Anti-Spam Filtering Service - Email Security by MX Guarddog (2024)

Direct Delivery is when spammers send their junk mail to your mailbox by ignoring your MX records. The MX records for a domain tell email servers where to send your mail, real servers follow the rules.

We are seeing an increase in the number of spam groups that are ignoring MX records in an attempt to bypass spam protection systems.

How Do They Do it?

Spammers can attempt to bypass your MX records by attempting direct delivery to your server. They try things like delivering to mail.example.com or by sending mail to the same IP address that your website is running on.

Preventing Direct Delivery

In order to prevent direct delivery attacks, you must control who can connect to your server to deliver mail. When using MX Guarddog you ideally only want MX Guarddog servers connecting to your server to deliver mail.

Your available options for stopping direct delivery attacks are determined by your email setup, with so many different email systems there are lots of possible options.

Do you have a firewall?

  • If you have a firewall you can allow only MX Guarddog IP addresses to connect to your server by limiting the IP addresses that can connect. Limiting connections to your server by firewall is the most reliable and should be used if your server or network has a firewall.

Anti-Spam Filtering Service - Email Security by MX Guarddog (1)Are you a cPanel user?

  • If your email server is running on a cPanel based system you can implement rules to create an email firewall that will block mail that is sent via direct delivery.

Is your email server running Microsoft Exchange?

  • Exchange users can implement rules in their connector, limiting delivery in the connector by IP address. Allow only MX Guarddog's IP addresses to deliver mail to the connector.

Anti-Spam Filtering Service - Email Security by MX Guarddog (2)Is your email server running SmarterMail?

  • With SmarterMail you can setup filtering rules at your domain that you can use to prevent the mail sent to your server directly.

Is your email server running Postifx?

Hosted by Zoho Mail?Anti-Spam Filtering Service - Email Security by MX Guarddog (3)

  • Zoho Mail is one of very few shared email hosting services that we know of that allow you to setup an email firewall.

Hosted by Rackspace?Anti-Spam Filtering Service - Email Security by MX Guarddog (4)

  • Rackspace has recently added the ability for shared hosting customers to create an email firewall to protect yourself from direct delivery attacks. Instructions to set up a firewall and secure your email are available here.

Can you control your server port?

  • You can change the port your email server listens on to a non standard port, then update the delivery port in your domain dashboard and MX Guarddog will deliver your mail on your new port. Spammers will not know what port your server is running on and will not be able to send mail to your domain unless it passes through MX Guarddog.

Can you change your name?

  • As a last resort you can change your name. If your email server uses mail.example.com you can change the DNS records and essentially rename your server. Check our blog post Protecting Your Email Server - Without a Firewall for more on changing your name. This change will require updating your email clients and we would suggest this option to advanced users only.

With any of the above options in place, spammers will not be able to bypass spam protection for your domain - resulting in a cleaner inbox.

Email Client Rules

If none of the above are options in your environment, you can also implement filtering rules directly in your email client. Email client filtering is less efficient as you must add the rules on every email client. We have some guides available for Thunderbird, Outlook 2013 and MacMail.

Are You Suffering From Direct Delivery?

In order to check if you are suffering from spam reaching you via direct delivery, you need to check the headers of the mail you have received.

Here are the headers of a message that passed through the MX Guarddog network, you can tell this because there are several references from servers in the IK2.COM network. So this message did pass through MX Guarddog.

