In the Application Event Viewer on my Exchange 2003 Server, I'm seeing lot of entries like this:
The remote host "220.127.116.11", responded to the SMTP command "rcpt" with "550 No such address ". The full command sent was "RCPT TO:<+.firstname.lastname@example.org> ". This will probably cause the connection to fail.
Anti-virus and anti-spam controls are in place in my environment and I do not have an open relay.
Is there a way I can determine the source of these rogue outbound emails?
July 16, 2008 4:10 PM
November 25, 2008 4:53 PM