<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Sudden Surge of rogue email bouncebacks in Email</title>
    <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047131#M60951</link>
    <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.plus.net/t5/user/viewprofilepage/user-id/107337"&gt;@PhilipHeyes&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;Every Boots scam email that we have seen in the last year was sent via relay.plus.net and the Plusnet hosted avssout outbound email server farm.&amp;nbsp; This is how the sender gets SPF / DMARC / DKIM to PASS.&lt;/P&gt;
&lt;P&gt;Here are email header examples from a recent Boots message that it was so convincingly real ( it is real ) it was accepted as not being spam by the 123reg email platform : &lt;BR /&gt;&lt;STRONG&gt;Received: from avasout-ptp-001.plus.net ([84.93.230.227])&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&lt;BR /&gt;Authentication-Results: sxplibsmtp04-20.prod.sxb1.secureserver.net;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp;dkim=pass header.d=plus.com header.b=qtL2afFb;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp;dmarc=pass header.from=&amp;lt;account&amp;gt;.plus.com&lt;BR /&gt;&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=plus.com; s=042019;&lt;/STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;That I can send messages from my VM internet connection using relay.plus.com without credentials points to lack of effort to secure the platform &amp;amp; is why having migrated to Greenby we have abandoned SMTP server relay.plus.com and the IP.&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;As &lt;STRONG&gt;avasout-ptp-001.plus.net&lt;/STRONG&gt; [84.93.230.227] is listed as a BT IP address, has this matter been reported to BT?&lt;/P&gt;
&lt;P&gt;% Abuse contact for '84.92.0.0 - 84.93.255.255' is 'email@bt.com'&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.whois.com/whois/84.93.230.227" target="_blank" rel="noopener"&gt;https://www.whois.com/whois/84.93.230.227&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;sxplibsmtp04-20.prod.sxb1.secureserver.net&lt;/STRONG&gt; [92.204.86.193] belongs to Go Daddy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.whois.com/whois/92.204.86.193" target="_blank"&gt;https://www.whois.com/whois/92.204.86.193&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 27 May 2026 10:58:36 GMT</pubDate>
    <dc:creator>pvmb</dc:creator>
    <dc:date>2026-05-27T10:58:36Z</dc:date>
    <item>
      <title>Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047055#M60942</link>
      <description>&lt;P&gt;I have lately been receiving rogue email bouncebacks, example below. Needless to say I didnt send any emails to triggered these and there are none in my 'sent' mailbox on either my mail client nor on webmail.&lt;/P&gt;
&lt;P&gt;I've also done an anti virus scan which came up clean.&lt;/P&gt;
&lt;P&gt;Advice appreciated.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Example bounceback:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;TABLE border="0" width="100%" cellspacing="0" cellpadding="1" align="center" bgcolor="#ABABAB"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD colspan="2" height="5" bgcolor="#FFFFFF"&gt;&amp;nbsp;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD align="center"&gt;
&lt;TABLE border="0" width="100%" cellspacing="2" cellpadding="0" align="center" bgcolor="#DCDCDC"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD width="20%" align="right" valign="top"&gt;&lt;STRONG&gt;Subject:&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD width="80%" align="left" valign="top"&gt;Mail delivery failed: returning message to sender&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="20%" align="right" valign="top"&gt;&lt;STRONG&gt;From:&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD width="80%" align="left" valign="top"&gt;Unknown sender&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="20%" align="right" valign="top"&gt;&lt;STRONG&gt;Date:&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD width="80%" align="left" valign="top"&gt;Tue, May 26, 2026 2:10 pm&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="20%" align="right" valign="top"&gt;&lt;STRONG&gt;To:&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD width="80%" align="left" valign="top"&gt;&lt;FONT color="#993300"&gt; [Removed]&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="20%" align="right" valign="top"&gt;&lt;STRONG&gt;Priority:&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD width="80%" align="left" valign="top"&gt;Normal&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="20%" align="right" valign="middle"&gt;&lt;STRONG&gt;Options:&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD width="80%" align="left" valign="middle"&gt;&amp;nbsp;&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD colspan="2" height="5" bgcolor="#FFFFFF"&gt;&amp;nbsp;&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;TABLE border="0" width="100%" cellspacing="0" cellpadding="0" align="center"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD&gt;
&lt;TABLE border="0" width="100%" cellspacing="0" cellpadding="1" align="center" bgcolor="#ABABAB"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD&gt;
&lt;TABLE border="0" width="100%" cellspacing="0" cellpadding="3" align="center"&gt;
&lt;TBODY&gt;
&lt;TR bgcolor="#FFFFFF"&gt;
&lt;TD&gt;
&lt;TABLE border="0" cellspacing="5" cellpadding="1" align="left"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD align="left"&gt;&lt;BR /&gt;
&lt;PRE&gt;      This is an automatically generated Delivery Status Notification.      

