ORF反垃圾邮件系统

邮件服务器-邮件系统-邮件技术论坛(BBS)

 找回密码
 会员注册
查看: 6387|回复: 2
打印 上一主题 下一主题

[求助] 发现一些自已发给自己的垃圾邮件 ?

[复制链接]
跳转到指定楼层
顶楼
发表于 2008-12-4 16:55:35 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
昨天打开outlook express收到几封发件人与收件人都是自己的垃圾邮件,但是实际上我并没有发送过这封邮件,而且在“已发送邮件”中也没有该邮件的记录。安全模式全盘扫描,没有发现病毒!
哪位兄弟知道的能不能指点下,
谢谢
沙发
发表于 2008-12-5 14:54:29 | 只看该作者
这种情况并不是你自己给自己发的邮件,更不用担惊受怕自己计算机中招,而是你成为了反向NDR攻击的受害者,
RNDR攻击过程大致如下:
People who send UCE to e-mail recipients have discovered a method to work around the e-mail filters that are built into many e-mail messaging systems. In this scenario, the people who send UCE try to take advantage of the delivery status notification functionality in the e-mail server. In a typical e-mail messaging system, an NDR delivery status notification message is generated when an e-mail message cannot be delivered. Additionally, this NDR message typically contains the content of the undeliverable message. This behavior follows the Request for Comments (RFC) standards. Therefore, most messaging systems behave in this manner.

The person who sends UCE uses this NDR message to deliver UCE. This kind of UCE delivery is known as a reverse NDR attack. This kind of UCE delivery works in the following way:
  • Unsolicited commercial e-mail is created by using the destination recipient's e-mail address in the Sender field of that e-mail message.
  • A fictitious user name together with your domain name is added as the recipient of this e-mail message.
  • This unsolicited commercial e-mail message is sent to your domain.
  • Your e-mail server accepts this message because the message is sent to your domain.
  • Your e-mail server cannot deliver this message because the recipient does not exist.
  • Your e-mail server sends an NDR to the person who appears as the sender of this message. In this scenario, the person who appears as the message sender is the external recipient that receives the NDR from the postmaster account. The person who sends the UCE puts the intended recipient of the UCE in the Sender field of the message. Therefore, the intended recipient receives the NDR from the postmaster account in your e-mail domain.
  • The NDR is sent to the external e-mail address from the postmaster address of your domain. This NDR may contain the original UCE message.
  • The unsuspecting user might read this NDR together with the UCE message. Therefore, the UCE message has been delivered successfully to the external recipient who is listed in the Sender field of the original e-mail message.

http://support.microsoft.com/default.aspx/kb/909005/en-us/
藤椅
 楼主| 发表于 2008-12-8 10:40:12 | 只看该作者
有没有怎么方法可以解决?
谢谢!
您需要登录后才可以回帖 登录 | 会员注册

本版积分规则

小黑屋|手机版|Archiver|邮件技术资讯网

GMT+8, 2024-4-28 20:54

Powered by Discuz! X3.2

© 2001-2016 Comsenz Inc.

本论坛为非盈利中立机构,所有言论属发表者个人意见,不代表本论坛立场。内容所涉及版权和法律相关事宜请参考各自所有者的条款。
如认定侵犯了您权利,请联系我们。本论坛原创内容请联系后再行转载并务必保留我站信息。此声明修改不另行通知,保留最终解释权。
*本论坛会员专属QQ群:邮件技术资讯网会员QQ群
*本论坛会员备用QQ群:邮件技术资讯网备用群

快速回复 返回顶部 返回列表