[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] Annoying email "service" seems to be "servicing" my RaQ3



Thanks all...

Meanwhile, now I'm REALLY confused. I've routed him, chained him, and killed him, and the SOB keeps coming back with the SYN... Possibly IP spoofing?

And thanks for the tip, gsh. Actually, the bellsouth address just helps keep things separated. ;) The box is in a data center, and I'll see what I can do.



At 03:53 PM 2/14/2002 -0500, you wrote:
On Thu, 14 Feb 2002, Cobalter wrote:

> Is there ANY way to effectively keep this site from SYN'ing my sendmail
> server?? I've added his IP address to the /etc/mail/access list, the
> hosts.deny list, the GUI reject list, and STILL it seems like I've got a
> leech on me! Pop-before-smtp doesn't keep 'em from trying, either...
>
> Not sure what they're up to, but they're ALWAYS freakin' there with an open > connection, and I want them gone. (By the way, this box is on an IP address

This guy is a known spammer

http://www.spews.org/html/S808.html

He's trying to sell you office supplies ;P

Drop route's for him, and it will minimize the effect

route add -host 64.32.63.34 reject

And your machine will refuse connections from him...

If you are in california you might have some legal recourse, otherwise,
the simplest thing is to make him vanish ;P

Normally I'd also recommend asking your ISP to help you, connection
bombind is usually something they will address, but i see you are using
bellsouth, so there's not much point ;P

gsh


_______________________________________________
cobalt-users mailing list
cobalt-users@xxxxxxxxxxxxxxx
To Subscribe or Unsubscribe, please go to:
http://list.cobalt.com/mailman/listinfo/cobalt-users