On Wednesday, March 15, 2017 at 8:21:54 AM UTC+11, J.O. Aho wrote:
Thanks. All of the logins on my account look legitimate (I think my account is the offending one). I am getting a lot of "Postmaster notify: see transcript for details" messages in my inbox, for messages that I didn't send. I have changed my password and this has not stopped the issue. The logs suggest that the messages are being sent by a spammer to the non-existent user "admin" - at
ad...@mydomain.com.au. My mail server is sending a "User unknown" bounce, and it isn't arriving back with the sender. How can I prevent the "Undeliverable mail" messages being sent to me? Here is a relevant log entry (my server name has been altered):
Mar 13 07:52:56 myserver sm-mta[3275]: v2CKphnj003275: from=<
inc...@ekominek.com>, size=16936, class=0, nrcpts=1, msgid=<
EUnz7af_JRtrQ8WPKrSo1zJh3F9WWLWz6FKkZWG5ERg...@ekominek.co, bodytype=8BITMIME, proto=ESMTP, daemon=MTA, relay=[216.126.239.104]
Mar 13 07:52:56 myserver sm-mta[3275]: v2CKphnj003275: Milter add: header: X-Greylist: Default is to whitelist mail, not delayed by milter-greylist-4.4.3 (
mydomain.com.au [192.168.0.40]); Mon, 13 Mar 2017 07:52:56 +1100 (AEDT)
Mar 13 07:52:56 myserver sm-mta[3275]: v2CKphnj003275: Milter add: header: X-Virus-Scanned: clamav-milter 0.99 at myserver
Mar 13 07:52:56 myserver sm-mta[3275]: v2CKphnj003275: Milter add: header: X-Virus-Status: Clean
Mar 13 07:52:56 myserver sm-mta[3275]: v2CKphnj003275: Milter accept: message
Mar 13 07:52:56 myserver sm-mta[3312]: v2CKphnj003275: to=REJECT, ctladdr=<
ad...@mydomain.com.au> (2/0), delay=00:00:04, mailer=local, pri=136936, dsn=5.1.1, stat=User unknown
Mar 13 07:52:56 myserver sm-mta[3312]: v2CKphnj003275: v2CKqunj003312: DSN: User unknown
Mar 13 07:57:56 myserver sm-mta[3312]: v2CKqunj003312: timeout waiting for input from
ekominek.com. during client greeting
Mar 13 07:57:56 myserver sm-mta[3312]: v2CKqunj003312: to=<
inc...@ekominek.com>, delay=00:05:00, xdelay=00:05:00, mailer=esmtp, pri=30000, relay=
ekominek.com. [216.126.239.104], dsn=4.0.0, stat=Deferred: Connection timed out with
ekominek.com.