Re: [mailop] SMTP noise from *.bouncer.cloud

2022-08-31 Thread John Levine via mailop
It appears that Michael Peddemors via mailop said: >But I do of course understand the temptation to simply block them, if >you dont' know what they are doing. I do know what they are doing, and I have no interest in helping them do it. ___ mailop mail

Re: [mailop] SMTP noise from *.bouncer.cloud

2022-08-31 Thread WIlliam Fisher via mailop
For those of us out of the loopwhat is this? On 8/31/22 3:22 PM, Michael Peddemors via mailop wrote: For the record, I should note in this thread, that in this case it is an actual company behind this (was reached out offlist by a principle) and many on the list are aware of this person.

Re: [mailop] SMTP noise from *.bouncer.cloud

2022-08-31 Thread Bill Cole via mailop
On 2022-08-31 at 15:22:33 UTC-0400 (Wed, 31 Aug 2022 12:22:33 -0700) Michael Peddemors via mailop is rumored to have said: For the record, I should note in this thread, that in this case it is an actual company behind this (was reached out offlist by a principle) and many on the list are aware

Re: [mailop] SMTP noise from *.bouncer.cloud

2022-08-31 Thread Michael Peddemors via mailop
For the record, I should note in this thread, that in this case it is an actual company behind this (was reached out offlist by a principle) and many on the list are aware of this person. https://www.linkedin.com/company/usebouncer/ Who/what/where their clients are, and for what purpose of cou

Re: [mailop] SMTP noise from *.bouncer.cloud

2022-08-31 Thread Jarland Donnell via mailop
Nice find. Here's the IP list I pulled for them as well: https://clbin.com/Fr1IH Probably not worth blocking by IP but some blacklistings might alert hosts to abusive behavior more than "yet another ignored abuse complaint." On 2022-08-31 08:56, Michael Peddemors via mailop wrote: Not just

Re: [mailop] SMTP noise from *.bouncer.cloud

2022-08-31 Thread John Levine via mailop
It appears that Michael Peddemors via mailop said: >Not just OVH, on LeaseWeb as well.. They're obviously doing listwashing. Nice of them to give us a reliable signal to block them. 2022-06-10 12:51:20.947844500 tcpserver: ok 4064 mail1.iecc.com:64.57.183.56:25 de1-mail-178.bouncer.cloud:135.

Re: [mailop] SMTP noise from *.bouncer.cloud

2022-08-31 Thread Michael Peddemors via mailop
Not just OVH, on LeaseWeb as well.. Script at least is sane, even though it simply does a RCPT TO, then QUIT. Suggest it is another email validator, or list washer.. without transparency. Aug 31 04:38:13 be msd[603032]: Linux Magic SMTPD started: connection from 212.7.193.14 (192.168.0.118:

[mailop] X-MS-Exchange-CrossTenant-* headers gone?

2022-08-31 Thread Matthias Leisi via mailop
Apparently ExchangeOnline is not adding the X-MS-Exchange-CrossTenant-* headers any more. Lots of fun if you have tools in your outbound mail flow that interact with multiple MS365 tenants and separates them based on the X-MS-Exchange-CrossTenant-id header (amongst other use cases). So far we’

[mailop] SMTP noise from *.bouncer.cloud

2022-08-31 Thread Andreas S. Kerber via mailop
Noticing lot's of noise from OVH adress ranges with "bouncer.cloud" PTR and HELO. Often they are trying only one recipient and seem to move on then. Can anyone shed some light on what these people are trying to accomplish? Could there be any kind of legitimacy, or are just plain bad guys? Seems l

[mailop] Anyone at Freemail.hu?

2022-08-31 Thread Daniel Baqueiro via mailop
Hello folks, If there’s anyone from freemail.hu on this list, could you please contact me regarding a delivery issue? Or if anyone can share any contacts it will be very much appreciated. Thank you! Daniel Baqueiro | DELIVERABILITY CONSULTANT | Adobe __

Re: [mailop] State of the Union - Update due to activity..

2022-08-31 Thread Larry M. Smith via mailop
On 8/30/2022, Michael Peddemors via mailop wrote: Normally, we could simply post this on a blog, but the traffic is significant enough that other mail operators might be interested.. Last couple of days a LOT of new IP Address abuse from the same actors using throwaway domains, on the typical