Logo



If you cannot click the link above, Copy & Paste this link: http://toolsandtoolsak.com/jeyJjIjogOTI4OSwgImYiOiAwLCAibSI6IDg0MjQsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: toolsandtoolsak.com] 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: toolsandtoolsak.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128655 - Sent on June 11, 2015, 8:05 am by loanDepot@toolsandtoolsak.com
If you cannot click the link above, Copy & Paste this link: http://toolsandtoolsak.com/ieyJjIjogOTI4OCwgImYiOiAwLCAibSI6IDg0MjMsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: toolsandtoolsak.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: toolsandtoolsak.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Sent from my iPadBegin forwarded message:From: review@amazon.co.uk <intl_am@zon.co.uk>Date: 10 June 2015 14:26:23 BSTTo: Subject: Second Attempt: Customer account periodic reviewReply-To: review@amazon.co.uk <intl_am@zon.co.uk> Dear Customer,   After our first message that you didn't respond to, we have temporarily limited your account (blocked) activity. Original Amazon message was:"Starting May 2015 Amazon is making integrity checks related to his customers accounts, how they use the account and if the account is still used by the customer. If the customer account is not used for a longer period of time (2 month) it will be disabled by Amazon Team and then removed in the next two months of inactivity.   The procedures to disable and then delete the account according to the Terms and Conditions of usage will take place in 48 hours after this email was send. - The verification procedure requires a very short time from the customer. - The generated form attached in e-mail is only active for 48 hours.   If during this period the customer does not make verification account will be disabled until further notice." This is our second attempt to contact you in order to resolve the issue. If you do not respond your account will be set as inactive, completely blocked and marked for Removal.Verify your identity as quickly as possible and unlock your account to normal state.   Thank you for your understanding and apologize for any inconvenience that this may create.   Amazon Customers Service. Please note: This email was sent from a notification-only address that can't accept incoming email. Please do not reply to this message.
Click to view scam #128653 - Sent on June 11, 2015, 7:30 am by review@amazon.co.uk
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/neyJjIjogOTI4NiwgImYiOiAwLCAibSI6IDg0MjEsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 5.8) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 1.7 BAD_CREDIT BODY: Eliminate Bad Credit 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128652 - Sent on June 11, 2015, 7:25 am by VivaLoan@playgamesforgarden.com
From the Desk Of MR. LORD PAUL TURNERCHAIRMAN, FINANCIAL SERVICES AUTHORITY (FSA)It has come to our notice via our central monitoring computer that a huge fund of $3.5 Millions dollars has been credited in your name for transfer with a Eco Bank. Under the stipulated enabling Law of the Government of Great Burkina Faso and Wales and other Commonwealth States, any huge fund that has been found in our computer system waiting to be transferred without claims for a period of 6 months or less, shall be confiscated and forfeited to the Government of Great Country Burkina Faso and Wales. We do hereby ask you to contact this office immediately for ratification within the 3 days of this notice or consider your fund confiscated. We appreciate your urgent co-operation. Respond to my alternative Email: etc.MR. LORD PAUL TURNERCHAIRMAN, FINANCIAL SERVICES AUTHORITY (FSA) BURKINA FASO.? SpamAssassin Report (spam score: 15.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.4 INVALID_DATE Invalid Date: header (not RFC 2822) 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (mrschantaldiarrah28[at]terra.com.pe) -0.0 RCVD_IN_DNSWL_NONE RBL: Sender listed at http://www.dnswl.org/, no trust [208.84.243.122 listed in list.dnswl.org] 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.2 FREEMAIL_ENVFROM_END_DIGIT Envelope-from freemail username ends in digit (mrschantaldiarrah28[at]terra.com.pe) 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 2.7 MALFORMED_FREEMAIL Bad headers on message from free email service 0.0 LOTS_OF_MONEY Huge... sums of money 1.9 REPLYTO_WITHOUT_TO_CC REPLYTO_WITHOUT_TO_CC 1.8 MISSING_MIMEOLE Message has X-MSMail-Priority, but no X-MimeOLE 0.1 FROM_EXCESS_BASE64 From: base64 encoded unnecessarily 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 3.4 ADVANCE_FEE_4_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #128651 - Sent on June 11, 2015, 7:20 am by mrschantaldiarrah28@terra.com.pe
  SpamAssassin Report (spam score: 7.2) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (mabntuli11[at]gmail.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.192.51 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 1.2 MISSING_HEADERS Missing To: header 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 2.7 MALFORMED_FREEMAIL Bad headers on message from free email service 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 0.0 TVD_SPACE_RATIO TVD_SPACE_RATIO 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list
Click to view scam #128649 - Sent on June 11, 2015, 7:15 am by mabntuli11@gmail.com
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/oeyJjIjogOTI4NSwgImYiOiAwLCAibSI6IDg0MjAsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
.dcbamblq{color:#24789e;} .styrybkb{color:#0d1ed8;} Beat Alcoholism Today .dskwyfzwxok{color:#2d8053;} .xgqmiilfmiko{color:#055e62;} SpamAssassin Report (spam score: 10.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: rhodymeniascheffeljb.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.178 listed in list.dnswl.org] 0.8 DKIM_ADSP_NXDOMAIN No valid author signature and domain not in DNS -0.0 SPF_PASS SPF: sender matches SPF record 1.2 MISSING_HEADERS Missing To: header 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: rhodymeniascheffeljb.com] 0.0 HTML_IMAGE_ONLY_32 BODY: HTML: images with 2800-3200 bytes of words 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.6 URIBL_SBL Contains an URL's NS IP listed in the SBL blocklist [URIs: rhodymeniascheffeljb.com]
