This is what I understand is happening. This is a Hacker/Phisher who is only using the list addresses, possibly on specific email addresses, the look like it is coming from the list when in actuality it is bypassing the list but he/IT forgot about the format the list uses when it forwards replies to a query. Just be aware this is happening and DO NOT
CLICK ON THE PROVIDED
LINKS as they will take you somewhere you do not want to be and try to get information from you.
BB