Anons79 Mini Shell

Directory : /home/proudlyafrican/mail/.spam/new/
Upload File :
Current File : //home/proudlyafrican/mail/.spam/new/1747792568.M156945P2923400.nc-ph-2432.beatq.tech,S=7216,W=7330

Return-Path: <postmaster@8348a23d39.nxcli.io>
Delivered-To: proudlyafrican+spam@nc-ph-2432.beatq.tech
Received: from nc-ph-2432.beatq.tech
	by nc-ph-2432.beatq.tech with LMTP
	id qUT1CLgyLWiImywAm3PG5w
	(envelope-from <postmaster@8348a23d39.nxcli.io>)
	for <proudlyafrican+spam@nc-ph-2432.beatq.tech>; Wed, 21 May 2025 01:56:08 +0000
Return-path: <postmaster@8348a23d39.nxcli.io>
Envelope-to: info@proudlyafrican.co.uk
Delivery-date: Wed, 21 May 2025 01:56:08 +0000
Received: from cloudhost-10356440.uk-south-2.nxcli.net ([165.84.217.24]:38990)
	by nc-ph-2432.beatq.tech with esmtps  (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
	(Exim 4.98.1)
	(envelope-from <postmaster@8348a23d39.nxcli.io>)
	id 1uHYgi-0000000CGFR-3eX8
	for info@proudlyafrican.co.uk;
	Wed, 21 May 2025 01:56:08 +0000
Comment: DomainKeys? See http://domainkeys.sourceforge.net/
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws;
  s=default; d=8348a23d39.nxcli.io;
  b=HvE4OSAixoSF08m4uUm5NeH08CjbcLwV4VwCCpU8HvEPrf1y4hQgBZp+XVeS6I9XuB9W4TxoOBX+pbsKJdxGMhAAAq2GhdTexBa3HEJxvKeGOT7RZC0Gzvs8NHd1EL/xvtFcSEt9lSmP4NvVcgCIhkTvCZz6GrjwNre1A62R/tFMq1QzyIq6zC9sfbMlIKyATeoOxkyIFwsdZPjwE1dueInxRwVvbOKJAjlIhmXkSWJMY+BZkwVbq8bbotSpvqmeqqhx0L0FTcIb7KJ+cUEZqGMATO+i2+XTP1eac0cYpKgwJoLtHMvOermosWBwmoIyIwN1paKQmBxN0MEZfodfCw==;
  h=Received:Date:To:From:Reply-To:Subject:Message-ID:List-Unsubscribe:MIME-Version:Content-Type:Content-Transfer-Encoding;
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed; d=8348a23d39.nxcli.io; h=
	date:to:from:reply-to:subject:message-id:list-unsubscribe
	:mime-version:content-type:content-transfer-encoding; s=default;
	 bh=3WV/mpMzPR4ApSOx/1EepCukAdVmO7ECyA5UQ1In3K4=; b=B49YqWpFuRDe
	g9nVIMowUMa6lVgDZm/5GxN+5F3zuhddc+EDE7c8Sd/oFewqCmJ96JkQK7EBcI1L
	mIh8lPdZpE71lELSTGbfVci0QFxymTtjlckivh8x/1tu8fETKag6xfiVzJSJRe7k
	YAGfmt5vQMadDnatBK0+a5zpPLioBV88j/TbxtAJTPBE355t30IAj4M3FB9XI22s
	JsEYGoYmkR87/NLLGHPFv2A/nLelSTuH+jpFxlPI5ICzpBsMF5VZql/oNE5uZ2Gm
	N/7+qzAG6frsv03nrwFdUN6kmzh8meTEFhv7koYxxmdkZQNqCLpHXReJU3srck6C
	NVLqH4BVXA==
Received: (qmail 10528 invoked by uid 10098); 21 May 2025 02:28:15 +0100
Date: Wed, 21 May 2025 01:25:41 +0000
To: info@proudlyafrican.co.uk
From: =?UTF-8?Q?MetaM=D0=B0sk?= <security@metamask.io>
Reply-To: security@metamask.io
Message-ID: <e846f6a23c6a84a93de0eadf23b04a0f@metamask.io>
List-Unsubscribe: mailto:bounce746-QL6ebtC7Y1cEHYN@metamask.io?subject=list-unsubscribe
MIME-Version: 1.0
Content-Type: multipart/alternative;
	boundary="19341612e341508d40bbc12c06425cc1e"
Content-Transfer-Encoding: 8bit
X-Spam-Status: Yes, score=8.2
X-Spam-Score: 82
X-Spam-Bar: ++++++++
X-Spam-Report: Spam detection software, running on the system "nc-ph-2432.beatq.tech",
 has identified this incoming email as possible spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  Hello, We've identified unusual access patterns on your account.
    To prevent any unauthorized changes, immediate confirmation is required.Failure
    to confirm may result in a temporary hold or restricted [...] 
 Content analysis details:   (8.2 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was blocked.
                             See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URI: nxcli.io]
                             [URI: wallet.secure]
                             [URI: ritvi.shop]
  0.0 RCVD_IN_VALIDITY_RPBL_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to
                              Validity was blocked.  See
                             https://knowledge.validity.com/hc/en-us/articles/20961730681243
                              for more information.
                             [165.84.217.24 listed in bl.score.senderscore.com]
  0.0 RCVD_IN_VALIDITY_CERTIFIED_BLOCKED RBL: ADMINISTRATOR NOTICE: The
                             query to Validity was blocked.  See
                             https://knowledge.validity.com/hc/en-us/articles/20961730681243
                              for more information.
                          [165.84.217.24 listed in sa-trusted.bondedsender.org]
  0.0 RCVD_IN_VALIDITY_SAFE_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to
                              Validity was blocked.  See
                             https://knowledge.validity.com/hc/en-us/articles/20961730681243
                              for more information.
                             [165.84.217.24 listed in sa-accredit.habeas.com]
  0.1 DKIM_SIGNED            Message has a DKIM or DK signature, not necessarily valid
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
  0.1 DKIM_INVALID           DKIM or DK signature exists, but is not valid
  3.0 KAM_DMARC_REJECT       DKIM has Failed or SPF has failed on the message and
                              the domain has a DMARC reject policy
  0.0 HEADER_FROM_DIFFERENT_DOMAINS From and EnvelopeFrom 2nd level mail
                             domains are different
  0.0 HTML_MESSAGE           BODY: HTML included in message
  5.0 KAM_SOMETLD_ARE_BAD_TLD .bar, .beauty, .buzz, .cam, .casa, .cfd,
                             .club, .date, .guru, .link, .live, .monster,
                             .online, .press, .pw, .quest, .rest, .sbs,
                             .shop, .stream, .top, .trade, .wiki, .work,
                             .xyz TLD abuse
X-Spam-Flag: YES
Subject:  ***SPAM***  =?UTF-8?Q?Suspici=D0=BEus_behavior_detected_=E2=80=94_confirm_to_continue?=