Attention once again.Despite all our effort and assurances on your recovered payment, you are are still not complying with the single directive from this payment exercise.It will be to your great advantage if you realize that I am an American. I was sent here by my organization - the EU Anti-Fraud to lead a Team of experts in harmonizing and securing these embattled funds which have lingered over these years in the hands of corrupt government officials in Africa.What else do we do for you? Having verified your Identity as the valid beneficiary, having directed you to Open a Non-Resident bank account at Union Bank of Nigeria PLC into which your recovered $12.5 Million will be credited and the account details plus MasterCard ATM released and sent to you ACTIVATED to enable you access your fund right there from your end. What else do you want us to do for you? or are you trying to prove to us that your confirmation as the genuine beneficiary of this long embattled fund was in error?Having assured and re-assured you severally that the only single obligation required from you for opening your new bank account is your personal details PLUS  only $100 New Account Opening Deposit. This is all. I have earlier sent you my valid USA international Passport which you can verify to any length. What other assurance do you want me to give you? I decided to write this email once again to you because I just arrived back from  assignment at South-Eastern Africa and I have few more days to Stay here in West Africa because returning back to our Head Office in Europe.I once again re-direct you to re-submit your full personal data as listed below PLUS your $100 New Account Opening Deposit so that our Team will fill the forms and open this account at Union Bank and make sure that you have received the account details, online banking details and ATM Card before we depart this zone finally.PERSONAL DATA REQUIRED:1. Your names (in full)2. Your mailing address3. Your direct telephone number4. Your date of birth5. Present occupation6. Your Next of Kin7. Your ID Card OR Two (2) Recent Passport photographs8. $100 (Cash Deposit)If you request immediately, I will send the name and address of the receiver of the $100.If you comply and do the needful withing the next 24 hours, your transaction will be completed within another 72 banking hours. To expedite action, you must hurry now and do the needful in your best favor.Call me on my newly allocated telephone below for any required clarification.Roderick Oarelle BufordEuropean Union Anti-Fraud International(Presently) in West Africa.New Telephone Number: +234 903 163 1872 SpamAssassin Report (spam score: 1.9) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.160.195 listed in list.dnswl.org] 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (eumail1013[at]gmail.com) 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 0.2 FREEMAIL_ENVFROM_END_DIGIT Envelope-from freemail username ends in digit (eumail1013[at]gmail.com) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list
Click to view scam #128650 - Sent on June 11, 2015, 7:06 am by eumail1013@gmail.com
Dear Google User, This is to officially inform you that you have been selected as a winner for using Google services, attached is our official notification letter for your perusal. Sincerely. Larry Page CEO & Co-founder of GoogleSpamAssassin Report (spam score: 6.8) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.52 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.2 FREEMAIL_REPLYTO_END_DIGIT Reply-To freemail username ends in digit ("usamegamillions2[at]live.com" ) 1.2 MISSING_HEADERS Missing To: header 0.6 RCVD_IN_SORBS_WEB RBL: SORBS: sender is an abusable web server [120.141.155.49 listed in dnsbl.sorbs.net] 1.9 REPLYTO_WITHOUT_TO_CC REPLYTO_WITHOUT_TO_CC 0.0 TVD_SPACE_RATIO TVD_SPACE_RATIO 2.5 FREEMAIL_FORGED_REPLYTO Freemail in Reply-To, but not From 1.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #128644 - Sent on June 11, 2015, 7:04 am by youth@uk.brahmakumaris.org
Top
Hello, A personal d.o.n.a.t.i.o.n was made to you by Weir family,acknowledged this mail for more details. SpamAssassin Report (spam score: 3.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 1.0 HK_RANDOM_FROM From username looks random -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.170 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 0.2 FREEMAIL_REPLYTO_END_DIGIT Reply-To freemail username ends in digit (ccwfh450[at]hotmail.com ) 2.5 FREEMAIL_FORGED_REPLYTO Freemail in Reply-To, but not From 0.0 T_FROM_12LTRDOM From a 12-letter domain
Click to view scam #128647 - Sent on June 11, 2015, 7:04 am by wwww.1@zoominternet.net
Hi, This is Ms. Pamila Morad Zahabian from Marda Impex Group LLC, UAE. Could you please send us more information about your company and detailed product, also let us know if shipment can be done within 3 weeks from date?Waiting on your immediate response by return mail and look forward to a successful business relationship with you.Thanks,Ms. Pamila Morad ZahabianMarda Impex Group LLC UAEAddress:Al Wahda Street, Al Khan Bridge, Sharjah, UAE.Phone: 0097165333411. E-mail: info@mardaimpax.com SpamAssassin Report (spam score: 1.6) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (info.mardaimpax[at]gmail.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.192.52 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 1.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #128641 - Sent on June 11, 2015, 6:56 am by info.mardaimpax@gmail.com
Responsive Email Template .ReadMsgBody {width: 100%; background-color: #eeeeee;} .ExternalClass {width: 100%; background-color: #eeeeee;} .applelinks a {color:#ffffff; text-decoration: none;} body {width: 100%; background-color: #eeeeee; margin:0; padding:0; -webkit-font-smoothing: antialiased;font-family: Arial,Tahoma, Helvetica, Arial, sans-serif} table {border-collapse: collapse;} p {margin:0 0 0 0;} @media only screen and (max-width: 640px) { body[yahoo] .deviceWidth {width:440px !important; padding:0;} body[yahoo] .center {text-align: center!important;} } @media only screen and (max-width: 479px) { body[yahoo] .deviceWidth {width:280px !important; padding:0;} body[yahoo] .center {text-align: center !important;} }Si vous ne parvenez pas à lire cet e-mail, visualisez la version en ligne Ne payez plus d'impôts pendant 12 ans ! ETUDE FISCALE GRATUITE Avantages Constituez vous un captital pour votre retraite Créez un patrimoine immobilier pour vous et vos enfants Bénéficiez d'une réduction d'impôts pendant 12 ans Recevez votre guide en défiscalisation Obtenez une étude gratuite et personnalisée 1er Comparateur de Proximité. Pour voir correctement ce message, rendez vous ici Conformément à la loi informatique et libertés, vous bénéficiez d'un droit suppression de vos données. DevisProx : 105 rue de l Abbe Groult, Paris, Ile de France 75015 Vous recevez ce mail car vous vous êtes abonné(e) à la base de Woocom . Cet email vous est envoyé par woocom 16 rue du capitaine Ferber 75 020 PARIS -. Pour vous désabonner de notre newsletter : Rendez-vous sur cette page SpamAssassin Report (spam score: 4.9) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.175 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: woocom-2.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #128643 - Sent on June 11, 2015, 6:51 am by news@contact.woocom-2.com
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/peyJjIjogOTI3OCwgImYiOiAwLCAibSI6IDg0MTgsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/leyJjIjogOTI3NywgImYiOiAwLCAibSI6IDg0MTcsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
