Logo



If you cannot click the link above, Copy & Paste this link: http://caseeforphone.com/zeyJjIjogOTIwNCwgImYiOiAwLCAibSI6IDgzNTQsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: caseeforphone.com] -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: caseeforphone.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128420 - Sent on June 10, 2015, 9:50 am by Attorney.Help@caseeforphone.com
Dear Fried, I am Dr. Mohammed Bin Saleh Al-Sada Minister of Energy & Industry chairman Qatar Petroleum. There is a $45m for Investment. I have $45m for Investment in your Country. I need your assistance and co-operation to move it into your account for onward investment in your country Tell me if you can handle this, if you can't, don't let this to be known by any other person. Its between you and I. PLEASE KINDLY REPLY ME ON THIS EMAIL ADDRESS BELOW; dr.mohammedbinsaleh_alsada@yahoo.co.uk Kind regards, Dr. Mohammed Bin Saleh Al-Sada Minister of Energy & Industry, chairman Qatar Petroleum SpamAssassin Report (spam score: 5.5) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: googlemail.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (nicolewalters112[at]googlemail.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.180 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 0.2 FREEMAIL_ENVFROM_END_DIGIT Envelope-from freemail username ends in digit (nicolewalters112[at]googlemail.com) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.0 FREEMAIL_REPLY From and body contain different freemails 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 3.6 ADVANCE_FEE_3_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #128419 - Sent on June 10, 2015, 9:36 am by nicolewalters112@googlemail.com
If you cannot click the link above, Copy & Paste this link: http://caseeforphone.com/xeyJjIjogOTIwMiwgImYiOiAwLCAibSI6IDgzNTIsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: caseeforphone.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: caseeforphone.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
If you cannot click the link above, Copy & Paste this link: http://caseeforphone.com/heyJjIjogOTIwMCwgImYiOiAwLCAibSI6IDgzNTAsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 5.8) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: caseeforphone.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: caseeforphone.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 1.7 BAD_CREDIT BODY: Eliminate Bad Credit 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128416 - Sent on June 10, 2015, 9:10 am by VivaLoan@caseeforphone.com
.naycthxejxfysb{color:#7e83ed;} Attend Nursing School: Day or Night SpamAssassin Report (spam score: 10.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: unbayunsupportedlyaj.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.216.173 listed in list.dnswl.org] 0.8 DKIM_ADSP_NXDOMAIN No valid author signature and domain not in DNS -0.0 SPF_PASS SPF: sender matches SPF record 1.2 MISSING_HEADERS Missing To: header 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: unbayunsupportedlyaj.com] 0.0 HTML_IMAGE_ONLY_32 BODY: HTML: images with 2800-3200 bytes of words 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.6 URIBL_SBL Contains an URL's NS IP listed in the SBL blocklist [URIs: unbayunsupportedlyaj.com]
Date: Wed, 10 Jun 2015 00:43:39 -0700From: services@moncompte.comSubject: Identifiez-vous à votre Espace Abonné Cher(e) abonné(e), Votre prélèvement bancaire a été refusé par votre établissement bancaire. Afin de régulariser votre situation veuillez refferez ci-dessous : C?est simple et rapide , identifiez-vous à votre Espace Abonné Notez bien que la procédure de régularisation sera valider dans un délai de 48h ouvrable à compter de la date de régularisation. Grâce à votre compte, vous pouvez à tout moment en toute sécurité: Accédez à vos suivis commandes Gardez un oeil sur vos consommations Gérez vos options Commandez vos mobiles Sincères salutations.   L'équipe Free Free Mobile - SAS au capital de 365.138.779 Euros - RCS PARIS 499 247 138
Click to view scam #128414 - Sent on June 10, 2015, 9:00 am by services@moncompte.com
If you cannot click the link above, Copy & Paste this link: http://caseeforphone.com/veyJjIjogOTE5OSwgImYiOiAwLCAibSI6IDgzNDksICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: caseeforphone.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: caseeforphone.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
body { line-height: 1.5; }ol, ul { margin-top: 0px; margin-bottom: 0px; list-style-position: inside; }body { font-size: 11pt; font-family: Calibri; color: rgb(0, 0, 0); line-height: 1.5; }Good day!Do you like expand market and make more profit?  112lm/w LED HIGH BAY LIGHT can be your good choice.200W  22400LM   USD147.00Nichia chip, 112 LM/WMeanwell driver5 years warrantySample is available for testingWidely used in indoor and outdoor, such as stadium, warehouse and etc. More information, please feel free to contact us. Kind regards,VickyShenzhen OSW LIGHTING Co.,Ltd  http://www.oswled.comMobile: +86 13928426540Skype:   sales08.oswledSpamAssassin Report (spam score: 0.0) pts rule name description ---- ---------------------- -------------------------------------------------- -0.0 RCVD_IN_DNSWL_NONE RBL: Sender listed at http://www.dnswl.org/, no trust [183.60.2.36 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record
Click to view scam #128412 - Sent on June 10, 2015, 8:36 am by sales08@oswled.com
.ielka {font-family: Arial, Helvetica, sans-serif} .s {font-family: Arial, Helvetica, sans-serif; color: rgb(51, 51, 51); } ??? ?? ?????? ???? ?????, ??? ?????? ?????? ???? ??????????? Solier, Felice -65% ?????? ????????? -73% 1Wall -65% Just Cavalli, Versace -50% Puma, Adidas, Reebok -60% Kyoto Pearl -90% ????? ?? ?? ????????? ???? ?????????? ?????????, ????????? ?? ????????? ????????? ? ?????????? ??????????? ?????? ????????? ????????? ????, ??? ???????? ? ????? ?? ??????????: ????? 1000, ?????? ??????????, ????? ????????, ???. ???? ???????????? ? 10, ??. 3, ? ??? 202706277, ?????? ??? ??????????? ?????????? ? ??? ?????? ?????? ??????? ?? ???????? ?? ?????, ??? ????? ??? ??????? ?? ? ??????? ?? ?? ???????????? ??? ????? goldensales.bg ?????? ?????? contact@goldensales.bg ? ????????? ?? ?????, ?? ?? ????????? ?????? ?????? ?? ?????? ???????????. ?? ????? ?? ????????? ???? ???????? ????? ?? ?? ???????. ??? SpamAssassin Report (spam score: 4.9) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.171 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: goldensales.bg] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #128411 - Sent on June 10, 2015, 8:20 am by contact@nm.goldensales.bg
If you cannot click the link above, Copy & Paste this link: http://caseeforphone.com/reyJjIjogOTE5OCwgImYiOiAwLCAibSI6IDgzNDgsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: caseeforphone.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: caseeforphone.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
