[qmailtoaster] Re: many failure notice - a failed spoof?

2014-08-27 Thread Eric Shubert
On 08/26/2014 07:53 AM, Dan McAllister wrote: The _SMTP AUTH credential provided_ was *mrb...@theppjgroup.com* -- so if someone's been hacked, it's Mr. Blue himself! I thought I looked for this, but I obviously missed it. Indeed, the account as being abused. rant Having this information

Re: [qmailtoaster] Re: many failure notice - a failed spoof?

2014-08-26 Thread David
+1 thats what I see too On 08/25/2014 10:56 AM, Eric Shubert wrote: This looks like backscatter to me. Do you have an SPF (DNS TXT) record defined for that domain? That should help to eliminate backscatter. - To

[qmailtoaster] Re: many failure notice - a failed spoof?

2014-08-25 Thread Eric Shubert
This looks like backscatter to me. Do you have an SPF (DNS TXT) record defined for that domain? That should help to eliminate backscatter. -- -Eric 'shubes' On 08/25/2014 08:27 AM, Jim Shupert wrote: friends, I have one user [ MrBlue } who is a valid user on my domain of theppjgroup.com It