Have you been blocked?
All blocklists are researched and managed by The Spamhaus Project.
Simply click on the link below, which will take you to the Project’s IP and Domain Reputation Checker. From here you will be able to enter your IP or Domain and begin your request for removal.
Please note that the Project’s IP and Domain Reputation Checker is the only place where removals are handled.
IT and security teams consistently face multiple business challenges. Discover how our solutions can help overcome some of those issues.
From processing issues, to email-borne threats our blocklists easily integrate with your current email set-up to improve anti-spam & anti-virus email filtering.
Employ our threat intelligence to increase visibility across security events, reveal potential weaknesses in your network, and threats to your brand.
Stay on top of the latest threats and proactively combat botnet infections, and other forms of abuse, with our solutions.
From clicking on phishing emails to visiting malware dropper sites, our threat intelligence provides automatic protection for your users.
Data for Integration
Enhance your service and create competitive advantage by integrating Spamhaus’ world-class IP and domain reputation data.
Our products provide additional layers of security for networks and email. They also present security teams with additional insight into malicious behavior.
Border Gateway Protocol (BGP)
Block the worst of the worst at your network edge, taking advantage of your existing BGP-capable routers. Configuration only takes minutes.
Data Query Service (DQS)
Benefit from industry-leading real time blocklists. These DNSBLs easily plug into your existing email infrastructure to block spam and other email threats.
A powerful research tool to investigate relationships between internet infrastructures. Quickly pivot to new areas of concern to rapidly investigate potential threats.
Immediately block connections to dangerous sites, including phishing and malware dropper websites. A ‘set and forget’ solution.
Spamhaus Intelligence API
Threat intelligence data in API format to enable users to easily integrate metadata relating to threats with their own applications, programs, and products.
A wide range of datasets, providing multiple layers of protection. They can be plugged directly into your existing hardware, making them an affordable choice.
Border Gateway Protocol (BGP) Feeds
Do Not Route Or Peer (DROP) and Botnet Controller List (BCL) datafeeds can peer with your existing BGP-capable router.
Domain (DBL), Zero Reputation (ZRD) and Hash blocklists (HBL) enable you to block content in emails, filtering out a higher rate of email-borne threats.
Data for Investigation
Passive DNS and extended datasets give you additional information on internet resources. They provide deeper insights into incidents and possible threats.
DNS Firewall Threat Feeds
A wide range of feeds to apply to your DNS recursive server. Choose the right level of protection for your organization.
Spam (SBL), Policy (PBL), Exploits (XBL) and Auth (AuthBL) blocklists allow you to filter email from IPs associated with spam, botnets, and other threats.
Find out more about us.
Learn more about Spamhaus; who we are, and what we do.
Find out who we work with and how you can become a Spamhaus Partner.
Discover a wide range of blog posts, case studies and reports.
Commonly asked questions about Spamhaus products and processes.
The Blocklist Tester
A tool to help you check if your servers are correctly configured to use Spamhaus DNSBLs.
Help for the Project's legacy DNSBLs users
Using the Project’s legacy blocklists and suddenly experiencing email issues? This page may be able to help.
In depth information about the technical details and implementation of our products.
Posted by Sarah Miller on 17 Mar 2022
We’re offering an exclusive opportunity to help shape Spamhaus’ newly released Reputation Portal. We’re inviting trusted operators who own IP space and at least one ASN to sign up for this beta release and provide valued feedback. We're only looking for 30 beta testers, and the signup window will close on April 14th, so please register for interest as soon as possible so as not to be disappointed.
This portal helps you assess the reputation of the IPs on your network. You can manage that reputation by quickly navigating to abuse areas and reviewing the reasons behind listings. Finally, you can quickly resolve issues through our easy-to-use removals process and track those requests via the Ticketing Center. For a quick tour, view this short video or keep on reading.
This provides you with an overview of your network. It includes the number of ranges you have associated with your account, and the total number of listings for those ranges by each IP blocklist:
The dashboard also provides you with the percentage change in the number of listings for each blocklist across 30 days.
For quick reference, several “top tens” show the most recently listed IPs, the longest listed IPs, and your most abused /24s.
This area lists all your ranges by /24, along with the number of SBL, XBL, and CSS listings. All the information is fully sortable and can be exported, should you require. From this page, you can quickly navigate to a heatmap of a specific /24.
The heatmap shows the individual IPs within a /24 and displays which have SBL, CSS, or XBL listings associated with them. From here, you can click on one of the IPs to review the complete listing information.
Currently, it isn’t possible to request removal from the SBL – the usual process of the ISP contacting the SBL team via email remains in place. However, for the other blocklists, once you have taken the relevant remediation that caused the listing in the first place, you can request removal.
Here you can track all your requests and communications with the Spamhaus team. This includes adding or deleting ranges from your network, changing user details, or working with the team to resolve a listing issue.
To save you from logging into the portal daily, you can choose to receive reputation updates via email or our API, providing automatic updates of new listings.
At the risk of sounding cliché, “your feedback is important to us.” It really is. We want the community to help shape the portal’s roadmap; tell us what works, what doesn’t, and what functionality you’d find helpful to have in the future. Feedback will be requested via an online survey or telephone call with a third party, and we’ll give you plenty of notice! All feedback will be anonymized, so we urge you to be constructively honest!
Go and register your interest – we look forward to shaping the portal’s future together.
This API provides access to multiple datasets containing metadata relating to compromised IP addresses. These IP addresses may be exhibiting compromised behavior, including malware, worm, and trojan infections, and SMTP-specific traffic emitting spam, or cybercriminals are using them to control infected computers – botnet command & controllers.
The breadth of data available via an easily consumable API provides security developers with scores of opportunities.
8 March 2022
Global email and data security company, Egress uses Spamhaus’ Data Query Service to provide users with simple intelligence about malicious actors.
25 January 2022
The breadth of reputation data available via the Spamhaus intelligence API is increasing - the extended Botnet Controller List is now included.
20 January 2022
Q4 update on the botnet command and controllers our researchers are observing, including geolocation and who is hosting them.