
| Current Path : /proc/thread-self/root/home/ift/mails/13/ |
Linux ift1.ift-informatik.de 5.4.0-216-generic #236-Ubuntu SMP Fri Apr 11 19:53:21 UTC 2025 x86_64 |
| Current File : //proc/thread-self/root/home/ift/mails/13/1476092470.zrspam.132956_2016_10_10 |
From ivhnpdidw@hrdnetworkdelhi.com Mon Oct 10 11:41:10 2016
Return-Path: <ivhnpdidw@hrdnetworkdelhi.com>
X-Original-To: tjungblut@ift-informatik.de
Delivered-To: tjungblut@ift-informatik.de
Received: by ift-informatik.de (Postfix, from userid 5555)
id D691A375250F3; Mon, 10 Oct 2016 11:41:10 +0200 (CEST)
Received: from localhost by h2486555.stratoserver.net
with SpamAssassin (version 3.4.0);
Mon, 10 Oct 2016 11:41:10 +0200
From: "HotStuff" <HotStuff@haldex.com>
To: tobias.jungblut@ift-informatik.de
Subject: *****SPAM***** Okay, babe, you can have any hole you want
Date: Mon, 10 Oct 2016 08:39:05 -0200
Message-Id: <6661964563.575419@haldex.com>
X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on
h2486555.stratoserver.net
X-Spam-Flag: YES
X-Spam-Level: **********************
X-Spam-Status: Yes, score=22.9 required=5.0 tests=BAYES_80,FSL_HELO_BARE_IP_2,
HTML_MESSAGE,HTML_MIME_NO_HTML_TAG,MIME_BOUND_DIGITS_15,MIME_HTML_ONLY,
MIME_HTML_ONLY_MULTI,MPART_ALT_DIFF,PYZOR_CHECK,RCVD_HELO_IP_MISMATCH,
RCVD_IN_BL_SPAMCOP_NET,RCVD_IN_BRBL_LASTEXT,RCVD_IN_MSPIKE_BL,
RCVD_IN_MSPIKE_L5,RCVD_IN_PBL,RCVD_IN_RP_RNBL,RCVD_IN_SORBS_WEB,RCVD_IN_XBL,
RCVD_NUMERIC_HELO,RDNS_NONE,TVD_RCVD_IP,TVD_RCVD_IP4 autolearn=no
autolearn_force=no version=3.4.0
MIME-Version: 1.0
Content-Type: multipart/mixed; boundary="----------=_57FB6236.BEA285B3"
This is a multi-part message in MIME format.
------------=_57FB6236.BEA285B3
Content-Type: text/plain; charset=iso-8859-1
Content-Disposition: inline
Content-Transfer-Encoding: 8bit
Spam detection software, running on the system "h2486555.stratoserver.net",
has identified this incoming email as possible spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
@@CONTACT_ADDRESS@@ for details.
Content preview: You got a free invite from HotStuff Confirm my request so
we can hook up NOTE: This Site Contains Sexually Explicit Photos of Someone
You Know. [...]
Content analysis details: (22.9 points, 5.0 required)
pts rule name description
---- ---------------------- --------------------------------------------------
0.4 RCVD_IN_XBL RBL: Received via a relay in Spamhaus XBL
[189.51.104.66 listed in zen.spamhaus.org]
3.3 RCVD_IN_PBL RBL: Received via a relay in Spamhaus PBL
0.8 MIME_BOUND_DIGITS_15 Spam tool pattern in MIME boundary
0.0 TVD_RCVD_IP4 No description available.
0.0 TVD_RCVD_IP No description available.
2.4 RCVD_HELO_IP_MISMATCH Received: HELO and IP do not match, but should
1.2 RCVD_NUMERIC_HELO Received: contains an IP address used for HELO
1.3 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net
[Blocked - see <http://www.spamcop.net/bl.shtml?189.51.104.66>]
2.4 RCVD_IN_MSPIKE_L5 RBL: Very bad reputation (-5)
[189.51.104.66 listed in bl.mailspike.net]
1.3 RCVD_IN_RP_RNBL RBL: Relay in RNBL,
https://senderscore.org/blacklistlookup/
[189.51.104.66 listed in bl.score.senderscore.com]
1.4 RCVD_IN_BRBL_LASTEXT RBL: No description available.
[189.51.104.66 listed in bb.barracudacentral.org]
0.8 MPART_ALT_DIFF BODY: HTML and text parts are different
0.7 MIME_HTML_ONLY BODY: Message only has text/html MIME parts
2.0 BAYES_80 BODY: Bayes spam probability is 80 to 95%
[score: 0.9161]
0.0 HTML_MESSAGE BODY: HTML included in message
1.4 PYZOR_CHECK Listed in Pyzor (http://pyzor.sf.net/)
0.8 RCVD_IN_SORBS_WEB RBL: SORBS: sender is an abusable web server
[189.51.104.66 listed in dnsbl.sorbs.net]
0.4 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag
0.0 RCVD_IN_MSPIKE_BL Mailspike blacklisted
0.8 RDNS_NONE Delivered to internal network by a host with no rDNS
0.0 MIME_HTML_ONLY_MULTI Multipart message only has text/html MIME parts
1.5 FSL_HELO_BARE_IP_2 No description available.
The original message was not completely plain text, and may be unsafe to
open with some email clients; in particular, it may contain a virus,
or confirm that your address can receive spam. If you wish to view
it, it may be safer to save it to a file and open it with an editor.
------------=_57FB6236.BEA285B3
Content-Type: message/rfc822; x-spam-type=original
Content-Description: original message before SpamAssassin
Content-Disposition: attachment
Content-Transfer-Encoding: 8bit
Received: from 85.214.156.58 (unknown [189.51.104.66])
by ift-informatik.de (Postfix) with SMTP id 7D5F4375250F2
for <tobias.jungblut@ift-informatik.de>; Mon, 10 Oct 2016 11:41:06 +0200 (CEST)
Date: Mon, 10 Oct 2016 08:39:05 -0200
From: "HotStuff" <HotStuff@haldex.com>
Reply-To: "HotStuff" <HotStuff@haldex.com>
X-Priority: 3 (Normal)
Message-ID: <6661964563.575419@haldex.com>
To: tobias.jungblut@ift-informatik.de
Subject: Okay, babe, you can have any hole you want
MIME-Version: 1.0
Content-Type: multipart/alternative;
boundary="8482366463959049"
--8482366463959049
Content-Type: text/html;
7Bit
Content-Transfer-Encoding: 7Bit
<p>You got a free invite from HotStuff</p>
<p><a href="https://www.google.com/url?q=http%3A%2F%2Fb16rrd4.megahookup6.top%2F%3Fu%3D79hwkwf%26o%3Depnpvze%26t%3Dmix&sa=D&sntz=1&usg=AFQjCNEz-i-2Y0_TORZfF9V6THkA67sdNw" target="_blank">Confirm my request</a> so we can hook up</p>
<p><strong>NOTE: This Site Contains Sexually Explicit Photos of Someone You Know.</strong></p>
<p>These women have asked us to not allow men that are seeking a "relationship". They only desire quick sex. Not dating. Do you agree to this request?</p>
<p>For a limited time only, we are opening free slots for new male members.</p>
--8482366463959049--
------------=_57FB6236.BEA285B3--