recieving undeliverable reciepts of spam mails that seem to be coming from my domain


 
Thread Tools Search this Thread
Special Forums Cybersecurity recieving undeliverable reciepts of spam mails that seem to be coming from my domain
# 1  
Old 12-03-2008
recieving undeliverable reciepts of spam mails that seem to be coming from my domain

Hi
I am getting undeliverable reciepts for what look like spam emails coming from my domain. Here is an example:

Your message did not reach some or all of the intended recipients.
Subject:Attack your baby, she wants
Sent:02/12/2008 01:45

The following recipient(s) cannot be reached:
blah@blah.com on 02/12/2008 01:45
The message reached the recipient's e-mail system, but delivery was refused. Attempt to resend the message. If it still fails, contact your system administrator.
< server.server.com #5.2.0 SMTP; 550 ######## SPAM EMAIL NOT ACCEPTED ########>

The server listed at the bottom is listed second on the list of mx records for the domain the emails seem to be coming from.
What should I do to get rid of these? Should I be worried etc.
# 2  
Old 12-05-2008
You might not need to worry. These messages might be simple forgeries using a From address that has your domain in it. Check to see if the messages are actually being SENT from your server. Then you have to worry.
# 3  
Old 12-05-2008
Yeah I looked at the message headers and they arent being sent by us (phew!) - the word seems to be 'sit it out' but it realy makes me angry since we are a business that depends on email, and being blacklisted would be apolcalyptic....

Out of interest, why do mail servers relay mail from ISPs that allow spammers? Surely all the spam in the world could be solved by a law that says:

It is illegal for ISPs to allow spammers on their network, or recieve mail from an ISP that allows spammers.

?
# 4  
Old 12-05-2008
Ahem. Welcome to the club.

There are a couple of blacklisting sites. Scan them regularly to see if your host is blacklisted. If it is, appeal immediately.

As far as your legal question... there are some laws that say that, but who's going to enforce indonesian hackers spamming Canadian businesses using a German domain?
# 5  
Old 04-17-2009
edzillion:
Quote:
What should I do to get rid of these? Should I be worried etc.
I know this post is quite old, but just so you know, the spammer most likely forged its reply address using an email address from your domain. Spammers forge reply addresses of legitimate email addresses all the time. Usually they move on to others and you have to wait it out. Hopefully by now you no longer have this issue. Though I do not know if they are targeting an actual email address of yours or sending to a "dummy" email address at your domain: one thing that might help is if you disable your catch all and send the email sent to non-existing accounts to dev/null.

edzillion:
Quote:
Out of interest, why do mail servers relay mail from ISPs that allow spammers? Surely all the spam in the world could be solved by a law that says:

It is illegal for ISPs to allow spammers on their network, or recieve mail from an ISP that allows spammers.
Another thing now is spam has moved to botnets, so spam is being sent from so many originating IPs that blocklisting them all is nearly impossible, so this is why mailservers will accept some mail from seemingly spammy ISPs. Sometimes there are blacklists (BLs) that get too blacklist happy and end up blocking huge portions of the Internet, say blocking a /24 over a few spam complaints. A /24 range of IP addresses is 256, so innocent users are in that block. Sometimes it has to be done so that an ISP will even notice, so you always have two sides of the story in minimizing spam. When it gets that unreasonable, mail admins move onto other blacklists to use. Yes, some ISPs definitely do not take care of their spamming issues enough, while others are more responsible. Some BLs I recommend are Spamhaus and CBL.

Spam is considered illegal in many countries around the world, however, catching and prosecuting spammers is extremely difficult, especially since some spammers hide in countries that have government officials who choose not to cooperate with international organizations such as Interpol. Better coordination is taking place, but it is very difficult to prosecute say a Latvian-based spam group that spams shucking pharma from botnets in Brazil to recipients in France.

Last edited by soted; 04-17-2009 at 04:46 AM..
Login or Register to Ask a Question

Previous Thread | Next Thread

10 More Discussions You Might Find Interesting

1. UNIX for Dummies Questions & Answers

postfix config: how to relay mails for only one user of a certain domain

Hello there, First of all I tell you that this is my first postfix installation so please be patient... I have following scenario: fetchmail --> postfix --> amavis-new --> postfix --> exchange 2010. Everything -except exchange ;-)- runs on an opensuse 12.1 box. Now, I have a list of... (2 Replies)
Discussion started by: lpacor
2 Replies

2. UNIX and Linux Applications

postfix config: how to relay mails for only one user of a certain domain

Hello there, First of all I tell you that this is my first postfix installation so please be patient... I have following scenario: fetchmail --> postfix --> amavis-new --> postfix --> exchange 2010. Everything -except exchange ;-)- runs on an opensuse 12.1 box. Now, I have a list of... (0 Replies)
Discussion started by: lpacor
0 Replies

3. UNIX for Advanced & Expert Users

postfix config: how to relay mails for only one user of a certain domain

Hello there, First of all I tell you that this is my first postfix installation so please be patient... I have following scenario: fetchmail --> postfix --> amavis-new --> postfix --> exchange 2010. Everything -except exchange ;-)- runs on an opensuse 12.1 box. Now, I have a list of... (0 Replies)
Discussion started by: lpacor
0 Replies

4. Shell Programming and Scripting

Need to get return code from mutt if an address is invalid/undeliverable from Unix shell script

I am using mutt on ksh Unix to send emails to addresses plucked from the database. If the "To:" email address is not longer valid and so the email is not sent to the "To:" recipient, but is sent to the valid cc address, I need to be able to get an error code returned to the shell script so that... (3 Replies)
Discussion started by: jzuber
3 Replies

5. Linux

incoming mails not coming

I am using Linux box. i am able to send mails through sendmail to local and other domains. i am not receving any incoming mails. dovecot service is running. (4 Replies)
Discussion started by: harishindn
4 Replies

6. Programming

scripting for recieving a prompt

I have to run a script provided by a vendor. Its an executable so I can't change it. basically after I call it it prompts me for a password. The script does not provide a way for me to pass a password with the command that calls the script. I would like to automate running this script from... (5 Replies)
Discussion started by: guessingo
5 Replies

7. Linux

Mail drops into spam box of yahoo from a single domain

The mails are reaching from all my domains (hosted in same server) to yahoo properly when tested. But all the mails from a particular domain out of many domains hosted in the server sent to yahoo reaches yahoo's spam box. The host says that this problem is nothing to do with them since it works... (0 Replies)
Discussion started by: lampscholar
0 Replies

8. What is on Your Mind?

Where is "SPAM" coming from?

No, i do NOT mean spam itself, but the word "spam". Here is my shot, which implies a historical dimension of the word, most people might not be aware of: Sine Prudentia Agitare et Molestare. What does that tell us about the spamming habits of the ancient Romans? bakunin (1 Reply)
Discussion started by: bakunin
1 Replies

9. Shell Programming and Scripting

mailx undeliverable

hello! this is my first post in this forum :) when sending mail from unix, using the mailx facility, does it save a copy of the sent mail anywhere on the server? Or if the mail is not delivered to the recipient, does it write a notification to the user about the status of the mail? thanks! (0 Replies)
Discussion started by: starla0316
0 Replies

10. Post Here to Contact Site Administrators and Moderators

Why am I not recieving email notification?

I have been a member for almost a year now. I have always recieved email notifications when I select "subcribe to this thread" at the bottom of posts that I reply to. However, over the last month or so, I have not been recieving email notification of replys to posts I respond to. I have... (6 Replies)
Discussion started by: Kelam_Magnus
6 Replies
Login or Register to Ask a Question