Reputation basicsWhat an IP blacklist check tells you
An IP blacklist check shows whether a public IPv4 address appears on DNS-based reputation lists used by mail administrators and security teams. A listing can affect email delivery, remote access and how some firewalls treat traffic from that address.
Use the email blacklist test below to check a sender domain or email address against public domain reputation lists, plus MX and SPF signals that affect deliverability.
The exposure scan is not a full penetration test. It only checks whether selected TCP ports accept connections from the Zerolink server. Pair results with DNS lookup, reverse DNS, and the port checker.
IP blacklist questions
What is an IP blacklist?
An IP blacklist or DNSBL is a reputation dataset that identifies addresses associated with spam, compromised systems, attacks or other unwanted activity.
Can I check email domain blacklist status?
Yes. Use the email blacklist test section below the IP checker. Enter a domain such as example.com or a full email address to query public domain reputation lists plus MX and SPF signals.
What does the security exposure scan do?
It checks reverse DNS and whether common high-risk TCP services are reachable from the Zerolink server. This helps spot accidental public exposure but is not a substitute for authorised penetration testing.
Does no listing mean an IP is completely safe?
No. It only means these sources returned no listing at the time of the check. Firewalls and security providers may use private reputation data that is not publicly searchable.
Why might a residential IP appear on a blacklist?
A compromised device, abusive traffic, shared carrier-grade NAT or a previous user of a dynamic address may affect its reputation.
How do I remove an IP from a blacklist?
Open the official source link, review its evidence and follow its removal process. First stop the underlying spam, malware or server compromise.
Can this tool check IPv6 addresses?
This release checks IPv4 because the selected public DNSBL sources do not all provide equivalent IPv6 query support.
What does a 127.0.0.x response code mean?
Many DNSBLs return addresses in the 127.0.0.0/8 range as listing codes. The exact code can indicate listing type or severity depending on the provider.
Why is Spamhaus checked manually?
Spamhaus restricts automated commercial public-mirror usage. The tool links to the official Spamhaus checker so you can verify that important source directly.
How often should I recheck an IP?
Recheck after you fix the underlying issue and again a few hours later. Some lists update quickly, while others may take longer to reflect remediation.