How to track the original location of an email via its IP address如何追踪原来的位置,一个电子邮件通过其ip地址

Posted on October 9, 2007 at 7:14 am张贴于2007年10月9日在上午07时14分

Welcome to Online Tech Tips , a great resource for computer tutorials, technology news, software reviews, and personal computing tips.欢迎网上高新技术小费,丰厚的资源,计算机技术指南,科技新闻,软件审查,以及个人电脑的提示。 If you're new here and you like the content, you can subscribe to my如果你是来这里和你喜欢的内容,你可以订阅我的 RSS feed rss的饲料 to get daily tips.获得每日小费。 Thanks for visiting!感谢来访!

Here’s a quick how-to guide on how you can track email to it’s originating location by figuring out the email’s IP address and looking it up.这里的快怎么来指导你如何能够追踪通过电子邮件发送给它的起源地点,按盘算邮件的ip地址,并展望了。 I have found this to be quite useful on many occasions for verification purposes since I receive lots of emails daily due to my blog.我发现这是相当有用的多次核查目的,因为我收到了很多电子邮件每天因我的博客。 Tracking the IP address of an email sender does require looking at some technical details, so be ready to dig your heels in!跟踪ip地址的电子邮件发送者确实需要看的一些技术细节,以便随时准备挖你的接踵而至!

There are basically two steps involved in the process of tracking an email : find the IP address in the email header section and then look up the location of the IP address.有基本上有两个步骤,参与这一过程的跟踪电子邮件 :找ip地址在邮件头节,然后再寻找地点的ip地址。

Finding the IP address of an email sender in GMail, Yahoo Mail, and Outlook找到ip地址的电子邮件发送者在gmail时,雅虎电子邮件,以及展望

Let’s go ahead and take a look at how you would do this for Google, Yahoo and Outlook since those are the most popular email clients.让我们继续前进,并采取看看您将如何做到这一点,为谷歌,雅虎和前景,因为这些是最流行的电子邮件客户端。

Google’s Gmail 谷歌的gmail

1. 1 。 Log into your account and open the email in question.登录到你的帐户,并打开邮件中的问题。

2. 2 。 Click on the down arrow that’s to the right of the Reply link.点击就向下箭头表示的,以答辩权环节。 Choose Show Original from the list.选择显示,原来的名单。

田径电子邮件

Now here’s the technical part that I was telling you about earlier!现在这里的技术部分,我告诉你,刚才! You need to look for the lines of text that start with “ Received: from “.你必须寻找最行文字,即开始与" 实收:从" It might be easier to simply press Cntrl + F and perform a search for that phase.它可能更容易简单新闻cntrl + f和执行搜索该阶段。 You’ll notice that there are several Received From’s in the message header.你会看到,有几个收到的,在信息标头。 This is because the message header contains the IP addresses of all of servers involved in routing that email to you.这是因为讯息头载ip地址的所有服务器参与路由电子邮件给您。

信息标题

To find the first computer that originally sent the email, you’ll have to find the Received From that’s farthest DOWN .找到第一台计算机问世,原本送邮件,你必须找到收到来自的最远下来 As you can see from the above image, the first one is from a computer called “aseem” with the IP address 72.204.154.191 .正如你可以看到,从上述的形象,第一个是从电脑上所谓" aseem "ip地址72.204.154.191 Then it was routed to my ISP’s server at eastrmmtao104.cox.net and so on and so forth till it got to your email server.那么,它是单线,以我的互联网服务供应商的服务器上eastrmmtao104.cox.net等等等等,直至把它得到你的电子邮件服务器。

The computer aseem is my personal home computer and that’s my public IP address for my house!电脑aseem是我个人的,家里有电脑,而且我的公网ip地址为我的房子! I’ll go through Yahoo and Outlook before talking about tracking the location of that IP address.我将通过雅虎与展望之前,谈论跟踪位置即ip地址。

Yahoo Mail Beta 雅虎电子邮件β

1. 1 。 Log into your account and open the email (if you’re using Yahoo Mail Beta with the new preview interface, make sure you double-click on the email so that it opens in a new tab)登录到你的帐户,并打开电子邮件(如果你使用雅虎电子邮件β与新的预览界面时,要确保你双击这个邮件,所以它会打开一个新的统计表)

2. 2 。 At the top right, you’ll see there is a drop-down option where Standard Header is selected by default.在顶部的权利,你就会看到有一个下拉选项即可标准包头是选取预设的。

