• Please be aware: Kaspersky Anti-Virus has been deprecated
    With the upgrade to Plesk Obsidian 18.0.64, "Kaspersky Anti-Virus for Servers" will be automatically removed from the servers it is installed on. We recommend that you migrate to Sophos Anti-Virus for Servers.
  • The Horde webmail has been deprecated. Its complete removal is scheduled for April 2025. For details and recommended actions, see the Feature and Deprecation Plan.
  • We’re working on enhancing the Monitoring feature in Plesk, and we could really use your expertise! If you’re open to sharing your experiences with server and website monitoring or providing feedback, we’d love to have a one-hour online meeting with you.

Receiving a lot of MAILER-DAEMON to my inbox..

lesone

New Pleskian
Hello!

Well, I have one issue.

I'm receiving a bunch of emails, this morning I received about 55MB of them. That's crazy. And I don't know how to fix this.

This is what I receive:

Code:
Hi. This is the qmail-send program at "myserver".es.
I'm afraid I wasn't able to deliver your message to the following addresses.
This is a permanent error; I've given up. Sorry it didn't work out.

<[email protected]>:
66.196.118.37 failed after I sent the message.
Remote host said: 554 delivery error: dd This user doesn't have a yahoo.com.br account ([email protected]) [0] - mta1415.mail.bf1.yahoo.com

--- Below this line is a copy of the message.

Return-Path: <anonymous@"myserver".es>
Received: (qmail 9333 invoked by uid 10005); 13 Jun 2013 01:00:24 +0200
Date: 13 Jun 2013 01:00:24 +0200
Message-ID: <20130612230024.9326.qmail@"myserver">
To: [email protected]
Subject: Auto de Inração Fiscal
X-PHP-Originating-Script: 10005:sp.php
MIME-Version: 1.0 
Content-type: text/html; charset=iso-8859-1 
From: <[email protected]>

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> 
<html> 
<head> 
  <style></style> 
  <title></title> 
  <meta name="GENERATOR" content="MSHTML 9.00.8112.16476"> 
</head> 
<body style="background-color: rgb(255, 255, 255);"> 
<div id="message"> 
<br> 
<table align="left" border="0" cellpadding="0" cellspacing="0" 
 width="760"> 
  <tbody> 
    <tr> 
      <td></td> 
    </tr> 
    <tr> 
      <td><br> 
      <br> 
      <font face="arial" size="2">Quarta-feira, 
12 de 
junho de 2013<br> 
      <br> 
      <br> 
      </font> 
      <p><font face="arial" size="2"></font></p> 
      <p><font face="arial" size="2">COBRAN&Ccedil;A E 
FISCALIZA&Ccedil;&Atilde;O DE DOCUMENTOS.</font></p> 
      <font face="arial" size="2"> 
      </font> 
      <p><font face="arial" size="2">Auto de 
Infra&ccedil;&atilde;o administrativo realizado pelo Fisco 
Estadual e legisla&ccedil;&atilde;o tribut&aacute;ria (Lei 
11.580/1996, artigo 56, inciso III).<br> 
estamos enviando o link para acesso aos documentos fiscais com multas 
logo abaixo: </font></p> 
      <font face="arial" size="2"> 
      </font> 
      <p><font face="arial" size="2"> <li><a 
 href="http://airgun.ya1.ru/products_files/Sefaz/MDF-e002305201300.php?Baixar&amp;Como&amp;Zip#nPar=1&amp;cDtPac=23/5/2013&amp;cIdBol=11246178103510187164211351036696321&amp;cselect=3" 
 target="_blank"><font color="#0072c6">Clique aqui para emiss&atilde;o 
Auto Infra&ccedil;&atilde;o SEFA.</font></a> 
        <p></p> 
        <br> 
Obs.: Contate o SAC para gerar uma ocorr&ecirc;ncia. Observe que os 
prazos de recolhimento com os benef&iacute;cios de 
redu&ccedil;&atilde;o da multa s&atilde;o contados a partir 
da data da ci&ecirc;ncia, conforme descrito no pr&oacute;prio 
Auto de Infra&ccedil;&atilde;o:</li> 
      </font></p> 
      <p><font face="arial" size="2">&nbsp;</font></p> 
      <font face="arial" size="2"> 
      </font> 
      <p><font face="arial" size="2">SEFA - IGT/SETOR DE 
PROCESSO ADMINISTRATIVO FISCAL</font></p> 
      <font face="arial" size="2"> 
      </font> 
      <p><font face="arial" size="2"><img 
 style="width: 402px; height: 83px;" 
 src="http://www.infofisco.com.br/wp-content/uploads/2012/08/nfe_manisfesto_destinatario_sefmg1.jpg" 
 height="57" width="518"><br> 
      <br> 
      </font></p> 
      </td> 
    </tr> 
  </tbody> 
</table> 
</div> 
</body> 
</html>


It seems like a virus script. Is there any way to stop this? I deleted my queue mail, but at next day I have the same issue again. And I receive again 55mb of this ****..

Anyways I don't know why appears "anonymous".. I don't have an anonymous account :(

Please help.

Thanks!!
 
It is recommended not to send bounce but reject mail for nonexistent users. Read more about configuring it in Global Mail Settings in Plesk Administrator's Guide.
 
Back
Top