Lately, spam appears to be send from the domain geekig.de. The sender address is spoofed. One example would be:
Return-path:So, I was flooded with approx. a thousand mails in the last 10h or so, and just because obviously people bounce mails which have been recognized as spam. I am going to take this as the final reason to turn of my catch-all-address which was a really bad idea from the start anyway.Received: from Debian-exim by hub11.mail.esat.net with spam-scanned (Exim 4.63) (envelope-from ) id 1IQKU5-0006pJ-Up for leitirns@iol.ie; Wed, 29 Aug 2007 11:09:18 +0100 X-Spam-Flag: _YESNOCAPS X-Spam-Checker-Version: SpamAssassin 3.1.7-deb (2006-10-05) on hub11.mail.esat.net X-Spam-Level: ****** X-Spam-Status: Yes, score=7.0 required=5.0 tests=URIBL_JP_SURBL, URIBL_SC_SURBL autolearn=disabled version=3.1.7-deb X-Spam-Report: * 3.4 URIBL_JP_SURBL Contains an URL listed in the JP SURBL blocklist * [URIs: dugmu.com] * 3.6 URIBL_SC_SURBL Contains an URL listed in the SC SURBL blocklist * [URIs: dugmu.com] Received: from [151.2.168.139] by hub11.mail.esat.net with esmtp (Exim 4.63) (envelope-from ) id 1IQKU5-0006mh-74 for leitirns@iol.ie; Wed, 29 Aug 2007 11:09:13 +0100 Received: from pers003 ([119.178.196.7] helo=pers003) by [151.2.168.139] ( sendmail 8.13.3/8.13.1) with esmtpa id 1yUVrx-000SUV-pj for leitirns@iol.ie; Wed, 29 Aug 2007 12:09:24 +0200 Message-ID: <000301c7ea24$a5c4d150$8ba80297@pers003> From: "Lavar Kolobkov"
Ok, now my inbox is protected because all unknown addresses are now being rejected (was: catch-all). But still, how stupid can people be. That sender-addresses are faked, because smtp was designed that way (which I think was good at that time, and is still often very nice), should be commonly known. So why bounce spam at all... I understand why some government agencies or such would not be allowed to do it (suppressing opposed views etc.), but for a private mail server?
Second thing is, that I looked through some of the mails, and there are really people using these spam protectors, where you get send a link to a website in the bounce, have to go to that website, verify that you are human (captcha), and then (ALREADY) your mail will be delivered. Isn't that _just_ easy. Ok, I am somewhat aggravated at this point ;)
Administrational stuff and other things at www.jonasfietz.de