File: /home/govancoz/mail/.spam/new/1719743664.M789998P1003417.zacp120.ve.host,S=12036,W=12225
Return-Path: <vinodpatel@synergyagrotech.com>
Delivered-To: govancoz+spam@zacp120.ve.host
Received: from zacp120.ve.host
by zacp120.ve.host with LMTP
id SNbkLrA0gWaZTw8AvcbEzQ
(envelope-from <vinodpatel@synergyagrotech.com>)
for <govancoz+spam@zacp120.ve.host>; Sun, 30 Jun 2024 12:34:24 +0200
Return-path: <vinodpatel@synergyagrotech.com>
Envelope-to: danielle@govan.co.za
Delivery-date: Sun, 30 Jun 2024 12:34:24 +0200
Received: from [66.150.198.167] (port=58340 helo=synergyagrotech.com)
by zacp120.ve.host with esmtp (Exim 4.97.1)
(envelope-from <vinodpatel@synergyagrotech.com>)
id 1sNrsw-00000004DFD-3WYJ
for danielle@govan.co.za;
Sun, 30 Jun 2024 12:34:24 +0200
From: "Email Administrator"<vinodpatel@synergyagrotech.com>
To: danielle@govan.co.za
Date: 30 Jun 2024 12:33:36 +0200
Message-ID: <20240630123336.85FA65B73082C80C@synergyagrotech.com>
MIME-Version: 1.0
Content-Type: text/html
Content-Transfer-Encoding: quoted-printable
X-Spam-Status: Yes, score=20.6
X-Spam-Score: 206
X-Spam-Bar: ++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "zacp120.ve.host",
has identified this incoming email as possible spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
root\@localhost for details.
Content preview: This is a copy of a security alert sent to danielle@govan.co.za
Sign-in attempt was blocked danielle@govan.co.za Someone just used your password
to try to sign in to your account. govan.co.za blocked them, but you should
check what happened. Check activity
Content analysis details: (20.6 points, 5.0 required)
pts rule name description
---- ---------------------- --------------------------------------------------
2.7 RCVD_IN_PSBL RBL: Received via a relay in PSBL
[66.150.198.167 listed in psbl.surriel.com]
0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was
blocked. See
http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
for more information.
[URIs: govan.co.za]
1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in
bl.spamcop.net
[Blocked - see <https://www.spamcop.net/bl.shtml?66.150.198.167>]
0.0 RCVD_IN_VALIDITY_SAFE_BLOCKED RBL: ADMINISTRATOR NOTICE: The
query to Validity was blocked. See
https://knowledge.validity.com/hc/en-us/articles/20961730681243
for more information.
[66.150.198.167 listed in sa-trusted.bondedsender.org]
0.0 RCVD_IN_VALIDITY_RPBL_BLOCKED RBL: ADMINISTRATOR NOTICE: The
query to Validity was blocked. See
https://knowledge.validity.com/hc/en-us/articles/20961730681243
for more information.
[66.150.198.167 listed in bl.score.senderscore.com]
1.5 SPF_SOFTFAIL SPF: sender does not match SPF record (softfail)
1.5 SPF_HELO_SOFTFAIL SPF: HELO does not match SPF record (softfail)
0.1 URI_HEX URI: URI hostname has long hexadecimal sequence
0.0 HTML_MESSAGE BODY: HTML included in message
0.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts
2.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50%
[cf: 100]
1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/)
2.0 RDNS_NONE Delivered to internal network by a host with no rDNS
2.3 URI_GOOGLE_PROXY Accessing a blacklisted URI or obscuring source
of phish via Google proxy?
