I've been seeing a few of these lately and was wondering what they are trying to do.
It appears that they are trying some kind of web stuff and then trying to send a
message. Is it just stupid or some kind of exploit for some different smtp server?
Dan
---------- Original Message ----------------------------------
From: [EMAIL PROTECTED] (Mail Delivery System)
Date: Wed, 12 Mar 2003 09:53:56 -0700 (MST)
Transcript of session follows.
Out: 220 web.trhs.org - ESMTP - Postfix - Attn: UCE trespassers will be
pursued.
In: POST / HTTP/1.0
Out: 502 Error: command not implemented
In: Content-type: application/x-www-form-urlencoded
Out: 502 Error: command not implemented
In: Content-length: 2205
Out: 502 Error: command not implemented
In: Connection: keep-alive
Out: 502 Error: command not implemented
In: Via: 1.0 cache
Out: 502 Error: command not implemented
In: X-Forwarded-For: 170.208.0.162
Out: 502 Error: command not implemented
In:
Out: 500 Error: bad syntax
In: HELO dxkelqg
Out: 250 web.trhs.org
In: MAIL FROM: <[EMAIL PROTECTED]>
Out: 250 Ok
In: RCPT TO: <[EMAIL PROTECTED]>
Out: 503 Improper use of SMTP command pipelining
In: DATA
Out: 554 Error: no valid recipients
In: From: Kathline Rehder <[EMAIL PROTECTED]>
Out: 221 Error: I can break rules, too. Goodbye.