Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

URGENT! BADMAIL GROWING FAST!

Status
Not open for further replies.

OdedShafran

Technical User
Mar 13, 2003
127
IL
ok,
this is very urgnet, i will write whatever i did.

in the last 2 days my badmail was growing in 1 mb each 1-2min!
in the QUEUE folder, the same!
i noticed the RELAY\PERMISSION ACCESS was to anonymous and everyone is allowed to send mail.
so i changed it.
now, the queue is empty (good!) but the badmail keeps growing!
i have no viruses\trojans.

i also notice, that the SYMANTEC EXCHANGE FILTERING services are taking 20%-60%cpu, so i figured maybe it is cleaning what the hackers left...
but it keeps for hours to work!
as well as my IIS server is 120MB RAM! and taking 5-10% of the cpu...

what do u think is the source of this badmail?? should i keep waiting for the EXCHANGE SYMANTEC to finish??
please ! its urgent!
thanks

Oded Shafran,
Network Administrator,
Francesca Coffee S.A.
 
It sounds like you were an open relay and all the badmail that you are recieving is just mail that is bouncing. Your probably on a "blackhole" list now. So if some other company uses that black hole list they will not be able to send you an email even thought your no longer an open relay.
 
i know that
i was an open relay!
but why i keep getting BADMAIL to the dir! even though no emails are found in QEUEU!

Oded Shafran,
Network Administrator,
Francesca Coffee S.A.
 
Badmail is mail that could not be delivered. There should be no reason you can't go in and delete items in the directory. I have a script that runs weekly and deletes everything out of the Badmail directory.
 
I have this same problem, lots and lots of badmail - during boot I will get THOUSANDS (no joking, 12-33,000 email messages) before I turn the SMTP off. what is going on... is this a bot? how can my connection even handle that kind of traffic?
 
Would you care to share the script that you use to delete the bad mail each week?

How do you schedule this?
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top