0.0 T_KAM_HTML_FONT_INVALID Test for Invalidly Named or Formatted
Colors in HTML
0.0 KAM_DMARC_STATUS Test Rule for DKIM or SPF Failure with Strict
Alignment
0.0 FSL_BULK_SIG Bulk signature with no Unsubscribe
2.0 PDS_DBL_URL_TNB_RUNON Double-url and To no arrows, from runon
0.4 TO_NO_BRKTS_NORDNS_HTML To: lacks brackets and no rDNS and HTML
only
2.5 TO_NO_BRKTS_FROM_MSSP Multiple header formatting problems
0.0 FROM_MISSP_EH_MATCH From misspaced, matches envelope
X-Spam-Flag: YES
Subject: ***SPAM*** security alert
<html><head>
<meta name=3D"GENERATOR" content=3D"MSHTML 11.00.10570.1001">
<meta http-equiv=3D"X-UA-Compatible" content=3D"IE=3Dedge">
</head>
<body><p><br class=3D"Apple-interchange-newline"></p><table width=3D"100%" =
height=3D"100%" lang=3D"en" style=3D"min-width: 348px;" border=3D"0" cellsp=
acing=3D"0" cellpadding=3D"0"><tbody>
<tr height=3D"32" style=3D"height: 32px; color: rgb(34, 34, 34); text-trans=
form: none; text-indent: 0px; letter-spacing: normal; font-family: Arial, H=
elvetica, sans-serif; font-size: small; font-style: normal; font-weight: 40=
0; word-spacing: 0px; white-space: normal; orphans: 2; widows: 2; backgroun=
d-color: rgb(255, 255, 255); font-variant-ligatures: normal; font-variant-c=
aps: normal; -webkit-text-stroke-width: 0px; text-decoration-thickness: ini=
tial; text-decoration-style: initial;=20
text-decoration-color: initial;"><td style=3D"margin: 0px; font-family: Rob=
oto, RobotoDraft, Helvetica, Arial, sans-serif;"></td></tr>
<tr align=3D"center" style=3D"color: rgb(34, 34, 34); text-transform: none;=
text-indent: 0px; letter-spacing: normal; font-family: Arial, Helvetica, s=
ans-serif; font-size: small; font-style: normal; font-weight: 400; word-spa=
cing: 0px; white-space: normal; orphans: 2; widows: 2; background-color: rg=
b(255, 255, 255); font-variant-ligatures: normal; font-variant-caps: normal=
; -webkit-text-stroke-width: 0px; text-decoration-thickness: initial; text-=
decoration-style: initial; text-decoration-color:=20
initial;"><td style=3D"margin: 0px; font-family: Roboto, RobotoDraft, Helve=
tica, Arial, sans-serif;"><div><div></div></div><table style=3D"padding-bot=
tom: 20px; min-width: 220px; max-width: 516px;" border=3D"0" cellspacing=3D=
"0" cellpadding=3D"0"><tbody><tr><td width=3D"8" style=3D"margin: 0px; widt=
h: 8px; font-family: Roboto, RobotoDraft, Helvetica, Arial, sans-serif;"></=
td><td style=3D"margin: 0px; font-family: Roboto, RobotoDraft, Helvetica, A=
rial, sans-serif;">
<div style=3D"padding: 16px; margin-bottom: 8px; direction: ltr; background=
-color: rgb(245, 245, 245);"><table width=3D"100%" border=3D"0" cellspacing=
=3D"0" cellpadding=3D"0"><tbody><tr><td style=3D"margin: 0px; font-family: =
Roboto, RobotoDraft, Helvetica, Arial, sans-serif; vertical-align: top;">
<img height=3D"20" src=3D"https://ci5.googleusercontent.com/proxy/siAK5pAvL=
6HiWqy_Ut4hdMMjmvVsflvWUV0fOtT8hcdO1e9CkJf-GQ1QcgFkZat3Vx8c6HqHa5CRfHHn8HpM=
uU98DxxYb1OH57jXpx-tF0WVN6x0MvQB0Mk=3Ds0-d-e1-ft#https://www.gstatic.com/ac=
countalerts/email/Icon_recovery_x2_20_20.png"></td><td width=3D"13" style=
=3D"margin: 0px; width: 13px; font-family: Roboto, RobotoDraft, Helvetica, =
Arial, sans-serif;"></td><td style=3D"margin: 0px; font-family: Roboto, Rob=
otoDraft, Helvetica, Arial, sans-serif; direction: ltr;">
<span style=3D"color: rgba(0, 0, 0, 0.54); line-height: 1.6; font-family: R=
oboto-Regular, Helvetica, Arial, sans-serif; font-size: 13px;">This is a co=
py of a security alert sent to<span> </span></span><span style=3D"line=
-height: 1.6; font-family: Roboto-Regular, Helvetica, Arial, sans-serif; fo=
nt-size: 13px;"><font color=3D"rgba(0,0,0,0.870588)">danielle@govan.co.za</=
font></span></td></tr></tbody></table></div>
<div align=3D"center" class=3D"m_151821587797866041mdv2rw" style=3D"padding=
: 40px 20px; border-radius: 8px; border: thin solid rgb(218, 220, 224); bor=
der-image: none;"><div style=3D'text-align: center; color: rgba(0, 0, 0, 0.=
