I think a combination of serveral solution mentioned in this thread would
be good.

1. Standard human and machine readable bounces
2. This bounces should contain the orign header of the virus mail.
3. The mail server shouldn't bounce mails, if the virus is known to
 forged the return path.


