![]() |
![]() |
![]() |
One of the techniques virus writers use to propagate a virus is spoofing the sender's email address. This makes it almost impossible to determine which computer is infected. Here is a typical sequence of events:
1) A user receives an email with a unexpected attachment.
2) When the attachment is opened a virus is launched.
3) The virus finds email addresses in the user's address book, sent or deleted items to use in the From email field of an email.
4) Infected messages are sent out using the stolen address in the From field.
5) Often an antivirus server captures the infected message and sends a warning to the address in the From field.
6) An uninfected email user gets a mistaken virus warning even though they did not send the message.
Many companies have disabled email virus warning notifications because so many notifications are false and create confusion.
For more information you can visit the following link: spoofed sender viruses.
Posted by Wes at June 10, 2004 05:50 PM