Envelope-to: user@example.com
Delivery-date: Mon, 15 Jun 2015 09:39:21 -0400
Received: from s480f.ik2.com ([64.38.239.86]:26047)
by s047.boxmanager.com with esmtps (TLSv1:DHE-RSA-AES256-SHA:256)
(Exim 4.85)
(envelope-from <bounce+7576f4.010a37@work.com>)
for user@example.com; Mon, 15 Jun 2015 09:39:20 -0400
Received: from s480g.ik2.com ([64.38.239.86] helo=s480g.ik2.com)
by s480f.ik2.com with esmtps (TLSv1:DHE-RSA-AES256-SHA:256)
id 1Z4Ubf-0003qs-57
for user@example.com; Mon, 15 Jun 2015 13:39:19 +0000
Received: from 192.237.158.66 by s480g.ik2.com (IK2 SMTP Server); Mon, 15 Jun 2015 13:39:17 +0000
Date: Mon, 15 Jun 2015 13:38:17 +0000
Received: by luna.mailgun.net with HTTP; Mon, 15 Jun 2015 13:38:15 +0000
Content-Type: multipart/alternative;
boundary="----------=_1434375495-12243-167"
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: Work Notification <room@work.com>
Subject: Rahul, Robert
To: <user@example.com>
X-SF-RX-Return-Path: <bounce+7576f4.010a37@work.com>
X-SF-HELO-Domain: do158-66.mailgun.net
X-SF-Originating-IP: 192.237.158.66

Now here are headers of a message that was delivered direct to a server via a direct delivery attack, you can see the message never passed through any server in the IK2.COM network, so MX Guarddog had no chance to stop the message.

(40.93.207.1) with Microsoft SMTP Server (TLS) id 14.3.224.2; Tue, 16 Jun
2015 15:58:33 -0400
Received: from AP-EXCHANGE.action.local ([fe80::b8e8:b862:1c98:c374]) by
AP-Exchange.action.local ([fe80::b8e8:b862:1c98:c374%13]) with mapi id
14.03.0224.002; Tue, 16 Jun 2015 15:58:32 -0400
From: Carrie <Carrie@actionplumbing24.com>
To: "brandon@rcstoremaintenance.com" <brandon@rcstoremaintenance.com>
Subject: Confirmation of payment
Date: Tue, 16 Jun 2015 19:58:31 +0000
Message-ID: <1942B1A9CA8B5843BC8D02DE047242DE9A068F67@AP-Exchange.action.local>
Content-Type: multipart/mixed;
boundary="_004_1942B1A9CA8B5843BC8D02DE047242DE9A068F67APExchangeactio_"
Return-Path: Carrie@actionplumbing24.com
MIME-Version: 1.0

If you are receiving messages with headers like the above sample, with no reference to servers from IK2.COM you would need to implement some type of hardening at your server to ensure all mail that reaches your server can only reach your inbox if it has passed through MX Guarddog.

Anti-Spam Filtering Service - Email Security by MX Guarddog (2024)

FAQs

How much does Mxguarddog cost? ›

MX Guarddog pricing is $0.25 per email address, per month. Pay only for the number of email addresses at your domain. There is no cost for user aliases or domain aliases. If you have a single email address at your domain, your total monthly cost is only $0.25.

Which email service has best spam filter? ›

So let's check them out:
  1. Gmail Spam Filter: #1 Best Email Spam Filter. Number one our list of the best spam filters we have is Google's Gmail. ...
  2. 2. Yahoo Mail Spam Filter. ...
  3. Mailvelope. ...
  4. SpamAssassin. ...
  5. Mailwasher. ...
  6. SpamSieve. ...
  7. Boxbe. ...
  8. SpamTitan for Individuals.
Apr 3, 2024

Can we use email filtering software to avoid spam? ›

Well, all thanks to an email spam filter, users can avoid spam emails from getting into inboxes. But what is an email spam filter? An email spam filter is a tool used in email hosting software that churns out unsolicited, unwanted, and virus-infested emails and keeps such emails off of the user's inbox.

What is an antispam service? ›

Anti-spam is software that aims to detect and block potentially dangerous email from user inboxes.

How much does TrapX cost? ›

Deploying TrapX Security DeceptionGrid into an environment reduces alert fatigue and dwell time and increases lateral movement visibility and surface area coverage, all for a low total cost. The product costs $3,995 per VLAN and includes premium support. Additional support options are available for a fee.

How do I stop spam emails permanently? ›

Thankfully, there are steps you can take to help prevent spam emails from ending up in your inbox:
  1. Mark as spam. ...
  2. Delete spam emails. ...
  3. Keep your email address private. ...
  4. Use a third-party spam filter. ...
  5. Change your email address. ...
  6. Unsubscribe from email lists.

