Spam detection software, running on the system "freenetproject.org",
has identified this incoming email as possible spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
the administrator of that system for details.
Content preview: cone analyst astigmat presuming vigilante wobble marksmen
homemade araby playboy arpa bout civic sail contain swingy dill cubic
metalloid
delinquent sibyl recovery cyanide bostonian messenger reprisal [...]
Content analysis details: (45.7 points, 5.0 required)
pts rule name description
---- ---------------------- --------------------------------------------------
3.5 BAYES_99 BODY: Bayes spam probability is 99 to 100%
[score: 1.0000]
2.0 FREENET_FROM_BACKUPMX Received from the backup-MX server
1.4 MIME_BOUND_DD_DIGITS Spam tool pattern in MIME boundary
1.2 RCVD_NUMERIC_HELO Received: contains an IP address used for HELO
1.3 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net
[Blocked - see <http://www.spamcop.net/bl.shtml?193.238.111.14>]
1.7 URIBL_BLACK Contains an URL listed in the URIBL blacklist
[URIs: remedialbestassist.ru]
1.6 URIBL_WS_SURBL Contains an URL listed in the WS SURBL blocklist
[URIs: remedialbestassist.ru]
1.2 URIBL_JP_SURBL Contains an URL listed in the JP SURBL blocklist
[URIs: remedialbestassist.ru]
2.4 RCVD_HELO_IP_MISMATCH Received: HELO and IP do not match, but should
1.9 FUZZY_ERECT BODY: Attempt to obfuscate words in spam
2.3 FUZZY_PRICES BODY: Attempt to obfuscate words in spam
2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist
[URIs: remedialbestassist.ru]
3.3 RCVD_IN_SBL_CSS RBL: Received via a relay in Spamhaus SBL-CSS
[193.238.111.14 listed in zen.spamhaus.org]
1.6 HTTP_EXCESSIVE_ESCAPES URI: Completely unnecessary %-escapes inside a
URL
0.8 MPART_ALT_DIFF BODY: HTML and text parts are different
0.7 MIME_HTML_ONLY BODY: Message only has text/html MIME parts
0.0 HTML_MESSAGE BODY: HTML included in message
0.0 HTML_FONT_LOW_CONTRAST BODY: HTML font color similar or identical to
background
1.0 BAYES_999 BODY: Bayes spam probability is 99.9 to 100%
[score: 1.0000]
1.7 MIME_BASE64_TEXT RAW: Message text disguised using base64 encoding
1.6 NULL_IN_BODY FULL: Message has NUL (ASCII 0) byte in message
0.1 URIBL_SBL_A Contains URL's A record listed in the SBL blocklist
[URIs: remedialbestassist.ru]
1.6 URIBL_SBL Contains an URL's NS IP listed in the SBL blocklist
[URIs: remedialbestassist.ru]
0.8 RCVD_IN_SORBS_WEB RBL: SORBS: sender is an abusable web server
[193.238.111.14 listed in dnsbl.sorbs.net]
2.0 HTML_TITLE_SUBJ_DIFF No description available.
2.0 DRUGS_ERECTILE Refers to an erectile drug
1.1 DRUGS_ERECTILE_OBFU Obfuscated reference to an erectile drug
0.7 MIME_HEADER_CTYPE_ONLY 'Content-Type' found without required MIME
headers
0.5 MIME_HTML_ONLY_MULTI Multipart message only has text/html MIME parts
0.8 RDNS_NONE Delivered to internal network by a host with no rDNS
1.4 MISSING_DATE Missing Date: header
0.0 FSL_HELO_BARE_IP_2 No description available.
1.0 SINGLETS_LOW_CONTRAST Single-letter formatted HTML + hidden text
The original message was not completely plain text, and may be unsafe to
open with some email clients; in particular, it may contain a virus,
or confirm that your address can receive spam. If you wish to view
it, it may be safer to save it to a file and open it with an editor.
-------------- next part --------------
An embedded message was scrubbed...
From: Porfirio Alston
Subject: Reliable supplier of anti-ed meds
Date: no date
Size: 11970
URL:
<https://emu.freenetproject.org/pipermail/pyfreenet/attachments/20150718/fff02ab7/attachment-0001.mht>