3. 3 。 Click on it and choose Full Header .点击它并选择充分头

雅虎头

Again, you’ll see the same information as before, just in a different window:再次,你会看到同样的资料以前一样,只是在不同的窗口:

消息报头

Microsoft Outlook 微软outlook

1. 1 。 Open the email in Outlook by double-clicking on it打开电子邮件在前台,通过双击它

2. 2 。 Go to View at the top menu (the menu options for the email, not the main Outlook window) and choose Options .查看在顶部菜单(菜单选项为电子邮件,而不是主要观之窗) ,并选择选项。

展望讯息标头

You’ll get a dialog box where you can set the message options and at the bottom you’ll see the Internet Headers box.你会得到一个对话框,在这里您可以设定讯息方案,并在底部,你会看到互联网的头箱。 For some silly reason, the box is very small and you have to scroll a lot, so it’s best to simply copy and paste the text into Notepad to view it more easily.对于一些无聊的原因,这个盒子是非常小的,你一定会滚动了很多,所以这是最好的,以简单的拷贝和粘贴文本到记事本,以期更容易。

互联网标头

Tracking the location of an IP address跟踪位置ip地址

Now that we have our originating IP address of 72.204.154.191, let’s find out where that is!现在,我们有我们的原产ip地址72.204.154.191 ,让我们看看那里就是! You can do this by perform a location lookup on the IP address.你可以做到这一点。演出地点查找关于ip地址。 My favorites are我最喜欢的是 IP2Location ip2location and GeoBytes IP Locator geobytes叶定位 .

GeoBytes gave me a big map of New Orleans, LA along with a bunch of other information about the location itself. geobytes给了我一个大地图上的新纽奥良,洛杉矶随着一串的其他信息,对自己的位置。

找到ip地址位置

IP2Location also gave me the same information pretty much, including the ISP (Cox Communications). ip2location也给了我同样的资料相当多,包括互联网服务供应商(考克斯通讯) 。 Of course, this is correct since I live in New Orleans!当然,这是正确的,因为我住在新奥尔良!

If you want more information, you can do a WHOIS database search also.如果你想了解更多信息,你可以做的whois数据库检索也。 My favorite one is the我最喜欢的一个是 ARIN WHOIS Database Search arin whois数据库搜索 . This will give you information on who hosts that IP address and their registration information.这将让你了解谁主机ip地址和他们的登记资料。 You can always contact them to try and find more information on that particular IP address.你可以随时与他们联络,以设法找出更多信息,对特定ip地址。

Have fun tracking down those emails!乐在追踪这些邮件! Questions, comments, or suggestions?问题,评论或建议? Post a comment!张贴一条评论!

Technorati Tags: technorati的标签: , , , , , ,

If you enjoyed this post, make sure you 如果你享受这个职位时,要确保你 subscribe to my RSS feed 订阅我的rss饲料 !

» Filed Under »存档下 Computer Tips电脑贴士

Related Posts相关职位

28 Responses to “How to track the original location of an email via its IP address” 28回应"如何追踪原来的位置,电子邮件经其ip地址"

  1. ReviewSaurus reviewsaurus said on : 说:

    Congrats aseem for getting dugged! congrats aseem盼着dugged ! And hey that’s a nice and informative guide和嘿这是一个好的和翔实的指南 : )


  2. Apostrophe Police said on : apostrophe警方说:

    “It’s” is always a contraction; the possessive form of “it” has no apostrophe. "这是"始终是处于收缩;占有形式的"它"的说法并没有apostrophe 。


  3. beno said on : 说:

    but thats only if the sender used a mail client on his own computer.但thats只有当寄件人用了一个电子邮件客户端对自己的电脑。 if the sender uses gmail.com web interface to send the mail, u’ll just see googles server in the “recieved: from” section.如果寄件人利用gmail.com网页介面,并发出电邮, u'll刚刚看到网路伺服器,在"实收:从"一节。 not useful!没有用!


  4. akishore akishore said on : 说:

    Hi Beno,喜得,

    I agree it’s not useful if the email is sent from Gmail via a web browser.我同意这不是有用的,如果邮件发送gmail的,从通过网络浏览器。 However, there are tons of people who send emails from their office computers (Outlook, etc) and in those cases, tracking the location would be useful!但是,也有吨的人发送电子邮件,从自己的办公室电脑(前台,等) ,在这种情况下,跟踪定位将是有益的!

