Re: 3d party virus address
From: Br0wnbear (brownbearat_at_canadadotcom.net)
Date: 05/02/04
- Next message: Kaylene aka Taurarian: "Re: Worm"
- Previous message: LM Cheang: "Re: Delete Infected Attachment Will Kill Virus?"
- In reply to: Jerome Cates: "3d party virus address"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Sat, 01 May 2004 20:53:54 -0400
On Sun, 2 May 2004 07:47:19 +1000, "Jerome Cates"
<CatesNO2001THANKS@hotmail.com> wrote:
>Lately getting a few announcements that I have send a virus to whoever.
>Always someone I don't know. Since my system is certified virus-free, thank
>you AVG, it must be one of those viruses that has infected a 3d party system
>who has in the address book both mine and the party I received the email
>from. Some of these emails are politely advising, some are straight
>defamatory.
>
>How can I trace the 3d party's email address if at all?
>
>thanks
>
>
>---
>Outgoing mail is certified Virus Free.
>Checked by AVG anti-virus system (http://www.grisoft.com).
>Version: 6.0.672 / Virus Database: 434 - Release Date: 28/04/2004
>
jerome
I normally get a second opinion of any terminal that is "accused" of
sending malware by using an online scanner.
Unless you have the original header, I advise the originator of the
bounce back that the terminal is clean and that most viruses forge
the from line and to visibly read the header of the infected e-mail.
They should be tracing the message back through American Registry
Internet Numbers (ARIN) and find out the originators ISP and advise
the abuse account.
Its normally manual labour they don't do, that they have their AV
product or e-mail Server send the message to you by scanning the
failed messages From line.
hth
jbrown
- Next message: Kaylene aka Taurarian: "Re: Worm"
- Previous message: LM Cheang: "Re: Delete Infected Attachment Will Kill Virus?"
- In reply to: Jerome Cates: "3d party virus address"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]