From: postmaster000020@outlook.comTo: account.user@hotmail.comSubject: MICROSOFT VERIFICATION!!!Date: Wed, 10 Jun 2015 04:34:03 +0000Hello User,Your request as to wipe your account has been activated,NOTE : You are about to lose all your messages and files.  Click Here  to terminate or continue with the process Thanks for your co-operation. Yours Sincerely, Regards,The Microsoft Account Team Please do not reply to this message. Mail sent to this address cannot be answered. © MICROSOFT INC 2015 
Click to view scam #128408 - Sent on June 10, 2015, 8:12 am by postmaster000020@outlook.com
---------- Forwarded message ----------From: HSBC Regional Bank Miami Florida USA <officefiles212@gmail.com>Date: Tue, Jun 9, 2015 at 7:49 PMSubject: Attn dear email OwnerTo: HSBC Regional Bank Miami Florida USAUnited State of AmericaAddress: 9469 South Dixie Highway Miami, FL 33156Attn dear email Owner,This is from Office of the Foreign Remittance Department.HSBC Miami Florida USA.With due respect and utmost courtesy, I write to officially acknowledged receipt of your e-mail communication regarding the release of your overdue funds valued the sum of $17,500.000.00 USD as approved for release via SWIFT TELEGRAPHIC WIRE TRANSFER into your bank account.However, in strict adherence with our payment policy, you are expected to fill out the enclosed "Fund Transfer Request and Authorization (FTRA) Form" as attached with this message.Please return the complete form to us via email for immediate processing of your fund remittance into your bank account, If you need any additional information, you are adhere to let us know.Fill out below form and return it immediately;1. Your valid ID:............2. Your full address:........3. Your Telephone Numbers:...4. Bank Name...........5. Bank Account Name:........6. Your Account no#..........7. Routing Number:...........8. Swift Code:...............9. Bank Address:.............10. Email Address............11. Email Password.....Your prompt attention is highly imperative,  NOTE that this is not going to cost you any kind of money.Thanks for banking with HSBC Miami FLYours Sincerely.Mr. Richard J. MoseleyChief Executive Director HSBC Regional Bank FL.
Click to view scam #128404 - Sent on June 10, 2015, 7:50 am by officefiles212@gmail.com
Vous avez manqué notre rendez-vous .ReadMsgBody { width: 100%; } .ExternalClass { width: 100%; } td {border-collapse: collapse; } Vous recevez ce mail car vous vous êtes inscrit sur notre site. Si vous ne souhaitez plus recevoir de messages, cliquez sur ce lien: se désinscrire. Mon amie, Depuis que vous avez faites le choix d?entrer en contact avec moi, un lien inaltérable basé sur mes dons de voyance s?est créé entre nous. Ce lien me permet d?avoir un fort ressenti de voyance vous concernant, et fait en sorte que je perçois régulièrement des bouts de votre avenir, et cela même sans penser directement à vous. Le flash était très clair : Un nouveau bonheur vous attend, grâce à des conseils précieux qui vous seront donnés. Cet évènement vous concerne vous et un membre de votre famille. C'est moi la personne qui peut vous donner ces conseils qui vous mèneront vers le bonheur, car je sais ce qui vous inquiète et ce qui vous fait rêver. Grâce à ce nouveau flash, je vois clairement le chemin que vous devez emprunter. Rejoignez-moi vite, je vous offre la consultation ! Il y a un mois j'ai eu un flash concernant deux autres personnes, Thomas et Yvonne, et les deux m'ont appelés après avoir reçu mon mail. Voici ce qu'il m'ont dit : Thomas, 38 ans, Villeurbanne : "Je vous ai directement appelé après avoir reçu votre mail, car le flash que vous aviez eu à mon égard me semblait bien fort. J'ai bien fait ! Grâce à vos conseils, j'ai décroché le poste d'assistante de direction dont je rêvais depuis si longtemps! Je suis enfin épanouie au travail, et je ne me plains pas de mon salaire plus élevé ! Merci encore." Yvonne,67 ans, Aix-en-Provence : "Vous avez vu tout juste pour moi. Heureusement que j'ai vous ait appelé, j'ai évité la catastrophe au dernier moment. Finalement je m'en sors bien, et j'attends que la suite (bien plus positive) de vos prédictions se réalise maintenant." Bien à vous Cyrine votre voyante Si vous ne souhaitez plus recevoir mes emails, il suffit de vous desinscrire en cliquant ici. Sachez néanmoins que je fait cela pour vous rendre service et que ce serais dommage de ne pas profiter de l'aide que j'aimerais vous offrir. SpamAssassin Report (spam score: 0.5) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: clear-snd.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.176 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 0.1 FROM_EXCESS_BASE64 From: base64 encoded unnecessarily 1.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #128406 - Sent on June 10, 2015, 7:46 am by cyrine@clear-snd.com
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/teyJjIjogOTE5NywgImYiOiAwLCAibSI6IDgzNDcsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
No1好康王 -- 價值6000課程免費參加,再送價值550精油一瓶 限量好禮 高地薰衣草單方精油 主辦單位 中華芳香精油全球發展協會   研習課程內容簡介,完整介紹請上協會網站了解 1.單方與複方精油介紹 2.按摩教學 3.如何挑選適合的精油 4.證照商機與國際芳療師未來 5.NLP心靈芳療營 / 從潛意識中擺脫長久的壞習慣 6.CVS脈輪檢測         查看更多好康或停止好康通知請上No1好康王網站   SpamAssassin Report (spam score: 8.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (luciandenney[at]yahoo.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.51 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 1.0 FORGED_YAHOO_RCVD 'From' yahoo.com does not match 'Received' headers 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 2.0 TVD_SPACE_ENC_FM_MIME TVD_SPACE_ENC_FM_MIME 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
Click to view scam #128401 - Sent on June 10, 2015, 7:36 am by luciandenney@yahoo.com
My name is Gary Mann; I?m currently a captain of the United States Marine, born in Turin-Italy currently deployed to Kabul, Afghanistan on a covert operation. I am placing my 26years military career at your mercy contacting you for this partnership and project. My unit recently conducted a black-ops search and seize mission at a particular residence of a known Taliban chieftain and notorious drug lord. We came across a little over $50,000,000.00 in cash. The four of us debated what to do with the funds and decided to split it between ourselves. Since we are still in active service, I have so far contacted an investment military lawyer who has advised me to get a contingent beneficiary. The funds will be made clean as an investment with a known convenient shop and the proceeds liquidated to my nominated beneficiary. My request is simple, act as my contingent beneficiary and 25% of the total amount will be yours for gratification and partnership. Note that this will be processed under a legitimate framework. Please this information is for your eyes only as I stand untold risks should a third party learn of this. Please get back to me if you are willing to help me. Gary Mann. SpamAssassin Report (spam score: 3.3) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.54 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 0.0 LOTS_OF_MONEY Huge... sums of money 2.5 FREEMAIL_FORGED_REPLYTO Freemail in Reply-To, but not From 1.5 ADVANCE_FEE_2_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #128402 - Sent on June 10, 2015, 7:28 am by test@kyshipping.co.kr
