Author: J.Healy (29 Oct 11 2:16pm)
Hi there,
I've recently noticed a lot of activity where a variety of third-party servers are attempting to send mails to addresses of the format firstname.lastname@mydomain.com. The mails are coming from lots of different mail servers, and lots of different names are attempted.
These stand out because there is no valid mail account on my server with this format. I'm at a loss as to where they are coming from. If it's a brute force spamming attempt, it would seem to be a pretty expensive one for the spammer - the rate of misses would be enormous.
Then it dawned on me, could these names have been triggered by the honeypot on my server? Can I check?
Thanks.
|