SMTP Relay Scanner Version 1.7
(c)2005 by Dennis Rand - CIRT.DK
http://www.cirt.dk

SMTP Relay Audit Rapport for 192.168.1.200

Target SMTP server: 192.168.1.200
Port number: 25
Domain name: devil
Customer email: mikael@devil
Tester email: spam@cirt.dk
Scan Started: Tue Aug 2 18:33:31 2005

Audit Results

Description: Sent/Recieved Data - HELO/MAIL FROM/X-Priority/x-MSMail-Priority/Importance/Sensitivity
--------------------------------------------------------------------------------------------------------

TC: 1 - Standard relay test using third-party addresses (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 2 - Test using existing internal email as sender to internal target (Success)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 3 - Test using modified RCPT TO with % instead of @ (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 4 - Test using testers email address followed by @domain name (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 5 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 6 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 7 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 8 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 9 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 10 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 11 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 12 - Test using bogus local sender address. (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 13 - Test using local sender address for relaying. (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 14 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 15 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 16 - Test using no sender's domain. (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 17 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 18 - Test using nothing in sender (Falied)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 19 - Test using fake internal email as sender to internal target (Success)
Sent/Recieved Data - HELO/MAIL/1 (Highest)/High/High/Personal


TC: 20 - Standard relay test using third-party addresses (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 21 - Test using existing internal email as sender to internal target (Success)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 22 - Test using modified RCPT TO with % instead of @ (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 23 - Test using testers email address followed by @domain name (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 24 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 25 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 26 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 27 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 28 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 29 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 30 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 31 - Test using bogus local sender address. (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 32 - Test using local sender address for relaying. (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 33 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 34 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 35 - Test using no sender's domain. (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 36 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 37 - Test using nothing in sender (Falied)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 38 - Test using fake internal email as sender to internal target (Success)
Sent/Recieved Data - EHLO/MAIL/1 (Highest)/High/High/Personal


TC: 39 - Standard relay test using third-party addresses (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 40 - Test using existing internal email as sender to internal target (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 41 - Test using modified RCPT TO with % instead of @ (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 42 - Test using testers email address followed by @domain name (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 43 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 44 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 45 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 46 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 47 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 48 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 49 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 50 - Test using bogus local sender address. (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 51 - Test using local sender address for relaying. (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 52 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 53 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 54 - Test using no sender's domain. (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 55 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 56 - Test using nothing in sender (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 57 - Test using fake internal email as sender to internal target (Falied)
Sent/Recieved Data - HELO/SEND/1 (Highest)/High/High/Personal


TC: 58 - Standard relay test using third-party addresses (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 59 - Test using existing internal email as sender to internal target (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 60 - Test using modified RCPT TO with % instead of @ (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 61 - Test using testers email address followed by @domain name (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 62 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 63 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 64 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 65 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 66 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 67 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 68 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 69 - Test using bogus local sender address. (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 70 - Test using local sender address for relaying. (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 71 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 72 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 73 - Test using no sender's domain. (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 74 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 75 - Test using nothing in sender (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 76 - Test using fake internal email as sender to internal target (Falied)
Sent/Recieved Data - EHLO/SEND/1 (Highest)/High/High/Personal


TC: 77 - Standard relay test using third-party addresses (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 78 - Test using existing internal email as sender to internal target (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 79 - Test using modified RCPT TO with % instead of @ (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 80 - Test using testers email address followed by @domain name (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 81 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 82 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 83 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 84 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 85 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 86 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 87 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 88 - Test using bogus local sender address. (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 89 - Test using local sender address for relaying. (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 90 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 91 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 92 - Test using no sender's domain. (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 93 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 94 - Test using nothing in sender (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 95 - Test using fake internal email as sender to internal target (Falied)
Sent/Recieved Data - HELO/SOML/1 (Highest)/High/High/Personal


TC: 96 - Standard relay test using third-party addresses (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 97 - Test using existing internal email as sender to internal target (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 98 - Test using modified RCPT TO with % instead of @ (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 99 - Test using testers email address followed by @domain name (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 100 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 101 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 102 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 103 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 104 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 105 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 106 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 107 - Test using bogus local sender address. (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 108 - Test using local sender address for relaying. (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 109 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 110 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 111 - Test using no sender's domain. (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 112 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 113 - Test using nothing in sender (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 114 - Test using fake internal email as sender to internal target (Falied)
Sent/Recieved Data - EHLO/SOML/1 (Highest)/High/High/Personal


TC: 115 - Standard relay test using third-party addresses (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 116 - Test using existing internal email as sender to internal target (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 117 - Test using modified RCPT TO with % instead of @ (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 118 - Test using testers email address followed by @domain name (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 119 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 120 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 121 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 122 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 123 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 124 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 125 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 126 - Test using bogus local sender address. (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 127 - Test using local sender address for relaying. (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 128 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 129 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 130 - Test using no sender's domain. (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 131 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 132 - Test using nothing in sender (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 133 - Test using fake internal email as sender to internal target (Falied)
Sent/Recieved Data - HELO/SAML/1 (Highest)/High/High/Personal


TC: 134 - Standard relay test using third-party addresses (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 135 - Test using existing internal email as sender to internal target (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 136 - Test using modified RCPT TO with % instead of @ (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 137 - Test using testers email address followed by @domain name (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 138 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 139 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 140 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 141 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 142 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 143 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 144 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 145 - Test using bogus local sender address. (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 146 - Test using local sender address for relaying. (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 147 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 148 - Test using localhost as sender's domain. (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 149 - Test using no sender's domain. (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 150 - Test using modified RCPT TO (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 151 - Test using nothing in sender (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal


TC: 152 - Test using fake internal email as sender to internal target (Falied)
Sent/Recieved Data - EHLO/SAML/1 (Highest)/High/High/Personal



Rapport Summary

The Scan completed: Tue Aug 2 18:36:12 2005
Possible Success attempts: 4
Possible Failed attempts 148
Total number of Relay checks performed: 152

(c)2005 by Dennis Rand - CIRT.DK