On Thu, 27 Sep 2007, Martin Hannigan wrote:
They randomize the name on the subject line. Is this any particular virus/malware/zombie signature
Nothing particularly new. The Bots have been pumping this one out for at least a month, although the subject line has a few variations besides just changing the name. I guess they just finally got around to you.
and any suggestion on how to defend against it besides what I'm already doing (which is all of the obvious, rbls, spam appliances, hot cocoa, etc.)?
See all the previous mail threads about ISPs not doing anything :-) Stop the bots on your networks; work with people to stop the bots on other networks; work with law enforcement to put the criminals in prison. In the mean time, continue to spend on resources to mail servers, security appliances, and more blacklists.