Chuck
Sun Jan 11 14:11:05 CST 2004
On Sun, 11 Jan 2004 05:39:26 -0800, "Neil" <neil@nwarecruitment.com>
wrote:
>I have been alerted bt BT that my Internet account is
>being used to host an Open/Email Relay/proxy causing
>spam/unsolicited emails. I have a static IP address for my
>broadband account. BT are threatening to suspend the
>account unless I can take corrective action. I cannot find
>the solution or cause and I have not reconfigured my
>server software. Any ideas?
>
>Thank you Neil
Neil,
I'm going to hope that you have already read the manual that came with
the server, and have verified all settings and made sure that there is
no server service capable of providing what BT is accusing you of.
Many mail server programs come configured by default as open relays, a
leftover setting from the days before spammers. If you're running a
mail server, disable it. Then read the manual. If not, continue.
Is your server, and the rest of your LAN, behind a router? If not,
get behind one. Immediately. If you have a proxy server that you're
using to provide internet service to the rest of your LAN, configure
it so it can only be accessed by your LAN.
Check for a parasite providing the open proxy / relay. There is a
known case of at least 5000 computers worldwide being infected with a
parasite which makes them into what you are describing.
Update and rerun your virus protection.
Run an online virus scan:
http://housecall.trendmicro.com/
Check for spyware trojans, which may not be detected as viruses. Use
HijackThis, and expert advice at SWI Forums (all free). Complete
instructions are at:
http://forums.spywareinfo.com/index.php?showtopic=5187
Find out what network traffic is running from your server. Get Port
Explorer (identify suspicious traffic)
<
http://www.diamondcs.com.au/portexplorer/index.php?page=home> and
Process Explorer (identify suspicious processes)
<
http://www.sysinternals.com/>. Both are free.
Cheers,
Chuck
I hate spam - PLEASE get rid of the spam before emailing me!
Paranoia comes from experience - and is not necessarily a bad thing.