Solved Windows Mail Problem with Delete Folder

pushticat

Member
I apologise if this has been answered before. I have Vista Home Premiumn 64 bit. If I try to empty my Delete Folder the files all vanish except for a single file,of which 50 identical copies remain which then proceed to replicate itself indefinitely so I end up with thousands of this file in the folder,literally. The file itself seems to be unimportant-a notification .html-but I just can't stop the process. I did once manage to get rid of them all but when I rebooted they were all there again. I tried the MS K941090 update which has been suggested but am told my system doesn't need it. I jus can't empty my Delete Folder. Please can anybody help?
 

My Computer

I apologise if this has been answered before. I have Vista Home Premiumn 64 bit. If I try to empty my Delete Folder the files all vanish except for a single file,of which 50 identical copies remain which then proceed to replicate itself indefinitely so I end up with thousands of this file in the folder,literally. The file itself seems to be unimportant-a notification .html-but I just can't stop the process. I did once manage to get rid of them all but when I rebooted they were all there again. I tried the MS K941090 update which has been suggested but am told my system doesn't need it. I jus can't empty my Delete Folder. Please can anybody help?

Hello pushticat and welcome to the forums :party:

Don't worry about things being answered before, if you're having a problem then we'll always be willing to help. Even if it is only to find somewhere where this problem has already been addressed.

By delete folder, I take it you mean Recycle Bin? You mention this .HTML file, do you know where it came from? Or has it just appeared out of nowhere?

Can you please restore the .html file to wherever it came from, then go to that location and upload it to VirusTotal:

Virus Total


  • Go to VirusTotal
  • Click
    browsegk.png
  • Navigate to the html file file, select it, then press OK
  • Then click the
    send.png
    button
  • If you receive a message saying the File has already been analyzed, click Reanalyze file now.
  • Once it has finished scanning, copy and paste the results into your next post


Tom
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics Card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD
    Seagate Barracuda 2TB 7200rpm
    2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
Hello Tom.

Not the Recycle Bin but the folder at C:\Users\Alan\App Data\Local\Microsoft\Windows Mail\Local Folder\Delete Items. Originally it contained 13,970 identical files totalling 833.12MB. I used East-Tec Eraser to remove them.When I rebootedthey were back again only at 536MB.Emptied again it is now 710MB. I'll sethe file for analysis.
 

My Computer

Tom,
The analysis shows that my computer is infected with 'Trojan-Spy.HTML.Fraud.iv' although not all anti-virus programmes detected it. Have you any idea on how to remove it permanently?
Thanks for youe help.
Alan
 

My Computer

Hello Alan,

Yes, I thought something sounded a little suspicious. But it's good that we've found it now. How long have you been having this problem for? Do you use your computer for online banking? Just as a precaution, I recommend that you change your password :) Wouldn't want to take any unnecessary risks.

From what I can see, this looks like fairly recent malware. I'm currently doing a malware removal degree and the terms of that state that I cannot assist with malware removal for the duration of the course. Sorry! But I'll have a look and see who's online, then get someone else to come and give you a hand :)

What anti virus do you have? Whilst you wait for someone to come (please allow for timezone differences), I would suggest running a full scan with that.

Tom
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics Card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD
    Seagate Barracuda 2TB 7200rpm
    2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
Welcome
You may want to try to remove it with either Malwarebytes or your Antivirus. If this cannot be done, post and we will get the help of one of our malware experts.
 

My Computer

System One

  • Manufacturer/Model
    Dell XPS420
    Memory
    6 gig
    Graphics Card(s)
    ATI Radeon HD3650 256 MB
    Sound Card
    Intergrated 7.1 Channel Audio
    Monitor(s) Displays
    Dell SP2009W 20 inch Flat Panel w Webcam
    Hard Drives
    640 gb
    Cooling
    Fan
    Keyboard
    Dell USB
    Mouse
    Dell USB 4 button optical
    Other Info
    DSL provided by ATT
It is all very odd. Malwarebytes does not detect this virus at all but ZoneAlarm does. I did a complete scan of the system with ZA and racked up 3921 infectons. These were 'treated' by ZA. I ran the scan again and got another 253. Subsequent scans give me no infections *but* each time I open the Delete Folder in Windows Mail I still get either no files there or three of the infected notification files. I can't predict which one it will be. I do seem to have gained 3GB of hard drive space so I suppose we are getting somewhere.
 

My Computer

My Computers

System One System Two

  • Operating System
    Windows 8.1 Industry Pro x64
    Manufacturer/Model
    HP Pavillion Elite HPE-250f
    CPU
    Intel i7 860 Quad core 2.8 ghz
    Memory
    8 gb
    Graphics Card(s)
    ATI Radeon HD 5770 1 gb ram
    Monitor(s) Displays
    Alienware 25 AW2521HF
    Screen Resolution
    1920x1080 &1680x1050
    Hard Drives
    1 TB x2
    Other Info
    https://www.cnet.com/products/hp-pavilion-elite-hpe-250f/
  • Operating System
    Windows 2012 R2 Data center/Linux Mint
    Manufacturer/Model
    Dell Poweredge T140
    CPU
    i3 9100 3.6GHz, 8M cache, 4C/4T
    Memory
    8GB 2666MT/s DDR4 ECC UDIMM
    Screen Resolution
    1680x1050
    Hard Drives
    1 TB & 360 GB x2
    Other Info
    https://www.dell.com/en-us/work/shop/productdetailstxn/poweredge-t140?~ck=bt
I appear to have solved the problem. I removed ZA and installed a trial copy of AntiVir Premium which not only found and quarantined all the files causing the problems above but found and got rid of 7 different Trojans and a Worm that were in residence . All seems well now. I have changed my passwords. Thanks to all.
 

My Computer

Back
Top