Confidential Message. I know that you might be surprise on this mail, but I am telling you the truth. I know that it is against my official duty to release confidential issue like this to an outsider.There is nothing I can do to help you beside this; I am taking this bold step because of my belief as a Christian.I am Dr. Sarah Alade (OON),Deputy Governor, Economic Policy at Central Bank Of Nigeria What I want to tell you is about your fund with the Federal Government of Nigeria, there are a lot forces working against you right from the last CBN Governor Prof Charlse Soludo and the just retired CBN Governor Mallam Sanusi Lamido Sanusi with other Top officials of all the Commercial Banks here in Nigeria, they have been frustrating people by demanding upfront payment from them constantly, If I tell you that they are using all these money you sent to them to work against you, you might not believe it. But it is reality. There is a way I can assist you get your fund without you paying any charges to get your fund, it is risky but one has to take it, I have assisted one woman from Mexico with it since i resume office as the Deputy Governor, it worked out though her fund was US$10.5m-. What you have to do is to open another bank account any where, if you can open it in another place, it will be nice, but what you have to bear in mind is that you have to re-transfer the fund to another account immediately you confirmed it in your account, I know why I want it this way. If you want me to go ahead, let me know as soon as you get this mail, if I make the transfer into your account this week, it might be next three months that they will find out and by then, you have re-transferred the fund into another account. Get back to me as soon as you get this mail so that I will be in better position to know what to do.Get back to me on this email: mrssarahalade1@yahoo.com.hk Sincerely, Dr. Sarah Alade (OON), Deputy Governor, Economic Policy at Central Bank Of Nigeria SpamAssassin Report (spam score: 10.6) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.45 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: yahoo.com.hk] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 2.5 DATE_IN_FUTURE_12_24 Date: is 12 to 24 hours after Received: date 0.2 FREEMAIL_REPLYTO_END_DIGIT Reply-To freemail username ends in digit (mrssarahalade1[at]yahoo.com.hk ) 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 T_HK_NAME_DR T_HK_NAME_DR 0.0 MSGID_FROM_MTA_HEADER Message-Id was added by a relay 2.5 FREEMAIL_FORGED_REPLYTO Freemail in Reply-To, but not From 2.2 MONEY_FRAUD_8 Lots of money and very many fraud phrases 3.8 ADVANCE_FEE_5_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #128400 - Sent on June 10, 2015, 7:28 am by maja.sesum@hs-hkb.ba
re
Hello.We is ´°Ì?¶ËWe is Yunnan Vocational and Technical College sports.´°Ìåµ?ËDue to the school requirement. we need Golf training. if you can cooperate with us on that, please reply my e-mail .Thank you!I am looking forward to your reply.E-mail Address: ynkmchen125@163.comBest wishes,Zhengxin chenSpamAssassin Report (spam score: 0.4) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (ynkmchen125[at]163.com) -0.0 SPF_PASS SPF: sender matches SPF record 0.2 FREEMAIL_ENVFROM_END_DIGIT Envelope-from freemail username ends in digit (ynkmchen125[at]163.com) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128396 - Sent on June 10, 2015, 7:15 am by ynkmchen125@163.com
Advert
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/neyJjIjogOTE4OSwgImYiOiAwLCAibSI6IDgzNDEsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
MONEY GRAM INTERNATIONAL SENT THE SUM OF $5000 USD TO YOU; YOUR REF NO#: 94900195 KINDLY CONTACT MR.DAVIES M. THE ONLY OUTLET MANAGER INCHARGE FOR MORE DETAILS. SpamAssassin Report (spam score: 3.8) pts rule name description ---- ---------------------- -------------------------------------------------- 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.173 listed in list.dnswl.org] 0.8 DATE_IN_PAST_12_24 Date: is 12 to 24 hours before Received: date 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.8 UPPERCASE_50_75 message body is 50-75% uppercase
Click to view scam #128395 - Sent on June 10, 2015, 7:04 am by etn@united.com.bd
 Dear Friend, I want to transfer US$20.5 Million to your bank account. The fund belong to our deceased customer who died with his entire family in Iraq War 2006, leaving nobody for the claim and as such, I decided to contact you to enable us claim the fund. Your share is 40% while 60% for me. This transaction is 100% risky free. Note: reply me on my private email address: <mohammed_aziz05@voila.fr> for security reasons Thanks, Mohammed Aziz. Banque Régionale de Solidarite( BRS), ouagadougou,Burkina FasoSpamAssassin Report (spam score: 9.1) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.177 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (mohammedaziz269[at]gmail.com) 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 1.2 MISSING_HEADERS Missing To: header 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 2.7 MALFORMED_FREEMAIL Bad headers on message from free email service 1.9 REPLYTO_WITHOUT_TO_CC REPLYTO_WITHOUT_TO_CC 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 1.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #128397 - Sent on June 10, 2015, 7:01 am by mohammedaziz269@gmail.com
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/seyJjIjogOTE4OCwgImYiOiAwLCAibSI6IDgzNDAsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Account User: This message is from System Administrator Your mailbox has exceeded the quota warning threshold specified by the administrator.   Current Usage: 894 MB    Quota Warning Threshold: 550 MB    Quota Size Limit: 1000MB ====> CLICK HERE  To Immediately upgrade your Quota Size, before your mail service will be temporary blocked or interrupted.  Note:  If you don't comply immediately; You won?t be able to receive or send mail. If you do not upgrade your quota mail size.  Please Cleanup your mailbox by deleting some items from your mailbox. Thanks ©2015 Office Outlook Information Center. All rights reserved. To unsubscribe: email unsubscribe@hacc.edu with sender email address and subject. This email and any files attached from HACC, Central Pennsylvania's Community College are confidential and intended solely for use by the individual or entity to whom addressed. If you have received this email in error please notify postmaster@hacc.edu This message may contain confidential information and is intended only for the individual named. If you are not the named addressee do not disseminate, distribute or copy this e-mail. Please notify the sender immediately by e-mail if you have received this e-mail by mistake and delete from your system. If you are not the intended recipient you are notified that disclosing, copying, distributing or taking any action in reliance on the contents of this information is strictly prohibited.