 Hello, Pls advice the your forwarder details to proceed the Air shipment, as we don?t have regular forwarder for the AIR.So pls advice. Thanks & Best RegardsAnna SpamAssassin Report (spam score: 0.6) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (askomagan[at]gmail.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.52 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list
Click to view scam #128637 - Sent on June 11, 2015, 6:12 am by askomagan@gmail.com
RGVhciANCkdvb2QgZGF5ICQxLjEvcGMgbW9ub3BvZCBzZWxmaWUgc3RpY2sgd2l0aCBjYWJsZSB0 YWtlIHBvbGUsb25seSBmcm9tIHVzLHRoZSBhcmNwZWFrcyBmYWN0b3J5DQpQbGVhc2UgZmVlbCBm cmVlIHRvIGNvbnRhY3QgbWUgZm9yIG1vcmUgZGV0YWlscw0KVGhhbmtzDQpCZXN0IFJlZ2FyZHMN ClJheQ0KYXJjcGVha3MuZW4uYWxpYmFiYS5jb20NClNreXBlOnNpeGl3ZW56aGkNCk1PQklMOis4 NiAxODkyNDY0OTUzMg=SpamAssassin Report (spam score: 2.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: kfdsj.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 SUBJ_DOLLARS Subject starts with dollar amount 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128633 - Sent on June 11, 2015, 6:11 am by ts5@a.kfdsj.com
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/neyJjIjogOTI5NiwgImYiOiAwLCAibSI6IDg0MjksICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Advert
-- ATTENTION DEAR WINNER, THIS IS TO BRING TO YOUR NOTICE THAT YOUR EMAIL ADDRESS HAS EMERGED ON OUR 2015 PROMO AND APPROVED FOR PAY OUT PRIZE SUM $510,000 PLEASE CONTACT OUR PROMOTION COORDINATOR FOR MORE DETAILS VIA EMAIL: skhunglegaloffice@publicist.com CONGRATULATIONS WAYN/TAG/LINKDIN PROMOTERS EVELYN CRUISE PUBLIC RELATIONS SpamAssassin Report (spam score: 8.6) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.182 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: publicist.com] 3.1 DEAR_WINNER BODY: Spam with generic salutation of "dear winner" 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (waynpromoterss[at]gmail.com) 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 LOTS_OF_MONEY Huge... sums of money 0.8 UPPERCASE_50_75 message body is 50-75% uppercase 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 1.5 ADVANCE_FEE_2_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #128632 - Sent on June 11, 2015, 5:59 am by waynpromoterss@gmail.com
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/ieyJjIjogOTI3NiwgImYiOiAwLCAibSI6IDg0MTYsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
SpamAssassin Report (spam score: 7.3) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.173 listed in list.dnswl.org] 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 2.0 TVD_SPACE_ENC_FM_MIME TVD_SPACE_ENC_FM_MIME 1.0 MIME_NO_TEXT No (properly identified) text body parts 1.0 XPRIO Has X-Priority header 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
Click to view scam #128628 - Sent on June 11, 2015, 5:33 am by elkom@dtc.syzran.ru
> Subject: [SPAM] Urgent: Please Respond.> To: test@rilcn.com> From: test@rilcn.com> Date: Thu, 11 Jun 2015 01:19:29 +0300> > Dear Sir,> > With due respect Sir, my name is Colonel Félix Abalo Kadanga, the> Chief of Army staff of the Togo republic I was going through the> computer date base of your country where I find your company worthy.> I therefore decided to contact you for this proposal . I have ($84m) eighty four> million USA dollars which am ready to invest in your company therefore> if you are interested in this investment then contact me immediately> and forward the below details information for immediate process of the> fund to your account. Always reply me at felixabalokadanga@gmail.com> for immediate process of the fund to your account.> > > Your full name........................................................> Your Telephone/Mobile number............................> Your Age..................................................................> Your ID OR International passport......................> > > Regards> Colonel Félix Abalo Kadanga.
Click to view scam #128629 - Sent on June 11, 2015, 5:10 am by test@rilcn.com
Date: Thu, 11 Jun 2015 01:24:57 +0000To: johnatwood12@hotmail.comSubject: Greetings Dear,From: johnatwood12@hotmail.comGreetings Dear, My name is Dr. John Atwood, I'm a Medical practitioner from Houston-Texas, U.S, working and residing with my family here in Dublin, UK. I feel obliged writing this mail to you. Do accept my apology if this mail does not suit your personal or business ethics considering the fact that there wasn't earlier information regarding my mail. I'm establishing direct communication with you soliciting for your assistance and co-operation in a business investment financial programme involving $5M USD ($5,000,000.00 USD). My idea is targeted at partnering with someone, individuals and corporate bodies alike in great business opportunities. I am currently seeking means of building business interest in the Following sectors: banking, real estate, stock speculation and mining, transportation, health care, tourism, Manufacturing, tobacco etc. If you think you have a solid background and idea of making good profit in any of the mentioned business sectors in your country; please write me for possible business cooperation.  More so, I am willing to facilitate and fund any business that is capable of generating 5% to 10% annual return on investment (AROI).  Contact me for further details through my private email . { johnatwood12@hotmail.com} Thank you for your time and attention. Warmest Regards, Dr.John AtwoodGet your own FREE website, FREE domain & FREE mobile app with Company email.  Know More >
Click to view scam #128627 - Sent on June 11, 2015, 5:08 am by johnatwood12@hotmail.com
From: service.messagerie26@outlook.comSubject: ATTENTION CONFIRMATION DE VOTRE COMPTEþþþþDate: Thu, 11 Jun 2015 03:03:47 +0000Chers Utilisateurs, Nous avons le regret de porter à votre connaissance que des opérations de vérification ont permis d'observer de nombreuses et fausses adresses Live / Hotmail / Outlook.com sur notre réseau, nous serons dans l'obligation de supprimer tous les comptes mail frauduleux afin de mettre à votre disposition notre service gratuit et fiable. Veuillez dans un délai de 24 Heures renvoyer les informations correctes ci-dessous: Cliquez sur "Répondre" Remplissez la grille d'informations(Obligatoire). Ensuite cliquez sur "Envoyer" une fois le remplissage terminé.(Champs Obligatoires) --Nom:____________________________________________--Prénom:_________________________________________--Date de naissance:______________________________--Sexe:___________________________________________--Compte Messagerie :_____________________--Mot de passe:___________________________________--Confirmation Mot de passe:______________________--Adresse Secours:________________________________--Mot de passe:___________________________________--Question sécrète:_______________________________--Réponse sécrète:________________________________--Pays / Ville:___________________________________--N° Téléphone:___________________________________--N° Mobile ___________________________________--Fonction:_______________________________________ Veuillez considérer ce message étant le dernier avertissement avant la fermeture de votre Messagerie. Cordialement,  L?équipe Live / Hotmail / Outlook.com ! Maintenance.
