So 2 days ago, my parents were on their computer reading emails(gmail), and they got one from someone they knew. It turned out to be a fake gmail login phishing email. Im pretty sure they logged into it by looking at the browser history, since they're not tech savvy.
Then at around 4am in the morning (by looking at gmail login history) an Argentinian ip had attempted to log in, but I believe it said it was unsuccessful.
Then at around 12am, the login history showed 2 logins from a UK ip, from IMAP and STAP. Then at the same moment, the account and sent out spam messages.
Later in day, my brother changed the passwords and added security options and two step verification, and the account has been fine since, no emails sent out. The only one I had see was a recieved email about the failure of sent out emails from the spam being sent out at the time when it was spamming.
However I am worried about a few things, and I hope you can answer these questions.
1. Could the spam have been caused by a virus or malware? The logon history showed imap and stap which I believe are mailing software from the uk, ao does it mean the spamming was a virus or from the hijackers?
2. I have ran full scans with malwarebytes, norton 360, mse, spybot, tdsskiller, and norton power eraser, and came up with no results, butim still worried that something like a keylogger or worm could be hiding. What are the chances?
3.and one of the reasons im worried is, could this whole eveny affect any other pcs in the house? My brothers laptop and my pc had been connected to the same network, however I have disabled some sharing and network visibility features on my pc. Im worried could other pcs get infected if the pc that opened the link was infected? Ive used netstat -a and I couldn't find any suspicious connections and event viewer seemed fine.
I hope you can help as im afraid my accounts and the other pcs could get into trouble.
Then at around 4am in the morning (by looking at gmail login history) an Argentinian ip had attempted to log in, but I believe it said it was unsuccessful.
Then at around 12am, the login history showed 2 logins from a UK ip, from IMAP and STAP. Then at the same moment, the account and sent out spam messages.
Later in day, my brother changed the passwords and added security options and two step verification, and the account has been fine since, no emails sent out. The only one I had see was a recieved email about the failure of sent out emails from the spam being sent out at the time when it was spamming.
However I am worried about a few things, and I hope you can answer these questions.
1. Could the spam have been caused by a virus or malware? The logon history showed imap and stap which I believe are mailing software from the uk, ao does it mean the spamming was a virus or from the hijackers?
2. I have ran full scans with malwarebytes, norton 360, mse, spybot, tdsskiller, and norton power eraser, and came up with no results, butim still worried that something like a keylogger or worm could be hiding. What are the chances?
3.and one of the reasons im worried is, could this whole eveny affect any other pcs in the house? My brothers laptop and my pc had been connected to the same network, however I have disabled some sharing and network visibility features on my pc. Im worried could other pcs get infected if the pc that opened the link was infected? Ive used netstat -a and I couldn't find any suspicious connections and event viewer seemed fine.
I hope you can help as im afraid my accounts and the other pcs could get into trouble.