Delivery to the following recipients failed permanently:

   * &lt;A href="https://webmail.plus.net/squirrelmail/src/compose.php?send_to=sales%40normanmusa.com" target="_blank" rel="noopener"&gt;sales@normanmusa.com&lt;/A&gt;

Reason: A message that you sent to the following recipient could not be delivered
due to a permanent error. ** The remote server ?? responded with: **
&lt;A href="https://webmail.plus.net/squirrelmail/src/compose.php?send_to=sales%40normanmusa.com" target="_blank" rel="noopener"&gt;sales@normanmusa.com&lt;/A&gt; ??:?? This message was created automatically by mail delivery
software on the server .

&lt;/PRE&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD colspan="2" height="5" bgcolor="#FFFFFF"&gt;&amp;nbsp;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;DIV style="background: #EDF3F5; padding: 10px; margin-top: 20px; margin-right: 10px; border: 2px solid #CFD8DC; border-radius: 10px; box-shadow: 8px 8px 7px #676D70; font-size: 10pt;"&gt;
&lt;P style="font-size: 10pt;"&gt;&lt;STRONG&gt;Moderators Note:&amp;nbsp;&lt;/STRONG&gt;Personal information removed&lt;/P&gt;
&lt;/DIV&gt;</description>
      <pubDate>Tue, 26 May 2026 16:18:50 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047055#M60942</guid>
      <dc:creator>hillfort</dc:creator>
      <dc:date>2026-05-26T16:18:50Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047103#M60947</link>
      <description>&lt;P&gt;Historically these spam messages have been sent from the Plusnet email platform and often from an IP of a Plusnet Internet connection.&amp;nbsp; Could be rogue customer, could also be a compromised PC or Fire TV Stick loaded with special needs software.&lt;BR /&gt;&lt;BR /&gt;The spam sending is a matter that Plusnet totally failed to address over the last 12 months, and despite repeated warning about the open relay vulnerability of relay.plus.net still have taken zero securing action.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 07:04:30 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047103#M60947</guid>
      <dc:creator>PhilipHeyes</dc:creator>
      <dc:date>2026-05-27T07:04:30Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047118#M60948</link>
      <description>&lt;P&gt;It's more than possible, until the bounce back message, the email has been nowhere the Plusnet systems.......&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 08:01:52 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047118#M60948</guid>
      <dc:creator>Champnet</dc:creator>
      <dc:date>2026-05-27T08:01:52Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047125#M60949</link>
      <description>&lt;P&gt;Every Boots scam email that we have seen in the last year was sent via relay.plus.net and the Plusnet hosted avssout outbound email server farm.&amp;nbsp; This is how the sender gets SPF / DMARC / DKIM to PASS.&lt;BR /&gt;&lt;BR /&gt;Here are email header examples from a recent Boots message that it was so convincingly real ( it is real ) it was accepted as not being spam by the 123reg email platform : &lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Received: from avasout-ptp-001.plus.net ([84.93.230.227])&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&lt;BR /&gt;Authentication-Results: sxplibsmtp04-20.prod.sxb1.secureserver.net;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp;dkim=pass header.d=plus.com header.b=qtL2afFb;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp;dmarc=pass header.from=&amp;lt;account&amp;gt;.plus.com&lt;BR /&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=plus.com; s=042019;&lt;/STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;That I can send messages from my VM internet connection using relay.plus.com without credentials points to lack of effort to secure the platform &amp;amp; is why having migrated to Greenby we have abandoned SMTP server relay.plus.com and the IP.&lt;BR /&gt;&lt;BR /&gt;There is a wall of silence on this open relay issue, so I assume that folks are well aware of&amp;nbsp; the fact the front door to the SMTP service is wide open much as it was in 2004.&amp;nbsp; If it was other the questions would come on the matter.&lt;BR /&gt;&lt;BR /&gt;Are there are Boots spam messages that show a different originating source ? &lt;BR /&gt;That would be new and interesting to see.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 09:08:06 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047125#M60949</guid>
