torkell: (Default)
[personal profile] torkell

Well, this is new. I've not seen this particular theme of spam before:

Received: from mail.ekizyag.com ([85.100.42.253]:1281 helo=ekizdce.ekizyag.com)
	by prizm.websitewelcome.com with esmtp (Exim 4.68)
	(envelope-from <helps@directgov.gov>)
	id 1L3ly5-0003wN-En
	for ####@thomasmccorkell.####.uk; Sat, 22 Nov 2008 00:27:45 -0600
Received: from User ([85.120.228.247]) by ekizdce.ekizyag.com with Microsoft SMTPSVC(6.0.3790.3959);
	 Sat, 22 Nov 2008 08:34:38 +0200
From: "Uk Government"<helps@directgov.gov>
Subject: UK Government Helps You
Date: Sat, 22 Nov 2008 07:13:48 +0200
MIME-Version: 1.0
Content-Type: text/html;
	charset="Windows-1251"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000
Bcc:
Message-ID: <ekizdcemjpfry7w0kyo0000031a@ekizdce.ekizyag.com>
X-OriginalArrivalTime: 22 Nov 2008 06:34:38.0640 (UTC) FILETIME=[64B2FB00:01C94C6C]
X-TM-AS-Product-Ver: SMEX-8.1.0.1092-5.500.1027-16292.005
X-TM-AS-Result: No--4.255500-5.000000-31
X-TM-AS-User-Approved-Sender: No
X-TM-AS-User-Blocked-Sender: No
X-Spam-Exim: cwdGt5Z_IIcfAtTB5EU6eWYy

Hello ,

UK Government has decided to help you .Ministry of Finance has decided to return some of
the taxes payed by you during the time. Has decided that every man aged between 30 and 55 years
to receive 450 pounds for family maintenance . The requirement is to be married and to have a job. 
For those who have children will be given an additional 200 pounds .All you have to do to take
possession of money is to fill our form.
Make a click on the link below to be redirected to our form :

    [http://www.seaspraypools.####.au/UK/directgov/index.htm] http://www.DirectGov.gov/tax/refund/helps.html

Thank you !

UK Government & Ministry of Finance

Fortuantly, the spammer FAILS at trying to get this past spam filters:

Content analysis details:   (8.9 points, 5.0 required)

 pts rule name              description
---- ---------------------- --------------------------------------------------
 1.4 NO_DNS_FOR_FROM        DNS: Envelope sender has no MX or A DNS records
 1.6 MISSING_HEADERS        Missing To: header
 0.0 URIBL_RED              Contains an URL listed in the URIBL redlist
                            [URIs: seaspraypools.com.au]
 0.0 HTML_MESSAGE           BODY: HTML included in message
 1.7 MIME_HTML_ONLY         BODY: Message only has text/html MIME parts
 0.0 FORGED_OUTLOOK_TAGS    Outlook can't send HTML in this format
 0.0 FORGED_OUTLOOK_HTML    Outlook can't send HTML message only
 4.2 FORGED_MUA_OUTLOOK     Forged mail pretending to be from MS Outlook

And www.directgov.gov doesn't exist either. Fail, spammer, fail.

Date: 2008-11-24 07:55 pm (UTC)
From: [identity profile] olego.livejournal.com
"4.2 FORGED_MUA_OUTLOOK Forged mail pretending to be from MS Outlook"

This is a bit confusing. If it's possible to detect a forge this easily, why would anyone bother forging it? What exactly does it mean?

May 2025

S M T W T F S
    123
45678910
111213141516 17
18192021222324
25262728293031

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags
Page generated Sep. 1st, 2025 06:57 pm
Powered by Dreamwidth Studios