Backscatter Problem (spam)


LuxSci is happy to do its part in waging the war on spam, by providing the services that we do, and keeping firm on our zero-tolerance policies regarding email abuse. Some anti-spam blacklists (such as backscatterer.org) actively block servers that generate backscatter.

At one point, he was being hit by 10,000 bounceback messages per second, enough to throttle the server's Internet connection. Some NDRs to clean up from the inbox are always better than losing important legitimate emails.

How To Deal With Backscatter

If you do this, you're going to end up blacklisted, because these misdirected requests are going to hit spamtraps run by anti-spam groups, too. If I were a sleazy spammer, it would be very easy to write a script to save those addresses in a file, and wait and see how many more I get For example, incoming mail to nonexistent users should be dropped, instead of accepted and generating a bounce reply.

Bounce verification on the mail-server could be an option to reduce their number. Users often think that the backscatter may be a sign that their computer has been hacked and is sending out spam messages. Instead, only allow web-based signups.

Symantec, in their April 2008 Spam Report, also noted an upward trend in backscatter attacks.

Summary If your inbox is full of those "Delivery Failure Notification" messages then you are likely seeing backscatter.

How To Stop Backscatter

The reasoning is that the spammers will realize your address is dead, and stop sending you mail. http://www.pcworld.com/article/145449/article.html They're smarter now in that they can be enabled to respond only to "From" addresses that are in a contact list. How To Deal With Backscatter Now, sometimes this forgery is enough for spammers to hit their targets -- the messages arrive in a mailbox, and they've spammed someone. Backscatter Email Blacklist However, when they become hijacked by spammers, they become useless as you have to sort through the emails to find real bounces.

The bad guys (whom are responsible for far more of the mail you receive) don't process bounces. For example, you don't want example.org to receive email for any address @example.org. Backscatter is a side-effect caused by spam.

Bounced messages then come back to that forged sender address, messages with subjects like: "Mail delivery failed: returning message to sender." If you've seen just one or two of these backscatter messages, some admins just route all bounces to the bit bucket. There are blacklisting services dedicated to monitoring and listing IP addresses responsible for backscatter spam.

We do not recommend using backscatterer.org, as these hosts are not sending spam emails, they are only misconfigured and/or the administrator have never heard about this problem. RFC 5321 says: "silent dropping of messages should be considered only in those cases where there is very high confidence that the messages are seriously fraudulent or otherwise inappropriate." Quarantine.

Can a company block a specific person from buying its stock?

The only way to stop sending them is setting up a catch-all account to collect the NDRs and schedule a batch file to clear them up periodically.

Luckily I've not submitted the form on SF yet! :-D –Rob Cowell Sep 2 '09 at 15:51 add a comment| 4 Answers 4 active oldest votes up vote 12 down vote Return to Sender: 8 Easy Spam Filter Fixes Gmail Power Tips and Tools Video Why You Lost Your Windows 10 Product Key

