getting bouncebacks on emails i didn't send...

DJFuji

Diamond Member
Oct 18, 1999
3,643
1
76
I have a domain name and all emails to users like userdoesntexist@domain.com are automatically forwarded to my email account. Occasionally i'll get bouncebacks of emails i didn't send, but i attribute that to spoofed return addresses on spam or worm-generated emails.

However, i've received 10 bounceback emails in the last hour from domain users that don't exist. Should i be worried that someone is using my SMTP server to send spam? Or is this probably just another spoofed return address problem?

Opinions?
 

suklee

Diamond Member
Oct 9, 1999
4,575
10
81
I get these on occasion in our small biz... and I've concluded (hopefully correctly) that someone is just spoofing our addresses...
 

suklee

Diamond Member
Oct 9, 1999
4,575
10
81
Update:

This is an automatically generated email

The host you submitted at ORDB.org (xxx.xxx.xxx.xxx), has been thoroughly
checked, and does not seem to permit relaying.

Please note however, that this may be caused by extreme delays at
the servers end.

Should we at a later time receive one of our testing emails from the
server you submitted, you will receive another email, telling you that
the server is in fact an open relay. In that case, please disregard this
email.

If you know for a fact that the host you submitted is
an open relay, please resubmit it via http://www.ORDB.org/submit/.
Additionally, some administrators have been known to block our ip-address
in various firewalling devices, which may also cause our test to fail.

If your host was marked as an open relay, it has now been removed from our
database, and will be removed from the relays.ORDB.org-zone during the next
zone-rebuild.

This email is sent from an unattended mailbox, so please do not
reply to it. To find information about how to contact ORDB.org,
please visit http://ORDB.org/contact/.



Have a nice day, thank you for using ORDB.org

PS. Need this mail translated? Have a look at:
http://ORDB.org/translation/#not_a_relay
 

DJFuji

Diamond Member
Oct 18, 1999
3,643
1
76
Hm. Ok well i tried the relay test and nothing went through. And i'm fairly confident that i don't have a worm on my local box that's causing it. Do i have any other reason to worry, or is it just likely someone spoofing my domain name?