Jump to content

What Are They Looking For?


couttsj

Recommended Posts

Posted

For the past few weeks, our pseudo SMTP server has been receiving numerous strange connections that I do not understand. Overall attempts to deliver mail are down, but we are seeing many of these:

1. 70.75.146.190 on port 55628|10:09:08

1. EHLO

1. HELO

1. QUIT

1. Closed.|10:09:08

from many different IP addresses and locations. Obviously it is a BOT Net, but what are they looking for? There is no MAIL FROM: or RCPT TO:, just EHLO, HELO, and QUIT.

J.A. Coutts

Posted

Live emails and no bounces.

Telus Communications got flooded with those a few years back (enough to bring down their email system) and that's what they said they were.

Cheers!

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...