Share via

Email body changed after 30 seconds to hacked message

hayley belcher 5 Reputation points
2026-03-09T18:03:08.19+00:00

My emails ere hacked - I have changed passwrods etc so that art all good however Emails are coming through ok but after 30 seconds the body of text completely changes to the Hackers ranson note - i have gone into rules and FOrwarding etc but nothing there that as ade a difference.

How is this happening its like magic, i get a email from say costa and unless i click it and read it straight away the text changes for ne to show a ransom message, has this happened to anyone ekse and how do i stp it so my emails dont change

Outlook | Web | Outlook.com | Account management, security, and privacy
0 comments No comments

1 answer

Sort by: Most helpful
  1. EmilyS726 222.5K Reputation points Independent Advisor
    2026-03-09T18:35:42.38+00:00

    Hello,

    I am going to share with you the comprehensive list of things to do, please feel free to skip those you already did. This process can take a bit time, so please be patient as you go through it.

    Please complete these steps on a computer, not on a smartphone or tablet.

    ====================

    First, go to https://www.outlook.com and sign in.

    Click the gear icon in the top right corner to open Settings.

    Under Mail, review the following areas:

    Rules

    If any rules are listed, delete all of them.

    Conditional formatting

    If anything is set up there, delete it.

    Forwarding and IMAP

    If you see any entries or settings you did not create, remove them. Turn off POP and IMAP.

    Junk

    Review Safe sender and blocked list. If you don't recognize any, remove them.

    After that, exit Settings and return to outlook.com.

    Open the To Do section by clicking the blue checkmark icon on the left side. Delete anything there that was not created by you.

    ====================

    Go to https://account.live.com.

    Under Your info > Sign-in preferences, review all aliases on the account. If you see any alias you do not recognize, remove it.

    Next, go to the Devices section of your Microsoft account and remove any devices you do not recognize.

    ====================

    Please also do the following in Security section

    Change your password

    Enable two-step verification

    ====================

    Go here https://account.microsoft.com/privacy/app-access Click on "Don't allow" for anything you don't recognize.

    =======================

    Then go to Security > Manage how I sign in and make sure all contact information belongs to you.

    On that same page, scroll down to App passwords and remove any existing app passwords.

    Also on the same page, click on Sign out everywhere. This is intended to disconnect any active sessions that may still be connected. Please note that this can take up to 24 hours to fully take effect.

    ====================

    In addition, this problem can sometimes be caused by a malicious script or infection on one of your devices.

    Are you using a Windows computer to check email? Do you use an email app such as Outlook Classic or New Outlook?

    If so, please open the app and remove the account from the app settings.

    Then go to the Microsoft Safety Scanner download page:

    https://learn.microsoft.com/defender-endpoint/safety-scanner-download

    Download the 64-bit version, run a full scan, and let me know what the final results say.

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.