> ...Maybe you could try tracing down > the relaying server and alert them?
This brings up a question that I've wondered about before... In situations like this, is it possible with Sendmail, Postfix, or other technology to automatically bounce back ONE of the offending messages for EACH spoofed address back to the relaying domains Mail Admin (rather than the spoofed user address), and then reject or discard subsequent offending messages from that domain for a set period of time? How might this work with trojans that carry their own stipped down MTA? Jaimie -- TriLUG mailing list : http://www.trilug.org/mailman/listinfo/trilug TriLUG Organizational FAQ : http://trilug.org/faq/ TriLUG Member Services FAQ : http://members.trilug.org/services_faq/ TriLUG PGP Keyring : http://trilug.org/~chrish/trilug.asc
