[an error occurred while processing this directive]
Spam detection software, running on the system "amantadine.ncsa.uiuc.edu", has
identified this incoming email as possible spam. The original message
has been attached to this so you can view it (if it isn't spam) or label
similar future email. If you have any questions, see
postmaster@ncsa.uiuc.edu for details.
Content preview: Warning: This message has had one or more attachments
removed Warning: (the entire message). Warning: Please read the
"NCSA-Attachment-Warning.txt" attachment(s) for more information. This
is a message from the MailScanner E-Mail Virus Protection Service The
original e-mail attachment "the entire message" was believed to be
infected by a virus and has been replaced by this warning message. [...]
Content analysis details: (5.8 points, 4.9 required)
pts rule name description
---- ---------------------- --------------------------------------------------
1.0 NO_REAL_NAME From: does not include a real name
0.1 FORGED_RCVD_HELO Received: contains a forged HELO
0.0 BAYES_50 BODY: Bayesian spam probability is 40 to 60%
[score: 0.5000]
0.2 DNS_FROM_RFC_ABUSE RBL: Envelope sender in abuse.rfc-ignorant.org
0.1 TO_CC_NONE No To: or Cc: header
4.1 FORGED_MUA_OUTLOOK Forged mail pretending to be from MS Outlook
0.4 AWL AWL: From: address is in the auto white-list
--- Begin Message ---
- Subject: {Disarmed} {Virus?} You you have paid orders@dell.com $699.99 USD
- From: "PayPal"<office@paypal.com>
- Date: Sun, 29 Oct 2006 08:25:31 -0700
- Content-transfer-encoding: 7bit
- Content-type: text/plain; charset="us-ascii"
- Reply-to: <do-not-reply@paypal.com>
Warning: This message has had one or more attachments removed Warning: (the entire message). Warning: Please read the "NCSA-Attachment-Warning.txt" attachment(s) for more information. This is a message from the MailScanner E-Mail Virus Protection Service ---------------------------------------------------------------------- The original e-mail attachment "the entire message" was believed to be infected by a virus and has been replaced by this warning message. Due to limitations placed on us by the Regulation of Investigatory Powers Act 2000, we were unable to keep a copy of the infected attachment. Please ask the sender of the message to disinfect their original version and send you a clean copy. At Sun Oct 29 09:21:25 2006 the virus scanner said: ClamAV Module: msg-2333-110.html was infected: HTML.Phishing.Pay-122 -- Postmaster MailScanner thanks transtec Computers for their support
--- End Message ---