We have received information that the IP address of a server you have with us is sending spam, or is hosting a spamvertised website.
For SORBS complaints, please keep in mind that SORBS uses spamtraps, so in some cases the email itself is legitimate, but the recipient address was not acquired using double opt-in (DOI).
For Spamvertised complaints (a website being advertised using spam), please carefully check this website and make sure it is legitimate. In some cases it is a redirect to another website, so please also check if this other website is legitimate. If the website or redirect is not legitimate, then please remove it from your server.
Please check the server that IP belongs to and make sure it is not sending spam.
If legitimate emails are being sent from your server, then please make sure the recipient email addresses were acquired using DOI, and that there is an easy method to opt-out (unsubscribe). Please also make sure you have set a correct PTR record (reverse DNS) in the Robot web interface, and consider setting up SPF and DKIM.
The server might be infected with malware that is being used to send spam, so please check for this as well. If you don’t plan on sending emails via your server, then please consider removing any mailserver software, and/or blocking port 25 using a software firewall.
Please send us a statement within the next 48 hours, letting us know exactly what you have done to resolve this, and why it won’t happen again in the future.
This statement will be checked by a staff member. If the statement is valid the abuse case will be closed.
If you have any questions about this abuse message, you are welcome to reply. When doing so, please leave the abuse ID [AbuseID:33C661:16] unchanged in the subject line.
[ SpamCop V4.8.6 ]
This message is brief for your comfort. Please use links below for details.
Email from 5.9.80.67 / 10 May 2017 17:08:18 +0300
[ Offending message ]
Received: from spooler by mail-s11-aux2.in-solve.hidden (Mercury/32 v4.52); 10 May 2017 17:08:38 +0300
X-Envelope-To:
Return-path:
Received: from 5.9.80.67 by mail-s11.1gb.ru (Mercury/32 v4.52) with ESMTP ID MG00076C;
10 May 2017 17:08:18 +0300
Received: from sklad290 by 5.9.80.67 with local (Exim 4.84_2)
(envelope-from
id 1d8SHo-0007FE-Py
for x; Wed, 10 May 2017 16:08:16 +0200
To: x
Subject: id533975 информационное письмо, выставлен счет
X-PHP-Originating-Script: 509:serversyst.php
From: "Сбербанк оссии" Зуев
Mime-Version: 1.0
Content-Type:multipart/mixed;boundary="----------149442529659131ED0BF677"
Message-Id:
Date: Wed, 10 May 2017 16:08:16 +0200
X-Antivirus: Avast (VPS 170510-0, 10.05.2017), Inbound message
X-Antivirus-Status: Clean
!
,
https://sberbank.ru/downloads/bills/610-2017-05/id630865gte6103623630...
, .
,
" "
.: +7 495 500-555-0
8 800 555-555-0 ( )
: , , . o TOM, , , , , , , . , , .
CONFIDENTIALITY NOTICE: This email and any files attached to it are confidential. If you are not the intended recipient you are notified that using, copying, distributing or taking any action in reliance on the contents of this information is strictly prohibited. If you have received this email in error, please notify the sender and delete this email.