Our Blog

Latest news and updates from flathost

Falske Apotek Mails

Posted by Bregnedal Systems on 10 03 2019. 0 Comments

Subject: Tak for deltagelse – Vælg din gave, spam-eater
From: “tester@apotek.dk” <tester@apotek.dk>
To: “spam-eater@bregnedalsystems.dk” <spam-eater@bregnedalsystems.dk>

Linket sender dig til en falsk apotek hjemmeside, der vil have dine Visa/Dankort oplysninger.

De bliver send fra en dansk server, X-Assp-Message-Score: -2 (Home IP-Country Bonus DK (ZEN SYSTEMS A/S))

Vi har prøvet at kontante Zen Systems, de siger vi skal snakke med dem der sender spam. De svare selvfølgelig ikke.

Vores filter er klar til at stoppe dem!

Falske Apotek Mails
Falske Apotek Mails

Her er den rå mail:

X-Assp-Version: 2.6.4(19015) on asgard.bregnedalsystems.dk 
X-Assp-ID: asgard.bregnedalsystems.dk id-14827-19049 
X-Assp-Session: 7FF2779F3238 (mail 1) 
X-Assp-Envelope-From: bounces@straightlanderpage.com 
X-Assp-Intended-For: spam-eater@bregnedalsystems.dk
X-Assp-Original-Subject: Tak for deltagelse Vælg
din gave, spam-eater 
X-Assp-Client-TLS: yes 
X-Assp-Server-TLS: yes 
X-Assp-Message-Score: -2 (SSL-TLS-connection-OK) 
X-Assp-IP-Score: -2 (SSL-TLS-connection-OK) 
X-Assp-Delay: not delayed (spam-eater@bregnedalsystems.dk in noDelayAddresses); 
10 Mar 2019 11:47:07 +0100 
X-Original-Authentication-Results: asgard.bregnedalsystems.dk; 
spf=pass 
X-Assp-Message-Score: -1 (SPF pass) 
X-Assp-IP-Score: -1 (SPF pass) 
X-Assp-Message-Score: -2 (Home IP-Country Bonus DK (ZEN SYSTEMS 
A/S)) 
X-Assp-IP-Score: -1 (Home IP-Country Bonus DK (ZEN SYSTEMS A/S)) 
X-Assp-Message-Score: 20 (blacklisted HELO ‘relay891.mysmtp3.com’ – weight 
1) 
X-Assp-IP-Score: 20 (blacklisted HELO ‘relay891.mysmtp3.com’ – weight 
1) 
X-Assp-Re-bombSuspiciousRe: PB 60: for mysmtp3.com 
X-Assp-Message-Score: 60 (BombSuspicious: ‘mysmtp3.com’) 
X-Assp-IP-Score: 60 (BombSuspicious: ‘mysmtp3.com’) 
X-Assp-Re-bombRe: PB 20: for Precedence: bulk 
X-Assp-Message-Score: 20 (Regex: bombRe ‘PB 20: for Precedence: bulk’ 
bombRe: ‘Precedence: bulk’) 
X-Assp-IP-Score: 20 (Regex: bombRe ‘PB 20: for Precedence: bulk’ bombRe: 
‘Precedence: bulk’) 
X-Assp-Message-Score: 32 (HMM Probability: 1.00000) 
X-Assp-IP-Score: 32 (HMM Probability: 1.00000) 
X-Assp-Message-Score: 17 (Bayesian Probability: 1.00000) 
X-Assp-IP-Score: 17 (Bayesian Probability: 1.00000) 
X-Assp-Spam-Prob: 1.00000 
X-Assp-HMM-Spam-Prob: 1.00000 
X-Assp-Tag: MessageLimit 
X-Assp-allLoveDLSpam: 1 
X-BS-Spam-Status:yes 
X-Assp-Spam-Reason: MessageScore 144, limit 45 
X-Assp-Message-Totalscore: 144 
Received: from relay891.mysmtp3.com ([185.163.188.204] helo=relay891.mysmtp3.com) 
by asgard.bregnedalsystems.dk with SMTPS(TLSv1_2 ECDHE-RSA-AES128-GCM-SHA256) 
(2.6.4); 10 Mar 2019 11:47:07 +0100 
Received: from mw0.euro.email (unknown [93.90.117.117]) 
by relay891.mysmtp3.com (Postfix) with ESMTPA id D5652217F6 
for <spam-eater@bregnedalsystems.dk>; Sun, 10 Mar 2019 11:47:06 +0100 (CET) 
Message-ID: <9f3d078d51c0ac65623933abcfb12f66@straightlanderpage.com> 
Date: Sun, 10 Mar 2019 10:47:06 +0000 
Subject: Tak for deltagelse – =?utf-8?Q?V=C3=A6lg?= din gave, spam-eater 
From: “tester@apotek.dk” <tester@apotek.dk> 
Reply-To: “tester@apotek.dk” <tester@apotek.dk> 
To: “spam-eater@bregnedalsystems.dk” <spam-eater@bregnedalsystems.dk>MIME-Version: 1.0 
X-Sender: bounces@straightlanderpage.com 
X-Report-Abuse: Please report abuse for this campaign here: 
https://mw0.euro.email/index.php/campaigns/ts457d09o47c3/report-abuse/yg199bedmwe32/ll986cnwnsf09 
X-Receiver: spam-eater@bregnedalsystems.dk
X-Gnkw-Tracking-Did: 0 
X-Gnkw-Subscriber-Uid: ll986cnwnsf09 
X-Gnkw-Mailer: SwiftMailer – 5.4.x 
X-Gnkw-EBS: https://mw0.euro.email/index.php/lists/block-address 
X-Gnkw-Delivery-Sid: 26 
X-Gnkw-Customer-Uid: eb086vywa8d62 
X-Gnkw-Customer-Gid: 12 
X-Gnkw-Campaign-Uid: ts457d09o47c3 
Precedence: bulk 
List-Unsubscribe: <https://mw0.euro.email/index.php/lists/yg199bedmwe32/unsubscribe/ll986cnwnsf09/ts457d09o47c3/unsubscribe-direct?source=email-client-unsubscribe-button>, 
<mailto:tester@apotek.dk?subject=Campaign-Uid:ts457d09o47c3 / 
Subscriber-Uid:ll986cnwnsf09 – Unsubscribe request&body=Please unsubscribe 

Leave a Reply