I installed SA last week and I started to reveive these spams 1-2 months ago.

# netstat -tupan | grep spam
tcp 0 0 127.0.0.1:783 0.0.0.0:* LISTEN 27752/spamd.pid


What tests should I do next?

This is a production server, I'am starting to become afraid.


What was the email received if not via SMTP??


On 09/06/2013 05:10 PM, Wijatmoko U. Prayitno wrote:
On Fri, 6 Sep 2013 10:05:49 -0400 (EDT)
wie...@porcupine.org (Wietse Venema) wrote:

/var/log/mail.log.1:Sep  5 17:10:06 cma postfix/pickup[17510]: A3E8C10BADF: uid=1018 
from=<stronges...@google.com>
The email came from local user uid 1018 (service pickup).
Good observation. This message did not come via SMTP. You have
a buggy web application.

Maybe the spamd are listen on all interface, so it opened
to the whole internet.


Reply via email to