my machine is sending emails

I have used Avast/Ewido/Symantic/TrojanHunter/Antvir/spybot/
Ad-aware to clean my system for viruses , and I had found alot of viruses with Ewido which I cleaned up.

But still I get this warning from AVAST saying Suspicous Message!
There are too many identical e-mails in appointed time.

Sender and Recipient names are being generated somehow by the virus.

I get 20 or so warnings from AVAST, I stop getting those warnings, But When I start canceling those warnings, More warnings keep on coming.

So I am lost. My provider has shut my connection down previously due to too network congestions from my computer.

I also used avast cleaner.
Any suggestions will be helpful at this time.
Thanks

Suspicious is not infected.
This is a warning of the heuristic mail detection. In the help file there is a comprehensive explanation about the settings.
Internet Mail provider > Customize > Heuristic tab and Heuristic (Advanced) tab.

Did you run avast! at boot time?


Welcome to the forums, tiredoftrojans. :slight_smile:

Do you have Symantec anti-virus & avast! anti-virus on your computer at the same time?


I did not used to have Nortan , But I installed it recently AVAST AVAST! Virus warning were coming. So I was trying every thing.

I have run AVAST at boot time, But to be sure I will rerun AVAST at at boot time and disable NORTAN. ( Or do I need to uninstall NORTAN)
Thanks


You will need to completely uninstall Norton as it will foul any other anti-virus program. Please read the post at the link below for instructions on completely removing Norton.

http://forum.avast.com/index.php?topic=20611.msg172784#msg172784


No way to survive with both antivirus… Norton SHOULD be completelly uninstalled. Disable is not enough.

  1. Remove NAV through Add/Remove programs from Control Panel. Boot.
  2. Use Symantec removal tool (browse their site to get it, there are one for each antivirus series). Removing your Norton program using SymNRT.
  3. Boot.
  4. Install avast! Boot.
  5. See what you get.

NAV uninstall or other antivirus uninstall for compatibility reasons: http://www.claymania.com/av-uninstall.html.

Well you definitely have some form of spambot on your system.

Once you have killed the remnants of Norton, try running ewido from safe mode, keep tapping away at the F8 key when you boot, when the options come up select safe mode.

If that doesn’t find anything, try HiJackThis also useful as a diagnostic tool - Download HiJackThis.zip - HJT Information HiJackThis Tutorial 1 or HiJackThis Tutorial 2
For an on-line analysis - HiJackThis Log file - On-line Analysis OR HiJackThis Log file - On-line Analysis 2
Ignore any 023 reference to avast processes, this is a hiccup in the HJT 1.99.1 (especially missing file entry for avast), if you need any help with any of the analysis let us know.

After removing the Nortan software , rerunning avast at boot time and Ewido; My computer is running clean for a month now;
Thanks every body for the help
This is an excellent forum, Avast Rocks.

Glad we could help, a belated welcome to the forums.

Stick around and browse the forums, especially the sticky topics at the top of each of the forums. They provide a wealth of information to help you get the best from avast.


You are most welcome to the help, tiredoftrojans. It is good to know you have a clean running computer now. :slight_smile:

Please come back often, learn more, and maybe help others. :slight_smile:


I had the same problem.

On my laptop it was a mass spammer Windows/system32/drivers/sysbus32.sys

I’ve done full system scan with Ewido in Safe mode.

Hi!
Did ewido find this Trojan ?
It did not on my PC (http://forum.avast.com/index.php?topic=21228.0)
I had to use f-secure’s blacklight program, following the recommandation of one of the wise forumers here :wink:
Bye

Hi!
Did ewido find this Trojan ?
It did not on my PC (http://forum.avast.com/index.php?topic=21228.0)

Hekto,
It did when I’ve done it in Safe mode following suggestion from this forum.