Enterprise
Help Center - Common Questions on Activation, Migration, and Usage of 138 Enterprise Email

Summarizes common questions about 138 Enterprise Email regarding custom domain binding, email migration, multi-device login, anti-spam settings, and global email delivery, providing enterprise users with clear usage guidelines and service boundary descriptions.

What to Do If Your Personal Business Email Password Is Compromised: Recovery & Security Steps

If your personal business email password is leaked or suspected to be compromised, immediately change your password via the webmail portal, enable sender authentication checks (SPF, DKIM, DMARC), review recent login activity, and notify your domain administrator or 138 Enterprise Email support to freeze suspicious outbound sending. Do not wait for bounce-back errors or spam complaints to act.

Immediate Recovery Steps

  1. Change Password via Webmail: Log in to the 138 Enterprise Email webmail interface and update your password immediately. Use a strong, unique password not reused on other platforms.
  2. Force Logout on All Devices: After changing the password, all active sessions on PC clients, mobile apps, and third-party IMAP/POP/SMTP clients will require re-authentication. This cuts off unauthorized access.
  3. Check Sent Folder and Login Logs: Review the 'Sent' folder for unauthorized emails. If your account supports login history, check for logins from unknown IP addresses or regions.
  4. Notify Administrator: If you are part of a small team or SOHO setup, inform the domain administrator to monitor account status and temporarily restrict sending if abuse is confirmed.

Security Hardening After Recovery

  • Verify Domain Authentication: Ensure your domain has SPF, DKIM, and DMARC records correctly configured. 138 Enterprise Email supports these sender authentication mechanisms to reduce spoofing and improve deliverability.
  • Enable Spoofed Email Alerts: Use the built-in spoofed email identification and unknown sender alerts to flag suspicious inbound messages that may be part of a phishing chain.
  • Audit Forwarding Rules: Check for unauthorized auto-forwarding rules that may have been set by an intruder to exfiltrate data.

Boundaries and Limitations

138 Enterprise Email provides security features that reduce risk, but no system can guarantee 100% interception or absolute safety after a password leak. The service does not automatically reset passwords or monitor personal device security. Recovery of deleted emails or reversal of sent spam is not guaranteed and depends on server retention policies and recipient server actions.

Next Steps

If you cannot log in to change your password, or if you detect ongoing abuse, contact 138 Enterprise Email official support immediately via the service portal. Provide your domain name, account email, and any evidence (e.g., original emails, headers) to expedite investigation. For long-term protection, consider regular password rotation and multi-device session audits.