LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 11-19-2003, 05:20 AM   #1
vittibaby
LQ Newbie
 
Registered: Aug 2003
Posts: 19

Rep: Reputation: 0
Unhappy Forge email address


Someone forged an email address from my domain (e.g. admin@mydomain.com) and send a mail to one of my users (e.g. user@mydomain.com). The email attachment contains virus!!!

I reviewed the email logs and found the following:

Nov 19 15:28:44 mail sendmail[28805]: xxxxx: from=<admin@mydomain.com>, size=xxxx, class=0, nrcpts=1, msgid=<xxxx.xxxx@mydomain.com>, protocol=SMTP, daemon=MTA, relay=<a host name> [an IP address]

Not sure if I should disclose the relay info here...

A few questions which I hope you can help me out:

- how to prevent this in the future?
- how can this be done? apparently, it's simply?!!?
- Should i do sth to follow up on this incident?

Thank you for all your help!!! Much Much Much appreciated!!!

Vittibaby
 
Old 11-19-2003, 06:21 PM   #2
chort
Senior Member
 
Registered: Jul 2003
Location: Silicon Valley, USA
Distribution: OpenBSD 4.6, OS X 10.6.2, CentOS 4 & 5
Posts: 3,660

Rep: Reputation: 76
Many e-mail worms forge the address of someone in the address book of their victim. For the rest of your questions, see this thread:

http://www.linuxquestions.org/questi...hreadid=116329
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
How does one forge the headers of an email? abefroman Linux - Security 9 08-14-2005 01:19 PM
Bugzilla from email address jkruer01 Linux - Software 2 04-30-2004 11:18 AM
Creating A Second Email Address For Email Account On Sendmail treedstang Linux - Software 1 04-27-2004 10:31 PM
email to more address at once mairul Linux - Newbie 4 03-18-2004 12:19 AM
sending an email to a email address after a perl operation meluser Programming 9 04-07-2003 01:26 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 12:50 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration