Has any of you seen this? The SPAM mail sender sends an E-mail from <mailto:[EMAIL PROTECTED]>[EMAIL PROTECTED] i.e. makes it look like you re sending yourself an E-mail so that the SPAM comes through.
I hate to ask, but have you ever looked at the return address on spam? About 99.9% use a fake return address (one not belonging to the spammer). While many of them are made up (made up domains, or made up accounts on real domains), many are real addresses. It's called a "Joe Job" when this happens. Spammers have been doing it for many years.
Of course, since our domain is white listed, such Emails automatically pass all SPAM tests.
That is why we recommend to our Declude JunkMail customers that they never whitelist their own domain. Doing so gives a free pass to spammers. Many spammers know that lots of domains are accidentally set up to whitelist their own domain, so they choose a return address on your domain.
The easy way I know that the E-mail did not come from me (other than the obvious content of the message and the fact that I know I did not send myself the mail), is based on the originating IP Address.
That's the only way, too -- since the IP is the only non-forgeable (technically, the only 'nearly impossible to forge') piece of information about the spam.
Any suggestions or ideas on how to tackle this problem?
Turn off the whitelist for your own domain. :)
-Scott
---
Declude JunkMail: The advanced anti-spam solution for IMail mailservers.
Declude Virus: Catches known viruses and is the leader in mailserver vulnerability detection.
Find out what you've been missing: Ask about our free 30-day evaluation.
--- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)]
To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/ Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/
