What is Backscatter ??

Well if you are here on this page you are probably a frustrated system admin who like thousands of other people cannot understand why their server has been blacklisted on the http://www.backscatterer.org website.

Today I read that there are at the moment 72,000 plus servers that are according to UCEPROTECT (The guys who run the backscatterer website) incorrectly configured.

I created this website for the sole purpose of helping people to figure out what this whole "backscatter" issue is. I hope it proves to be helpful to you.

I preface this by saying that I think Backscatterer.org are a fairly ignorant and arrogant bunch, that is why there is so much hate out there in the Net aginst them... BUT they are Unfortunately right in what they are saying to a CERTAIN EXTENT, Backscatter is a Legitimate problem, How they as a DNSBL are dealing with it is an entirely different matter.. You can decide ! I highly recommend that you dont "troll" them or threaten them with Legal Action, simple reason for that is that you just cannot find them...

Backscatterer.org , my friends, is a real pain in the ass, you know why ? because you cannot get delisted for a month unless you pay say 100 swiss francs. Even if you have fixed the PROBLEM. This is non negotiable, I will discuss the business practices of Backscatterer in a little while.

A Lot of people , Like me at first ! simply do not understand what the problem is, so what i will try to do here is to explain what these guys are looking for in Plain English, and to try and build up a database of Mail Server configurations that will show you how to fix the problem on your specific mail server.

So what is Backscatter ?

Backscatter.org maintain that this is a form of a mistake  on "poorly configured mail servers" They break down their argument into 3 Sections. if you are listed on their blacklist your server will fall into one or more of these categories.

Bounces

Backscatterers Argument.
They maintain that your email server should not sent out bounces... in other words.. If I send a mail to "nouser@backscatterer.org" and the user/mail address  does not exist on that server then theoretically that mail should simply disappear into Cyberspace..(be deleted).The "backscatter.org" mail server  should not send a message to the server trying to send the message  and say "hey server trying to send this message , thanks  for contacting us , but there is no such user here so see ya around, here's your message back" (thats it in plain English) . If your server is configured to do that then in their opinion you have a "poorly configured server" . They maintain that this is abuse of the "Vrfy" command that is always used by mail servers. OK I can see the Logic in this to a certain extent but have we not moved on ???

There are a number of contra measures already in place to prevent this type of abuse. among them are for example

  • spf verification (this means that unless my IP address matches the domain that I am sending from then ALL properly configured servers will refuse the mail.)  My POINT ... SPF negates the need for Backscatters. In other words .. as a spammer it is virtually impossible to bypass this check now.
  • Sender Authentication. Most properly configured mail servers request that person trying to send mail authenticates their account before sending mail , using either a username and password , or some other method of Authentication.

OK so you are there and on the list, frustrated because your users mail is not being received by companies or ISPs who have subscribed to the Backscatterer Blacklist. So whats the next step.. ????

I am putting together a list of videos and instructions for various mail servers on how to make sure your mail server is NOT sending out these bounces... you will find a list of them here on this Page.

****WARNING**** you will need to check that your server is configured to all of the above points raised by backscatterer  "Bounces , auto responders and Sender callouts." (you may also need to check the Antispam settings on your firewall)

 

Here is something pretty Ironic, this is a fact , you can test it yourself
I sent a test email with a madeup email address to some of the top email providers in the world, namely Gmail , Hotmail , Microsoft , yahoo and Bluewin in switzerland... I received an answer from ALL of them (see below). My question is "why are these GIANTS not listed in Backscatterer... ????" You can guess the reason...

Maybe all of these mail servers are"poorly configured"

Bluewin _test

 

Gmail _test

 

Hotmail _test

 

Microsoft _test

 

Yahoo _test