How DNS-based blacklists work
A DNSBL is a DNS zone that answers queries about IP addresses or domains. To check 203.0.113.10 against Spamhaus ZEN, a mail server reverses the octets and looks up 10.113.0.203.zen.spamhaus.org. If an A record comes back, the IP is listed and the value (usually 127.0.0.x) encodes the reason. No answer means clean.
Receiving servers run these queries on every inbound connection. A listing on a widely used list such as Spamhaus can mean outright rejection, while smaller lists are one input into a spam score. Domain lists like Spamhaus DBL, SURBL and URIBL work the same way but are keyed on domain names found in headers and message links.
dig +short 10.113.0.203.zen.spamhaus.org
127.0.0.4 # listed (XBL)Which IPs matter for a cold email domain
If you send through Google Workspace or Microsoft 365, the sending IPs belong to Google or Microsoft and are shared with millions of senders. They are almost never listed, and you could not delist them anyway. What you control is the domain itself and the IPs behind your website and MX records, which is what this checker resolves and tests.
Domain blacklists are the real risk for outreach. Getting a fresh domain onto Spamhaus DBL or SURBL is easy if links in your emails point to a listed site or your domain is used in spam. That is why the checker queries the domain lists even when the IPs are all clean.
- A record IPs: your website host, a signal for domain reputation.
- Mail server IPs: the hosts in your MX records that accept replies.
- The domain itself against DBL, SURBL, URIBL and Nordspam DBL.
- Sending IPs of Google and Microsoft are shared and outside your control.
Why some lists show as unknown
Spamhaus and URIBL refuse queries that arrive through large public resolvers such as Cloudflare 1.1.1.1 and Google 8.8.8.8 because they cannot attribute the traffic to a user. Instead of an answer they return a sentinel code. This tool runs in your browser over those exact resolvers, so it reports these lists as unknown rather than guessing. Use their own lookup pages to confirm.
Every other list in the set answers public queries normally. If you see a mix of clean and unknown results, the clean ones are reliable. Only a listed result with a real return code means you are on a blacklist.
Getting delisted and staying off
Requesting removal before fixing the cause is a waste of time; most lists relist within days. Identify the trigger first: a compromised mailbox, a sending tool with no bounce handling, a purchased list full of spam traps or an infected website. Then use each list's delisting page. SpamCop and PSBL expire automatically, Barracuda and Spamhaus respond to a form, UCEPROTECT Level 2 and 3 clear only when the whole range stops.
For ongoing outreach, spread volume across several domains and mailboxes, keep daily sends per mailbox modest, warm new mailboxes gradually and monitor blacklists continuously. InboxOne Shield checks every domain and mailbox against these lists around the clock and pauses sending automatically when something is listed.

