To clarify - saying this as someone who was forced to blacklist their IPs on more than one occassion, not as someone who ran into tainted IPs as their customer.
To clarify - saying this as someone who was forced to blacklist their IPs on more than one occassion, not as someone who ran into tainted IPs as their customer.
The only organization that caused issues is Microsoft / Outlook.com, but they seem to block every IP address by default. I was able to unblock myself by filling out a form and waiting a few hours for all my servers so far.
Emailing abuse@hetzner.de yields:
Dear Sir or Madam,
Thank you for your email.
In order for us to process your request, we ask that you
please fill out the form at the following link:
https://abuse.hetzner.de/
Please use this form for all future complaints.
Kind regards
Abuse team
When told that they already have all the information in the original report, a human suddenly appears and replies that apparently every report needs to include a permission to be forwarded to the customer. Again, in the context of a clearly compromised box one would expect them to first block the box and then "follow up with the customer."Still, even with this permission and several hours in, the box is still spamming, customer is "investigating" and Hetzner has done all they could to handle this incident.
They have an automated abuse-handling system that sends your complaint to the spammer and asks them politely to stop. This often works for small-time operation on a single IP address, and for compromised servers, but it's completely inadequate for dealing with large customers and rogue resellers spamming over large netblocks, and against darker-coloured-hat spammers engaging in reprisals.
Replying to the automated mails can get you through to a human, but their ops are stuck on a limited script so they're not really any more use than the automated systems. They have no interest in investigating wider patterns of abuse than a single spam from a single IP.
I regret having to blacklist but it's not worth the time and frustration of trying to engage with them.
(Not talking about all of Amazon, just SES - AWS for example is a different animal.)
That’s what I’m trying to get at here.
I've used Hetzner for two years and I never had any issue regarding blacklisted Ip addresses.
It's the first link in the delisting section: http://go.microsoft.com/fwlink/?LinkID=614866&clcid
I also recommend signing up for SNDS.
https://support.microsoft.com/en-us/getsupport?oaspworkflow=...
Check your /24 neighborhood first though, one of your neighbors might be sending spam:
We have also had good experience with Hetzner South Africa's abuse department.
We do see plenty of spam from OVH however. On one occasion when we reported several IPs to them for sending Russian spam, they did not reply.