HELP : My server emails sending too many spam

Operating System & Version
Centos 7
cPanel & WHM Version
v100.0.9

muwicaksono

Registered
Feb 8, 2022
2
0
1
indonesia
cPanel Access Level
Root Administrator
Hello, i've got spam mails from my server and keeps so many emails hold in the mail queue. When I checked the IP reputation it turned out to be blacklisted by sorbs & outlook filter too.
 

andrew.n

Well-Known Member
Jun 9, 2020
877
329
63
EU
cPanel Access Level
Root Administrator
You should look into the headers of the mails and see which account is sending those.
 

cPRex

Jurassic Moderator
Staff member
Oct 19, 2014
10,361
1,632
363
cPanel Access Level
Root Administrator
If you're familiar with SSH, you can run this command to scan the mail logs and see if any directories are sending spam:

Code:
grep cwd /var/log/exim_mainlog | grep -v /var/spool | awk -F"cwd=" '{print $2}' | awk '{print $1}' | sort | uniq -c | sort -n
That will give you a list, sorted by the number of emails sent from that location. Just make sure to ignore common areas, like CSF or system notifications.
 

quietFinn

Well-Known Member
Feb 4, 2006
1,653
328
438
Finland
cPanel Access Level
Root Administrator
For my experience the 1st thing to do is to find out if the emails are LOCAL RELAY or AUTH RELAY, i.e. if the emails are sent FROM the server or THROUGH the server.