Jump to content

Den-B

Members
  • Content Count

    4
  • Joined

  • Last visited

Community Reputation

0 Neutral

About Den-B

  • Rank
    Newbie
  1. Thanks a lot to ALL! It was a virus/trojan infection, which my colleague's (!!!) computer was infected. In contrast to ordinary users he has administrators rights in our LAN. I was looking for mistake in servers' configuration or users computers and didn't assume that problem can came from "another side"...
  2. We are using Symantec Antivirus Corporate edition, not Enterprise edition, so SAVFMSE isn't used. And all options like "Send E-mail to sender" in SAV are completely disabled. I haven't find any settings in ORF (antispam) which can cause spam bounces, only rejecting. I'm thinking about one idea: Are there any on-line tests (similar to spamtraps) which can help me to test my configuration?
  3. I've done that and deputies show me fragment from one of the spams received at spamtrap. They supposed that virus infection can take place. But problem is that I can't find in our network any trace of activity or reason which can cause this situation. How can I accomplish this? (If we aren't ISP)
  4. I am system administrator of 83.220.45.58 (mailserv.mineraltrading.ru). 83.220.45.58 is external interface IP-address of our firewall, our public IP. This IP was listed about 1 week ago, then unlisted for a few days, and then listed again about 2 days ago. Spamcop indicates «System has sent mail to SpamCop spam traps in the past week». Our mail server running on: Windows 2003 Server SP1 + all patches; Exchange Server 2003 SP2 + all patches. Also we are using ORF as anti-spam software and Symantec Antivirus Corporate Edition for antivirus defence. Not open relay. SMTP AUTH is turned off. Delivery and non-delivery reports, out-of-office auto-replyes etc – disabled. No local accounts (it’s windows domain controller). Internet gateway running on Windows 2003 Server SP1 + all patches; ISA Server 2004 SP2 + all patches. No unusual activity and traffic were detected, including on port 25. I've read most of the FAQ's, was searching on spamcop forum and tried to apply all recommendations, but our address is still blocked. I need ask for your help and assistance. What am I doing wrong, what is misconfigured?
×