Click to view scam #128625 - Sent on June 11, 2015, 5:07 am by service.messagerie26@outlook.com
---------- Forwarded message ----------From:  Date: Wed, Jun 10, 2015 at 2:40 PMSubject: _C0ngratu1ati0n_..!!__$1OOO__Walmart__Card__For__jackiechong__THANK__YOU!__To: to@mdb.aps.org Having issues seeing the images ? -----> _$1OOO Walmart Card For jackiechong - THANK YOU!_ -----> _..click_here_ . unsubscribe here Newsletter unsubscribe here
Click to view scam #128623 - Sent on June 11, 2015, 4:53 am by to@mdb.aps.org
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/teyJjIjogOTI3NSwgImYiOiAwLCAibSI6IDg0MTUsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128624 - Sent on June 11, 2015, 4:46 am by Age.Test@playgamesforgarden.com
REF NO: EU/8858150059/15 BATCH NO: 8450/90/PKR RE: AWARD FINAL NOTIFICATION This is to inform you on the release of the Turk International Lottery Promotion Program held on the 17th of December, 2014. Due to mix up of some numbers, name and email, the results were released on the 17th of January, 2015. Your name attached to ticket number M201463544-PL with serial number 201-099 drew the lucky numbers of 14-12-17-86 which consequently won the lottery in the 3rd category. You have therefore been approved for a lump sum payout of ?1,500,000.00 in cash credited to Ref no: EU/8858150059/15, Batch no: 8450/90/PKR . This is from a total cash prize Shared among the international winners in this category. CONGRATULATIONS!!!!!! Your fund is now deposited with a Finance Firm and insured in your name. Due to mix up of some numbers and names , we ask that you keep this award from public notice until your claim has been processed and money remitted to your account as this is part of our security protocol to avoid double claiming or unwarranted taking advantage of this program by participants. All participants were selected through a computer ballot system drawn from 25,000 names from Asia, Australia, Africa, Europe, South America and North America as part of our International promotions program which we conduct once every year, to promote tourism. We h ope your lucky name will draw a bigger cash prize in the next year?s program. To begin your lottery claim, please contact your claims agent Mr. Ryan Gibbs on Email address: info@turklottery.com for the processing and remittance of your winning prize money to a designation of your choice. Remember, all price money must be claimed not later than, 30th of July, 2015. After this date, all funds will be returned to the Euro Million Lottery Intl as unclaimed. In order to avoid unnecessary delay and complication, please remember to quote your reference and batch numbers in every correspondence with us or your agent. Furthermore, should there be any change of your address, do inform your claims agent as soon as possible. Congratulations once again from all our members of staff and thank you for being a part of our International promotions program. Sincerely, Mrs. Lisa Sinem Serena VICE PRESIDENT SpamAssassin Report (spam score: 9.0) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.171 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: turklottery.com] 1.5 TVD_PH_SEC BODY: Message includes a phrase commonly used in phishing mails 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 3.0 BIGNUM_EMAILS Lots of email addresses/leads 0.2 HK_LOTTO HK_LOTTO 2.5 LOTTO_AGENT Claims Agent 2.5 ADVANCE_FEE_5_NEW Appears to be advance fee fraud (Nigerian 419)
Click to view scam #128621 - Sent on June 11, 2015, 4:44 am by info@edizionicatering.it
  AttentionWe Have Finally Arranged To Deliver Your ATM CARDWorth $5.4, USD Through The DHL Courier Company. We Are Able ToAccomplish This Through The Help Of IMF Director Jason And EveryNecessary Arrangement Has Been Made Successfully With The International DHLAgent Dr.SAM DAVIDContact Person:Dr.SAM DAVID Telephone: +229-98620089Email:(MR.SAMSONDAVIDS@GMAIL.COM)Contact The DHL Agent With Your Delivery Information,Your Phone Number,Address,City,Nearest Airport And Your Full Name.Also Be Informed That The Delivery Agent Will Depart From This Country As SoonAs You Are Done With The DHL Requirement For Your Funds Delivery,Your ATM CARD PIN Code Is 0**1.SincerelyThe DHL Company SpamAssassin Report (spam score: 3.6) pts rule name description ---- ---------------------- -------------------------------------------------- 2.6 RCVD_IN_SBL RBL: Received via a relay in Spamhaus SBL [200.11.173.10 listed in zen.spamhaus.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.179 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag
Click to view scam #128622 - Sent on June 11, 2015, 4:38 am by frederick.williams15@cantv.net
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/keyJjIjogOTI3NCwgImYiOiAwLCAibSI6IDg0MTQsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/reyJjIjogOTI2OCwgImYiOiAwLCAibSI6IDg0MDksICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
-----Original Message----- From: PCH Sweepstake Sent: Wed, Jun 10, 2015 6:46 am Subject: You have won (1,000,000USD) from PCH Sweepstakes draw that was held today. Contact pchaward@bellair.net for claim.
