I have been using Ability Mail Server v2.58 for about a year now and I am constantly batteling spammers.
If I enable the relay ability through the smtp tab, spammers bounce spam off of my server and put my domain in the return address. Unfortunately, I only notice it when I receive thousands of "bounced" mail notices from bad e-mail addresses in the spammer databases. When I shut down relay ability, I no longer can receive e-mail.
I even have smtp authentication activated and they still are able to relay off me without a password.
Recently, I have been having a further issue where I am receiving spam sent from registered account to a registered account (see header below):
------------------------%<-------------------------%<---------------------------------------------
Received: from noname-32121848 ([87.205.191.32]) by keysfunding.com
with SMTP (Code-Crafters Ability Mail Server 2.58)
for <paulc@keysfunding.com>;
Tue, 16 Oct 2007 07:25:00 -0400
Received: from Merle Barry (10.15.12.15) by noname-32121848 (PowerMTA(TM) v3.2r4) id hfp33o46d45j79 for <paulc@keysfunding.com>; Tue, 16 Oct 2007 01:24:58 +0100
Message-Id: <20071016022458.8752.qmail@noname-32121848>
To: <paulc@keysfunding.com>
Subject: <imposter> October 75% OFF
From: VIAGRA ® Official Site <paulc@keysfunding.com>
MIME-Version: 1.0
Content-Type: text/html; charset="iso-8859-1"
Content-Transfer-Encoding: 8bit
------------------------%<-------------------------%<---------------------------------------------
Standard spam that we've all seen before but the incredible part is that every user on my mail server (even those that are never used or that I just use as internal e-mail accounts) receives the message! Are the spammers able to hack through and see my user list?
Anyone have any advise on how to stop all of this?