Domain Being Used To Spam

Discussion in 'Site & Server Administration' started by ORiN, Apr 30, 2007.

  1. #1
    I have noticed recently that my domain is being used to send out spam. I don't know how but people are sending out emails using emails using my domain. That means people are receiving emails from non-existent email addresses from my domain. How do I stop that?
     
    ORiN, Apr 30, 2007 IP
  2. lorien1973

    lorien1973 Notable Member

    Messages:
    12,206
    Likes Received:
    601
    Best Answers:
    0
    Trophy Points:
    260
    #2
    they are most likely just spoofing the headers or altering the from section to make it appear its coming from, but its really not.
     
    lorien1973, Apr 30, 2007 IP
  3. ORiN

    ORiN Well-Known Member

    Messages:
    753
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    130
    #3
    Which is flooding my mailbox since the spam seem to be sent to addresses with auto-responders.
     
    ORiN, Apr 30, 2007 IP
  4. lorien1973

    lorien1973 Notable Member

    Messages:
    12,206
    Likes Received:
    601
    Best Answers:
    0
    Trophy Points:
    260
    #4
    hard to stop that, if not impossible. spoofing headers isn't difficult.
     
    lorien1973, Apr 30, 2007 IP
  5. ORiN

    ORiN Well-Known Member

    Messages:
    753
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    130
    #5
    Is there any way to implement some security or prevent it?
     
    ORiN, Apr 30, 2007 IP
  6. clancey

    clancey Peon

    Messages:
    1,099
    Likes Received:
    63
    Best Answers:
    0
    Trophy Points:
    0
    #6
    It is impossible to prevent spammers from pretending that email comes from someone at your domain. Spammers always use other people's email addresses in the sender and reply to portions of the email header. The only way this can be stopped is if every single mail server and relay point on the internet verifies that the senders email originated from the mail server(s) listed for the specific domain.

    This is not impossible. But, it is not being done. Doing so would involve gaining the cooperation of hundreds of thousands, perhaps millions of individuals around the world. Mistakes in implementation will happen, as well as issues when there are delays/problems getting all MX records for domains.
     
    clancey, May 1, 2007 IP
  7. eddy2099

    eddy2099 Peon

    Messages:
    8,028
    Likes Received:
    568
    Best Answers:
    0
    Trophy Points:
    0
    #7
    If it is not being sent from your server, there is nothing much you can do about it. Some trojan does that by using infected account's email Address Book and send out those spams and so on. As long as the email header does not show that it originates from your server, you should be alright, it is just irritating.
     
    eddy2099, May 1, 2007 IP
  8. inworx

    inworx Peon

    Messages:
    4,860
    Likes Received:
    201
    Best Answers:
    0
    Trophy Points:
    0
    #8
    Well, I can help you little if you post the headers here.
     
    inworx, May 2, 2007 IP
  9. chilli_source

    chilli_source Active Member

    Messages:
    58
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    61
    #9
    if theyre spoofing from non-existant emails, then change your domain's email settings so theres no catch-all address (that way the bounces/autoreplies won't end up in your inbox and would instead be rejected by your mailserver)

    hope this helps!
     
    chilli_source, May 3, 2007 IP
  10. BillCarson

    BillCarson Peon

    Messages:
    12
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #10
    You can block it many way. Like Chilli says above, just use "No catch-all" setting. Then you will receive only emails for which you have the addresses and rest discarded automatically. If you can't do that because any important message or potential customer of yours can be discarded than just create a few filters. You can discard hundreds of emails by just filtering and blocking few main "From" addresses like "Returned mail", "Mailer Demon" or "Mail delivery failed".

    This is a world-wide problem. None of the governments are doing anything about it. Biggest wastage of man/work-hours in every country.

    Bill
     
    BillCarson, May 3, 2007 IP
  11. matrafox

    matrafox Active Member

    Messages:
    164
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    88
    #11
    I subscribe for that solution to.
     
    matrafox, May 3, 2007 IP
  12. ORiN

    ORiN Well-Known Member

    Messages:
    753
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    130
    #12
    I am trying out the disabling of the catch-all function so that I don't get those bullshit again.
     
    ORiN, May 4, 2007 IP