Click to view scam #128618 - Sent on June 11, 2015, 3:56 am by osk.010@charter.net
 From: linda.jeanette.gresslien@nrc.noTo: linda.jeanette.gresslien@nrc.noSubject: SV: You've been selectedDate: Sun, 7 Jun 2015 21:33:00 +0000.ExternalClass P {MARGIN-BOTTOM:0px;MARGIN-TOP:0px;}.ExternalClass P {MARGIN-BOTTOM:0px;MARGIN-TOP:0px;}Congratulations! You've been granted ¤ 700, 000.00 by the Money-Gram Foundation. You will be issued a VISA-CARD with the sum amount liquidated into the card. To claim and receive your card, Contact us now and a Claims Personel will get back to you via email | mg.personel@gmail.com |
Click to view scam #128616 - Sent on June 11, 2015, 3:44 am by linda.jeanette.gresslien@nrc.no
img{ border:0; } Dear Engineer, Purchaser Nice day! Could you please check below our data for some diodes? From these data, you will see we are supplying good quality. If you need any diodes, capacitors from Topdiode or UF Capacitors factory, please send me inquiry, or please do tell me the contact person. We have fast responded sales, high quality and reasonable prices. We are eager to cooperate with you! Part Number Package/Size Chips/Wafer IF(AV) VF VB IR IFSM TRR       SM5817 / B120 / LL5817 DO-213AB SKY 1A <0.45V 20V 0.5uA 25A N/A   SM5819 / B140 / LL5819 DO-213AB SKY 1A <0.6V 40V 0.5uA 25A N/A   ? ? ? ? ? ? ? ? ?   HSM101 / SUF4001 DO-213AB HER GPP 1A <1.0V 50V 5uA 30A <50nS   HSM108 / SUF4007 DO-213AB HER GPP 1A <1.7V 1000V 5uA 30A <75nS   ? ? ? ? ? ? ? ? ?   SM4933 DO-213AB FR GPP 1A <1.3V 50V 5uA 30A <200nS   SM4937 DO-213AB FR GPP 1A <1.3V 600V 5uA 30A <200nS   ? ? ? ? ? ? ? ? ?   SM4007/LL4007 DO-213AB STD GPP 1A <1.1V 1000V 5uA 30A N/A   ? ? ? ? ? ? ? ? ?   GL341A DO-213AA STD GPP 1A <1.1V 50V 5uA 10A N/A   GL341M/GL1M DO-213AA STD GPP 1A <1.1V 1000V 5uA 10A N/A     Ms. Win Tang -- Sales Manager Skype: topdiode Tel.: +86-(0)769 8252 3211 Topdiode Group & UF Capacitors Factory Website ISO 9001: 2008, Military Qualification: GJB90018:2009 for tantalum cap RoHS, Reach, Halogen free, Metal Conflict Free Manufacturer for: Capacitors, MOVs, Diodes, Bridge, Transistors  If you wish to be removed pls advise, then we will remove you, and we apologize.       SpamAssassin Report (spam score: 6.9) pts rule name description ---- ---------------------- -------------------------------------------------- 1.9 URIBL_JP_SURBL Contains an URL listed in the JP SURBL blocklist [URIs: e-post.com.hk] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: e-post.com.hk] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (topdiode[at]outlook.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.175 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #128615 - Sent on June 11, 2015, 3:32 am by topdiode@outlook.com
????? ?????? ???? ?? ?????????? ?? ???? ????? ???! ????????? ????????,?????? ???????? CourseLAB ?????????? ??????? ????????? ?????????? ????????, ????????? ? ???????????, ? ????? ????? ?? ???????? ?? ?????? ???????? ? ????????? ?? ???????? ?????? ?????? ? ?? ??????? ?????? ???????. ????????? ?? ?? ??????? ???, ????????? ? ????????? ???? ? ???????????, ??? ?? ???????? ???? ??? ? ??????? ? ???????? ???????????? ??????? - ??????? ? ???! ? ??? ?? ?? ???????? ?????????? ????????? ? ??????, ????????? ? ?????.  ???????? ???? ????? ???: ??? ?? ?????????? ???? ??????? ? ?? ????????? ??????? - 16 ??? ??????????? ?? ????????, ????????? ? ??????????; ????????? ?? ?????????????? ????? ??????? ? ?????????; ???????? ? ????????? ??????? ? ??????????; ????????? ?? ???????. ????????????? ??????? ?? ???????? ? ??????????? ?? ???????? - 17 ??? ????????? ?? ??????? ? ???????? ? ??????????; ???????? ?? ??????? ????????; ?????????. MASTER MIND ?????- ????????? ?????? ?? ??????????? ?? ??????- 20 ??? ?????? ?? ?????????? ????????? ????????????? ?????? ?? ?? ?????????, ? ?? ?? ?? ?????? ?? ?????????? ?????? ??? ?? ????????? ???? ?? ??????????? ??? ????? ?????? ?? ? ????? ????????? ?????? ?? ???? ??? ??? ?? ???????? ??????? ? ?????????????? ? ????????? - 24 ???·  ????? ?? ???????;·  ??????????? ? ???????;·  ??????????? ?? ????????. ????????? ????????? - 02 ??? ·  ????????? ? ???????? ?? ?????????? ?????????;·  ???????? ?? ?????????? ??? ????;·  ?-???? ?????????;·  ???????? ?????.  ??????? ?? ???!  ???????? ? ??? ?? ???????? ????????? ? ??????? ???????? ?? ?????????????  ???????? ?????? ?? ?????????? ????????, ??. 6 (1) ?? ??????????, ?? ? ???????? ???? ????????? ????????? ?? ?? ? ???????? ?? ???. ??? ???? ?? ??? ???????? ????? ????? ?? ???, ?? ??? ???????? ??? ?? ?????????? ????????????. ??? ??????? ?? ?? ?????????? ?????????? ??? ???? ?? ?????? ??-???? ? ?????? ?????? ? ????????? ???????? ?? ???, ???????? ?? ???? ???????? ???? ?-???? ?? ????????? ?? http://courselab.net/otpisvane/   -------------------------------? ????????, ??????? ????????????? "???????????? ???????"??? ? ???! ??????? ???? ?????????!?????? ???????? CourseLAB?????: ??. ?????, ??. ??????? ?. ????????? 89, ??.2;???????: 02 / 852 57 07???????: +359 / 876 687 679www.courselab.net         sales1@courselab.net  CourseLAB- ????????? ? ?????????? ?????? ????????!?????:??. ?????, ???. "?.?. ????????", N 89, ??.1, ??.2???????: 02/852-57-07?-????: sales1@courselab.netSpamAssassin Report (spam score: 5.8) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.169 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 MSGID_FROM_MTA_HEADER Message-Id was added by a relay 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
Click to view scam #128613 - Sent on June 11, 2015, 3:02 am by courselab@business-seminari.com
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/veyJjIjogOTI2NiwgImYiOiAwLCAibSI6IDg0MDgsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Advert
THANKS FOR YOUR LAST MAIL THE INFORMATION NEEDED ARE NAME PHONE FAX ADDRESS OCCUPATION AGE to enable my further discussion with you. Best regards and wishes to you all. Amir A. Khanmammadov REPLY TO khanmammadov2015@yandex.com SpamAssassin Report (spam score: 9.9) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.172 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: yandex.com] 0.0 FSL_CTYPE_WIN1251 Content-Type only seen in 419 spam 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 NSL_RCVD_FROM_USER Received from User 0.0 TVD_RCVD_IP Message was received from an IP address 2.1 DATE_IN_PAST_96_XX Date: is 96 hours or more before Received: date -0.0 SPF_PASS SPF: sender matches SPF record 0.0 FROM_MISSP_XPRIO Misspaced FROM + X-Priority 0.0 FROM_MISSP_MSFT From misspaced + supposed Microsoft tool 1.4 FSL_NEW_HELO_USER Spam's using Helo and User 0.0 AXB_XMAILER_MIMEOLE_OL_024C2 Yet another X header trait 3.4 MSOE_MID_WRONG_CASE MSOE_MID_WRONG_CASE 0.0 FROM_MISSP_TO_UNDISC From misspaced, To undisclosed 0.0 FROM_MISSP_USER From misspaced, from "User" 0.0 FROM_MISSPACED From: missing whitespace 0.0 T_FROM_MISSP_DKIM From misspaced, DKIM dependable 2.8 FORGED_MUA_OUTLOOK Forged mail pretending to be from MS Outlook 1.0 XPRIO Has X-Priority header
