My fault or just Spam

luke_at_themango.org
Date: 02/18/04

  • Next message: Bjorn Eikeland: "vinum raid5 initializing died overnight"
    Date: Tue, 17 Feb 2004 19:29:03 -0600 (CST)
    To: freebsd-questions@freebsd.org
    
    

    I've fairly recently setup a mail server to:

    1) learn about email and server configurations and all that goes along
    with administrating it.

    2) And being able to recieve loads of email from freebsd-questions without
    fear of restriction on any other account (i.e. loss of email that I want
    to save).

    Anyhow, within the month that I've had my server running I've been
    recieving numerous emails that are obviously malicious to Windows users
    (i.e. contain an attachment with some random-letters.exe and nonsense
    about a patch). In short my concern is not that me or my wife will run
    this, sense we don't use Windows, but whether these emails are just spam
    or if it is my fault.

    If said emails are just spam, fine. Not to say that I like spam but it
    gives me a reason to learn how to setup a spam filter and/or tarpit. The
    reason I worry that it's not just spam is that there are only 2 accounts,
    mine and my wifes, and she doesn't use her's except to email me and I've
    only used mine to setup freebsd-questions and email her. So why would I be
    getting spam? So then I think maybe it's my fault.

    What I mean by my fault is, is my machine being used to relay spam and
    then I am getting bounces from the poor people recieve this crap? I really
    would hate for this to be the case. Even if said emails are not my fault
    how do I assure that I am not relaying spam unbeknown to me?

    This is a sample header from one such email. Now I'm not too sure how to
    take this.

    Return-Path: <johnny@centennialrd.net>
    Received: from mail.themango.org ([unix socket])
         by mail.themango.org (Cyrus v2.2.3) with LMTP; Tue, 17 Feb 2004
    16:06:23 -0600
    X-Sieve: CMU Sieve 2.2
    Received: from centennialrd.net (unknown [196.32.150.6])
         by themango.org (Postfix) with ESMTP id B2194450F2
         for <luke@themango.org>; Tue, 17 Feb 2004 16:06:21 -0600 (CST)
    Received: from qexstrg (jp [196.32.129.120])
         by centennialrd.net (8.12.10/8.12.10) with SMTP id i1HLwZHp022746;
         Tue, 17 Feb 2004 17:58:36 -0400
    Date: Tue, 17 Feb 2004 17:58:35 -0400
    Message-Id: <200402172158.i1HLwZHp022746@centennialrd.net>
    From: "Technical Bulletin" <arvbsichaqsbax@confidence.microsoft.com>
    To: "MS User" <njcs-hgoerlo@confidence.microsoft.com>
    SUBJECT: Newest Microsoft Patch
    Mime-Version: 1.0
    Content-Type: multipart/mixed; boundary="bicnhrvs"

    My configuration is FreeBSD 5.2.1, Postfix + Cyrus

    Thanks for any help,

    Luke
    _______________________________________________
    freebsd-questions@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-questions
    To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"


  • Next message: Bjorn Eikeland: "vinum raid5 initializing died overnight"

    Relevant Pages

    • Unexplain-able Undeliverable messages being generated
      ... My setup. ... dropped, spam is forwarded to spam@xxxxxxxxxx), firewall only accepts SMTP ... from 3rd party then delivers to server. ... sure enought the "Undeliverables" do not have a modified subject. ...
      (microsoft.public.exchange2000.general)
    • Re: OT - has my email domain been hijacked?
      ... > Some people consider the darndest things to be ham or spam. ... > a) Setup an IMAP server on your machine that is NOT outside accessible, ... > b) I grab ham samples from various mail sorts in my OE setup. ... > 13) You MUST have a trusted mail server somewhere in your chain. ...
      (Fedora)
    • Re: pop3 connector less than 15 mins?
      ... here are some of the features of Mdaemon I like that either Exchange ... I can setup infinite domains. ... SPAM filtering. ... > directly through SMTP from the sending server to the receiving server. ...
      (microsoft.public.windows.server.sbs)
    • Re: How to do rDNS. WAS: RE: educating rDNS violators
      ... It's done in the DNS server. ... As a spam prevention measure, a lot of end-user Internet providers are ... Using your own mail server as a slave to the ISP's mail server will add ...
      (Security-Basics)
    • RE: OMA and Outgoing Spam
      ... Someone hacked a user account and use it to spam emails; ... Your Exchange server is open relaying emails;(You have checked it ... Your server is under RNDR Attack. ... Microsoft is providing this information as a convenience to you. ...
      (microsoft.public.windows.server.sbs)