FreeBSD會主動發動郵件攻擊嗎? - BBS

Table of Contents


抱歉,我是趕鴨子上架的實驗室FreeBSD管理員,
今天學校計中通知我們的機器會發動郵件攻擊而被檢舉,
被檢舉的該郵件內容如下,我把一些使用者資訊都隱藏了,避免爭議:
-----------------------------------------------------------------------
Return-Path: <[email protected]>
Delivered-To: [email protected]
Received: (qmail 62349 invoked from network); 2 Apr 2005 18:14:38 -0000
Received: from bsd.xxxx.xxxx.edu.tw (140.xxx.xxx.xxx)
by 0 with SMTP; 2 Apr 2005 18:14:38 -0000
Received: from bsd.xxxx.xxxx.edu.tw (localhost.xxxx.xxxx.edu.tw [xxx.x.x.x])
by bsd.xxxx.xxxx.edu.tw (x.xx.x/x.xx.x) with ESMTP id j32IGWXP031700
for <[email protected]>; Sun, 3 Apr 2005 02:16:32 +0800 (CST)
(envelope-from [email protected])
Received: (from jxxxx@localhost)
by bsd.xxxx.xxxx.edu.tw (x.xx.x/x.xx.x/Submit) id j32IGVbP031699;
Sun, 3 Apr 2005 02:16:31 +0800 (CST)
(envelope-from jxxxx)
Date: Sun, 3 Apr 2005 02:16:31 +0800 (CST)
Message-Id: <[email protected]>
To: [email protected]
Subject: Update and Verify Your PayPal account***
From: "[email protected]"<[email protected]>
Content-Type: text/html
----------------------------------------------------------------------
由於只有這個jxxxx帳號的郵件被檢舉,
我有點懷疑是該使用者的電腦透過我們的BSD發出信件。

想請問的是,
1. FreeBSD若真不幸「中毒」,有應用軟體可以檢查嗎?
2. jxxxx@localhost這種格式的寄件者帳號是FreeBSD產生或
透過遠端郵件軟體產生(ex. Outlook)?

先感謝熱心的回覆者,不計較這樣的小問題,
由於我經驗不足,不知道如何跟計中解釋...
就先把機器離線,免得ip被鎖住,
希望不會拖太久,因為有一個班級的學生需要這部機器取得授課資料...


--

All Comments