Click to view scam #128390 - Sent on June 10, 2015, 6:52 am by unsubscribe@hacc.edu
Ðàçðàáîòàåì ñàéò îò 1 äíÿ è öåíà îò 2 òûñ ðóáëåé. Ïîäðîáíåå çäåñü SpamAssassin Report (spam score: 16.6) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.192.43 listed in list.dnswl.org] 3.6 RCVD_IN_SBL_CSS RBL: Received via a relay in Spamhaus SBL-CSS [95.169.184.67 listed in zen.spamhaus.org] 2.6 RCVD_IN_SBL RBL: Received via a relay in Spamhaus SBL 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: sellforeveryone.ru] 1.7 URIBL_WS_SURBL Contains an URL listed in the WS SURBL blocklist [URIs: sellforeveryone.ru] 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: startingnow.ru] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128389 - Sent on June 10, 2015, 6:41 am by chip@startingnow.ru
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/teyJjIjogOTE5MywgImYiOiAwLCAibSI6IDgzNDMsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128391 - Sent on June 10, 2015, 6:40 am by Tara@phoneareaonn.com
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/seyJjIjogOTE4NSwgImYiOiAwLCAibSI6IDgzMzksICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128386 - Sent on June 10, 2015, 6:37 am by Cabo.Vida@phoneareaonn.com
Bank of America Corporate OfficeHeadquarters 100 N.Tryon St Charlotte,NC 28255Our Ref:BOA/IRU/SFE/15.5/WD/011United States of AmericaMonday-Friday8 a.m.-9 p.m. Eastern Daylight Time(EDT)Saturday and Sunday8 a.m.-4 p.m. Eastern Daylight Time(EDT)Dear esteemed customer,The Management of the Bank of America Corporate Office Headquarters here in 100 N.Tryon St Charlotte,NC 28255 wishes to inform you that after a brief meeting held by the Bank executives yesterday,the 9th Nov of Jun,2015 at precisely 8 a.m. Eastern Daylight Time(EDT), we deem it appropriate to intimate you that your funds will be transferred into the United States Treasury Account with the JP Morgan Chase Headquarters at 270 Park Avenue in New York according to the record we got from Africa due to your inability to complete the transaction and your failure to meet up with a minor payment obligation.The actual transfer of your funds(15,500,000.00) into the government account comes up next week.This is in line with the instructions of the USA Treasurer,Mrs.Rosa Gumataotao Rios that all unclaimed funds be paid into the United States Government Treasury Account as unserviceable funds in compliance to section 3 subsection 1(a) of the United States Financial Law enacted in 2001 after an attack on our dear country on September 11,2001.Find below the profile of the banking institution where your funds will be transferred into following the government directive:, And note to responds to us with below Name of Bank: JP Morgan Chase Headquarters at 270 Park Avenue in New York. JP Morgan Chase Official Bankers for the United States Treasury DepartmentAC NO: 68302345093Routing NO:021109593Account Name:United States Treasury Department,USANote that if you still wish to receive your funds do get back to us immediately so that we will remove your funds transfer from the list of those transactions to be seized by the United States Government.Also be informed that we need only a DIPLOMATIC IMMUNITY SEAL OF TRANSFER(DIST) to complete the wire transfer.The fee to obtain the SEAL was reduced from 600 to $98 and no other fee is involved. You are required to send the fee of $98 by WESTERN UNION or MONEY GRAM to the issuing officer at the bank where your transaction originated as stated below: INFORMATIONRECEIVERS NAME :INNOCENT AKWAEZECOUNTRY :   BENIN REPUBLICCITY :   COTONOUQUESTION :  IN GODANSWER :   WE TRUSTAmount To Send; $98The name of the city from where the money was sent If we receive the MTCN today,we will transfer your funds (15,500,000.00) before we close office and the funds will reflect 3hours after the transfer.We will send you all the transfer documents to enable you start making cash withdrawals from your account same day the funds are transferred.We have waited for so long and we cannot continue to wait.Thank you for giving us the opportunity to serve your banking needs.Yours faithfully,Mr.Benson Moynihan(CEO)Bank of America®Corporate Office Headquarters,Charlotte,N.C.Bank of America, N.A. Member FDIC.© 2013 Bank of America Corporation. All rights reserved.AR72768/DD6A66SpamAssassin Report (spam score: 4.8) pts rule name description ---- ---------------------- -------------------------------------------------- 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (petergodwin.sc[at]gmail.com) -0.0 RCVD_IN_DNSWL_NONE RBL: Sender listed at http://www.dnswl.org/, no trust [183.79.56.135 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED 1.0 SPF_SOFTFAIL SPF: sender does not match SPF record (softfail) 0.2 FREEMAIL_REPLYTO_END_DIGIT Reply-To freemail username ends in digit ("mr.benson moynihan" ) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list
Click to view scam #128388 - Sent on June 10, 2015, 6:32 am by petergodwin.sc@gmail.com
Ðàçðàáîòàåì ñàéò îò 1 äíÿ è öåíà îò 2 òûñ ðóáëåé. Ïîäðîáíåå çäåñü SpamAssassin Report (spam score: 13.0) pts rule name description ---- ---------------------- -------------------------------------------------- 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.177 listed in list.dnswl.org] 2.6 RCVD_IN_SBL RBL: Received via a relay in Spamhaus SBL [95.169.184.58 listed in zen.spamhaus.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: sellforeveryone.ru] 1.7 URIBL_WS_SURBL Contains an URL listed in the WS SURBL blocklist [URIs: sellforeveryone.ru] 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: spbtramp.ru] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128384 - Sent on June 10, 2015, 6:30 am by ind@spbtramp.ru
SpamAssassin Report (spam score: 7.3) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.177 listed in list.dnswl.org] 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] -0.0 SPF_PASS SPF: sender matches SPF record 2.0 TVD_SPACE_ENC_FM_MIME TVD_SPACE_ENC_FM_MIME 1.0 MIME_NO_TEXT No (properly identified) text body parts 1.0 XPRIO Has X-Priority header 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
Click to view scam #128383 - Sent on June 10, 2015, 6:21 am by elkom@dtc.syzran.ru
Your account settings in one place at My Account .appleLinksWhite a {color: #424242 !important; text-decoration: none !important; cursor: text !important; pointer-events: none !important; white-space: normal !important;}                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    Controls to protect and secure your Google Account   Hello,   We want you to know that you can manage your privacy and security settings in one place, My Account.   VISIT MY ACCOUNT   My Account helps you manage your Google Account settings. For example, you can use Account History to manage or edit your activity on Google, such as your search queries and the places you have been. With Ads Settings, you can tell Google what kinds of ads you would like to see and not see ? and you can control ads based on your interests.   Additional tools and features let you:       Check your key privacy settings by taking the Privacy Checkup       Secure your account with a recovery phone number       Control other account preferences, such as language and accessibility options   You can adjust these settings and more whenever you want at My Account.   Sincerely, The Google Accounts team   This email can't receive replies. For more information, visit the Google Accounts Help Center.   Google Inc. 1600 Amphitheatre Parkway, Mountain View, CA 94043 You received this mandatory email service announcement to update you about important changes to Google services or your Google Account.                                                 SpamAssassin Report (spam score: 0.4) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.180 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #128385 - Sent on June 10, 2015, 6:20 am by no-reply@accounts.google.com
I am Mr. Ibrahim Lamorde, the chairman of ECONOMIC & FINANCIAL CRIME COMMISSION (EFCC). EFCC in alliance with economic community of West African states (ECOWAS) with head Office here in Nigeria. We have been working towards the eradication of fraudsters and scam Artists in Western part of Africa With the help of United States Government and the United Nations. We have been able to track down so many of this scam artist in various parts of west African countries which includes (NIGERIA, REPUBLIC OF BENIN, TOGO, GHANA CAMEROUN AND SENEGAL) and they are all in our custody here in Lagos Nigeria. We have been able to recover so much money from these scam artists. The United Nation Anti-crime commission and the United State Government have ordered the money recovered from the Scammers to be shared among 100 Lucky people around the globe. This email is being directed to you because your email address was found in one of the scam Artists file and computer hard disk in our custody here in Nigeria and with the information gardered from this Scam artist, we notice that you have been scammed of so much money and have decided to complensate you you with a little token to recover the lost of your fund. You are therefore being compensated with the total sum $2.5 Million Dollars. We have also arrested all those who claim that they are barristers, bank officials, Lottery Agents who has money for transfer or want you to be the next of kin of such funds which does not exist. Since your name appeared among the lucky beneficiaries who will receive a compensation of US$2.5 Million, we have made arrangement to register an Online Banking through our Global Bank, where you will have full access to your Online Banking Account Fund, to transfer your fund personally to your Private Bank Account with no complication of things or questioning as the Account will be fully registered in your Name. Feel free to contact the processing officer Mr.ROMNEY NIKO. The online Banking Processing is made much easier for you to transfer your fund to your private Bank Account personally, to avoid any delay or complication of things. With this Online Banking Transfer Processing, you can only transfer the Maximum Amount of US$500.000.00 daily/instalmentally until the total amount of your Compensated/deposited fund is transfered and completely paid to you. So you are advice to contact, processing officer Mr.ROMNEY NIKO with your provided information?s required for verification below. CONTACT PERSON: Mr.ROMNEY NIKO CONTACT TELEPHONE: +234-7080153874 Provide the information bellow to enable the processing of your Online Banking Account for deposition of your total compensated fund. 1)YOUR FULL NAME. 2)YOUR ADDRESS. 3)YOUR TELEPHONE NUMBER. 4)YOUR OCCUPATION 5)YOUR IDENTITY. 6) COUNTRY. 7) SEX. Contact efcc_alart20012@yahoo.co.jp with the information required for verification to enable him start the processing of your Online Banking Account Registration. We guarantee your safety and wish you the best of luck. Best Regard, Mr. Ibrahim Lamorde CHAIRMAN ECONOMIC & FINANCIAL CRIME COMMISSION Email (efcc_alart20012@yahoo.co.jp) SpamAssassin Report (spam score: 34.7) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.169 listed in list.dnswl.org] 2.5 HK_SCAM_N2 BODY: HK_SCAM_N2 0.0 FSL_CTYPE_WIN1251 Content-Type only seen in 419 spam 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 3.5 NSL_RCVD_HELO_USER Received from HELO User 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.2 FREEMAIL_REPLYTO_END_DIGIT Reply-To freemail username ends in digit ( ) 1.2 MISSING_HEADERS Missing To: header 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 FROM_MISSP_XPRIO Misspaced FROM + X-Priority 1.9 REPLYTO_WITHOUT_TO_CC REPLYTO_WITHOUT_TO_CC 0.0 FROM_MISSP_MSFT From misspaced + supposed Microsoft tool 1.4 FSL_NEW_HELO_USER Spam's using Helo and User 0.0 AXB_XMAILER_MIMEOLE_OL_024C2 Yet another X header trait 0.0 MSGID_FROM_MTA_HEADER Message-Id was added by a relay 3.4 MSOE_MID_WRONG_CASE MSOE_MID_WRONG_CASE 2.7 TVD_PH_BODY_META TVD_PH_BODY_META 0.0 MONEY_FROM_MISSP Lots of money and misspaced From 0.9 MONEY_BARRISTER Lots of money from a UK lawyer 2.5 FREEMAIL_FORGED_REPLYTO Freemail in Reply-To, but not From 2.5 TO_NO_BRKTS_FROM_MSSP Multiple formatting errors 0.0 FROM_MISSPACED From: missing whitespace 0.0 T_FROM_MISSP_DKIM From misspaced, DKIM dependable 2.8 FORGED_MUA_OUTLOOK Forged mail pretending to be from MS Outlook 1.0 XPRIO Has X-Priority header 2.2 MONEY_FRAUD_8 Lots of money and very many fraud phrases 3.8 ADVANCE_FEE_5_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #128381 - Sent on June 10, 2015, 5:52 am by test@rsinter.co.th
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/oeyJjIjogOTE4MCwgImYiOiAwLCAibSI6IDgzMzUsICJsIjogMzAsICJzIjogMSwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 8.5) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 2.7 GUARANTEED_100_PERCENT BODY: One hundred percent guaranteed 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128375 - Sent on June 10, 2015, 5:44 am by realrockhard@phoneareaonn.com
Attached herewith Revised Purchase Order and pls send PI asap.. can you accept 50% advance and balance before shipment payment term for this order....ThanksYe WiJapan. SpamAssassin Report (spam score: 4.9) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (balaknitwears[at]gmail.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.53 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 0.0 TVD_SPACE_RATIO TVD_SPACE_RATIO 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
