spam email coming from user account

Posted on 2016-09-18
Medium Priority
Last Modified: 2016-09-20
Hello, I have a lady in the office that receive an email from another employee asking a question, she responds to the email and another email come back with her response and requesting she sends her company credit card, we are all in the same office so she got up to ask and he had never sent her an email nor does her email show up in his inbox..... Hopefully this make sense.  The emails that was sent had, sent from Iphone on the bottom of the email and he does use his Iphone to send and receive company email, they are both on the same domain  ... Any suggestions to find out whats going on

The email is hosted with google so I looked at the access log and it only shows the users mac and his Iphone
also I changed his email password
Question by:Deerek11
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 2
LVL 29

Expert Comment

by:Pawan Kumar
ID: 41804194
Never share these kind of stuff with anyone with email or via phone. Tracking will not help.

Block everything and complaint to police about the same, It may be a fraud.

Banks/organizations never asks these kind of information.

Author Comment

ID: 41804226
The question came from one of our employees within the company. Are there steps I need to take for security
LVL 29

Assisted Solution

by:Pawan Kumar
Pawan Kumar earned 1000 total points
ID: 41804227
Yes, please block the card information first.

Then inform the bank about the same.

Please lodge a complaint with the police about the same.

That should be all.
Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!


Author Comment

ID: 41804233
She never sent any information about the credit card .... she got up from her desk to see if it was real because of the second email requesting card info the first email just asked are you in the office....
LVL 29

Expert Comment

by:Pawan Kumar
ID: 41804237
Great ! then ask her not to to reply on the second email and just ignore it.
LVL 29

Expert Comment

by:Pawan Kumar
ID: 41804252
@Author - I think we can close this question. Could you please mark one answer as accepted solution and close the question if you have no further question. :)

Thank you !
LVL 88

Accepted Solution

rindi earned 1000 total points
ID: 41804392
The message didn't come from the person you thought it was. The crooks spoof mail addresses that look like it came from your office, but it is an external source. If you check the headers of the email you should see that it actually came from somewhere else.

Most of the time they will just guess different mail addresses and hope that one of them fits. But it is relatively unlikely that they will get 2 addresses right. If that happens, a PC in your environment has already been compromised and they were able to get your address lists, so you should thoroughly scan all your PC's for malware and get rid of it. Or maybe a PC of one of your clients who has your email addresses has been compromised, in which case you can't do much except maybe warn your clients after you have found that your environment is clean, that it is possible they have malware and should check for it too. Another reason could be that your emails have been published on your website and are publicly available. In that case you can't do much apart from using really good spam filters.

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Are you having trouble connecting or getting your iPhone / Samsung device(s) to sync with Microsoft Exchange Server?   What have you tried?   What haven't you tried?
Resolve Outlook connectivity issues after moving mailbox to new Exchange 2016 server
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …
Many of my clients call in with monstrous Gmail overloading issues with Outlook. A quick tip is to turn off the All Mail and Important folders from synching. Here is a quick video I made to show you how to turn off these and other folders in Gmail s…
Suggested Courses
Course of the Month13 days, 4 hours left to enroll

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question