Forum Moderators: phranque
One of these appears to be constantly used by spammers to send out spam and I have been trying to elliminate this with little success.
My site using phpnuke 7.6 and has a security package installed (Nuke Sentinal) which seems to stop hackers (huge list of banned addresses for trying various things), but I do not think they are hacking my site to send the spam, rather just using the fake email addresses as the sender as the IP from "my-site" in the header of their spam is not my website but from Chile (my site is hosted in Australia). I get all the spam that gets returned in my catch-all email.
I have also deactivated any webforms on my site that allowed visitors/users to send mail in an effort to try to reduce this risk, but I'm not sure what else to do, or if there is anything that I can do to stop my .com being used as the sender address?
Appreciate any advice.
-Thanks
Look into deploying DomainKeys [google.com] and SPF records [google.com] for your domain. That isn't a cure-all, but it will expose the fraudulent nature of the mail to some of the recipients. If you're sure that they're not actually using your server to send this stuff out then there's not much you can do to stop them.