Threat-intelligence feed
SpamLast verified Page fetched
Blocklist.de Mail is a spam threat-intelligence feed tracked by WhisperGraph as a FEED_SOURCE node. The Whisper Internet Directory publishes this page so security analysts and LLM agents can link to it as a stable record for Blocklist.de Mail.
Blocklist.de Mail is the mail-server-targeting subset of Blocklist.de's fail2ban-derived reputation feed. It enumerates IP addresses observed performing SMTP brute force, dictionary harvesting, or relay abuse against participating mail operators. Mail teams deploy it as an additional pre-greylisting deny-list alongside Spamhaus DBL and PSBL; the per-category split is helpful when an operator wants to block mail abuse without affecting general web traffic. Source data is contributed by volunteer fail2ban operators across Europe, North America, and Asia. It is indexed here because it appears in many open-source mail-server hardening guides.
Live data unavailable. WhisperGraph returned an error (WhisperGraph 524) while looking up this FEED_SOURCE node. The editorial content above is authoritative; the live-data check will retry on the next page revalidation.
Indicators: Computing — check back later. The precompute pipeline is building this feed's indicator sample from the host corpus and will populate the count and representative addresses on an upcoming run.
Look up which threat feeds list a given IP — the indicator-anchored query that powers the threat card:
MATCH (ip:IPV4 {name: $ip})-[:LISTED_IN]->(f:FEED_SOURCE)
WHERE f.name = "Blocklist.de Mail"
WITH f
MATCH (f)-[:BELONGS_TO]->(c:CATEGORY)
RETURN f.name AS feed, c.name AS categoryVerify the feed's graph-side identity directly:
MATCH (f:FEED_SOURCE {name: "Blocklist.de Mail"})
OPTIONAL MATCH (f)-[:BELONGS_TO]->(c:CATEGORY)
RETURN f.id AS id, f.name AS name, c.name AS categoryOr query Whisper from your own LLM workflow via the Whisper MCP server.
Pivot from Blocklist.de Mail into adjacent entities.