HEX
Server: Apache
System: Linux zacp120.webway.host 4.18.0-553.50.1.lve.el8.x86_64 #1 SMP Thu Apr 17 19:10:24 UTC 2025 x86_64
User: govancoz (1003)
PHP: 8.3.26
Disabled: exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
Upload Files
File: /home/govancoz/mail/.spam/new/1753121019.M230778P3961986.zacp120.webway.host,S=5362,W=5460
Return-Path: <fernanda@mbdespachos.com.br>
Delivered-To: govancoz+spam@zacp120.webway.host
Received: from zacp120.webway.host
	by zacp120.webway.host with LMTP
	id YDG8DPuAfmiCdDwA8rC0kQ
	(envelope-from <fernanda@mbdespachos.com.br>)
	for <govancoz+spam@zacp120.webway.host>; Mon, 21 Jul 2025 20:03:39 +0200
Return-path: <fernanda@mbdespachos.com.br>
Envelope-to: cheryl@govan.co.za
Delivery-date: Mon, 21 Jul 2025 20:03:39 +0200
Received: from [169.239.182.223] (port=65428)
	by zacp120.webway.host with esmtp (Exim 4.98.2)
	(envelope-from <fernanda@mbdespachos.com.br>)
	id 1udurP-0000000HQ0a-1le6
	for cheryl@govan.co.za;
	Mon, 21 Jul 2025 20:03:39 +0200
From: "SUPPORT TEAM"<fernanda@mbdespachos.com.br>
To: cheryl@govan.co.za
Date: 21 Jul 2025 20:02:54 +0200
Message-ID: <20250721200254.182CFA0177829A34@mbdespachos.com.br>
MIME-Version: 1.0
Content-Type: text/html
Content-Transfer-Encoding: quoted-printable
X-Spam-Status: Yes, score=8.4
X-Spam-Score: 84
X-Spam-Bar: ++++++++
X-Spam-Report: Spam detection software, running on the system "zacp120.webway.host",
 has identified this incoming email as possible spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  Office-365 Hello cheryl@govan.co.za, We noticed some unusual
    activity in your cheryl@govan.co.za, To help protect you, we've temporarily
    blocked your account from sending emails or receiving any activities emails
    from others. 
 Content analysis details:   (8.4 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 RCVD_IN_VALIDITY_CERTIFIED_BLOCKED RBL: ADMINISTRATOR NOTICE: The
                             query to Validity was blocked.  See
                             https://knowledge.validity.com/hc/en-us/articles/20961730681243
                              for more information.
                        [169.239.182.223 listed in sa-trusted.bondedsender.org]
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was blocked.
                             See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URI: zya.me]
                             [URI: govan.co.za]
  0.0 RCVD_IN_VALIDITY_RPBL_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to
                              Validity was blocked.  See
                             https://knowledge.validity.com/hc/en-us/articles/20961730681243
                              for more information.
                           [169.239.182.223 listed in bl.score.senderscore.com]
  0.0 RCVD_IN_VALIDITY_SAFE_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to
                              Validity was blocked.  See
                             https://knowledge.validity.com/hc/en-us/articles/20961730681243
                              for more information.
                             [169.239.182.223 listed in sa-accredit.habeas.com]
  1.5 SPF_SOFTFAIL           SPF: sender does not match SPF record (softfail)
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
  0.0 HTML_MESSAGE           BODY: HTML included in message
  0.1 MIME_HTML_ONLY         BODY: Message only has text/html MIME parts
  0.0 HTML_FONT_SIZE_LARGE   BODY: HTML font size is large
  4.0 KAM_NOTIFY             Fake Notifications
  0.8 KAM_INFOUSMEBIZ        Prevalent use of
                             .info|.us|.me|.me.uk|.biz|xyz|id|rocks|life
                             domains in spam/malware
  2.0 RDNS_NONE              Delivered to internal network by a host with no rDNS
  0.0 VFY_ACCT_NORDNS        Verify your account to a poorly-configured MTA -
                             probable phishing
  0.0 TO_NO_BRKTS_NORDNS_HTML To: lacks brackets and no rDNS and HTML only
X-Spam-Flag: YES
Subject:  ***SPAM***  Account Validation

<html><head>
<meta http-equiv=3D"X-UA-Compatible" content=3D"IE=3Dedge">
</head><body><div align=3D"center">
<h3><font color=3D"#ff0000" face=3D"Arial" size=3D"6"><span style=3D"color:=
 rgb(255, 140, 0); line-height: normal; font-size: 48px;"><font color=3D"#f=
e5101" face=3D"Times New Roman" style=3D"background-color: rgb(255, 255, 25=
5);">Office-365</font></span></font><br><br>Hello <font color=3D"blue">cher=
yl@govan.co.za,</font><br><br> We noticed some unusual activity in your <fo=
nt color=3D"#0000ff">cheryl@govan.co.za,</font>
To help protect you, we've temporarily blocked your account from sending em=
ails&nbsp;or receiving any activities&nbsp;emails from others.&nbsp;<br>&nb=
sp;<br><em></em>The fastest way to unblock your <font color=3D"#0000ff">che=
ryl@govan.co.za, </font>account is&nbsp;to&nbsp;verify your account&nbsp;no=
w. <br><br><a href=3D"https://apsoldoaq.zya.me/qdce/?eca=3Dcheryl@govan.co.=
za&amp;subdomain=3Dhttp://cheryl@govan.co.za"><u><span style=3D"background-=
color: rgb(255, 255, 0);">
<font color=3D"#0101df"> VERIFY ACCOUNT NOW</font></span></u></a> <br><br>S=
incerely, <br>govan.co.za<br><font color=3D"#0404b4">&copy;<font color=3D"#=
000000">The&nbsp;Office Team .</font></font> <h3></h3></div>
<p></p>

</body></html>