Web Hosting Talk







View Full Version : SPAM - from wht smtp


orangeman
05-10-2002, 03:59 PM
isn't it just terrible when you receive spam mail? i rarely get it so it's quite distressing when i do... read:

Return-path: <jrnatalie_jkl@usa.net>
Envelope-to: martin@xyz.com
Delivery-date: Fri, 10 May 2002 05:27:45 -0400
Received: from [211.250.221.194] (helo=211.250.221.194)
by xyz.xyz.com with smtp (Exim 3.35 #1)
id 1766gf-00018i-00
for martin@xyz.com; Fri, 10 May 2002 05:27:42 -0400
Received: from unknown (HELO anther.webhostingtalk.com) (205.220.75.34) by asy100.as122.sol.superonline.com with smtp; May, 10 2002 5:13:20 AM -0000
Received: from rly-xw01.mx.aol.com ([153.196.56.114]) by da001d2020.lax-ca.osd.concentric.net with SMTP; May, 10 2002 4:11:23 AM -0100
Received: from [110.188.46.152] by mta05bw.bigpond.com with QMQP; May, 10 2002 3:03:34 AM +1200
Received: from [14.42.188.81] by sydint1.microthin.com.au with asmtp; May, 10 2002 2:15:19 AM -0700
From: Natalie <jrnatalie_jkl@usa.net>
To: Undisclosed Recipient
Cc:
Subject: I can't believe she said this
Sender: Natalie <jrnatalie_jkl@usa.net>
Mime-Version: 1.0
Content-Type: text/html; charset="iso-8859-1"
Date: Fri, 10 May 2002 05:27:39 -0400
X-Mailer: Microsoft Outlook Express 5.00.2919.6700
Message-Id: <E1766gf-00018i-00@xyz.xyz.com>


apparently web hosting talk have an open smtp server? or is there someone corrupt (mod...) using their smtp server to send just mail? i find this kind of thing irritating. the email was for a pornographic webcast.

i quote

"So we decided to capture what we love doing best on camera and show you."


not pretty...

Thanks,
Martin

appletreats
05-10-2002, 05:24 PM
Probably faked, I think it came from Korea. Or at least a Korean network, according to SpamCop.

Chicken
05-10-2002, 10:08 PM
Originally posted by orangeman
Received: from unknown (HELO anther.webhostingtalk.com) (205.220.75.34) by asy100.as122.sol.superonline.com with smtp; May, 10 2002 5:13:20 AM -0000
Received: from rly-xw01.mx.aol.com ([153.196.56.114]) by da001d2020.lax-ca.osd.concentric.net with SMTP; May, 10 2002 4:11:23 AM -0100
Received: from [110.188.46.152] by mta05bw.bigpond.com with QMQP; May, 10 2002 3:03:34 AM +1200
Received: from [14.42.188.81] by sydint1.microthin.com.au with asmtp; May, 10 2002 2:15:19 AM -0700

Martin, if you actually run the IPs listeed, you'll notice that they are all forged, they don't belong to the servers listed, nor is 'anter' our server. Everything is indeed faked, and yes, we've got loads of similar notifications. Just some ******* using the site name to push their garbage. Nice isn't it?