I have received an e-mail, and it seems like it was send from company mailserver (e-mail address, from which it comes, is a user address on the mailserver email@example.com)
The properties of the message looks thus :
Received: from secure.smtpmailserver.com [126.96.36.199] for mail-local (EHLO
secure.smtpmailserver.com) via SMTP; Fri, 13 May 2005 10:00:25 +0300
Received: (qmail 16605 invoked by uid 10001); 13 May 2005 07:06:25 -0000
Date: 13 May 2005 07:06:24 -0000
My question is, Can I find the real sender of message, it is possible to be sent from intranet network? Can I find who is it?
secure.smtpmailserver.com (188.8.131.52) I found it is India.
243.15.164.167 I don't found where is it.
Any Ideea, how it was possible to send that message?,
do traceroute, whois, contact the domain administrator of the mail server to stop emailing you -- this is the basic i know, if this annoying you filter from your mail server and add blacklist domain that you didn't like