On Wed, 2004-01-28 at 23:43, Brad Helden wrote:
> Today's e-mail included a nice attempt to send a virus to me with the 
> sender listed as a Vic Park car-yard. I contacted the yard and warned 
> the owner what had taken place

Please avoid replying to these messages, or trying to inform the
apparent sender about them. The virus picks random To: and From:
addresses from the infected user's address book, so all you're doing is
replying to a RANDOM THIRD PARTY and telling them they have a virus they
don't in fact have.

The real problem is an unknown 3rd computer on the 'net that is only
identifiable by it's IP address in the Received: headers. Since the user
is probably on a dynamic dial-up IP address, this address may not even
be accurate. All you know is that a computer with IP address [x] at time
[x] sent you a virus. Yay.

Mass-mailing worms and trojans have been doing this spoofing for a few
years now. The best thing to do is ignore the messages. If you run a
mail server, please reconfigure it so that it doesn't bounce infected
mail but silently deletes it or notifies only the _recipient_, because
at present bounces are becoming more of a problem than the original
viri.

Craig Ringer