Received: from cmgw2 (unknown [10.0.90.83])
by gproxy2.mail.unifiedlayer.com (Postfix) with ESMTP id 8215B1E0987
for <tips@usemergalerts.net>; Sat, 1 Jul 2017 10:09:42 -0600 (MDT)
Received: from box652.bluehost.com ([66.147.244.152])
by cmgw2 with
id fU9f1v00D3J0Phu01U9ir4; Sat, 01 Jul 2017 10:09:42 -0600
X-Authority-Analysis: v=2.2 cv=UvYTD64B c=1 sm=1 tr=0
a=klTutBuTtzU7AQm+pcAygA==:117 a=klTutBuTtzU7AQm+pcAygA==:17
a=JSez2niZgTYA:10 a=G3gG6ho9WtcA:10 a=8KnogSdz-4WQRcA6b2cA:9
a=CjuIK1q_8ugA:10 a=iBEEluE6C61v7Jw9-fsA:9 a=IKIoO-ieCDEA:10
a=5RF1dqjbx-AA:10 a=Yy2xoct6d_2ZlxTvqP-Z:22
Received: from mrmaxwel by box652.bluehost.com with local (Exim 4.87)
(envelope-from <mrmaxwel@box652.bluehost.com>)
id 1dRKxn-000E5i-8V
for tips@usemergalerts.net; Sat, 01 Jul 2017 10:09:39 -0600
To: tips@usemergalerts.net
Subject: Status of your UPS delivery ID:1594630
X-PHP-Originating-Script: 1657:post.php(4) : regexp code(1) : eval()'d code(11) : eval()'d code
Date: Sat, 1 Jul 2017 10:09:39 -0600
Content-Type: multipart/mixed;
boundary="bound1_8055403040848c6f932023a1b16bd14b"
Content-Transfer-Encoding: 8bit
Message-Id: <E1dRKxn-000E5i-8V@box652.bluehost.com>
From: mrmaxwel@box652.bluehost.com
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - box652.bluehost.com
X-AntiAbuse: Original Domain - usemergalerts.net
X-AntiAbuse: Originator/Caller UID/GID - [1657 1657] / [47 12]
X-AntiAbuse: Sender Address Domain - box652.bluehost.com
X-BWhitelist: no
X-Source-IP:
X-Exim-ID: 1dRKxn-000E5i-8V
X-Source:
X-Source-Args:
X-Source-Dir:
X-Source-Sender:
X-Source-Auth: mrmaxwel
X-Email-Count: 132
X-Source-Cap: bXJtYXh3ZWw7bXJtYXh3ZWw7Ym94NjUyLmJsdWVob3N0LmNvbQ==
Dear User,
A message sent to you by mrmaxwel@box652.bluehost.com (may be forged) with the following
attributes was not delivered because it contains an infected object.
--- Antivirus report ---
The following viruses were found:
Known virus(es):
JS.DownLoader.1225
Detailed report:
127.0.0.1 [25054] drweb.tmp.NwyVRK - archive MAIL
127.0.0.1 [25054] >drweb.tmp.NwyVRK/1.part - Ok
127.0.0.1 [25054] >drweb.tmp.NwyVRK/3.part infected with JS.DownLoader.1225
Scanning statistic:
Known viruses : 1
--- Antivirus report ---
The original message was stored in an archive record named:
drweb.quarantine.I2E0YR
In order to receive the original message, please send a request to
<postmaster>, referring to the archive record name
given above.
No comments:
Post a Comment