Spammer.Sality.A has been classified as malware which searches its victims’ Outlook address books and Internet Explorer cached files for email addresses, to send unsolicited and spammed email messages to. The contents of the spammed messages depend on the information Spammer.Sality.A receives from a remote server. This type of email hijack can be dastardly for the users involved as his recipients will most likely be unaware of the hijacked email and will then open any attachments, exposing their own machines to infection.
Because there are no discernable symptoms associated with this threat, the user will only be able to detect and remove Spammer.Sality.A with the help of a properly functioning security tool. This threat enters the system surreptitiously by installing itself with other malware. It may arrive in the system using a randomly generated name.
It will also modify the Windows Firewall policy list, so as to allow itself to bypass the firewall and gain access to the Internet. Once it connects to the Internet it will connect to the following server:
This is done so that the threat can obtain further instruction. Before it sends out its spam messages, Spammer.Sality.A will check if the PC’s IP address is blocked by any of the following spam-blocking services:
At the end of the day it is clear to see that this threat is not only maliciously vindictive, but clearly dangerous to any system. Take back control of your PC and destroy Spammer.Sality.A immediately. This can safest be achieved by using a genuine security tool which will permanently eradicate Spammer.Sality.A.
Danger level: 6