Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations biv343 on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Incompletes email headers

Status
Not open for further replies.

jlh1

MIS
Mar 26, 2001
65
US
My email users received empty email (No from, to, subject or body information) several times a day. I have looked at the headers to try to determine how the email gets routed to the machine and more importantly how to set a filter to block these emails.

This is an exact header from one of these emails. I have “x” out my email server’s address and host name but I believe that the ip number in the brackets is from the real originating machine. Could some one explain how these emails are being delivered?

I run an Ipswitch ver 8.12 email server running in windows 2000 server with Outlook clients on the users workstations.


Received: from xxx.xx.xxx.xxx [81.198.23.201] by my.mailserver.com
(SMTPD32-8.12) id A38D12C60310; Tue, 21 Dec 2004 08:22:21 -0500
Received: from noaa.rsprog.co.yu ([206.223.136.195])
by calcium.rsprog.co.yu (Sun Java System Messaging Server 6.1 HotFix 0.01
(built Jun 24 2004)) with ESMTP id <0F6X00Y[6
X-UIDL: 315060582


Thanks
John
 
you seem to be missing the message id line, but below is some info for you

located just NW of Stockholm

% This is the RIPE Whois query server #2.
% The objects are in RPSL format.
%
% Rights restricted by copyright.
% See inetnum: 81.198.23.0 - 81.198.23.255
netname: APOLLO-HOME-DSL-SSG--MDSL23
descr: Home DSL SSG - MDSL
descr: Riga
country: LV
admin-c: KR559-RIPE
tech-c: KR559-RIPE
tech-c: JS2702-RIPE
status: ASSIGNED PA
notify: lir@apollo.lv
mnt-by: LTK
changed: janis.jansons@verdi.lv 20040413
changed: ripe-dbm@ripe.net 20040429
source: RIPE
 
Thanks for the quick response.

That is the complete header from the email copied from Outlook .

The message id line is missing from the outlook header.

 
it appears that the person sending the emails is using a relay service:

Global SMTP Relay Server
Universal SMTP relay server. Send outgoing e-mail from any ISP. Ideal for travellers.

contact mailserver.com - give them the message id A38D12C60310 and ask that they look into this matter. also provide them the info in my previous post.
 
do me a favor and check one more thing.

if you still have any of the blank emails, right click in the preview pane and click on "Select All" and let me know if anything shows up.

thanks.
 
Sorry it took so long.

I did as you asked and nothing appeared, I tried to copy / paste the body of the email to a text document and nothing was there.

 
did you contact mailserver.com?

are you still getting the emails?
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top