Mail header analysis
Address Details
Mail From:
john.public@somewhere.com
Mail To:
Joe Public joe.public@somewhere.de
Mail From Name:
John Public
Reply To:
902B4@somebody.web.de
Message Details
Subject:
Whats up?
Content-Type:
multipart/alternative
Date:
Mon, 22 Oct 2012 21:36:30 +1100
UTC Date
Mon Oct 22 10:36:30 2012
MessageID:
Demo-ID
Message Transfer Agent (MTA) - Transfer Details
Mail Server From:
mail.google.jp
Mail Server To:
smtp.web.de
Mail Server From IP:
126.85.210.41
Mail Server To IP:
213.165.67.108
Mail Country From:
Japan
Mail Country To:
Germany
AS Name From:
SoftBank Corp.
AS Name To:
IONOS SE
AS Number From:
AS17676
AS Number To:
AS8560
Distance (All Hops/Summary):
26219.56/13619.54 KM
Hops (All/Public):
3 / 2
MTA Encryption
Poor (*)
Delivery Time:
0 days, 0 hours, 0 min, 9 sec
Your IP:
18.222.220.80
Your GeoLoc:
Lat:39.9625 Lon:-83.0061
Daily hit counter = 0 of 25
Global Mail Map
Error: Embedded data could not be displayed.
Spam Scoring Details
Score
Spam Description
1.0
Missing From: header
0.0
Message appears to be missing most RFC-822 headers
0.0
No description available.
0
Informational: message has no Received headers
1.4
Missing Date: header
0.1
Missing Message-Id: header
1.8
Missing Subject: header
0.0
ADMINISTRATOR NOTICE: The query to
0.0
ADMINISTRATOR NOTICE: The query to URIBL was blocked.
0
Informational: message was not relayed via SMTP
1.2
Missing To: header
Total Score (Max:5.0)
Spamassassin prediction
5.5
This Mailheader is possible Spam!
Hop Details
Hop 1/3
Internal / Public Mail Routing
By MTA
smtp.web.de
By IP
213.165.67.108 (*)
By AS Number
AS8560
By AS Name
IONOS SE
By Geo
Lat:49.0078 Lon:8.4001
By Next City
(*)
From MTA
mail.publicfrom.com
From IP
10.0.99.99 (*)
Date MTA
Mon, 22 Oct 2012 12:36:42 +0200
UTC Date
Mon Oct 22 10:36:42 2012
Epoch
1350905802
For
MTA Encryption
Not encrypted (internal)
RAW MESSAGE
Received: from mail.publicfrom.com (10.0.99.99) by smtp.web.de([10.0.4.5]) withFantasy; Mon, 22 Oct 2012 12:36:42 +0200
Hop 2/3
Public Mail Routing
By MTA
smtp.web.de
By IP
213.165.67.108 (*)
By AS Number
AS8560
By AS Name
IONOS SE
By Geo
Lat:49.0078 Lon:8.4001
By Next City
(*)
From MTA
mail.google.com
From IP
142.250.80.101 (*)
From AS Nbr
AS15169
From AS Name
GOOGLE
From Geo
Lat:40.7746 Lon:-73.4761
From Next City
(*)
Date MTA
Mon, 22 Oct 2012 12:36:33 +0200
UTC Date
Mon Oct 22 10:36:33 2012
Epoch
1350905793
For
somebody@public
Distance
9116.53 KM
Del.Time (*)
MTA Encryption
Not encrypted
RAW MESSAGE
Received: from mail.google.com (mail.google.com [209.85.210.41]) by smtp.web.de (bla0.1) with ESMTP id 0815 for somebody@public.com ; Mon, 22 Oct 2012 12:36:33 +0200
Public Hop Map (2/3)
Error: Embedded data could not be displayed.
Hop 3/3
Public Mail Routing
By MTA
mail.google.com
By IP
142.250.80.101 (*)
By AS Number
AS15169
By AS Name
GOOGLE
By Geo
Lat:40.7746 Lon:-73.4761
By Next City
(*)
From MTA
mail.google.jp
From IP
126.85.210.41 (*)
From AS Nbr
AS17676
From AS Name
SoftBank Corp.
