SCAMS | EMAIL | PHONE | MAP | TAGS | EMAIL ANALYSIS | IP LOCATOR
Click to go to Scammed.by homepage
Forward scams to - remove your name and email address first! TO CONTACT US CLICK HERE INSTEAD


Scam email #255395 - Re: World Viagra is real only here

Email info

The email was sent on 2018-12-02 07:30:36 and appeared to be from ArmandoPattersong@voconnect.co.za but this address could have been spoofed.
If you replied to this email, your reply would have been sent to ArmandoPattersong@voconnect.co.za which was the scammer's actual email address.
It was probably sent from 9.32.127.85 in Unknown, United States

Email header

Explains what each bit of the header means, and shows the journey the email took. Click here to show or hide it

Your content is below the advert

The scam


Worthy of your attention. Pure Cialis Brand.
Everything you need is in our shop!

http://bestmedsonline.su


- Women's Health
- Antidepressants
- Anxiety

- General Health
- Mental Health
- Epilepsy
.... and more than 1.000 positions
Just check out our stock!

http://bestmedsonline.su

    Unsubscribe from this letter here

    SpamAssassin Report (spam score: 25.3)


     pts rule                      description                                       
    ---- ----------------------    --------------------------------------------------
     2.7 RCVD_IN_PSBL              RBL: Received via a relay in PSBL [168.253.193.190
                                   listed in psbl.surriel.com]                       
     0.8 BAYES_50                  BODY: Bayes spam probability is 40 to 60% [score: 
                                   0.5000]                                           
     0.0 TVD_RCVD_IP4              Message was received from an IPv4 address         
     0.0 TVD_RCVD_IP               Message was received from an IP address           
     0.0 TVD_RCVD_SPACE_BRACKET    No description available.                         
     3.5 HELO_DYNAMIC_SPLIT_IP     Relay HELO'd using suspicious hostname (Split IP) 
     0.4 RCVD_IN_XBL               RBL: Received via a relay in Spamhaus XBL         
                                   [168.253.193.190 listed in zen.spamhaus.org]      
     3.3 RCVD_IN_PBL               RBL: Received via a relay in Spamhaus PBL         
     3.3 RCVD_IN_SBL_CSS           RBL: Received via a relay in Spamhaus SBL-CSS     
     1.3 RCVD_IN_BL_SPAMCOP_NET    RBL: Received via a relay in bl.spamcop.net       
                                   [Blocked - see                                    
                                   ]
     0.0 RCVD_IN_MSPIKE_L4         RBL: Bad reputation (-4) [168.253.193.190 listed  
                                   in bl.mailspike.net]                              
     1.3 RCVD_IN_RP_RNBL           RBL: Relay in RNBL,                               
                                   https://senderscore.org/blacklistlookup/          
                                   [168.253.193.190 listed in                        
                                   bl.score.senderscore.com]                         
     1.5 BASE64_LENGTH_79_INF      BODY: base64 encoded email part uses line length  
                                   greater than 79 characters                        
     0.0 HTML_MESSAGE              BODY: HTML included in message                    
     0.7 MIME_HTML_ONLY            BODY: Message only has text/html MIME parts       
     0.0 HTML_EXTRA_CLOSE          BODY: HTML contains far too many close tags       
     1.7 MIME_BASE64_TEXT          RAW: Message text disguised using base64 encoding 
     2.0 DRUGS_ERECTILE            Refers to an erectile drug                        
     0.4 HTML_MIME_NO_HTML_TAG     HTML-only message, but there is no HTML tag       
     0.0 RCVD_IN_MSPIKE_BL         Mailspike blacklisted                             
     0.0 UNPARSEABLE_RELAY         Informational: message has unparseable relay lines
     0.0 T_HTML_TAG_BALANCE_CENTER Malformatted HTML                                 
     2.2 MALF_HTML_B64             Malformatted base64-encoded HTML content          
     0.0 T_REMOTE_IMAGE            Message contains an external image                



    Please be careful with the links in the above email - Scammed.by strongly suggests that you do not click on any links in the above message
    The email above is most likely a scam but every now and then legitimate emails do come through, as do spam emails which are not attempting to defraud, so please use your judgement
    You can contact ScamSearch at help at scammed.by for any information, help, or if you have spotted a legitimate email. Please link to the email you think is legitimate.
    ScamSearch does not accept any responsibility for visitors enduring any issues as a result of following links in the above email and/or contacting the sender
    Please do not contact the sender unless you know what you are doing (i.e. experienced scambaiters)

    Comments

    Where the scam probably came from



    theScamBaiter freight bait archive, theFailure Cole baits   theFAILURE freight bait from theScamBaiter - Cole v2.0   theFAILURE freight bait from theScamBaiter - Rebait at Cole's   theFAILURE freight bait from theScamBaiter - the Martins Cole saga   theFAILURE Butch Driveshaft telemarketer phone baiting   theFAILURE freight bait from theScamBaiter - Anus Laptops commercial made by scammer   theFAILURE freight bait from theScamBaiter - script of Anus Laptops commercial made by scammer