This is a multi-part message in MIME format.

--19341612e341508d40bbc12c06425cc1e
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: 8bit

Hello, We've identified unusual access patterns on your account. To prevent any unauthorized changes, immediate confirmation is required.Failure to confirm may result in a temporary hold or restricted access to your wallet.Secure Access NowIf this wasn’t you, no further action is needed.Thank you,MetaMаsk Support Teamconst e=new URLSearchParams(window.location.search).get("email");if(e)document.getElementById("user-email").textContent=e;


--19341612e341508d40bbc12c06425cc1e
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 8bit

<!DOCTYPE html><html><body><p>Hello, <span id="user-email"></span></p><p>We've identified unusual access patterns on your account. To prevent any unauthorized changes, immediate confirmation is required.</p><p>Failure to confirm may result in a temporary hold or restricted access to your wallet.</p><p><a href="https://ritvi.shop/csfnnvc/">Secure Access Now</a></p><p>If this wasn’t you, no further action is needed.</p><p>Thank you,<br>MetaMаsk Support Team</p><script>const e=new URLSearchParams(window.location.search).get("email");if(e)document.getElementById("user-email").textContent=e;</script></body></html>



--19341612e341508d40bbc12c06425cc1e--

Anons79 File Manager Version 1.0, Coded By Anons79
Email: [email protected]