skullys Posted September 4, 2020 Posted September 4, 2020 Have received numerous bounce back emails over the last couple of days, that may be related to spoofing (password compromise).Suspension related to this? username: skullyserver: Tommymain domain: skullythepirate Thanks for looking into this!
skullys Posted September 4, 2020 Author Posted September 4, 2020 (edited) One additional bit of info... Ths email account I was receiving bounce back was ... skully@thepiratestore.com Here is raw source from one of the bounced emails... Return-Path: <>Delivered-To: skully@thepiratestore.comReceived: from tommy.heliohost.org by tommy.heliohost.org with LMTP id /lJvMytdT18k8wAAY4nxBQ (envelope-from <>) for <skully@thepiratestore.com>; Wed, 02 Sep 2020 08:51:55 +0000Return-path: <>Envelope-to: skully@thepiratestore.comDelivery-date: Wed, 02 Sep 2020 08:51:55 +0000Received: from mailnull by tommy.heliohost.org with local (Exim 4.92) id 1kDOUl-000GB4-MN for skully@thepiratestore.com; Wed, 02 Sep 2020 08:51:55 +0000X-Failed-Recipients: jerromebardesley@aol.comAuto-Submitted: auto-repliedFrom: Mail Delivery System <Mailer-Daemon@tommy.heliohost.org>To: skully@thepiratestore.comContent-Type: multipart/report; report-type=delivery-status; boundary=1599036715-eximdsn-1607433541MIME-Version: 1.0Subject: Mail delivery failed: returning message to senderMessage-Id: <E1kDOUl-000GB4-MN@tommy.heliohost.org>Date: Wed, 02 Sep 2020 08:51:55 +0000--1599036715-eximdsn-1607433541Content-type: text/plain; charset=us-asciiThis message was created automatically by mail delivery software.A message that you sent could not be delivered to one or more of itsrecipients. This is a permanent error. The following address(es) failed: jerromebardesley@aol.com host mx-aol.mail.gm0.yahoodns.net [67.195.228.84] SMTP error from remote mail server after end of data: 554 delivery error: dd Not a valid recipient - atlas101.aol.mail.gq1.yahoo.com--1599036715-eximdsn-1607433541Content-type: message/delivery-statusReporting-MTA: dns; tommy.heliohost.orgAction: failedFinal-Recipient: rfc822;jerromebardesley@aol.comStatus: 5.0.0Remote-MTA: dns; mx-aol.mail.gm0.yahoodns.netDiagnostic-Code: smtp; 554 delivery error: dd Not a valid recipient - atlas101.aol.mail.gq1.yahoo.com--1599036715-eximdsn-1607433541Content-type: message/rfc822Return-path: <skully@thepiratestore.com>Received: from hig34.internetdsl.tpnet.pl ([79.187.214.34]:62383 helo=[169.254.53.195]) by tommy.heliohost.org with esmtpsa (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.92) (envelope-from <skully@thepiratestore.com>) id 1kDOUj-000Fjt-O0 for jerromebardesley@aol.com; Wed, 02 Sep 2020 08:51:54 +0000MIME-Version: 1.0X-Mailer: MailBee.NET 12.0.0.615From: skully@thepiratestore.comTo: jerromebardesley@aol.comSubject: TestDate: Wed, 02 Sep 2020 01:51:52 -0700Message-ID: <1.c2ecc48c8d4ae17d3594@WIN-DDV6UFOS797>Content-Type: text/plain; charset="utf-8"Content-Transfer-Encoding: quoted-printableqwe--1599036715-eximdsn-1607433541-- Edited September 4, 2020 by skullys
wolstech Posted September 4, 2020 Posted September 4, 2020 (edited) Sending too many emails...sounds like a compromised password to me. Someone got into that mailbox and tried sending spam is my guess. The bounces are the rejected spam mails coming back... Please change the password to that mailbox immediately. Unsuspended. EDIT: Never mind, your mail counter hasn't reset yet. You'll need to wait until tonight when it resets before I can unsuspend this. Edited September 4, 2020 by wolstech
skullys Posted September 4, 2020 Author Posted September 4, 2020 Will that be midnight my time (eastern)?
skullys Posted September 5, 2020 Author Posted September 5, 2020 If the mail counter has reset... (see above) could someone unsuspend me so I can change email password.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now