      <dc:creator>PhilipHeyes</dc:creator>
      <dc:date>2026-05-27T09:08:06Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047129#M60950</link>
      <description>&lt;P&gt;I see no mention in the original post to Boots specifically that's why my reply was more general............&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 10:28:27 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047129#M60950</guid>
      <dc:creator>Champnet</dc:creator>
      <dc:date>2026-05-27T10:28:27Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047131#M60951</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.plus.net/t5/user/viewprofilepage/user-id/107337"&gt;@PhilipHeyes&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;Every Boots scam email that we have seen in the last year was sent via relay.plus.net and the Plusnet hosted avssout outbound email server farm.&amp;nbsp; This is how the sender gets SPF / DMARC / DKIM to PASS.&lt;/P&gt;
&lt;P&gt;Here are email header examples from a recent Boots message that it was so convincingly real ( it is real ) it was accepted as not being spam by the 123reg email platform : &lt;BR /&gt;&lt;STRONG&gt;Received: from avasout-ptp-001.plus.net ([84.93.230.227])&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&lt;BR /&gt;Authentication-Results: sxplibsmtp04-20.prod.sxb1.secureserver.net;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp;dkim=pass header.d=plus.com header.b=qtL2afFb;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp;dmarc=pass header.from=&amp;lt;account&amp;gt;.plus.com&lt;BR /&gt;&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=plus.com; s=042019;&lt;/STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;That I can send messages from my VM internet connection using relay.plus.com without credentials points to lack of effort to secure the platform &amp;amp; is why having migrated to Greenby we have abandoned SMTP server relay.plus.com and the IP.&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;As &lt;STRONG&gt;avasout-ptp-001.plus.net&lt;/STRONG&gt; [84.93.230.227] is listed as a BT IP address, has this matter been reported to BT?&lt;/P&gt;
&lt;P&gt;% Abuse contact for '84.92.0.0 - 84.93.255.255' is 'email@bt.com'&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.whois.com/whois/84.93.230.227" target="_blank" rel="noopener"&gt;https://www.whois.com/whois/84.93.230.227&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;sxplibsmtp04-20.prod.sxb1.secureserver.net&lt;/STRONG&gt; [92.204.86.193] belongs to Go Daddy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.whois.com/whois/92.204.86.193" target="_blank"&gt;https://www.whois.com/whois/92.204.86.193&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 10:58:36 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047131#M60951</guid>
      <dc:creator>pvmb</dc:creator>
      <dc:date>2026-05-27T10:58:36Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047132#M60952</link>
      <description>&lt;P&gt;I did get a boots spam email in amongst it all.&amp;nbsp; I assume the header doesn't show the full trail from the initial email, just that from the bounce back.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 10:50:12 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047132#M60952</guid>
      <dc:creator>hillfort</dc:creator>
      <dc:date>2026-05-27T10:50:12Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047134#M60953</link>
      <description>&lt;P&gt;&lt;STRONG&gt;avasout-ptp-001.plus.net&lt;/STRONG&gt; is one of about 13 similar hosts operated by PN/BT&amp;nbsp; you can see them in your SPF list.&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 10:58:03 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047134#M60953</guid>
      <dc:creator>PhilipHeyes</dc:creator>
      <dc:date>2026-05-27T10:58:03Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047135#M60954</link>
      <description>&lt;P&gt;...And?&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 10:59:20 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047135#M60954</guid>
      <dc:creator>pvmb</dc:creator>
      <dc:date>2026-05-27T10:59:20Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047147#M60956</link>
      <description>&lt;P&gt;I've just got a new position with a company. I receive their emails just fine and was able to respond until Saturday evening of last week. I tried to respond about 9 times from plusnet email addresses and then my yahoo one - all of the emails came back and didn't send.?!&lt;/P&gt;
&lt;P&gt;I have tried just now to receive the same issue.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As you can imagine, a new job and I need to be able to respond to emails - granted my emails are not 'rogue', but still bouncebacks all the same.&lt;/P&gt;
&lt;P&gt;Apologies IF my issue requires a new post.&lt;/P&gt;
&lt;P&gt;I need some help with this please quite urgently. Next stop, greenby (un)help(ful) system.&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 12:37:34 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047147#M60956</guid>
      <dc:creator>tangodoll</dc:creator>
      <dc:date>2026-05-27T12:37:34Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047159#M60957</link>
      <description>&lt;P&gt;&lt;a href="https://community.plus.net/t5/user/viewprofilepage/user-id/148236"&gt;@tangodoll&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What was a&amp;nbsp;detailed error report from the bounced messages?&lt;/P&gt;
&lt;P&gt;Take care to obscure your email address!&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 14:42:04 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047159#M60957</guid>
      <dc:creator>mavison</dc:creator>
      <dc:date>2026-05-27T14:42:04Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047160#M60958</link>
      <description>&lt;P&gt;&lt;a href="https://community.plus.net/t5/user/viewprofilepage/user-id/148236"&gt;@tangodoll&lt;/a&gt;&lt;SPAN&gt;&amp;nbsp;wrote: "&lt;/SPAN&gt;I've just got a new position with a company."&lt;/P&gt;
&lt;P&gt;Does the Company not supply you with an email address ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 14:45:24 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047160#M60958</guid>
      <dc:creator>Champnet</dc:creator>
      <dc:date>2026-05-27T14:45:24Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047171#M60962</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.plus.net/t5/user/viewprofilepage/user-id/50445"&gt;@mavison&lt;/a&gt;&amp;nbsp;and&amp;nbsp;&lt;a href="https://community.plus.net/t5/user/viewprofilepage/user-id/893"&gt;@Champnet&lt;/a&gt;&amp;nbsp;- thank you for your responses. I spoke with the company today it looks like they made a change to their email addresses, so on this occasion - greenby might not be at fault. I used the 'greenby bot' thing and it said the same, but it also stated that there are issues which they're trying to fix. Sorry for MY false alarm.&lt;/P&gt;
&lt;P&gt;They're a small company and today was our first training day. We have been issued with 'work' email addresses.&lt;/P&gt;
&lt;P&gt;Thanks again, be well everyone.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;part error:&amp;nbsp;Final-recipient: rfc822; ***@********.co.uk&lt;BR /&gt;Diagnostic-Code: smtp; 550 5.1.1 User does not exist -&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BUT I'm happily receiving her emails?&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 16:43:37 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047171#M60962</guid>
      <dc:creator>tangodoll</dc:creator>
      <dc:date>2026-05-27T16:43:37Z</dc:date>
    </item>
    <item>
      <title>Re: Sudden Surge of rogue email bouncebacks</title>
      <link>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047181#M60966</link>
      <description>&lt;P&gt;&lt;a href="https://community.plus.net/t5/user/viewprofilepage/user-id/148236"&gt;@tangodoll&lt;/a&gt;&amp;nbsp; Thanks for the update and good luck for the future..............&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2026 17:55:33 GMT</pubDate>
      <guid>https://community.plus.net/t5/Email/Sudden-Surge-of-rogue-email-bouncebacks/m-p/2047181#M60966</guid>
      <dc:creator>Champnet</dc:creator>
      <dc:date>2026-05-27T17:55:33Z</dc:date>
    </item>
  </channel>
</rss>

