[svlug] somebody trying to use me for spam?

Gordon Vrololjak gvrdolja at nature.Berkeley.EDU
Fri Apr 18 14:06:43 PDT 2003


Hello,
Just wondering if anyone else has been seeing this in their logs?  (More
detailed log at bottom of email.)

Apr 17 20:16:50 wilfred sendmail[10340]: NOQUEUE:
ts003d0158.nyc-ny.xod.concentric.net [66.236.160.158] did not issue
MAIL/EXPN/VRFY/ETRN during connection to MTA

Best I could glean from the web was it was someone trying to see if they could
somehow use our server to relay spam.  Anyone else have insights?
They were doing it at 10pm, 1am, 2am,3am, 4am... and then they stopped.

Also, I've complained a lot to abuse at xo.com and get little more than an
automated response.  People routinely portscan from there and send me spam
quite regularly.

\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\
Gordon Ante Vrdoljak                           	      Electron Microscope Lab
ICQ 23243541   http://nature.berkeley.edu/~gvrdolja   26 Giannini Hall
gvrdolja at nature.berkeley.edu                          UC Berkeley
phone (510) 642-2085                                  Berkeley CA 94720-3330
fax   (510) 643-6207 cell (510) 290-6793

Security Violations
=-=-=-=-=-=-=-=-=-=
Apr 17 20:16:50 wilfred sendmail[10340]: NOQUEUE: ts003d0158.nyc-ny.xod.concentric.net [66.236.160.158] did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA
Apr 17 20:25:42 wilfred sendmail[10359]: NOQUEUE: ts003d0158.nyc-ny.xod.concentric.net [66.236.160.158] did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA
Apr 17 20:29:50 wilfred sendmail[10360]: NOQUEUE: ts003d0158.nyc-ny.xod.concentric.net [66.236.160.158] did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA
Apr 17 20:34:46 wilfred sendmail[10371]: NOQUEUE: ts003d0158.nyc-ny.xod.concentric.net [66.236.160.158] did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA

Unusual System Events
=-=-=-=-=-=-=-=-=-=-=
Apr 17 20:16:50 wilfred sendmail[10340]: NOQUEUE: ts003d0158.nyc-ny.xod.concentric.net [66.236.160.158] did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA
Apr 17 20:25:42 wilfred sendmail[10359]: NOQUEUE: ts003d0158.nyc-ny.xod.concentric.net [66.236.160.158] did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA
Apr 17 20:29:50 wilfred sendmail[10360]: NOQUEUE: ts003d0158.nyc-ny.xod.concentric.net [66.236.160.158] did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA
Apr 17 20:34:46 wilfred sendmail[10371]: NOQUEUE: ts003d0158.nyc-ny.xod.concentric.net [66.236.160.158] did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA



More information about the svlug mailing list