Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.



296 posts

Ultimate Geek
+1 received by user: 52

Subscriber

Topic # 114649 26-Feb-2013 15:50 Send private message

Hi all,

Had a client pop in today as they are getting messages bouncing back from people they hadn't sent emails
to.

To cut a long story short ...

Some of the hacked xtra accounts possibly had spam vacation responses set up in them. The person breaking in will set the xtra users vacation resposnse to run until sometime a few years from now and get it to send a spam message to everyone who emails the xtra user.

Worth checking if you are dealing with TCom / Xtra email users. In fact its worth checking if you deal with any web based email service who has been compromised.

For Xtra -
  1. Log into the users account
  2. Goto options
  3. email options
  4. Vacation Response.

Follow your nose. Its also worth checking to see if a malicious alias, temporary disposable internet address or similar has been created .

HTH

Shane




nunz

Create new topic
1757 posts

Uber Geek
+1 received by user: 342

Trusted
Spark NZ

  Reply # 770571 26-Feb-2013 15:53 Send private message

If you go to the main Telecom home page you see the first link which informs customers to change their passwords takes you here:

http://telecom.custhelp.com/app/answers/detail/a_id/26203?pid=int452

And yes it does detail the steps to check to make sure you don't have a vacation setting turned on.




I work for Spark, but as always my views are my own.



296 posts

Ultimate Geek
+1 received by user: 52

Subscriber

  Reply # 770672 26-Feb-2013 18:40 Send private message

plambrechtsen: If you go to the main Telecom home page you see the first link which informs customers to change their passwords takes you here:

http://telecom.custhelp.com/app/answers/detail/a_id/26203?pid=int452

And yes it does detail the steps to check to make sure you don't have a vacation setting turned on.



Four things:

 1 - Many clients dont use web mail so dont look at the web mail section, instead they follow the directions given and never go to the section that says confirm your web mail settings are complete.

2 - The banner on the main TCom page doesnt work unless you manage to see it as your first hit the page. It auto changes to advertising - making it difficult for people to find. We also hae taught our clients not to click on advertising - it leads to all sorts of trouble so they probably wouldnt click on a web adertising banner. it is a backwards security step for tcom to do it this way.

3 - Going through the steps given for a lot of our users ended them up with all sorts of crap about setting up profiles and putting photos up etc. Clicking on the go away link just stopped everything from working.

4 - In your advertising and advice it says change your password - most of our clients having done so never went any further as they had done what TCom told them to do. The advertising should have been more specific about what was needed to fix all the issues.

So no offence intended, why dump on someone who is helping you do what we should never have had to do in the first place?






nunz

Create new topic




Twitter »
Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





Trending now »

Hot discussions in our forums right now:

How good is your general Science Knowledge?
Created by Aredwood, last reply by joker97 on 31-Oct-2014 23:44 (39 replies)
Pages... 2 3


Government Limos
Created by networkn, last reply by Bung on 31-Oct-2014 12:39 (94 replies)
Pages... 5 6 7


Snap refuses to replace faulty gear
Created by Brendan, last reply by MadEngineer on 28-Oct-2014 19:07 (92 replies)
Pages... 5 6 7


Sky will be 'upgrading software' of My Sky to connect to internet. What does that mean?
Created by Geektastic, last reply by NonprayingMantis on 31-Oct-2014 23:55 (27 replies)
Pages... 2


Shutup and take my money (via NFC on my mobile phone)
Created by sxz, last reply by sonyxperiageek on 31-Oct-2014 22:34 (24 replies)
Pages... 2


Uber: a cheaper taxi ride?
Created by kingdragonfly, last reply by livisun on 31-Oct-2014 14:47 (34 replies)
Pages... 2 3


OneDrive code giveaway - go!
Created by freitasm, last reply by pgsheng on 1-Nov-2014 01:50 (33 replies)
Pages... 2 3


DDos Protection from ISP
Created by charsleysa, last reply by freitasm on 31-Oct-2014 12:11 (46 replies)
Pages... 2 3 4



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.