1 Nov
2003
1 Nov
'03
08:53
Kastus wrote:
Hello,
I just received a james virus message originated at fw.suse.com (209.3.226.225) I checked both mail log and firewall log, connection was from 209.3.226.225
Did anybody else receive that? Does it mean that fw.suse.com was compromised?
Thanks, -Kastus
Generally that just means someone just spoofed the from header on the email and not comprimised anything... It's a pretty simple process and spammers have a habit of doing it fairly regularly. -- Chris