What is the number one spam filter? ›

Apache SpamAssassin is the #1 Open Source anti-spam platform giving system administrators a filter to classify email and block spam (unsolicited bulk email).

Why am I suddenly getting lots of spam emails? ›

You may suddenly start receiving a lot of spam emails for several reasons. Someone may have added your email address to a mailing list, you may have clicked on a spam email (which signals to the sender that your email address is active) or someone may have sold or shared your email address to third-party marketers.

What are the disadvantages of spam filtering? ›

Cons: Thousands of spam emails may reach Inboxes before a spammer's email address, IP or domain is blacklisted. Spam filtering is machine-based so there is a room for mistakes called “false positives.” Bayesian filters may be fooled by spammers, e.g. in a case of using large blocks of legitimate text.

Does Gmail have a spam blocker? ›

The Gmail email spam filter can analyze email content and flag an email as suspicious if it appears illegitimate. Therefore, it's important to proofread your emails before sending them.

Does a firewall stop spam emails? ›

Email firewalls work like spam filters by regulating incoming email based on a set of rules established by the email server. Firewalls analyze email messages to determine if the message should be flagged as spam.

Does Microsoft 365 have email filtering? ›

You can't completely turn off spam filtering in Microsoft 365, but you can use Exchange mail flow rules (also known as transport rules) to bypass most spam filtering on incoming messages (for example, if you route email through a third-party protection service or device before delivery to Microsoft 365).

Does Microsoft block phishing emails? ›

Safe Links and Safe Attachments protection is turned on by default, thanks to Built-in protection in preset security policies. Anti-phishing has a default policy that applies to all recipients where anti-spoofing protection is turned on by default.

What is the difference between spam and hackers emails? ›

Spam emails is referred to as junk email and is unsolicited messages sent in bulk by email. Phishing emails are fraudulent emails designed to steal users private information and data. Spam emails are a form of commercial advertising designed to flood the email inbox of users.

What email service has least spam? ›

Providers like Gmail, Outlook.com, ProtonMail, and Zoho Mail have established themselves as reliable options with strong spam filtering capabilities. Consider your specific requirements, such as privacy, security, and user-friendly features, when making your decision.

Who has the best spam blocker? ›

Some of the most popular spam blocker app filters are Truecaller, Hiya, Kaspersky Antivirus AppLock & Web Security, and Comodo Anti-Spam Gateway.

Does Gmail have the best spam filter? ›

While Gmail's spam filter is highly efficient, every system has room for improvement. There are various reasons for these errors, such as a legitimate sender reported by many users or unusually crafted spam messages bypassing the checks. Fortunately, Gmail offers tools for users to address these misclassifications.

What is the best free email spam blocker app? ›

For this reason, it's important to understand each type of email spam filter so you can choose the one best suited for your personal or business needs.
  • SpamTitan. ...
  • MailWasher. ...
  • Comodo Secure Email Gateway. ...
  • SPAMfighter. ...
  • Hornetsecurity's Email Spam Filter and Malware Protection. ...
  • MX Guarddog. ...
  • MailChannels. ...
  • Symantec Email Security.
Aug 1, 2024

Top Articles
Latest Posts
Article information

Author: Lidia Grady

Last Updated:

Views: 5235

Rating: 4.4 / 5 (45 voted)

Reviews: 84% of readers found this page helpful

Author information

Name: Lidia Grady

Birthday: 1992-01-22

Address: Suite 493 356 Dale Fall, New Wanda, RI 52485

Phone: +29914464387516

Job: Customer Engineer

Hobby: Cryptography, Writing, Dowsing, Stand-up comedy, Calligraphy, Web surfing, Ghost hunting

Introduction: My name is Lidia Grady, I am a thankful, fine, glamorous, lucky, lively, pleasant, shiny person who loves writing and wants to share my knowledge and understanding with you.