Click to view scam #128376 - Sent on June 10, 2015, 5:38 am by balaknitwears@gmail.com
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/heyJjIjogOTE3OSwgImYiOiAwLCAibSI6IDgzMzQsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128370 - Sent on June 10, 2015, 5:15 am by asian.beauty@phoneareaonn.com
Please my dearest help me!I am writing this mail to you with tears and sorrow from my heart. With due respect, trust and humanity, i appeal to you to exercise a little patience and read through my letter, I wish to contact you personally for a long term business relationship and investment assistance in your Country so i feel quite safe dealing with you in this important business having gone through your remarkable profile, honestly i am writing this email to you with pains, tears and sorrow from my heart, i will really like to have a good relationship with you and i have a special reason why i decided to contact you, i decided to contact you due to the urgency of my situation, My name is Miss Kum  Kipkalya Kones, 23yrs old female and I held from Kenya in East Africa. My father was the former Kenyan road Minister. He and Assistant Minister of Home Affairs Lorna Laboso had been on board the Cessna 210, which was headed to Kericho and crashed in a remote area called Kajong'a, in western Kenya. The plane crashed on the Tuesday 10th, June, 2008.You can read more about the crash through the below site:http://edition.cnn.com/2008/WORLD/africa/06/10/kenya.crash/index.htmlAfter the burial of my father, my stepmother and uncle conspired and sold my father's property to an Italian Expert rate which the shared the money among themselves and live nothing for me. I am constrained to contact you because of the abuse I am receiving from my wicked stepmother and uncle. They planned to take away all my late father's treasury and properties from me since the unexpected death of my beloved Father. Meanwhile i wanted to escape to the USA but they hide away my international passport and other valuable travelling documents. Luckily they did not discover where i kept my fathers File which contains important documents. So I decided to run to the refugee camp where i am presently seeking asylum under the United Nations High Commission for the Refugee here in Ouagadougou, Republic of Burkina Faso.One faithful morning, I opened my father's briefcase and found out the documents which he has deposited huge amount of money in bank in Burkina Faso with my name as the next of kin. I travelled to Burkina Faso to withdraw the money for a better life so that I can take care of myself and start a new life, on my arrival, the Bank Director whom I met in person told me that my father's instruction/will to the bank is that the money would only be release to me when I am married or present a trustee who will help me and invest the money overseas. I am in search of an honest and reliable person who will help me and stand as my trustee so that I will present him to the Bank for transfer of the money to his bank account overseas. I have chosen to contact you after my prayers and I believe that you will not betray my trust. But rather take me as your own sister.Although, you may wonder why I am so soon revealing myself to you without knowing you, well I will say that my mind convince Ed me that you may be the true person to help me. More so, my father of blessed memory deposited the sum of (US$6.500, 000) Dollars in Bank with my name as the next of kin. However, I shall forward you with the necessary documents on confirmation of your acceptance to assist me for the transfer and statement of the fund in your country. As you will help me in an investment, and i will like to complete my studies, as i was in my 1year in the university when my beloved father died. It is my intention to compensate you with 30% of the total money for your services and the balance shall be my capital in your establishment. As soon as I receive your positive response showing your interest I will put things into action immediately. In the light of the above. I shall appreciate an urgent message indicating your ability and willingness to handle this transaction sincerely.AWAITING YOUR URGENT AND POSITIVE RESPONSE, Please do keep this only to your self for now until the bank will transfer the fund. I beg you not to disclose it till i come over because I am afraid of my wicked stepmother who has threatened to kill me and have the money alone ,I thank God Today that am out from my country (KENYA) but now In (Burkina Faso) where my father deposited these money with my name as the next of Kin. I have the documents for the claims. Please contact me through this email address: ( misskum.kipkalya@yahoo.com ) Yours SincerelyMiss Kum Kipkalya Kones. SpamAssassin Report (spam score: 19.1) pts rule name description ---- ---------------------- -------------------------------------------------- 1.0 HK_SCAM_N15 BODY: HK_SCAM_N15 2.5 HK_SCAM_N2 BODY: HK_SCAM_N2 0.9 URG_BIZ BODY: Contains urgent matter 0.4 INVALID_DATE Invalid Date: header (not RFC 2822) 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 RCVD_IN_DNSWL_NONE RBL: Sender listed at http://www.dnswl.org/, no trust [208.84.243.245 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 LOTS_OF_MONEY Huge... sums of money 1.9 REPLYTO_WITHOUT_TO_CC REPLYTO_WITHOUT_TO_CC 1.8 MISSING_MIMEOLE Message has X-MSMail-Priority, but no X-MimeOLE 0.1 FROM_EXCESS_BASE64 From: base64 encoded unnecessarily 2.5 FREEMAIL_FORGED_REPLYTO Freemail in Reply-To, but not From 0.0 T_MONEY_PERCENT X% of a lot of money for you 2.2 MONEY_FRAUD_8 Lots of money and very many fraud phrases 3.8 ADVANCE_FEE_5_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #128369 - Sent on June 10, 2015, 5:13 am by institutoidei@speedy.com.ar
Advert
Dear, We have large quantity of Used Rails R50-R65 for sale in Ghana West Africa, Our Prices are us$220.00 per mt CIF AWSP and us$170.00 per mt FOB Ghana payment term TT, against B/L and Inspection Report. More so, we have also 156 kg X 22 karat Gold Dust/Bar and 2,200 Cts Rough Diamond and Crude Oil for sale to any interested buyer.payment term TT, against B/L and Inspection certificate. Upon your interest on these materials you can issue your company details for FCO and details of the materials. Consequently, we have POP and Inspection Certificate of Lloyd Inspection Agent Company - Ghana, which we can send to you via fax if you request for verification. If you are interested in any of these offers you are advices to contact us through this email: morganthomas77@yahoo.com , address for more information's. Don't forget to include your direct telephone number/mobile lines in your reply. We are waiting for your Response. Regards and God Bless Morgan Thomas SpamAssassin Report (spam score: 6.8) pts rule name description ---- ---------------------- -------------------------------------------------- 2.6 HK_SCAM_N3 BODY: HK_SCAM_N3 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (morgan.thomas[at]mail.ru) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.170 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 0.2 FREEMAIL_REPLYTO_END_DIGIT Reply-To freemail username ends in digit (morganthomas77[at]yahoo.com ) 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 2.0 TO_NO_BRKTS_HTML_ONLY To: misformatted and HTML only