    Aseem aseem


  5. beno said on : 说:

    agreed, for such scenarios!同意,因为这种情景! i thought more people used the web interface than local clients.我以为更多的人使用网络界面比当地客户。 anyways, have a great day! anyways ,有一个伟大的日子!


  6. Lexx said on : lexx说:

    The IP shown isn’t necessarily the originating IP.知识产权证明,并不一定是源于叶。 I could quite easily use someones else IP range and send emails.我可以很容易地使用someones否则叶射程和发送电子邮件。


  7. Markus Diersbock 在markus diersbock said on : 说:

    This isn’t always the case with webmail.这种情况并非总是如此的webmail 。

    If you are in Europe getting your mail, it will still如果你是在欧洲获得你的邮件,它仍然会
    look like you are in the US.像你身在美国。

    Their’s some good news with mail like HotMail, you他们的一些好消息与电子邮件一样, hotmail的,你
    can check one of the X-headers like:可以选一的x头像:

    X-Originating-IP: [38.99.194.90]的x原产-叶: [ 38.99.194.90 ]


  8. Markus Diersbock 在markus diersbock said on : 说:

    new_msg = replace(old_msg, “their’s”,”there’s”) new_msg =取代( old_msg " ,把自己的" , "有" )


  9. TRaef06 traef06 said on : 说:

    Lexx - “In fact, the only part of the email header that can’t be faked is the Received: line, which references your mail server. lexx -"事实上,只有部分的电子邮件报头,不能伪造,是接获:线路,其中多次提到你的邮件服务器。 Spammers often add spoofed Received: headers to try to hide the true origin of the unwanted email, but modern mail transfer programs record the sender’s correct IP address.垃圾邮件发送者往往添加欺骗性收到:报头,试图隐瞒真实产地的请自来的电子邮件,但现代邮件传输节目记录发送者的正确ip地址。 So even if the sender uses a fictitious or false name when contacting the receiving server, you can determine the origin of the spoofed message.”因此,即使寄件人使用假名或假名接触时,接收服务器,你能确定原产地的,虚假的信息。 "
    http://searchsecurity.techtarg.....58,00.html http://searchsecurity.techtarg.....58 , 00.html

    The three way handshake that is part of every TCP communication prevents IP spoofing.三个途径握手,这是每一个tcp通信防止ip欺骗。


  10. sadasd said on : sadasd说:

    Not useful: the LAST Received: line may be private IP, you have to look up the last non-private IP.没有任何用处:最后收到:线路可私有ip ,你还得了最后一个非私有ip 。


  11. NotSoFast said on : notsofast说:

    Be careful when relying on this information.时要小心,依托这方面的信息。 Spoofing IP’s in emails is trivial.伪造叶的电子邮件,实在是微不足道。


  12. TRaef06 traef06 said on : 说:

    You can’t spoof the originating IP address.你无法欺骗发端ip地址。 Its part of the three way handshake.其部分的三路握手。 All the others are easily spoofed.所有其他人都是很容易欺骗性。

    That’s how SPAM filters check reverse DNS.这是怎么了垃圾邮件过滤器检查反向域名解析。

    His article does state to use the bottom IP address, which is the only one you can rely on.他的文章是否各州使用底部的ip地址,因为这是唯一一个你可以依靠。

    Nice article!好文章!


  13. Doug Woodall 道伍德尔 said on : 说:

    Well done!做得好!
    This may not work all the time as others have said.这可能是行不通的所有时间都正如其他人所说的。 But Ive had success in using these procedures in tracking down businesses who have gotten my email from other websites, such as when you use a directory submittal site.但香港专业教育学院已成功地使用这些程序,跟踪企业的人得势,我的电子邮件从其他网站,例如当你使用一个目录递交网站。


  14. akishore akishore said on : 说:

    TRaef06 and Doug, traef06和道,

    Thanks for the positive comments!感谢正面评论! I wasn’t meaning this to be a super comprehensive guide to detect the location of spam email.我没有意义,这是一个超级全面引导侦查的位置垃圾邮件等。 Mostly I’ve used this to track down emails from malicious businesses or individuals.大多是我用这个追查电子邮件免受恶意企业或个人。 Most of them don’t even know how to spoof an IP address!他们大多数甚至不知道如何哄骗一个ip地址!

    Thanks!谢谢!


