I have a problem with an exploit somewhere in my server that is allowing someone to send mass amounts of Spam in the middle of the night. Over the last 3 days I had over 15,000 aol complaints. The user is using nobody@hosts. (mydomain(substituted for security)).com. My question is how can I stop the user NOBODY from being able to send email. I have ran every open relay check, changed all passwords, so I have came down to the hypothesis that is has to be a php file that has an exploit. Any help would be appreciated.