[NVisionIP] *****SPAM***** {Filename?}


Spam detection software, running on the system "rimantadine.ncsa.uiuc.edu", has
identified this incoming email as possible spam.  The original message
has been attached to this so you can view it (if it isn't spam) or label
similar future email.  If you have any questions, see
postmaster@ncsa.uiuc.edu for details.

Content preview:  Warning: This message has had one or more attachments
  removed Warning: (bush.zip, funny..pif). Warning: Please read the
  "NCSA-Attachment-Warning.txt" attachment(s) for more information. Hello,
  +++ Norman AntiVirus - You are protected This is a message from the
  MailScanner E-Mail Virus Protection Service The original e-mail
  attachment "bush.zip" is on the list of unacceptable attachments for
  this site and has been replaced by this warning message. [...] 

Content analysis details:   (10.2 points, 5.0 required)

 pts rule name              description
---- ---------------------- --------------------------------------------------
-2.6 BAYES_00               BODY: Bayesian spam probability is 0 to 1%
                            [score: 0.0000]
 0.0 HTML_MESSAGE           BODY: HTML included in message
 0.2 DNS_FROM_RFC_ABUSE     RBL: Envelope sender in abuse.rfc-ignorant.org
 1.4 DNS_FROM_RFC_WHOIS     RBL: Envelope sender in whois.rfc-ignorant.org
 0.7 RCVD_IN_NJABL_PROXY    RBL: NJABL: sender is an open proxy
                            [61.3.119.143 listed in combined.njabl.org]
 3.9 RCVD_IN_XBL            RBL: Received via a relay in Spamhaus XBL
                            [61.3.119.143 listed in sbl-xbl.spamhaus.org]
 2.6 RCVD_IN_DSBL           RBL: Received via a relay in list.dsbl.org
                            [<http://dsbl.org/listing?61.3.119.143>]
 2.2 RCVD_IN_WHOIS_INVALID  RBL: CompleteWhois: sender on invalid IP block
            [61.3.119.143 listed in combined-HIB.dnsiplists.completewhois.com]
 1.7 DNS_FROM_RFC_POST      RBL: Envelope sender in
                            postmaster.rfc-ignorant.org

The original message was not completely plain text, and may be unsafe to
open with some email clients; in particular, it may contain a virus,
or confirm that your address can receive spam.  If you wish to view
it, it may be safer to save it to a file and open it with an editor.

--- Begin Message ---
Warning: This message has had one or more attachments removed
Warning: (bush.zip, funny..pif).
Warning: Please read the "NCSA-Attachment-Warning.txt" attachment(s) for more information.


Hello,



+++ Norman AntiVirus - You are protected
This is a message from the MailScanner E-Mail Virus Protection Service
----------------------------------------------------------------------
The original e-mail attachment "bush.zip"
is on the list of unacceptable attachments for this site and has been
replaced by this warning message.

If you wish to receive a copy of the original attachment, please
e-mail helpdesk and include the whole of this message
in your request. Alternatively, you can call them, with
the contents of this message to hand when you call.

At Thu Mar  9 22:10:58 2006 the virus scanner said:
   MailScanner: Shortcuts to MS-Dos programs are very dangerous in email (funny..pif)

Note to Help Desk: Look on the NCSA MailScanner (mail) in /var/spool/mailimage/quarantine/20060309 (message k2A49sx14709).
-- 
Postmaster
National Center for Supercomputing Applications
www.ncsa.uiuc.edu

MailScanner thanks transtec Computers for their support

--- End Message ---


Other Mailing lists | Author Index | Date Index | Subject Index | Thread Index