Is there a way to obtain the true IP address of someone masking their IP? [closed]

Solution 1:

I'm a forensics major, and I'd say "no, not really". I'm assuming you're looking at the header and the information from there.

It's painfully simple to run things through a proxy to hide your actual IP address.

There's a few possible scenarios here - lets talk about the most obvious - he's using a proxy service, tunneling things through there and the IP address you're seeing is the proxy service's. In which case you may be able to trace the IP back to the proxy service, and from there, get legal advice to reveal the guy - not very likely to happen.

A slightly more advanced option would be to take advantage of an open relay, (which doesn't really work these days) or to use an anonymous mailing service - there are lots on Google.

Email is an old protocol from a more innocent time, and doesn't really have a strong way to determine identity. As I said, it's nearly impossible to track, through purely technical means available to an individual, someone who is trying to hide his identity.

A lot of forensics is about people - if you already have emails linking back to him, and the new ones have similar content, you might still be able to get someone to check up on him. Unfortunately the solution here is likely to be legal or social rather than technical.

Solution 2:

This question is veering seriously off topic. The answer depends upon the country in which you are located. Each country has its own laws regarding this.

The simplistic answer would be yes you can get the IP address provided you have a court order. Your only realistic solution is to consult a solicitor.

Solution 3:

Actually NO. You as an individual can't trace the email sender who is "hiding". There is lot of open proxy servers, which allows to hide IP address, one can use linux TOR services, which disables even authorities to get in, one can send email through open mailserver outside of States... there is plenty ways how to do it. If the sender is clever nothing will help you to get his identity, including police, courts, etc.

If it is about regular spam

If it is about regular spam, experience of many IT specialists is, that best way how to handle with spam is to delete it and further prevent it - not to behave to be spammed again (not to send large group emails and ask to not be included in large group emails, not to answer to spam, not to click to be removed from sending the spam, etc. - all this guides to the fact that you succeed to get to higher level: they will know, that your email is active and you will get even more spam)

If the emails are personal

If the emails are personal, usually the same or similar, someone is stalking you and emails are targeted to your personally, contact police as this could be potentially dangerous. Consider, that it is not up to you to identify the sender, it is job of the police/court. Definitive proof could be obtained when outbox of the sender's computer contain your emails. But there is plenty ways how to send email, so keep it in outbox would be stupid. Most probably you could identify such sender by content of his/her first emails in comaprison with content analysis of current emails. The rule "if it writes as a dog, barks as a dog, makes poo as a dog smells as a dog, it WILL be a dog" is still valid.