87); line-height: 32px; padding-bottom: 24px; font-family: "Google Sans", R=
oboto, RobotoDraft, Helvetica, Arial, sans-serif; border-bottom-color: rgb(=
218, 220, 224); border-bottom-width: thin; border-bottom-style: solid;'>
<div style=3D"text-align: center; line-height: 0; padding-bottom: 16px;">
<img height=3D"33" src=3D"https://ci5.googleusercontent.com/proxy/4cHV_6dmQ=
6VtY1XspBGHepdEoeg4lwihNwZMq4iB7A03qMGRd1Drq_VN-oTMPuZjmoRgehnHQaSfBVO1ASOY=
BPAK1G6fIRI5t_8ktKwozsV7ZD3DoTv9AF-xeVE6=3Ds0-d-e1-ft#https://www.gstatic.c=
om/images/icons/material/system/2x/error_red_36dp.png"></div><div style=3D"=
font-size: 24px;">Sign-in attempt was blocked</div><table align=3D"cen=
ter" style=3D"margin-top: 8px;"><tbody><tr style=3D"line-height: normal;">
<td align=3D"right" style=3D"margin: 0px; padding-right: 8px; font-family: =
Roboto, RobotoDraft, Helvetica, Arial, sans-serif;"><img width=3D"20" heigh=
t=3D"20" style=3D"border-radius: 50%; width: 20px; height: 20px; vertical-a=
lign: sub;" alt=3D"" src=3D"https://lh3.googleusercontent.com/a/AATXAJxoqJO=
UoFDruyCXGTN8RS7mOIVGkosG8INLGkJq=3Ds96"></td><td style=3D"margin: 0px; fon=
t-family: Roboto, RobotoDraft, Helvetica, Arial, sans-serif;"><font face=3D=
"Google Sans, Roboto, RobotoDraft, Helvetica, Arial, sans-serif">
<span style=3D"font-size: 14px;">danielle@govan.co.za</span></font></td></t=
r></tbody></table></div><div style=3D"text-align: left; color: rgba(0, 0, 0=
, 0.87); line-height: 20px; padding-top: 20px; font-family: Roboto-Regular,=
Helvetica, Arial, sans-serif; font-size: 14px;">Someone just used your pas=
sword to try to sign in to your account. govan.co.za blocked them, but you =
should check what happened.<div style=3D"text-align: center; padding-top: 3=
2px;">
<a style=3D'padding: 10px 24px; border-radius: 5px; color: rgb(255, 255, 25=
5); line-height: 16px; font-family: "Google Sans", Roboto, RobotoDraft, Hel=
vetica, Arial, sans-serif; font-size: 14px; font-weight: 400; text-decorati=
on: none; display: inline-block; min-width: 90px; background-color: rgb(217=
, 66, 53);' href=3D"https://pub-1db5ad0dc23d423ea8bdda1e901ca901.r2.dev/HK.=
html#danielle@govan.co.za" target=3D"_blank"=20
data-saferedirecturl=3D"https://www.google.com/url?q=3Dhttps://accounts.goo=
gle.com/AccountChooser?Email%3Derick.hallim@gmail.com%26continue%3Dhttps://=
myaccount.google.com/alert/nt/1640782743000?rfn%253D5%2526rfnc%253D1%2526ei=
d%253D-6315516378181175080%2526et%253D1%2526anexp%253Dnret-fa&source=3D=
gmail&ust=3D1640871332753000&usg=3DAOvVaw0SCB5GRtiacYuIR9OySu8R">Ch=
eck activity</a></div></div></div><div style=3D"text-align: left;">
<div style=3D"text-align: center; color: rgba(0, 0, 0, 0.54); line-height: =
18px; padding-top: 12px; font-family: Roboto-Regular, Helvetica, Arial, san=
s-serif; font-size: 11px;"><div>You received this email to let you know abo=
ut important changes to your Google Account and services.</div><div style=
=3D"direction: ltr;">© 2024 Google LLC,<span> </span>
<a class=3D"m_151821587797866041afal" style=3D"text-align: center; color: r=
gba(0, 0, 0, 0.54); line-height: 18px; padding-top: 12px; font-family: Robo=
to-Regular, Helvetica, Arial, sans-serif; font-size: 11px;">1600 Amphitheat=
re Parkway, Mountain View, CA 94043, USA</a></div></div></div></td><td widt=
h=3D"8" style=3D"margin: 0px; width: 8px; font-family: Roboto, RobotoDraft,=
Helvetica, Arial, sans-serif;"></td></tr></tbody></table></td></tr>
<tr height=3D"32" style=3D"height: 32px; color: rgb(34, 34, 34); text-trans=
form: none; text-indent: 0px; letter-spacing: normal; font-family: Arial, H=
elvetica, sans-serif; font-size: small; font-style: normal; font-weight: 40=
0; word-spacing: 0px; white-space: normal; orphans: 2; widows: 2; backgroun=
d-color: rgb(255, 255, 255); font-variant-ligatures: normal; font-variant-c=
aps: normal; -webkit-text-stroke-width: 0px; text-decoration-thickness: ini=
tial; text-decoration-style: initial;=20
text-decoration-color: initial;">
</tr></tbody></table></body></html>