Click to view scam #128610 - Sent on June 11, 2015, 2:36 am by chiado@oi.com.br
Use your Internet connection to make phone calls! SpamAssassin Report (spam score: 10.4) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: disembowerjointwormha.com] 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: disembowerjointwormha.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.179 listed in list.dnswl.org] 0.8 DKIM_ADSP_NXDOMAIN No valid author signature and domain not in DNS -0.0 SPF_PASS SPF: sender matches SPF record 1.2 MISSING_HEADERS Missing To: header 0.0 HTML_IMAGE_ONLY_32 BODY: HTML: images with 2800-3200 bytes of words 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.6 URIBL_SBL Contains an URL's NS IP listed in the SBL blocklist [URIs: disembowerjointwormha.com] 0.3 PLING_QUERY Subject has exclamation mark and question mark
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/weyJjIjogOTI2MywgImYiOiAwLCAibSI6IDg0MDYsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
THAILAND INTERNET LOTTERY ORGANIZATION 87A Phetchamnork Avenue, Bangkok Thailand: WINNING NOTIFICATION, We write to Congratulate you as regards your Email Address success in our Online Computer Balloting Sweepstakes Programmer from the Thailand Internet Lottery online draws of 1th of the Month. All participants were selected through the Registered Computer Internet Users ballot system drawn from 250,000, Personal email addresses & official Email addresses, from Asia, Australia, New Zealand, Europe, North and South America, Middle East and Africa, as part of our International Promotions Programmer. Your Email Address has subsequently won you one of the two Jackpot prizes in the 5th category? You have therefore been approved to claim a total sum of $1, 068, 000. 00. (ONE MILLION AND SIXTY EIGHT THOUSAND US DOLLARS) Only. Your Email Address attached to ticket number 286067-09-805 with Serial Number 9-3088 that drew the Lucky Numbers of 4864116. You have therefore been approved of a lump sum payment of US$1, 068,000 USD(One Million and Sixty Eight Thousand US Dollars) in cash credited REF NO: THAINETORG00-69803. Contact the Thailand Internet Lottery Co-ordinator for your claim: Mr. Prawatt Wensat Email:lthailand85@gmail.com Phone Number:+(66)802842173 Office Fax:+(66)261-382-62 Provide Him with the information below: (1) REF NO: THAINETORG00-69803 (2) Serial Number: 9-3088 (3) Lucky Number: 4864116 (4)Name:...................... ..................... (5)Address:................... . .............................. .............................. (6)Age:............. (7)Phone:..................... ..... (7)Country:................... ................ Your Winnings Certificate and all other relevant Documents/Paperwork would be prepared. Congratulations once again from all the members and staff's of Thailand Internet Lottery Promo. Remember, all prize money must be claimed not later than 30th Day of next Month. Any claim not made by this date will be returned to the Treasury of the Thailand Internet Lottery Organization as Unclaimed Fund. Fonds Regards, Shompoo Prachapor Director General. SpamAssassin Report (spam score: 11.5) pts rule name description ---- ---------------------- -------------------------------------------------- 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.176 listed in list.dnswl.org] 2.7 UNCLAIMED_MONEY BODY: People just leave money laying around 2.6 FROM_NO_USER From: has no local-part before @ sign 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.0 LOTS_OF_MONEY Huge... sums of money 0.2 HK_LOTTO HK_LOTTO 3.8 ADVANCE_FEE_5_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #128606 - Sent on June 11, 2015, 1:50 am by MR@investorkirov.ru
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/yeyJjIjogOTI2MiwgImYiOiAwLCAibSI6IDg0MDUsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 5.8) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Salaam,United Markets Financial Services BSC will be interested to consider a possible collaboration with your firm through project development if it proves viable after our initial review. UMFS is currently financing project developments through conventional loans of 4% interest rate annually and our possible collaboration with your firm will be based on this form of funding.We offer secured loans or funds to individuals and companies at low interest rates. We offer long and short term loans or funding of any projects. Our firm has recorded a lot of breakthroughs in the provision of first-class financial services to our clients.As part of our procedure for consideration of project for possible funding, We'll expect to receive your project's general presentation in the form of a comprehensive business plan in a compatible format ( PDF -recommended)  for our review and consideration. If your project as presented is acceptable and within our scope of funding, we shall thus make you an offer on a very clear and precise terms.We expect your project presentation/Business plan to be able to cover the following functional areas:- An introduction of your company and structure or an Introduction of the project owner/initiator- Historical evaluation of business plan (if it is an already existing project or state if it is a new project)- Financial structure and analysis to support the investment plan and proposition as presented- in summary, you should state the total amount in US$  or Euros needed to fund the project in a clearly defined time frame.We look forward to a fruitful business relationship with you as regarding your interest. Our funds are on deposit, not lines of credit; therefore, we are ready to proceed whenever you are. Forward your business plan to my official email below if you need our funding. Allah Blessing,Mabrouk.Email: mabrouk@unitedmarketsfinancial.comKingdom of Bahrain.
