[BlueOnyx:08785] Mail (spam) to apache ans mailer-daemon users

Jeff Folk jfolk at qzoneinc.com
Sat Oct 8 22:54:07 -05 2011


Have one of my servers receiving spam to apache and mailer-daemon users that get delivered to the admin mailbox. I'm really confused by this as these aren't supposed to be users that can have mail delivered...

How can I start trying to figure this out?

Headers:
Return-Path: <0-mr.evil-0 at bbdo.at>
Received: from [213.87.122.251] ([213.87.122.251])
	by mail.copyzone.net (8.14.4/8.14.4) with ESMTP id p9932EBS006316
	for <apache at copyzone.net>; Sat, 8 Oct 2011 22:02:15 -0500
Received: from 213.87.122.251(helo=copyzone.net)
	by copyzone.net with esmtpa (Exim 4.69)
	(envelope-from )
	id 1MMFS5-3160ia-AD
	for <apache at copyzone.net>; Sun, 9 Oct 2011 07:02:13 +0400
From: <apache at copyzone.net>
To: <apache at copyzone.net>
Subject: Would like to find a partner to enjoy life with
Date: Sun, 9 Oct 2011 07:02:13 +0400
MIME-Version: 1.0
Content-Type: text/plain;
	charset="Windows-1252"
Content-Transfer-Encoding: 7bit
X-Mailer: enxhvoad.08
Message-ID: <6898956138.UOA2B36R400793 at xyriklieqo.zuxemihbv.va>

Maillog:
Oct  8 22:02:15 mail sendmail[6316]: p9932EBS006316: from=<0-mr.evil-0 at bbdo.at>, size=1334, class=0, nrcpts=1, msgid=<6898956138.UOA2B36R400793 at xyriklieqo.zuxemihbv.va>, proto=ESMTP, daemon=MTA, relay=[213.87.122.251]
Oct  8 22:02:16 mail sendmail[6317]: p9932EBS006316: to=admin, delay=00:00:01, xdelay=00:00:01, mailer=local, pri=31517, dsn=2.0.0, stat=Sent



More information about the Blueonyx mailing list