OwlCyberSecurity - MANAGER
Edit File: 1737252766.M649750P2586402.premium128.web-hosting.com,S=7211,W=7340:2,
Return-Path: <postmaster@14535b9930.nxcli.io> Delivered-To: contact+spam@gourayafroid.com Received: from premium128.web-hosting.com by premium128.web-hosting.com with LMTP id uJ1XJZ5fjGcidycAAvhI2g (envelope-from <postmaster@14535b9930.nxcli.io>) for <contact+spam@gourayafroid.com>; Sat, 18 Jan 2025 21:12:46 -0500 Return-path: <postmaster@14535b9930.nxcli.io> Envelope-to: contact@gourayafroid.com Delivery-date: Sat, 18 Jan 2025 21:12:46 -0500 Received: from cloudhost-832028.us-midwest-1.nxcli.net ([8.29.154.51]:49816) by premium128.web-hosting.com with esmtps (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (Exim 4.96.2) (envelope-from <postmaster@14535b9930.nxcli.io>) id 1tZKnq-00AvOr-0E for contact@gourayafroid.com; Sat, 18 Jan 2025 21:12:46 -0500 Received: (qmail 18002 invoked by uid 10166); 19 Jan 2025 00:51:30 +0000 Date: 19 Jan 2025 00:51:30 +0000 Message-ID: <20250119005130.17996.qmail@cloudhost-832028.us-midwest-1.nxcli.net> To: contact@gourayafroid.com X-PHP-Originating-Script: 10166:mail.php From: MetaMask Security Team <4ppzkil1@fraud-alerts.org> Reply-To: no-reply@example.com Content-Type: text/html; charset=UTF-8 X-Mailer-ID: 678c4c92728a4 X-Origin-IP: 192.168.1.19 X-Message-ID: e1feecdddc6d7f8b44ae6b8c5028c1b0 X-Origin-Time: 2025-01-19 00:51:30 X-Campaign-ID: 0aef467b4d3cc448 List-Unsubscribe: <mailto:unsubscribe@example.com> X-Spam-Status: Yes, score=6.9 X-Spam-Score: 69 X-Spam-Bar: ++++++ X-Spam-Report: Spam detection software, running on the system "premium128.web-hosting.com", has identified this incoming email as possible spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see root\@localhost for details. Content preview: Suspicious Activity Detected Take Immediate Action We’ve detected unusual activity associated with your account. To ensure your security, certain features have been restricted temporarily. Content analysis details: (6.9 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: wikimedia.org] 0.0 RCVD_IN_VALIDITY_CERTIFIED_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to Validity was blocked. See https://knowledge.validity.com/hc/en-us/articles/20961730681243 for more information. [8.29.154.51 listed in sa-trusted.bondedsender.org] 0.0 RCVD_IN_VALIDITY_RPBL_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to Validity was blocked. See https://knowledge.validity.com/hc/en-us/articles/20961730681243 for more information. [8.29.154.51 listed in bl.score.senderscore.com] 0.2 HEADER_FROM_DIFFERENT_DOMAINS From and EnvelopeFrom 2nd level mail domains are different 0.8 DKIM_ADSP_NXDOMAIN No valid author signature and domain not in DNS 0.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.0 HTML_MESSAGE BODY: HTML included in message 0.0 HTML_IMAGE_ONLY_32 BODY: HTML: images with 2800-3200 bytes of words 2.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.0 KAM_DMARC_STATUS Test Rule for DKIM or SPF Failure with Strict Alignment 0.1 MIME_HEADER_CTYPE_ONLY 'Content-Type' found without required MIME headers 1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any anti-forgery methods 0.5 URI_PHISH Phishing using web form X-Spam-Flag: YES Subject: ***SPAM*** =?UTF-8?B?U2VjdXJpdHkgTm90aWNlOiBZb3VyIFdhbGxldCBBY2Nlc3MgaXMgYXQgUmlzayE=?= <!DOCTYPE html> <html lang="en"> <head> <meta charset="UTF-8"> <meta name="viewport" content="width=device-width, initial-scale=1.0"> <title>Suspicious Activity Detected</title> </head> <body style="margin: 0; padding: 0; background-color: #f7f9fc; font-family: Arial, sans-serif; line-height: 1.6; color: #333;"> <!-- Wrapper --> <table width="100%" cellpadding="0" cellspacing="0" style="background-color: #f7f9fc; padding: 30px 0;"> <tr> <td align="center"> <!-- Email Container --> <table width="600px" style="max-width: 600px; background-color: #ffffff; border-radius: 10px; overflow: hidden; box-shadow: 0 4px 15px rgba(0, 0, 0, 0.1);"> <!-- Header --> <tr> <td style="padding: 20px; text-align: center; background-color: #004085;"> <img src="https://upload.wikimedia.org/wikipedia/commons/thumb/3/36/MetaMask_Fox.svg/1200px-MetaMask_Fox.svg.png" alt="Logo" style="width: 100px; height: auto;"> </td> </tr> <!-- Body --> <tr> <td style="padding: 30px; color: #333333;"> <h1 style="color: #004085; font-size: 24px; text-align: center; margin-bottom: 20px;">Take Immediate Action</h1> <p>We’ve detected unusual activity associated with your account. To ensure your security, certain features have been restricted temporarily.</p> <p>Please confirm this activity and restore your account’s functionality by verifying your email:</p> <p style="text-align: center; margin: 30px 0;"> <a href="https://abhijeetpublications.com/nt.php?id=7301615620350981382-7246" style="background-color: #004085; color: #ffffff; text-decoration: none; padding: 12px 30px; border-radius: 5px; font-weight: bold; font-size: 16px;">Verify My Email</a> </p> <p>If you believe this action was taken in error, please contact our support team immediately.</p> <p>Thank you for your cooperation.</p> </td> </tr> <!-- Footer --> <tr> <td style="padding: 15px; text-align: center; font-size: 12px; background-color: #f7f9fc; color: #777777;"> <p>This email was sent from a notification-only address. Please do not reply.</p> <p>© 2025. All rights reserved.</p> </td> </tr> </table> </td> </tr> </table> </body> </html> <!-- Random-ID: 678c4c92728ad -->