No1好康王 ( 06/11 ) 旅遊英文贈書好康,出國不再比手畫腳 即將進入旅遊旺季,線上英語學習廠商舉辦贈送隨身書活動 飯店Check in ~ 問路 ~ 點餐 ~ 想要用流利英文表達嗎? 想學好英文者不可錯過的線上學習機會 現在索取相關資料就送英文隨身書+CD+DVD哦 -._- 進入登記索取旅遊英文隨身書 本訊息由No1好康王不定期發佈通知,No1好康王是專注於提供好康資訊的網站. 如果您不想要再次收到任何好康通知請至No1好康王網站登記拒收 SpamAssassin Report (spam score: 2.7) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.41 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (zynifiziqilu[at]yahoo.com) 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 1.0 FORGED_YAHOO_RCVD 'From' yahoo.com does not match 'Received' headers 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list
Click to view scam #128602 - Sent on June 11, 2015, 1:12 am by zynifiziqilu@yahoo.com
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/weyJjIjogOTI2MSwgImYiOiAwLCAibSI6IDg0MDQsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
If you cannot click the link above, Copy & Paste this link: http://playgamesforgarden.com/meyJjIjogOTI2MCwgImYiOiAxLCAibSI6IDg0MDMsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: playgamesforgarden.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: playgamesforgarden.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #128599 - Sent on June 11, 2015, 12:52 am by Padre.Angel@playgamesforgarden.com
(WORLD BANK ASSISTED PROGRAM)DIRECTORATE OF INTERNATIONALPAYMENT AND TRANSFERSUnited Nations AssociationDear Beneficiary,Series of meetings have been held over the past 7 months with the secretary general of the United Nations Organization. This ended 3days ago. It is obvious that you have not received your fund which is to the tune of Eight Million Five Hundred Thousand United State Dollars ( $8,500,000.00 ) due to past corrupt Governmental Officials who almost held the fund to themselves for their selfish reason and someindividuals who have taken advantage of your fund all in an attempt to swindle your fund which has led to so many losses from your end and unnecessary delay in the receipt of your fund.The National Central Bureau of Interpol enhanced by the United Nations and Federal Bureau of Investigation have successfully passed a mandate to the current president of African Economic Controller Authorities ( ECOWAS ) to boost the exercise of clearing all foreign debts owed to you and other individuals and organizations who have been found not to have receive their Contract Sum, Lottery/Gambling, Inheritance and the likes. Now how would you like to receive your payment? Because we have two method of payment which is by Check or by ATM card?ATM Card: We will be issuing you a custom pin based ATM card which you will use to withdraw up to $7,000 per day from any ATM machine that has the Master Card Logo on it and the card have to be renewed in 4years' time which is 2019. Also with the ATM card you will be able to transfer your funds to your local bank account. The ATM card comes with a handbook or manual to enlighten you about how to use it. Even if you do not have a bank account.Check: To be deposited in your bank for it to be cleared within three working days. Your payment would be sent to you via any of your preferred option and would be mailed to you via DHL. Because we have signed a contract with DHL Courier Service which should expire by 18th of JUNE 2015 you will only need to pay $79 instead of $280 saving you $232 So if you pay before 10th of JUNE 2015 you save $232 Take note that anyone asking you for some kind of money above the usual fee is definitely a fraudsters and you will have to stop communication with every other person if you have been in contact with any. Also remember that all you will ever have to spend is $79.00 nothing more! Nothing less! And we guarantee the receipt of your fund to be successfully delivered to you within the next 79 hours after thereceipt of payment has been confirmed.Note: Everything has been taken care of by the African Economic Controller Authorities ( ECOWAS ), The United Nation and also the FBI and including taxes, custom paper and clearance duty so all you will ever need to pay is $79.DO NOT SEND MONEY TO ANYONE UNTIL YOU READ THIS: The actual fees for shipping your ATM card is $279 but because DHL have temporarily discontinued the C.O.D which gives you the chance to pay when package is delivered for international shipping We had to sign contract with them for bulk shipping which makes the fees reduce from the actual fee of $279 to $79 nothing more and no hidden fees of any sort!To affect the release of your fund valued at $8,500,000.00 you are advised to contact our correspondent in West Africa Benin Du Republic the delivery officer Rev. James Moody Long with the information below,Reconfirm the information as stated below for your delivery:Your full Name...Your Address:Home/Cell Phone:Preferred Payment Method ( ATM or Cashier Check )Kindly copy the below details to send the fee and Reply Rev. James Moody LongReceivers Name: FESTUS ONYILocation Address: Cotonou Benin RepublicTest Question: WhenAnswer: TodaySender's Name:MTCN Number#:Amount:::$79Upon receipt of payment the delivery officer will ensure that your package is sent within 79 working hours. Because we are so sure of everything we are giving you a 100% money back guarantee if you do not receive payment/package within the next hours after you have made the payment for shipping.Warmest Regards,Dr. Peter Adams.Payment OfficerUnited Nations (UN)SpamAssassin Report (spam score: 3.3) pts rule name description ---- ---------------------- -------------------------------------------------- -0.0 RCVD_IN_DNSWL_NONE RBL: Sender listed at http://www.dnswl.org/, no trust [183.79.56.141 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (unuaoffice[at]gmail.com) 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED 1.0 SPF_SOFTFAIL SPF: sender does not match SPF record (softfail) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_HK_NAME_FM_DR T_HK_NAME_FM_DR 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list
