Solved

Exchange Server under spam and phishing attack

Posted on 2006-11-20
4
300 Views
Last Modified: 2010-03-06
Hi All,

My exchange server is under spam and phishing attack. We have a firewall unit but that does not support spam filtering.
Since 2 weeks thousands of emails are coming in and out from the exchange server which is not legitimate. I am using Exchange 2003 Enterprise server with SP2 and IMF turned on with settings 7/6.
Can you somebody tells me few tips that how can I protect my server from these attacks. All these emails are eating up all my Internet bandwidth and all users are getting emails undelivered which they never sent.

If you need any other information let me know.

Thanks

Maninder

0
Comment
Question by:parpak
4 Comments
 
LVL 16

Expert Comment

by:poweruser32
ID: 17979380
you need to get spam software installed on a dedicated machine (gfi have a 30  day free trial on www.gfi.com) installed  ( a desktop would do) to filter the incoming email
also i would enable recipient filtering on the ex server as this stops email being sent to users who do not exist in AD
is your ex server secured for relay?
0
 
LVL 104

Accepted Solution

by:
Sembee earned 500 total points
ID: 17979543
You need to get the server cleaned up first.
Take a look at my spam cleanup article: http://www.amset.info/exchange/spam-cleanup.asp

I would suggest that you close port 25 on the firewall first to stop the message flow. Then see whether you are an open relay or one of your accounts has been compromised. You should probably change your administrator password.

Simon.
0

Featured Post

Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Disabling the Directory Sync Service Account in Office 365 will stop directory synchronization from working.
This process describes the steps required to Import and Export data from and to .pst files using Exchange 2010. We can use these steps to export data from a user to a .pst file, import data back to the same or a different user, or even import data t…
The video tutorial explains the basics of the Exchange server Database Availability groups. The components of this video include: 1. Automatic Failover 2. Failover Clustering 3. Active Manager
This video demonstrates how to sync Microsoft Exchange Public Folders with smartphones using CodeTwo Exchange Sync and Exchange ActiveSync. To learn more about CodeTwo Exchange Sync and download the free trial, go to: http://www.codetwo.com/excha…

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question