  15. Russ @ bombay potatoes russ @孟买土豆 said on : 说:

    IP in email is too easy to fake.叶国电子邮件中,是很容易伪造的。 Nice article though, well done.尼斯文章,但做得好的。


  16. Keith 基思 said on : 说:

    Sounds cool… Like it was being said above, it is not always the case whereby you can trace the mail from the originating server; as a single server can be shared by many hosts.听起来很酷… …就像是被说到这里,它并非总是如此,让你可以追查邮件从原产服务器;作为一个单一的服务器可以共享许多主机。


  17. Sunil Thaha said on : 萨尼尔thaha说:

    Do you have any idea on how to traceback a mail sent from a gmail id ?对此,您有什么想法,就如何追踪邮件发送一个gmail身份证?


  18. Chris said on : 克里斯说:

    I had a quick question.我有一个快的问题。 Is there any way that you know of to track the IP address for mail coming to just Hotmail?有没有什么办法,你知道的追踪ip地址邮件来只是hotmail的吗?


  19. Nirmal said on : 说:

    This is a great tip.这是一个伟大的小费。 Stumbled.偶然的。


  20. HASSAN' 哈桑' said on : 说:

    What a wonderful post.什么是美好的职位。


  21. Shahid Khattak said on : 沙希德哈塔克说:

    Hi,喜,
    Any idea how would it work for Outlook Express 6.0, please?任何构想如何将资讯科技工作的outlook express 6.0 ,好吗?
    Cheers,欢呼声,
    Shahid.沙希德。


    Pingbacks pingbacks
  1. Chat Marchet News Digest » How to track the originating location of an email via it’s IP address 聊天marchet新闻月刊»如何追踪起源的地点是一个通过电子邮件,它的ip地址 Says: 内容为:

    […] Full story This entry was posted on Sunday, October 14th, 2007 at 11:07 pm and is filed under le Chat Marchet. [ … … ]充满故事本条目被张贴在周日, 2007年10月14日在下午11时07分,并提出了根据乐聊天marchet 。 You can follow any responses to this entry through the RSS 2.0 feed.你可以跟随任何回应,以本条目通过的rss 2.0饲料。 You can leave a response, or trackback from your own site.你可以留下回应,或跟踪,由你自己的地盘。 […] [ … … ]

  2. Pingbacks pingbacks
  3. How to track the original location of an email via its IP address « ICT NEWS 如何追踪原来的位置,一个电子邮件通过其ip地址«新闻信息和通信技术 Says: 内容为:

    […] details… […] [ … … ]详情… … [ … … ]

  4. Pingbacks pingbacks
  5. » How to track the originating location of an email via it’s IP address »如何追踪起源的地点是一个通过电子邮件,它的ip地址 Says: 内容为:

    […] read more | digg story Uncategorized […] [ … … ]阅读更多| digg故事待[ … … ]

  6. Pingbacks pingbacks
  7. How to track the originating location of an email via it’s IP address « digg the wordz 如何追踪起源的地点是一个通过电子邮件,它的ip地址« digg该wordz Says: 内容为:

    […] read more | digg story […] [ … … ]阅读更多| digg故事[ … … ]

  8. Pingbacks pingbacks
  9. Tracking An Emails Location | Technology Blog by Colbert Low 跟踪一个电子邮件位置|技术博客由colbert低 Says: 内容为:

    […] tip on how to find out the IP address on the spam emails and do something about blocking them. [ … … ]提示,就如何找出ip地址,对垃圾邮件,并做一些阻断他们。 via Here’s a quick how-to guide on how you can track email to it’s originating location by figuring […]途经这里的快怎么来指导你如何能够追踪通过电子邮件发送给它的起源地点,按估算[ … … ]

  10. Pingbacks pingbacks
  11. Technogab | Technology News Podcast with a touch of Rock technogab |科技新闻播客与触摸岩石 Says: 内容为:

    […] How to track the original location of an email via its IP address […] [ … … ]如何追踪原来的位置,一个电子邮件通过其ip地址[ … … ]

  12. Pingbacks pingbacks
  13. Monday morning links serving: The October 22nd edition | [Geeks Are Sexy] Technology News 周一上午链接服务: 10月22日版| [同好都是性感]科技新闻 Says: 内容为:

    […] -How to track the original location of an email via its IP address Here’s a quick how-to guide on how you can track email to its originating location by figuring out the email’s IP address and looking it up. [ … … ] -如何追踪原来的位置,一个电子邮件通过其ip地址,这里的快怎么来指导你如何能够追踪通过电子邮件发送给它的原产地位于盘算邮件的ip地址,并展望了。 […] [ … … ]

Please post your comments/suggestions!请后,你的意见/建议!