Monday, April 27, 2015

new link for the removal of Outlook IP block

Since a couple of weeks, I can't open the support page
https://support.msn.com/eform.aspx?productKey=edfsmsbl2&ct=eformts
at Outlook for mitigation the IP reputation.
If an IP is supposed to be blocked by Microsoft, it might help removing it from the blocklist.
It was an automatic process. Once we fill out the formulas and press "submit" button. Then the guys at outlook will review the IP reputation. They decide if this IP will be further blocked or the block will get lifted.

But the link above relinks now to another support page, which is useless for lifting a block.
What bad news.

Do you have the same issue? Don't worry, I found the new link for it and share here with you
https://support.microsoft.com/en-us/getsupport?oaspworkflow=start_1.0.0.0&wfname=capsub&productkey=edfsmsbl3&locale=en-us&ccsid=635639051175184163

Thursday, April 23, 2015

Case study 33iq -- SendCloud (part1)

33iq, meaning of showing how smart you are, is the biggest SN (social network) in China focusing on brain teasers.
I love solving puzzles, so I registered myself as a user.
Then I found out that they are doing quite incredible Email Marketing. To be honest, I never thought that the Email Marketing can be so highly developed in main land China.

I neither can nor want to know the total marketing operation of 33iq exactly. I am only interested in Emails, so I'd like to talk about it from the EM (Email Marketing) perspective and my point of view.

On the homepage, I can find the button to login and register easily on the right side of the head. They are sized big and clearly.



After I roll down this page, a banner pops up at the bottom, which stays from then on until the foot of this page to let you sign up using other social network IDs. Of course the biggest ones in China: QQ and weibo.



I don't know if they tested the best side of webpage to have their lead registration buttons, before they put them in these places, but very standard and pretty smart.

The registration process is not difficult. Email address is asked.


I like the slide verification, although it's not widely used. In my opinion, it's much better than typing unreadable letters or numbers.



Thanks to SendCloud, the confirmationsemail came immediately and landed in the primary tab at Gmail.
No, not the shipping company from Netherlands. SendCloud is a young but leading ESP (Email Service Platform) made by Sohu in China.




The sender has a name and is a postmaster, which is unusual but okay.
The content is clear and targeted, without a single advertising.
And there is a sidebar(!!)



Strict DOI (double Opt-in)

I digged deeper to read the header of this Email
Delivered-To: kenatexperian@gmail.com
Received: by 10.182.24.169 with SMTP id v9csp506700obf;
        Thu, 23 Apr 2015 07:42:56 -0700 (PDT)
X-Received: by 10.68.65.111 with SMTP id w15mr5887472pbs.57.1429800175793;
        Thu, 23 Apr 2015 07:42:55 -0700 (PDT)
Return-Path: <05561b10-e9c7-11e4-8020-00163e62bc6d@mail10.sendcloud.org>
Received: from mail36.sendcloud.org ([101.227.180.36])
        by mx.google.com with ESMTP id sj10si12766109pac.198.2015.04.23.07.42.52
        for <kenatexperian@gmail.com>;
        Thu, 23 Apr 2015 07:42:54 -0700 (PDT)
Received-SPF: pass (google.com: domain of 05561b10-e9c7-11e4-8020-00163e62bc6d@mail10.sendcloud.org designates 101.227.180.36 as permitted sender) client-ip=101.227.180.36;
Authentication-Results: mx.google.com;
       spf=pass (google.com: domain of 05561b10-e9c7-11e4-8020-00163e62bc6d@mail10.sendcloud.org designates 101.227.180.36 as permitted sender) smtp.mail=05561b10-e9c7-11e4-8020-00163e62bc6d@mail10.sendcloud.org;
       dkim=pass header.i=@sendcloud.org
Message-Id: <553904ee.aae4420a.7d08.355eSMTPIN_ADDED_MISSING@mx.google.com>
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=sendcloud.org; i=@sendcloud.org;
 q=dns/txt; s=mail; t=1429800172; h=Sender : To : From : Subject : Date
 : Content-Type : Content-Transfer-Encoding : MIME-Version : REPLY-TO :
 From : Subject : Date; bh=7ZxY9EvxGap9rMjKNYJEMQlD0hA1rP2s5hXlBsYwcHA=;
 b=jT2xifVevJQ3Nq+3TntMfiy7hhTgo4E09lmsdtObS6BNfNm/grjMGoUW3NUVtWsx3xiXzh
 +u9ZzWD1MwkEHlvJPzf6NP2PvIZKYPgQAzgITVKP25B90J6g6J4/VqIFSXjmNsJtY2Bw7Dp6
 F5pv7u6oO3Uk1bRjeZW8Ybl2n5NDY=
Sender:05561b10-e9c7-11e4-8020-00163e62bc6d@mail10.sendcloud.org
Received:from localhost ([115.29.201.198]) by SendCloud Inbound Server (Haraka/2.2.4) with ESMTPA id 6803468F-B1A2-483A-B966-12278E625757.1 envelope-from <postmaster@notice.33iq.com> (authenticated bits=0); Thu, 23 Apr 2015 22:42:51 +0800
To:=?GBK?Q?=D3=C3=BB=A7?= <kenatexperian@gmail.com>
From:33IQ <postmaster@notice.33iq.com>
Subject:=?GBK?B?uNDQu9eisuEzM0lRzfijrMfr0enWpEVtYWls?=
Date:Thu, 23 Apr 2015 22:42:50 +0800
Content-Type:text/html; charset="UTF-8"
Content-Transfer-Encoding:quoted-printable
Content-Disposition:inline
MIME-Version:1.0
REPLY-TO:33IQ <postmaster@notice.33iq.com>
X-SENDCLOUD-UUID:1429800171967_21449_16810_2341.sc-10_10_127_51-inbound0$kenatexperian@gmail.com
X-SENDCLOUD-LOG:1429800171967_21449_16810_2341.sc-10_10_127_51-inbound0$kenatexperian@gmail.com#kenatexperian@gmail.com#64116#21449#0
X-SMTPAPI:


