Whitelisting False Positive Spam Emails - Part 1
In this video, I'm going to show about spam protection on the service. So for this one here, I'm going to use complete take solutions.com dot a U.
So this area here is the C panel. I'll send through a link to the C panel and you'll be able to access this area in here, all your email accounts and this main part here at magic spam protection is what we want to look at.
So when I click into here, now, the first thing we look at is it sort of shows you the green of how many spams it called at ham.
And how many spams there are hams and spams. So the spam is the maroon one. These are the ones that are all being blocked.
Now we can actually go to the logs in here and check this out. If I put nothing in and we're just going to filter by 50 and do a search, it pops up a new window and we can see here that this is all the spam that's being blocked in the last, in this case here two days.
Now, if I want to show more, I'll just take off the limit and then go search. And then from here, we can see all of these ones here.
So this is pretty much 297 spam since Wednesday last, last Wednesday, I would say, okay, so this looks like a week's worth of spam.
Now from here. You can sort of, it's, it's sort of shows a lot of stuff, but we mainly want to look at the sender over here.
We're going to actually, if I move my mouse over, you'll see that it gets to a point where it changes and then I can actually take it to here and then take it out a little bit and I can see more of what's happening.
I do believe also that if I click on this it'll ma take away the IP address, the host name, country, you know, things like that.
So we really want to look at the sender and the recipient here. So I'd take that over and we see this is the malware it's going to, so from this, we can see most of this is spam, so obvious spam, and you can see why it's blocked.
If I come over here and we go to the type of spam, we can see why it is blocked. So from here, you can generally just check to see what's legitimate and not just buy it on your browser, clicking control F okay.
This brings up the fine function on your browser. Now, from here, I've typed in dot com.edu. And then from there we can see everything that's has.com today.
You on it now, of course.com dot a U was Australian. So Australian domain. So this is a good way to sort of go through and the mainly looking for the ones in the sender.
So we get down here. We can see that here, this one, here you go. Hang on a sec, K C panel it complete take solution.
We think, well, we want to sort of allow that email through, but we don't really, because when we have a look at this email, we can see that it's coming from oh, for a start BD.
Well, Bangladesh. So obviously the server is not in Bangladesh and it's not your email. So this is just somebody fronting is your email.
So this is not legitimate. Okay. And it's also on a block list, spam block list, 30 and 38 and 40.
Keep these in mind, cause I'll show you what this is later on. And as we go down, we can see that that's pretty much all of it.
Here's some more here. So we can see that this one here is dot a U. So this is actually a proper service.
It comes from Australia, but it's also on a spam block list, 38. Let's have a look at this right now.
We'll go back to here and we'll go to spam settings. And what's your see over here. We have IP reputation spam over here, block list, spam settings.
So we have the numbers for our block lists. We should have it. <inaudible> Damn here. Okay. Here it is on the IP reputation.
So we can see here that the spam block list is number 38. Okay. So, and this is enforced and on.
So if we go to this, you can click on this. I'm pretty sure that we can click on that. And it brings up that spam list.
And it'll, it'll tell us about the spam list. Of course you don't want to learn about this stuff, but this is what's happening.
This is basically a black list that this IP and 38 were lower than the number 38. It was down here.
Yeah. So this is obviously a spam block list here that is essentially legitimate. And if it's on that list, then of course we don't want that mark to come through.
So that's, what's happening with all of these emails. They're checking against spam lists to see if the IP address or the mail server is actually on this block list and then sort of puts it into a spam.
So with the ones that were actually that were actually legitimate, legitimate emails, but we're still blocked. We can see the reason why.
So let's have a look at this CrossFit one here. Well, let's actually have a look at Raleigh's electrical. So rollies, electrical here we can see was on a quarantine check, dynamic reverse.
So basically what this means and let's see, I think I have it over here. So what this means is that I just sort of progressed from a minor quick Google search.
It comes up saying that it's compiled of a pattern of service that have leaked spam. So basically the server that rollies is on at some point has leaked spam and and whether it be the Raleigh's account or another account on the server, and really it's just put this IP address and everything on a bit of a, a quarantine list.
And that's why this email was having issues. So that's, it's on their end and it's legitimate, but nevertheless, still a pain.
Okay. So let's go back at this now, so we can have a look over here and guest bam settings. Now let's say that a few things go through and we go, well, we want, we don't care about 'em check, reverse dynamic, reverse.
We can go over here and check dynamic reverse, or we can see that it just puts it on quarantine. So I'm going to turn this off from now.
That means when I turn this off and save, that means that these emails here yeah. That we're using the check dynamic, reverse DNS, and let's do a search on that.
Okay. So that means these emails here, that one, these ones will all be basically coming through because we've taken that off.
So while we're while we're actually letting through a couple and who basically have bad servers while we're letting through a couple of legitimate ones, we're also letting through a couple of spam ones.
So therefore, now we have a little bit more reliability with the emails coming through, but you will get some more spams and that's the payoff with everything anyway.
So that's why what's happening here. But to check things, let's go into that. Actually. I'll pause, I'll Stop this video and I'll send another video alongside of this one, cause you just want to, how to check and approved spam.
Okay. So I'll stop this recording now.