This site contains affiliate links — we earn a commission if you sign up through them, at no extra cost to you.

CPGuard Email Security: Protecting Hosting Email from Spam and Phishing

CPGuard Email Security stops spam, phishing, and outbound spam relay that gets server IPs blacklisted — protecting both inbound and outbound email.

CPGuard Email Security: Protecting Hosting Email from Spam and Phishing

What is CPGuard Email Security?

CPGuard Email Security integrates with the hosting server mail stack to inspect both inbound and outbound email. Two primary objectives: filter spam and block phishing before it reaches user inboxes, and prevent the server from being used as a spam relay — which would result in the server IP being blacklisted and all outbound email rejected.

Inbound Spam Filtering

Inbound email passes through multiple inspection layers: SPF, DKIM, and DMARC verification for the sending domain; SpamAssassin content analysis that assigns a spam score; URL checking against phishing blacklists; and ClamAV scanning of attachments.

Outbound Email Scanning

Outbound scanning is equally critical. If any account is compromised and used to send bulk spam, the server IP gets blacklisted by Spamhaus, Barracuda, Microsoft, Google, and other major email providers — causing every account on that server to have outbound email rejected. CPGuard detects accounts sending unusual volumes and suspends their outbound sending before the server IP is blocked.

Phishing Protection

Phishing emails trick recipients into clicking fake links impersonating banking sites, cloud services, or popular online platforms. CPGuard checks every URL in the email body against a continuously updated phishing database, and analyses email header characteristics to detect domain spoofing that impersonates trusted domains.

SPF, DKIM, DMARC Integration

CPGuard enforces the standard email authentication protocols: SPF identifies which servers may legitimately send email for a domain; DKIM signs email to verify it was not tampered with in transit; DMARC sets the policy for email that fails SPF or DKIM. Correct configuration of these records also helps outbound email avoid spam classification.

Email Attachment Scanning

Email attachments remain the most common malware delivery vector — PDFs with exploits, Excel macros executing PowerShell, executables disguised as documents. CPGuard uses ClamAV to scan every attachment before delivery, detecting known malware and blocking dangerous file types that should never be delivered via email.

Configuring Email Security in DirectAdmin

On DirectAdmin-based hosting, server administrators access CPGuard Email Security settings directly through the control panel without SSH. End users typically do not need to configure anything — providers set sensible defaults — but may be able to adjust spam sensitivity for their own mailboxes if the provider enables this.

Hosting with Server-Level Email Security

Server-level email security provides broader protection than client-side spam filters alone. Always ask what spam filtering and phishing protection your provider includes. AsiaGB.com provides hosting with server-level security, SSD storage, DirectAdmin, 24-hour Thai support, and 99% uptime.

RecommendedAsiaGB.com — the hosting & VPS we use and recommend: servers in Thailand and Singapore, SSD storage, managed through DirectAdmin, with 24-hour Thai support and 99% uptime.

Editor's pick from our hands-on testing.

Visit AsiaGB →

Frequently Asked Questions

My legitimate email was filtered as spam — what should I do?
Contact your hosting provider to whitelist the sender domain or email address, or check the server spam log to see whether the email was quarantined. Some providers allow users to access spam quarantine directly through their control panel.
Can CPGuard prevent unauthorised outbound email from a compromised account?
Partially. CPGuard monitors outbound send rates and suspends accounts exceeding thresholds. If an account is fully compromised with a valid password, rate limiting still provides some protection. Best defence is strong passwords and two-factor authentication.
How do you fix a hosting server IP that has been blacklisted?
First stop the spam (identify and remediate the compromised account), then submit delisting requests to each blacklist provider such as Spamhaus and Barracuda — typically 24–72 hours. CPGuard helps prevent recurrence by catching outbound spam before blacklisting occurs.
Do I need to set up SPF, DKIM, and DMARC myself on DirectAdmin hosting?
SPF and DKIM can be configured directly through the DirectAdmin panel. DMARC is a DNS TXT record added at your domain registrar or DNS zone. CPGuard enforces these policies but does not configure DNS records on your behalf.