2014

She and I neither one know much about computers. She has been talking to AOL (in India) so hopefully they will be able to help.

FSogol

(45,488 posts)
12. It is probably just a phising scam. Have her change her passwords
Thu Oct 9, 2014, 10:47 AM
Oct 2014

and don't click on or reply to any emails that look suspicious. When in doubt, delete it.

Using a program like malwarebytes can help clean up spyware. https://www.malwarebytes.org/
Use the free version.

People now call with the phishing scam claiming to be from Microsoft and trying to get access. Beware of that too.

Frank Cannon

(7,570 posts)
13. A machine can guess a password like that in minutes.
Thu Oct 9, 2014, 10:53 AM
Oct 2014

Just by trying out words in a long word list. It's called "brute forcing".

Which is why your passwords should always be long and comprised of a variety of upper case and lower case letters, numbers, and odd characters, L1keTh1$!

Latest Discussions»General Discussion»does this sound like a co...