SPF and DKIM have been set up.

You can hardly believe how many IP addresses are used by SC. Who said, Ranges of IPv4 has been poorly assigned to Asia!
sendcloud 
45.56.67.250/32 (1 address) 
61.135.130.0/23 (512 addresses) 
61.135.132.0/23 (512 addresses) 
61.135.150.0/24 (256 addresses) 
61.135.178.0/23 (512 addresses) 
61.135.181.0/24 (256 addresses) 
101.227.178.0/23 (512 addresses) 
101.227.180.0/23 (512 addresses) 
103.249.252.104/31 (2 addresses) 
220.181.19.0/24 (256 addresses)

The DKIM signature is the most complicated I have ever seen.
Sadly the d for domain has been valued standard/default as sendcloud.org.
Shared pool maybe, easier to set up?

DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=sendcloud.org; i=@sendcloud.org;  q=dns/txt; s=mail; t=1429800172; h=Sender : To : From : Subject : Date  : Content-Type : Content-Transfer-Encoding : MIME-Version : REPLY-TO :  From : Subject : Date; bh=7ZxY9EvxGap9rMjKNYJEMQlD0hA1rP2s5hXlBsYwcHA=;  b=jT2xifVevJQ3Nq+3TntMfiy7hhTgo4E09lmsdtObS6BNfNm/grjMGoUW3NUVtWsx3xiXzh +u9ZzWD1MwkEHlvJPzf6NP2PvIZKYPgQAzgITVKP25B90J6g6J4/VqIFSXjmNsJtY2Bw7Dp6 F5pv7u6oO3Uk1bRjeZW8Ybl2n5NDY=


The sender IP 101.227.180.36 has at moment excellent senderscore. The rDNS has been set up.



Classified as moderate volume sender, it seems this pool has not been used consistently.
And yes, as I guessed a shared pool.

Sending Domains
info01.sendcloud.org
info02.sendcloud.org
mail.hibay.net
mail.joboto.com
mail.jubi.com
mail09.sendcloud.org
mail10.sendcloud.org
mail11.sendcloud.org
mass.mail.xiaoenai.com
triggermail.zyxd.net
usermail.okcoin.com
www.mangasearcher.com
xingyunvpn.com
Depends on the domain reputation, it may be now a good point to think about segmentation and separation of transnational emails.

Ohoh I feel like knowing a lot of business secrets by now :D
Let's stop here for now, next time, I will check the newsletters and share my founds with you.