From Geo
Lat:34.3927 Lon:132.4501
From Next City
(*)
Date MTA
Mon, 22 Oct 2012 12:36:33 +0200
UTC Date
Mon Oct 22 10:36:33 2012
Epoch
1350905793
For
somebody@public
Distance
17103.03 KM
Del.Time (*)
MTA Encryption
Not encrypted
RAW MESSAGE
Received: from mail.google.jp (mail.google.jp [126.85.210.41]) by mail.google.com (yup1.1) with ESMTP id 0815x for somebody@public.com ; Mon, 22 Oct 2012 12:36:33 +0200
Public Hop Map (3/3)
Error: Embedded data could not be displayed.
X-Header
X-Virus-Scanned:
clamav-milter 0.97.3 at mail
X-MS-Exchange-Organiz
ation-AuthMechanism:
10
X-Virus-Status:
Clean
X-AntiVirus:
checked by Avira MailGate (version: 2.1.4-7; AVE: 7.9.10.68;
X-Scanned-By:
MIMEDefang 2.69 on 10.0.3.30
X-Scanned-By:
milter-sender/1.16.916 (mail.web.de [10.0.4.99]);
X-Spam-Status:
No, score=-76.3 required=4.0 tests=AWL,BAYES_00,
X-Spam-Checker-Versio
n:
SpamAssassin 3.3.1 (2010-03-16) on mail
X-MS-Exchange-Organiz
ation-AuthSource:
any.server.com
X-MS-Exchange-Organiz
ation-AuthAs:
Internal
Mail header
Microsoft Mail Internet Headers Version 2.0 Received: from mail.publicfrom.com (10.0.99.99) by smtp.web.de([10.0.4.5]) with Fantasy; Mon, 22 Oct 2012 12:36:42 +0200 Received: from mail.google.com (mail.google.com [209.85.210.41]) by smtp.web.de (bla0.1) with ESMTP id 0815 for <somebody@public.com>; Mon, 22 Oct 2012 12:36:33 +0200 Received: from mail.google.jp (mail.google.jp [126.85.210.41]) by mail.google.com (yup1.1) with ESMTP id 0815x for <somebody@public.com>; Mon, 22 Oct 2012 12:36:33 +0200 In-Reply-To: <902B4@somebody.web.de> References: <F902B4@somebody.web.de> Date: Mon, 22 Oct 2012 21:36:30 +1100 Message-ID: <Demo-ID> Subject: Whats up? From: John Public <john.public@somewhere.com> To: Joe Public <joe.public@somewhere.de> Content-Type: multipart/alternative X-Virus-Scanned: clamav-milter 0.97.3 at mail X-Virus-Status: Clean X-AntiVirus: checked by Avira MailGate (version: 2.1.4-7; AVE: 7.9.10.68; VDF: 7.11.60.172; host: mail); id=10402-O0MQ1e X-Scanned-By: MIMEDefang 2.69 on 10.0.3.30 X-Scanned-By: milter-sender/1.16.916 (mail.web.de [10.0.4.99]); Mon, 11 Feb 2013 12:27:41 +0100 X-Spam-Status: No, score=-76.3 required=4.0 tests=AWL,BAYES_00, FH_HELO_EQ_D_D_D_D,FREEMAIL_ENVFROM_END_DIGIT,FREEMAIL_FROM, HELO_DYNAMIC_IPADDR2,HTML_MESSAGE,HTML_TAG_BALANCE_BODY,MIME_HTML_ONLY, MISSING_MID,RCVD_IN_PBL,RCVD_IN_XBL,RDNS_DYNAMIC,SPF_NEUTRAL,TVD_RCVD_IP, URIBL_BLACK,URIBL_DBL_SPAM,USER_IN_WHITELIST autolearn=no version=3.3.1 X-Spam-Checker-Version: SpamAssassin 3.3.1 (2010-03-16) on mail Return-Path: profanesqfyv468@gmail.com X-MS-Exchange-Organization-AuthSource: any.server.com X-MS-Exchange-Organization-AuthAs: Internal X-MS-Exchange-Organization-AuthMechanism: 10