From: Трансфертное ценообразование <lipstickedp85@rioroses.com>
Date: Mon, 21 Nov 2011 10:14:50 +0100
Subject: ****SPAM**** Трансфертные цены (новый закон)

Spam detection software, running on the system "s15340946.onlinehome-server.info", has
identified this incoming email as possible spam. The original message
has been attached to this so you can view it (if it isn't spam) or label
similar future email. If you have any questions, see
postmaster for details.

Content preview: 28 HНЪАПЪ 2011 Ц. сФЕЯРНВЕМХЕ МЮКНЦНБНЦН ЙНМРПНКЪ ГЮ РПЮМЯТЕПРМШЛХ
ЖЕМЮЛХ. йЮЙ МЮКНЦНОКЮРЕКЭЫХЙЮЛ ОНДЦНРНБХРЭЯЪ Й МНБНББЕДЕМХЪЛ? \лНЯЙ. ЙНД/
вв5_в0*95 \\// 44\5г968 [...]

Content analysis details: (41.1 points, 7.0 required)

pts rule name description
---- ---------------------- --------------------------------------------------
1.5 HELO_DYNAMIC_DHCP Relay HELO'd using suspicious hostname (DHCP)
0.5 FH_HELO_EQ_D_D_D_D Helo is d-d-d-d
2.9 HELO_DYNAMIC_IPADDR Relay HELO'd using suspicious hostname (IP addr
1)
2.1 DNS_FROM_RFC_BOGUSMX RBL: Envelope sender in bogusmx.rfc-ignorant.org
1.1 RCVD_IN_SORBS_WEB RBL: SORBS: sender is a abuseable web server
[95.108.118.193 listed in dnsbl.sorbs.net]
31 RCVD_IN_XBL RBL: Received via a relay in Spamhaus XBL
[95.108.118.193 listed in zen.spamhaus.org]
0.0 HTML_MESSAGE BODY: HTML included in message
1.8 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars
0.1 RDNS_NONE Delivered to trusted network by a host with no rDNS

The original message was not completely plain text, and may be unsafe to
open with some email clients; in particular, it may contain a virus,
or confirm that your address can receive spam. If you wish to view
it, it may be safer to save it to a file and open it with an editor.


<
27518/35822
>
© 2009 megahaus.eu