Click to view scam #128596 - Sent on June 11, 2015, 12:41 am by unuaoffice@gmail.com
Find the attached file SpamAssassin Report (spam score: 2.9) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (mr.mustafa32015[at]gmail.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.181 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 0.2 FREEMAIL_REPLYTO_END_DIGIT Reply-To freemail username ends in digit (atinga2015[at]outlook.com ) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 1.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #128600 - Sent on June 11, 2015, 12:34 am by mr.mustafa32015@gmail.com
Office of the IMF Managing Director 700 19th St NW Washington, D.C. DC 20431, USA Attn Dear,                                    2015 UNPAID FUND RECOVERED LETTER   In our efforts to foster global monetary cooperation, secure financial stability and facilitate individual and company economic growth. The IMF through our international monitoring network has recovered your UNPAID FUND that has been on hold.  We hereby advise you to reconfirm your information below to enable our payment bank, Citibank contact you for cash payment immediately.   Re-confirm as follows   (1) Your Full Name........? (2) Full Residential Address: (P.O.BOX NOT ALLOWED)? (3) Country/State..........? (4) Beneficiary Amount? (5) Direct and Current Phone? (6) Passport identification?   Note: The above information is necessary to certify that you are the rightful beneficiary of the said funds As soon as we confirm these information, our payment Bank (CITIBANK/USA) will contact you for immediate payment.   Thanks   Your sincere Ms. Christine Lagarde, IMF Managing director christinelagarder2041@gmail.com +1 (916) 740-6207 www.imf.org SpamAssassin Report (spam score: 7.0) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (christinelagarder2041[at]gmail.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.173 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: imf.org] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.0 FORGED_OUTLOOK_HTML Outlook can't send HTML message only 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 2.8 FORGED_MUA_OUTLOOK Forged mail pretending to be from MS Outlook 1.0 XPRIO Has X-Priority header
Click to view scam #128590 - Sent on June 11, 2015, 12:32 am by christinelagarder2041@gmail.com
Referenz: 1887-26721 Jackpot Gewinnzahlen: 626 327   Lieber Winner,                Gewinnbenachrichtigung   Wir freuen uns, Ihnen unsere von Turkish Airlines & Dolmabahce Sarayi entwickelt, um den Tourismus in der Türkei zu fördern gesponsert Super-Loto 6/54 Promotion Program zu benachrichtigen. Dies wurde am 02 Juni 2015 Die Gewinner wurden durch ein Computersystem Stimmabgabe aus der ganzen Welt im Rahmen unserer internationalen Förderprogramm gezogen gewählt statt. Sie haben daher genehmigt Pauschalbetrag von €1,538,461.53 (One Million Five Hundred und achtunddreißig tausendvierhundertsechzig One Euro). Im Rahmen unserer Sicherheitsprotokoll, um Doppel behaupten und ungerechtfertigten Missbrauch von diesem Programm zu vermeiden, können Sie Ihre Gewinn Informationen sehr vertraulich, bis nach dem Geld ist in Ihrem Konto bestätigt zu halten.   WIE Ihren Preis:   Sie sind verpflichtet, Herr Ahmet Gur, der Ihre Ansprüche Mittel sein wird, und er soll darin führen Sie durch die Ansprüche Prozess zu kontaktieren.   Name: Herr Ahmet Gur E-mail: ahmet.gur@superlototr654.org Tel: +905442859750   Denken Sie daran, immer Ihre Referenz und Jackpot-Nummer oben links auf dieser Brief im Schriftverkehr mit der Patentansprüche Mittel befindet zitieren. Alle gewinnen müssen innerhalb von 30 Werktagen ab dem Datum der Mitteilung in Anspruch genommen werden, da nicht beanspruchten Mittel werden für die nächste Beförderung verwendet werden.   Nehmen Sie unsere Glückwunsch !!!   Super Loto 6/54   Unterstützt von: Turkish Airlines & Dolmabahce Sarayi SpamAssassin Report (spam score: 6.0) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (minecrafter2013_80[at]web.de) 2.6 RCVD_IN_SBL RBL: Received via a relay in Spamhaus SBL [41.138.168.244 listed in zen.spamhaus.org] -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.176 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: superlototr654.org] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 TO_NO_BRKTS_HTML_ONLY To: misformatted and HTML only 1.0 XPRIO Has X-Priority header
Click to view scam #128598 - Sent on June 11, 2015, 12:05 am by minecrafter2013_80@web.de
Sent from my iPhoneBegin forwarded message:From: OralB <hyacinthahawkeskqk@yahoo.com>Date: 10 June 2015 19:52:41 BSTTo: <lu2345@aol.com>Subject: Lu, Get the new Oral B Pro in exchange for your opinion! maam boom olympic recalcitrant frontiersman.
Click to view scam #128593 - Sent on June 10, 2015, 11:57 pm by hyacinthahawkeskqk@yahoo.com
This is the next email I received after I plugged for a bit more from them. On Wednesday, June 10, 2015 11:00 PM, ERYINS SECURITY SERVICE <directorrayscot@diplomats.com> wrote: You talk as if you are sending the money to me no not at all . this money is mend for the US customs and the Securities mind you that your consignment is not an ordinary luggage but millitary trunk boxes coming from Iraq requires serious check at the airport and the fee you have to send is to enable us pay settlement to various government agencies responsible.   If you are ready to receive your cousin's consignment and you insist on an information to send the fee here bellow the nae and address of our agent in the US to send the money via Western Union.   Name:  CHAN RY Address: Lowell Massacgusetts USA Amount: US$2.850 dollar.   Thank You. Ray Scot.  
Click to view scam #128586 - Sent on June 10, 2015, 11:31 pm by directorrayscot@diplomats.com