Click to view scam #128368 - Sent on June 10, 2015, 5:03 am by morgan.thomas@mail.ru
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/xeyJjIjogOTE3OCwgImYiOiAxLCAibSI6IDgzMzMsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128366 - Sent on June 10, 2015, 4:54 am by Padre.Angel@phoneareaonn.com
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/xeyJjIjogOTE3NywgImYiOiAwLCAibSI6IDgzMzIsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128365 - Sent on June 10, 2015, 4:35 am by Vehicle.Update@phoneareaonn.com
Divulgação Automática em TODOS os grupos do Face Book.AUTOFACEBOOK MARKETER 3.13 POR APENAS R$ 19,99http://produto.mercadolivre.com.br/MLB-664718833-auto-facebook-marketer-313-_JMColoque seu computador para trabalhar para você enquanto realiza outras tarefas.Com esse programa você pode chegar a 800 grupos por dia, e isso sem bloqueio pelo Facebook.SISTEMA FUNCIONA PERFEITAMENTE.*Posta links e imagens.*Preço Justo apenas R$ 19,99*Funciona 24hs (com seu PC ligado)*Programa Envia 3 Minutos Ou 5 Minutos Cumprindo o Delay Das Politica De Envio Do Face Book ,Pode Enviar 24 Horas Por dia Sem ProblemasINVESTIMENTO ÚNICO.ELE É SEU, SEM MENSALIDADES E COM DIREITO DE REVENDA. SpamAssassin Report (spam score: 6.0) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (ivojdeus[at]gmail.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.192.51 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 0.0 TVD_SPACE_RATIO TVD_SPACE_RATIO 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 1.0 MIME_NO_TEXT No (properly identified) text body parts 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
Click to view scam #128363 - Sent on June 10, 2015, 4:18 am by ivojdeus@gmail.com
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/neyJjIjogOTE3NiwgImYiOiAwLCAibSI6IDgzMzEsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128361 - Sent on June 10, 2015, 4:06 am by RussianBrides@phoneareaonn.com
???? ??????????? ?? ????????? ????? ????? ??? ??? ??-?????? ????????? ?? www.neustoima.bg  ??? ??? ?? ???????? ?????? ???????????? ?? ??????, ????? ? ???????? ????? ? ????? ?? ?????????! ???????? Sielei ? ?????? - Retro ????? ?????? ?????????  Firenze ? ?????? ????? ???????? ???????? ???? Black Poison - Body Scandalo ????? ?????? ?? ??? ?????  ???? ??????? ? ?????? ?????? ????? ???????? Papillon ????? ????????? ???????? Sielei  ????????? ????? ????????  Sielei ??? ??????  ????? ????????? ?????????? ???????? ????????????? ???? ?????? Lormar Joker 18 Push Up ???? ?? ?? 18?????? ?????? Lormar Infiore ???  Push UP ? ???????? ?? ??????????? ?? ????? ????? ???????????????????? ?????? ????????? ???????? Sielei ???????? Leilieve Fiordaliso ? ?????? ??? ????????? ???????????? ????? ? ????????? ????????? Leilieve ????????? ???????? Leilieve Je T'Aime ????? ????????? ???????? ????? ??? ???????? ????? ????? ????????? ????? ?????? ????????? ????? ????????? ????  ??????????? ? ??????? ?? ???? ?????????????? ??? ?? ???????? ???: ?????? ? ????????? ?????? ????? – ???????, ?????????, ??????, ??????????, ??????, ??????, ???????, ???????, ?????? ? ??.  ????? ? ???????? ?????? ????? - ????? ?????????, ??????? ? ?????, ??????, ??????????, ???????? ??????, ???????, ???????? ? ??.  ??-???????????? ????? ????? ? ????? - ?????? ? ???????? ????, ?????, ???????, ??????????, ??????, ??????? ? ???????? ? ??.  ??????? ? ???????? ?????    ????????? ?? ??????? ?? ??? ? ?? ?????? ?????????!http://www.neustoima.bg        ???????? ?????? ?? ???????????? ???????? ?? ???????????, ?? ???? ???? ?? ? ?????????? ????????? ?????????. ??? ???? ?? ?? ???????? ??? ??????????. ??? ???? ?? ??? ???????? ????? ????? ?? ???, ?? ??? ???????? ??? ?? ?????????? ????????????.  ??? ?? ??????? ?? ?????????? ?????? ?????????? ?? "Neustoima.bg", ???? ???????? ?? ?? ??? ? ?? ???????????? ??????????? ?? ????????? ????????? ??? ?????? ????? ?????.??? ??? ?? ???????????, ???? ?? ?? ????????!  SpamAssassin Report (spam score: 4.9) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.216.182 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: neustoima.bg] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/)
Click to view scam #128362 - Sent on June 10, 2015, 3:54 am by neustoima@promooffer.eu
Overseas Credit Commission Sydney Street London SW36NP UNITED KINGDOM Date:09/06/2015 Dear Sir/Madam Re Payment instruction(Part Payment $7.6 Million US Dollars) This is international debt recovery and reconciliation office UK, our mandate is to settle all outstanding debt owe to contractors and individuals all over the world, thus this debt must have been originated from awarded contracts, inheritance and sweepstakes lottery, If you fall into this category of contractors, individual or lottery winners we advise that you contact this office immediately. The directive came in line with the agreement reached in New York U.S.A with the International Moneytary Fund ?IMF, World Bank London and Paris Club on creditors and overseas credit Commission for immediate settlements of all Intercontinental debts owed by various countries in Africa. 1. Date of Approval: 22-10-2014 2. Revised Remittance: Not endorsed. 