[ale] Apparently used in spam or virus distribution

Fletch fletch at phydeaux.org
Tue Aug 19 10:53:06 EDT 2003


>>>>> "John" == John Mills <johnmills at speakeasy.net> writes:

[...]

    John> As I am not aware of sending any mail to these recipients
    John> and do not have copies of the suspect mail, I can't tell
    John> whether they represent a compromise of my Linux-2.4.20
    John> system, the Pine newsreader, fetchmail, sendmail, or some
    John> other link of the chain.

    John> Any suggestions for learning if this is really my problem?


Most likely you've been joe job'd, presuming you're all patched up.
I've gotten several bounces for mail from a non-existent `test'
account from my domain.


http://www.spamfaq.net/terminology.shtml#joe_job


You might want to have one of the RBLs take a poke at your system just
to verify to yourself that you don't have an open relay.


http://ordb.org/lookup/ 

-- 
Fletch                | "If you find my answers frightening,       __`'/|
fletch at phydeaux.org   |  Vincent, you should cease askin'          \ o.O'
770 294-0820 (m)      |  scary questions." -- Jules                =(___)=
                      |                                               U
_______________________________________________
Ale mailing list
Ale at ale.org
http://www.ale.org/mailman/listinfo/ale





More information about the Ale mailing list