Hey all,
I got NAILED bigtime yesterday whilst carousing on a site I should
have known better than to use MSIE on. I aquired MANY infections, but
have I think all but one contained now... I just noticed today that a
netstat -an command is showing a huge number of connections to various
IP addresses. Soooo I got myself a packet sniffer, and found out that
my machine is spamming like MAD through Outlook Express. I can't seem
to find the causative program, and none of my various Spyware/Adware
or AV programs are catching it, so this is where I REALLY need help.
The basic content of each email follows:
From: Mcnamara (this is randomly generated it seems)
To: (e-mail address removed) (also apparantly random)
Subject: Online
Message body --
Hey, epjvwek
Attached file:
epjvwek.gif
Contents of this file appears to be drug advertisements... It's
harmless enough, so I've attached it in the prayer that someone will
recognize it and know what it is and how to get rid of it from my
system. NERVE WRACKING.
I should also mention that winlogon.exe is consuming very high cpu
resources, like 80-90%, and it shows up on TDIMon as the program doing
all the accessing of those IP addresses.
Thanks for any help!!!
Rick
"The usual approach of science of constructing a mathematical
model cannot answer the questions of why there should be a
universe for the model to describe. Why does the universe go
to all the bother of existing?"
- Stephen Hawking
---------------------------------------
Amateur Astronomy Page:
http://www.angelfire.com/alt2/nightrunner/skyview.html
Our Webcam:
http://web.infoave.net/~missy1/cam/webcam.html