NDRs Attack in Exchange 2013 RRS feed

  • Question

  • I have exchange server 2013 on windows 2012 R2 and now it is under reverse ndr attack. I just have one server with Mailbox server role and CAS role on it. Is there any other way round to stop this spam?

    i have 5 users infected with a lot of messages under non delivered mail like thousand of those , and i was change and re-name the E-mail of those users and stop to received this mails again but still my Exchange infected with this SPAM 

    Do any have solution of this big problem before my domain be in global blacklist ?????????? 

    Thursday, June 15, 2017 8:53 PM

All replies

  • Sorry that no one replied in a timely fashion. If you are still having the issue, I suggest disabling NDRs and investigating the root cause.

    Saturday, July 29, 2017 4:07 AM