3. Fund Endorsement payment code No AG-000087GXY-2F-PASS 2000101 4. Date of issue 29-011-2014 5. Bank Effect payment of beneficiary fund 6. International payment: Certifícate Code No:Not Endorsed On receipt of your a responds to this fax/email message, We will unvail to you full contact details of the payment officer who will be in contact with you for onward release of the said funds into any account you wish to specify. However, I will advise you update this office on this matter regularly. Best regards, Linda Wong Regional Coordinator Overseas Credit Commission UK. SpamAssassin Report (spam score: 21.3) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.44 listed in list.dnswl.org] 1.7 DEAR_SOMETHING BODY: Contains 'Dear (something)' 0.0 FSL_CTYPE_WIN1251 Content-Type only seen in 419 spam 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 NSL_RCVD_FROM_USER Received from User 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 1.2 MISSING_HEADERS Missing To: header 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 FROM_MISSP_XPRIO Misspaced FROM + X-Priority 1.9 REPLYTO_WITHOUT_TO_CC REPLYTO_WITHOUT_TO_CC 0.0 FROM_MISSP_MSFT From misspaced + supposed Microsoft tool 1.4 FSL_NEW_HELO_USER Spam's using Helo and User 0.0 AXB_XMAILER_MIMEOLE_OL_024C2 Yet another X header trait 0.0 MSGID_FROM_MTA_HEADER Message-Id was added by a relay 3.4 MSOE_MID_WRONG_CASE MSOE_MID_WRONG_CASE 0.0 FROM_MISSP_USER From misspaced, from "User" 0.0 FAKE_REPLY_C FAKE_REPLY_C 0.0 MONEY_FROM_MISSP Lots of money and misspaced From 2.5 TO_NO_BRKTS_FROM_MSSP Multiple formatting errors 0.0 FROM_MISSPACED From: missing whitespace 0.0 T_FROM_MISSP_DKIM From misspaced, DKIM dependable 2.8 FORGED_MUA_OUTLOOK Forged mail pretending to be from MS Outlook 2.5 LOTTO_AGENT Claims Agent 1.0 XPRIO Has X-Priority header 3.6 ADVANCE_FEE_3_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #128360 - Sent on June 10, 2015, 3:48 am by care@lesfemmes.co.id
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/teyJjIjogOTE3NSwgImYiOiAwLCAibSI6IDgzMzAsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128358 - Sent on June 10, 2015, 3:43 am by Chris@phoneareaonn.com
On Friday, June 5, 2015 5:47 AM, cerise jost <cerisejost@gmail.com> wrote: Hello,Please find the enclosed file and document for production and shipment.Best regards.Cerise JostExport DepartmentPorcela'BOBO GroupMobile: 86-13411838117
Click to view scam #128356 - Sent on June 10, 2015, 3:31 am by cerisejost@gmail.com
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/yeyJjIjogOTE3NCwgImYiOiAwLCAibSI6IDgzMjksICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128357 - Sent on June 10, 2015, 3:23 am by golfmates@phoneareaonn.com
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/seyJjIjogOTE4MywgImYiOiAwLCAibSI6IDgzMzcsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128354 - Sent on June 10, 2015, 3:19 am by Record.Alert@phoneareaonn.com
Attn: Sir Apologies for the manner at which i am approaching you.My name is Mr Ronald Anthony, a Fund Manager with one of the worlds largest investment companies. I handle all our Investors Capital Project Funds which enabled me to divert 1.2% of Investors Excess Return Capital Funds to our Magellan Trust Funds Account where any one can be presented to claim the funds.Total sum of, forty five Million, Seven Hundred and Forty Five Thousand British Pounds (45,745,000.00)BP has been diverted, representing 1.2% of Excess Return Capital Funds from the Investor Capital Project Funds for 2010/2011 fiscal year. I need a reliable and trustworthy person with whom I can work this deal out so that we can claim the funds as mentioned above. There is no risk attached and the funds in question can never be dictated or traced. Be informed that i will handle the expenses that may be required in this business deal. Sincerely, Ronald Anthony SpamAssassin Report (spam score: 28.2) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.176 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: you.my] 0.0 FSL_CTYPE_WIN1251 Content-Type only seen in 419 spam 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 3.5 NSL_RCVD_HELO_USER Received from HELO User 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (ronaldanthony300[at]yahoo.co.uk) 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 1.2 MISSING_HEADERS Missing To: header 2.7 MALFORMED_FREEMAIL Bad headers on message from free email service 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 FROM_MISSP_XPRIO Misspaced FROM + X-Priority 1.9 REPLYTO_WITHOUT_TO_CC REPLYTO_WITHOUT_TO_CC 0.0 FROM_MISSP_MSFT From misspaced + supposed Microsoft tool 1.4 FSL_NEW_HELO_USER Spam's using Helo and User 0.0 AXB_XMAILER_MIMEOLE_OL_024C2 Yet another X header trait 0.0 MSGID_FROM_MTA_HEADER Message-Id was added by a relay 3.4 MSOE_MID_WRONG_CASE MSOE_MID_WRONG_CASE 0.0 MONEY_FROM_MISSP Lots of money and misspaced From 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 2.5 TO_NO_BRKTS_FROM_MSSP Multiple formatting errors 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 2.7 RISK_FREE No risk! 0.0 FROM_MISSPACED From: missing whitespace 0.0 T_FROM_MISSP_DKIM From misspaced, DKIM dependable 2.8 FORGED_MUA_OUTLOOK Forged mail pretending to be from MS Outlook 1.0 XPRIO Has X-Priority header 0.0 FROM_MISSP_FREEMAIL From misspaced + freemail provider 3.6 ADVANCE_FEE_3_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #128355 - Sent on June 10, 2015, 3:17 am by ronaldanthony300@yahoo.co.uk
Re:
Dear Sir. I am Mr. Stuart Fielding  looking for Investment deal in your country  on behalf of my client. This deal will involve the eventual investment of USD45M.(fourty Five Million Dollars) in your country.We are by this letter offering you our partnership, so as to allow us have you as representative and manager of invested funds in your country within the time frame of the investment/partnership scheme. Since I can not determine if this email is still functional and also your willingness, we have kept this proposal brief.If you are Interested in this offer of partnership, please respond and give me your full contact details plus company profile, and in response I will send you an elaborate proposal and details of this offer.Your expedient response will be appreciated. Thank you. Mr. Stuart FieldingReply To stuartfielding@hotmail.com SpamAssassin Report (spam score: 9.6) pts rule name description ---- ---------------------- -------------------------------------------------- 3.6 RCVD_IN_SBL_CSS RBL: Received via a relay in Spamhaus SBL-CSS [68.64.169.170 listed in zen.spamhaus.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: qkwenw.info] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.48 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 1.1 DATE_IN_PAST_03_06 Date: is 3 to 6 hours before Received: date 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.0 XPRIO Has X-Priority header
Click to view scam #128353 - Sent on June 10, 2015, 3:11 am by Burle@qkwenw.info
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/keyJjIjogOTE3MywgImYiOiAwLCAibSI6IDgzMjgsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128350 - Sent on June 10, 2015, 2:58 am by seniorsoulmates@phoneareaonn.com
If you cannot click the link above, Copy & Paste this link: http://phoneareaonn.com/ieyJjIjogOTE3MiwgImYiOiAyLCAibSI6IDgzMjcsICJsIjogMzAsICJzIjogMSwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: phoneareaonn.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: phoneareaonn.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid