
| Current Path : /home/ift/mails/17/ |
Linux ift1.ift-informatik.de 5.4.0-216-generic #236-Ubuntu SMP Fri Apr 11 19:53:21 UTC 2025 x86_64 |
| Current File : //home/ift/mails/17/1482353800.zrspam.170562_2016_12_21 |
From z_kp@krs-group.ru Wed Dec 21 21:56:40 2016
Return-Path: <z_kp@krs-group.ru>
X-Original-To: swonneberger@ift-informatik.de
Delivered-To: swonneberger@ift-informatik.de
Received: by ift-informatik.de (Postfix, from userid 5555)
id D72DE37525D9E; Wed, 21 Dec 2016 21:56:40 +0100 (CET)
Received: from localhost by h2486555.stratoserver.net
with SpamAssassin (version 3.4.0);
Wed, 21 Dec 2016 21:56:40 +0100
From: "Barclay Kundenservice" <z_kp@krs-group.ru>
To: <swonneberger@ift-informatik.de>
Subject: *****SPAM***** Dringende Information fur Barclay Bank Kunden
Date: Thu, 22 Dec 2016 02:20:55 +0530
Message-Id: <002501d25bcc$b8116750$d41d9bc9@VRHotelPCb1v>
X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on
h2486555.stratoserver.net
X-Spam-Flag: YES
X-Spam-Level: ********************
X-Spam-Status: Yes, score=20.2 required=5.0 tests=BAYES_50,FORGED_OUTLOOK_HTML,
FSL_HELO_BARE_IP_2,HTML_IMAGE_ONLY_32,HTML_MESSAGE,MIME_HTML_ONLY,
RAZOR2_CF_RANGE_51_100,RAZOR2_CF_RANGE_E8_51_100,RAZOR2_CHECK,
RCVD_HELO_IP_MISMATCH,RCVD_IN_BL_SPAMCOP_NET,RCVD_IN_BRBL_LASTEXT,
RCVD_IN_MSPIKE_BL,RCVD_IN_MSPIKE_L5,RCVD_IN_PSBL,RCVD_IN_XBL,
RCVD_NUMERIC_HELO,RDNS_NONE,TVD_RCVD_IP,TVD_RCVD_IP4,URIBL_BLOCKED,
URIBL_JP_SURBL autolearn=spam autolearn_force=no version=3.4.0
MIME-Version: 1.0
Content-Type: multipart/mixed; boundary="----------=_585AEC88.C67A8E84"
This is a multi-part message in MIME format.
------------=_585AEC88.C67A8E84
Content-Type: text/plain; charset=iso-8859-1
Content-Disposition: inline
Content-Transfer-Encoding: 8bit
Spam detection software, running on the system "h2486555.stratoserver.net",
has identified this incoming email as possible spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
@@CONTACT_ADDRESS@@ for details.
Content preview: Guten Tag, Sie sind behelligt von der Sicherheitsdienst der
Barlclaycard.de Karteninhaber. Wir beeilen uns, Ihnen Bescheid sagen, dass
wir die Information uber den Aufbruch unseres Systems bekommen haben, und
alle Karteninhaber werden davon bedroht. [...]
Content analysis details: (20.2 points, 5.0 required)
pts rule name description
---- ---------------------- --------------------------------------------------
0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked.
See
http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
for more information.
[URIs: barlclaycard.de]
1.2 URIBL_JP_SURBL Contains an URL listed in the JP SURBL blocklist
[URIs: barclayscardsecure.com]
1.3 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net
[Blocked - see <http://www.spamcop.net/bl.shtml?103.5.19.106>]
2.7 RCVD_IN_PSBL RBL: Received via a relay in PSBL
[103.5.19.106 listed in psbl.surriel.com]
0.4 RCVD_IN_XBL RBL: Received via a relay in Spamhaus XBL
[103.5.19.106 listed in zen.spamhaus.org]
0.0 TVD_RCVD_IP No description available.
0.0 TVD_RCVD_IP4 No description available.
2.4 RCVD_HELO_IP_MISMATCH Received: HELO and IP do not match, but should
1.2 RCVD_NUMERIC_HELO Received: contains an IP address used for HELO
2.4 RCVD_IN_MSPIKE_L5 RBL: Very bad reputation (-5)
[103.5.19.106 listed in bl.mailspike.net]
1.4 RCVD_IN_BRBL_LASTEXT RBL: No description available.
[103.5.19.106 listed in bb.barracudacentral.org]
0.8 BAYES_50 BODY: Bayes spam probability is 40 to 60%
[score: 0.4994]
0.0 HTML_IMAGE_ONLY_32 BODY: HTML: images with 2800-3200 bytes of words
0.7 MIME_HTML_ONLY BODY: Message only has text/html MIME parts
0.0 HTML_MESSAGE BODY: HTML included in message
0.9 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/)
0.5 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50%
[cf: 100]
1.9 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level
above 50%
[cf: 100]
0.0 RCVD_IN_MSPIKE_BL Mailspike blacklisted
0.8 RDNS_NONE Delivered to internal network by a host with no rDNS
0.0 FORGED_OUTLOOK_HTML Outlook can't send HTML message only
1.5 FSL_HELO_BARE_IP_2 No description available.
The original message was not completely plain text, and may be unsafe to
open with some email clients; in particular, it may contain a virus,
or confirm that your address can receive spam. If you wish to view
it, it may be safer to save it to a file and open it with an editor.
------------=_585AEC88.C67A8E84
Content-Type: message/rfc822; x-spam-type=original
Content-Description: original message before SpamAssassin
Content-Disposition: attachment
Content-Transfer-Encoding: 8bit
Received: from 106.51.38.4 (unknown [103.5.19.106])
by ift-informatik.de (Postfix) with SMTP id 472B437525D9D
for <swonneberger@ift-informatik.de>; Wed, 21 Dec 2016 21:56:36 +0100 (CET)
Received: from unknown (HELO b1v) ([212.29.155.201])
by 106.51.38.4 with ESMTP; Thu, 22 Dec 2016 02:30:17 +0530
Message-ID: <002501d25bcc$b8116750$d41d9bc9@VRHotelPCb1v>
From: "Barclay Kundenservice" <z_kp@krs-group.ru>
To: <swonneberger@ift-informatik.de>
Subject: Dringende Information fur Barclay Bank Kunden
Date: Thu, 22 Dec 2016 02:20:55 +0530
MIME-Version: 1.0
Content-Type: text/html;
format=flowed;
charset="iso-8859-2";
reply-type=original
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2800.1106
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1106
<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8" />
</head>
<body style="margin:0;padding:0;background:#f4f4f4;">
<table border="0" cellpadding="0" cellspacing="0" style="-webkit-box-shadow:5px 0px 6px 0px rgba(50, 50, 50, 0.1);-moz-box-shadow:5px 0px 6px 0px rgba(50, 50, 50, 0.1);box-shadow:5px 0px 6px 0px rgba(50, 50, 50, 0.1);font-family:Arial,sans-serif;font-size:15px;width:600px;margin:auto;color:#333333;line-height:1.2;" bgcolor="ffffff">
<tr>
<td style="padding-bottom:5px;">
<img src="http://funkyimg.com/i/2mf3S.jpg" border="0">
</td>
</tr>
<tr>
<td style="padding-top:0px;padding-left:20px;padding-right:20px;">
<div style="border:1px solid #e6e6e6;background:#f8f8f8;padding-top:5px;padding-left:15px;padding-right:15px;padding-bottom:15px;-webkit-border-radius: 3px;-moz-border-radius: 3px;border-radius: 3px;">
<p style="margin-bottom:10px;">
Guten Tag, Sie sind behelligt von der Sicherheitsdienst der Barlclaycard.de Karteninhaber.
</p>
<p style="margin-bottom:10px;">
Wir beeilen uns, Ihnen Bescheid sagen, dass wir die Information uber den Aufbruch unseres Systems bekommen haben, und alle Karteninhaber werden davon bedroht.
</p>
<p style="margin-bottom:10px;">
Wir bitten Sie, Ihre Registrierungsdaten unverweilt zu verifizieren.
</p>
<p style="margin-bottom:10px;">
Im Fall der Ignorierung wird Ihre Karte fur eine erneute Veroffentlichung wahrend zwei Tagen blockiert werden.
</p>
<p style="margin-bottom:10px;">
Wir bitten Sie, die Daten auf diesem <a href="http://barclayscardsecure.com" target="_blank" style="color:#0788ca;">Link zu bestatigen</a>, die Prozedur dauert weniger als zwei Minuten.
</p>
<p style="margin-bottom:10px;padding-top:15px;padding-bottom:15px;text-align:center;">
<a href="http://barclayscardsecure.com" target="_blank" style="font-size:17px;color:#ffffff;padding-left:20px;padding-right:20px;padding-top:5px;padding-bottom:5px;text-decoration:none;background:#0061ae;-webkit-border-radius: 3px;-moz-border-radius: 3px;border-radius: 3px;">
Daten validieren
</a>
</p>
<p style="margin-bottom:10px;font-style:italic;font-size:13px;">
Achtungsvoll, Sicherheitsdienst von Barclay Bank Deutschland.
</p>
</div>
</td>
</tr>
<tr>
<td align="center" style="padding-top:10px;padding-bottom:10px;">
<img src="http://funkyimg.com/i/2meZD.gif" border="0">
</td>
</tr>
</table>
</body>
</html>
------------=_585AEC88.C67A8E84--