I don't see anything in the header that makes it look like they came from the hostingrails IP, but even if they are spoofed, it's a bit much. Anything I can do about it?
Just to be sure -- the SMTP daemon hardened against spammers? It's not an open proxy?