Hello,
We are receiving extreme amounts of spam from your network and it
seems the person allocated to the IP block [31.132.106.0/24] is
spoofing our domain to send phishing and spam.
Please proceed to stop this operation ASAP. We have also notified
INTERPOL and the local authorities.
I have included one a sample message source code below.
=====================================================================================================
Received: from omneweb.com (net03113210669.pskovline.ru
[31.132.106.69])
(Authenticated sender: phil.omneweb)
by newcore.omneweb.com (Postfix) with ESMTP id 9686CD86DC;
Thu, 24 Apr 2014 12:29:36 -0400 (EDT)
Message-ID: <3D31CCC3.176CD1DD@omneweb.com>
Date: Thu, 24 Apr 2014 17:29:19 +0100
From: "FedEx.com info" <phil@omneweb.com>
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.8.1.16)
Gecko/20080724 Thunderbird/2.0.0.16
MIME-Version: 1.0
To: <cjones@netizen.com.ar>,
<cj@talisman.ae>
Subject: Some important info is lacking
Content-Type: multipart/mixed;
boundary="------------815718485832152550533836"
======================================================================================================
Thank you,