Forensics help - Outgoing email

Forensics help - Outgoing email

Secure Home | Search | About
 General Computer Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Forensics help - Outgoing email Subba Rao 06-17-2006
Posted by Subba Rao on June 17, 2006, 1:36 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Hello,

I have a Windows 2000 Professional as my primary workstation. I have
pretty much all sorts of assorted programs and applications on this
Windows system. The Anti-Virus software on my system is the free
version of AVG from Grisoft.

Recently, I was introduced to the torrent network (primarily because I
wanted to download some Linux distros). My curiosity made me download
other audio torrents to see the efficiency of the torrent network. One
thing I have noticed on my system is that there is an email being sent
out periodically to some system (247.16.delicado.com.uy). When the
email is being sent out, the AVG Anti Virus is scanning the email, which
is how I found out about the delicado.com.uy system. I do not know what
is being sent out. Can the torrent files compromise security on your
system? Has my system been compromised and become part of a bot
network? How do I find out what is causing this email to go out? How
do I fix this problem?

Any help is much appreciated.

Thank you in advance.

Regards,

Subba Rao
castellan2004-gen@SPAMBUSTER.yahoo.com

Posted by Volker Birk on June 17, 2006, 2:12 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
> When the
> email is being sent out, the AVG Anti Virus is scanning the email

Better configure your system to scan what comes in. Scanning what's
going out does not make sense.

Yours,
VB.
--
"If you want to play with a piece of windows software that makes you
click all over the place, there's always minesweeper."

Kyle Stedman about "Personal Firewalls" in c.s.f

Posted by Todd H. on June 19, 2006, 2:11 am
If you were  Registered and logged in, you could reply and use other advanced thread options

> Can the torrent files compromise security on your
> system?

Yes.

With the right registry tweaks, an executable can be masked inside a
file with any file extension and be executed.

--
Todd H.
http://www.toddh.net/

Similar ThreadsPosted
Can't Turn Off NAV Outgoing E-mail Scanning June 25, 2005, 2:13 pm
How to start in security & forensics? November 13, 2004, 8:50 am
GS 14/15 Computer Forensics Job Opening in Johnstown, PA July 19, 2006, 8:20 pm
Computer Forensics - Shutdown or Switch-Off August 23, 2006, 10:47 am
Computer Forensics Career Development in PA November 16, 2007, 6:52 am
Cell Phone Forensics Class August 15, 2008, 12:07 pm
REVIEW: "Guide to Computer Forensics and Investigations", Bill Nelson et al December 16, 2005, 11:20 am
RSA Security Conference 2005 - Computer Forensics Expert Advice Sought February 16, 2005, 12:15 am
Forensics Software Company, Guidance Software, Hacked December 20, 2005, 10:05 pm
hijacked email June 25, 2005, 1:56 am

The site map in XML format XML site map

Contact Us | Privacy Policy