[an error occurred while processing this directive]

*****SPAM***** {Virus?} Daily activity report


Spam detection software, running on the system "amantadine.ncsa.uiuc.edu", has
identified this incoming email as possible spam.  The original message
has been attached to this so you can view it (if it isn't spam) or label
similar future email.  If you have any questions, see
postmaster@ncsa.uiuc.edu for details.

Content preview:  Warning: This message has had one or more attachments
  removed Warning: (billing_info..pif, work.zip). Warning: Please read the
  "NCSA-Attachment-Warning.txt" attachment(s) for more information.
  Response [...] 

Content analysis details:   (8.0 points, 5.0 required)

 pts rule name              description
---- ---------------------- --------------------------------------------------
 2.6 MSGID_OUTLOOK_INVALID  Message-Id is fake (in Outlook Express format)
 0.1 HTML_90_100            BODY: Message is 90% to 100% HTML
-2.6 BAYES_00               BODY: Bayesian spam probability is 0 to 1%
                            [score: 0.0000]
 0.0 HTML_MESSAGE           BODY: HTML included in message
 2.0 RCVD_IN_SORBS_DUL      RBL: SORBS: sent directly from dynamic IP address
                            [24.54.134.171 listed in dnsbl.sorbs.net]
 2.2 RCVD_IN_WHOIS_INVALID  RBL: CompleteWhois: sender on invalid IP block
           [24.54.134.171 listed in combined-HIB.dnsiplists.completewhois.com]
 1.7 DNS_FROM_RFC_POST      RBL: Envelope sender in
                            postmaster.rfc-ignorant.org
 1.9 RCVD_IN_NJABL_DUL      RBL: NJABL: dialup sender did non-local SMTP
                            [24.54.134.171 listed in combined.njabl.org]

The original message was not completely plain text, and may be unsafe to
open with some email clients; in particular, it may contain a virus,
or confirm that your address can receive spam.  If you wish to view
it, it may be safer to save it to a file and open it with an editor.

--- Begin Message ---
Warning: This message has had one or more attachments removed
Warning: (billing_info..pif, work.zip).
Warning: Please read the "NCSA-Attachment-Warning.txt" attachment(s) for more information.

Response
 
This is a message from the MailScanner E-Mail Virus Protection Service
----------------------------------------------------------------------
The original e-mail attachment "work.zip"
was believed to be infected by a virus and has been replaced by this warning
message.

If you wish to receive a copy of the *infected* attachment, please e-mail the
NCSA Help Desk (help@ncsa.uiuc.edu) and include this message with your
request. Alternatively, you can call them at +1 217 244 0709 with the
contents of this message on hand when you call.

At Tue Apr  4 08:27:02 2006 the virus scanner said:
   ClamAV Module: work.zip was infected: Exploit.W32.MS05-039

Note to Help Desk: Look on the NCSA MailScanner (rimantadine) in 
/var/spool/quarantine/20060404 (message k34DR0m07205).
-- 
The NCSA Email guys

--- End Message ---


[an error occurred while processing this directive]
Other Mailing lists | Author Index | Date Index | Subject Index | Thread Index