On 18/04/2024 12:03, Marco Moock wrote:
Am 18.04.2024 schrieb Sebastian Arcus via mailop <mailop@mailop.org>:

A few days ago I started having issues with the public IPv4 address
of one network I look after ending up on the Spamhaus XBL and CSS
blacklists.

https://www.spamhaus.org/blocklists/exploits-blocklist/

Listings there are not related to SMTP.

Can you ask them about more details?

Maybe you can identify the device.

Is the IPv4 address shared with other machines (NAT, Proxy etc.)?

Thank you for getting back to me. Yes - the IP address is the gateway for a relatively small network. It is perfectly possible that one of the devices there has an issue. I have asked Spamhaus for further details, and they just sent me a link to their blogpost about doorbells going rogue so far. That is pertinent, but extremely generic information. I will persist, maybe they can shed a bit more light. I could do with a bit more to go on - something like which outgoing port was used, malware signature, or anything else to narrow things down a bit.
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to