RE: Spam-toujours

Pàgina inicial

Reply to this message
Autor: Jerome
Data:  
A: 'Jerome KIEFFER', guilde
Assumpte: RE: Spam-toujours

Cette article va t'interresser:
http://www.wanadoo.fr/bin/frame2.cgi?u=http%3A//assistance.wanadoo.fr/repons
e815.asp

En clair c'est l'ordi:         a231242.upc-a.chello.nl
Connecté a l'adresse :         96.216.72.224
Qui a utilisé le serveur :     m10.grp.snv.yahoo.com
avec le protocole:          NNFMP (a priori seul YAHOO l'utilise)
A la date :                Mar, 10 2004 8:41:07 AM -0800


Jerome


-----Message d'origine-----
De : Jerome KIEFFER [mailto:Jerome.Kieffer@terre-adelie.org]
Envoyé : vendredi 9 avril 2004 12:10
À : guilde@???
Objet : Spam-toujours


Question aux spécialiste : qui a envoyé ce spam ?

egon est bien le serveur par lequel il a transité et ce n'est
probablement pas l'expediteur. est ce que les 2 sernieres lignes
"recieved" sont forgées ?

Received: from 68.48.164.92 (dsl-16-35.td.tiscali.no [82.164.16.35])
    by egon (Postfix) with SMTP id EF1F789B
    for <jerome.kieffer@???>; Thu,  8 Apr 2004 19:00:22
+0200 (CEST)
Received: from anther.webhostingtalk.com ([88.58.121.118]) by
da001d2020.lax-ca.osd.concentric.net with QMQP; Mar, 10 2004 9:43:05 AM
+1200
Received: from a231242.upc-a.chello.nl ([96.216.72.224]) by
m10.grp.snv.yahoo.com with NNFMP; Mar, 10 2004 8:41:07 AM -0800
From: Joanne Kennedy <zxmpather967-786@???>





Content analysis details: (22.5 points, 5.0 required)

 pts rule name              description
---- ----------------------
--------------------------------------------------
 1.3 X_PRIORITY_HIGH        Sent with 'X-Priority' set to high
 1.0 FROM_ENDS_IN_NUMS      From: ends in numbers
 4.1 RCVD_AM_PM             Received headers forged (AM/PM)
 3.8 TRACKER_ID             BODY: Incorporates a tracking ID number
 0.1 HTML_LINK_CLICK_HERE   BODY: HTML link text says "click here"
 0.1 HTML_MESSAGE           BODY: HTML included in message
 5.4 BAYES_99               BODY: Bayesian spam probability is 99 to
100%
                            [score: 1.0000]
 0.3 MIME_HTML_ONLY         BODY: Message only has text/html MIME parts
 1.5 DATE_IN_PAST_96_XX     Date: is 96 hours or more before Received:
date
 1.2 HTML_MIME_NO_HTML_TAG  HTML-only message, but there is no HTML tag
 1.0 FORGED_OUTLOOK_TAGS    Outlook can't send HTML in this format
 0.1 CLICK_BELOW            Asks you to click below
 2.6 FORGED_MUA_OUTLOOK     Forged mail pretending to be from MS Outlook


--
Jérôme KIEFFER
The programming of today's high speed digital computers is still an art
rather than a science.
            Savitsky and Golay, Anal. Chem., 36, p1638 (1964)
            Savitsky and Golay, Anal. Chem., 36, p1638 (1964)