Submit a ticket My Tickets
Welcome
Login  Sign up

Spoofing IP Reports

The Spoofing IP Reports feature allows you to identify and export a list of IP addresses that have been flagged as potential spoofing sources for your domain. This report is a powerful tool for monitoring unauthorized use of your domain and taking action to protect your email reputation. 


How It Works

Potential spoofing IP addresses are identified through the following process:

  1. DMARC Aggregate Report Analysis — The system continuously processes incoming DMARC aggregate reports received for your domain. These reports are submitted by receiving mail servers and contain data about emails claiming to originate from your domain.
  2. IP Reputation Check — Each IP address found in the aggregate reports is evaluated against reputation databases to assess whether it is a known malicious or suspicious sender.
  3. Platform-Level Analysis — Additional platform-level signals and behavioral patterns are analyzed to further categorize each IP address.
  4. Categorization — Based on the above analysis, IP addresses are classified as potential spoofing sources if they exhibit suspicious or unauthorized sending behavior.

Using the Spoofing IP Reports Page

Filters

FilterDescription
DomainSelect the domain you want to investigate from the dropdown list.
Date RangeChoose a custom date range to scope the report. Only data within the selected period will be included.


Exporting the Report

Once you have configured your filters:

  1. Select the desired Domain from the Domain dropdown.
  2. Set the Date Range for the period you want to analyze.
  3. Click Export as CSV to download the report.

The exported CSV file will contain the list of IP addresses identified as potential spoofing sources within the selected domain and date range.


P
PowerDMARC is the author of this solution article.

Did you find it helpful? Yes No

Send feedback
Sorry we couldn't be helpful. Help us improve this article with your feedback.