Advertisement
Guest User

Untitled

a guest
Dec 13th, 2015
148
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.27 KB | None | 0 0
  1. Dear FSF Network Operations,
  2. you are receiving this e-mail because one of the e-mail addresses hosted in a mail server inside your IP Range is sending abusive and unsolicited messages. The e-mail address is nuclear@member.fsf.org. Please find below some DNS queries from our end:
  3.  
  4. Since for some reason you do not have SPF records, all e-mails from your domain name can be spoofed therefore we are not able to determine if this is a valid user. From the e-mail header dumps we conclude that the e-mail was sent from goat.mutantstargoat.com (176.28.20.253):
  5.  
  6. Received: from server.newhostservers.com (lon01.startelecoms.net. [87.76.29.71]) by mx.google.com with ESMTPS id 7si15846379wmp.86.2015.12.05.20.31.06 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Sat, 05 Dec
  7. 2015 20:31:07 -0800 (PST)
  8. Received: from [::1] (port=39552 helo=server.newhostservers.com) by server.newhostservers.com with esmtp (Exim 4.86) (envelope-from <we-bounces@techministry.gr>) id 1a5QyT-0004p7-TP; Sun, 06 Dec 2015 06:31:01 +0200
  9. Received: from mutantstargoat.com ([176.28.20.253]:46564) by server.newhostservers.com with esmtp (Exim 4.86) (envelope-from <nuclear@member.fsf.org>) id 1a5QyR-0004VX-JI for we@techministry.gr; Sun, 06 Dec 2015 06:30:59 +0200
  10. Received: by goat.mutantstargoat.com (Postfix, from userid 1000) id E618F4069E; Sun, 6 Dec 2015 05:30:18 +0100 (CET)
  11.  
  12. We've also been able to identify a website hosted on the same domain and server that seems to be on the e-mail signatures: http://nuclear.mutantstargoat.com/ <http://nuclear.mutantstargoat.com/>
  13.  
  14. This e-mail address, nuclear@member.fsf.org, has sent various offensive e-mails in mailing lists insulting many users and then replied to many mailing list topics with irrelevant or offensive content.
  15.  
  16. We that you address the issue directly and even add SPF records in order to prevent further abuse by your members or imposters claiming to be members.
  17.  
  18. Dear Hosteurope GmbH Abuse Department,
  19. you are receiving this e-mail because one of your customers, with the IP Address 176.28.20.253 is relaying abusive and unsolicited e-mail messages as well as spoofing other domain names during the process. This is considered malicious behavior and we reserve the right to report the offending IP address to all e-mail blacklist databases. Please take appropriate measures such as blocking all outgoing traffic to port 25 and 587 from this IP address to prevent further abuse. If we continue to receive unsolicited and/or offensive e-mail messages from this IP address we will escalate the matter to your BGP peers and/or RIPE.
  20.  
  21. Please notify us on any action you took to prevent further abuse from this user and/or IP/e-mail address.
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement