Greetings,
i am getting this email.
----
-----
I put domain 126.com to blasklist but as i can see PMG is looking on sender which is everytime different.
I would like to put it to blacklist so it will not be in the spam quarantain.
Thank you
P.S. can i force to look on different header name reply to or from?
i am getting this email.
----
INI:
Received: from vps33729 ([127.0.0.1]) by localhost via TCP with ESMTPA; Wed, 29 Sep 2021 21:08:05 +0800
MIME-Version: 1.0
From: Kevin <huixin1266@126.com>
Sender: Kevin <adpfiip@ujub.com>
To: xxxxx
Reply-To: Kevin <huixin1266@126.com>
Date: 29 Sep 2021 21:08:05 +0800
subject: **SPAM** =?utf-8?B?UmU6IGZsb29yIGRyYWlucyBtYW51ZmFjdHVlcg==?=
Content-Type: text/html; charset=utf-8
Content-Transfer-Encoding: base64
X-SPAM-LEVEL: Spam detection results: 5
DEAR_FRIEND 2.604 Dear Friend? That's not very dear!
FREEMAIL_FORGED_FROMDOMAIN 0.249 2nd level domains in From and EnvelopeFrom freemail headers are different
FREEMAIL_FROM 0.001 Sender email is commonly abused enduser mail provider
FREEMAIL_REPLYTO_END_DIGIT 0.25 Reply-To freemail username ends in digit
HEADER_FROM_DIFFERENT_DOMAINS 0.25 From and EnvelopeFrom 2nd level mail domains are different
HTML_MESSAGE 0.001 HTML included in message
KAM_DMARC_NONE 0.25 DKIM has Failed or SPF has failed on the message and the domain has no DMARC policy
KAM_DMARC_STATUS 0.01 Test Rule for DKIM or SPF Failure with Strict Alignment
KAM_LAZY_DOMAIN_SECURITY 1 Sending domain does not have any anti-forgery methods
MIME_HTML_ONLY 0.1 Message only has text/html MIME parts
MISSING_MID 0.14 Missing Message-Id: header
RCVD_IN_DNSWL_HI -5 Sender listed at https://www.dnswl.org/, high trust
RCVD_IN_HOSTKARMA_BL 1.5 Sender listed in HOSTKARMA-BLACK
RCVD_IN_MSPIKE_H2 -0.001 Average reputation (+2)
RCVD_IN_VALIDITY_RPBL 1.284 Relay in Validity RPBL, https://senderscore.org/blocklistlookup/
RDNS_NONE 1.274 Delivered to internal network by a host with no rDNS
SPF_HELO_NONE 0.001 SPF: HELO does not publish an SPF Record
SPF_NONE 0.001 SPF: sender does not publish an SPF Record
SPOOFED_FREEMAIL_NO_RDNS 1.499 From SPOOFED_FREEMAIL and no rDNS
I put domain 126.com to blasklist but as i can see PMG is looking on sender which is everytime different.
I would like to put it to blacklist so it will not be in the spam quarantain.
Thank you
P.S. can i force to look on different header name reply to or from?
Last edited: