MOON
Server: Apache/2.2.34 (Unix) mod_ssl/2.2.34 OpenSSL/0.9.8e-fips-rhel5 mod_bwlimited/1.4 FrontPage/5.0.2.2635
System: Linux server.asjudinet.com 2.6.32-042stab141.3 #1 SMP Fri Nov 15 22:45:34 MSK 2019 i686
User: asjudine (504)
PHP: 5.2.17
Disabled: NONE
Upload Files
File: /home/asjudine/mail/asjudinet.com/marketing/new/1614039578.H342508P3490.server.asjudinet.com,S=6505
Return-path: <>
Envelope-to: marketing@asjudinet.com
Delivery-date: Mon, 22 Feb 2021 18:19:38 -0600
Received: from smtp-beta-1.zoner.com ([217.198.120.69]:34405)
	by server.asjudinet.com with esmtps (TLSv1:DHE-RSA-AES256-SHA:256)
	(Exim 4.87)
	id 1lELQO-0000np-Vr
	for marketing@asjudinet.com; Mon, 22 Feb 2021 18:19:38 -0600
Received: from smtp.zoner.com (smtp.zoner.com [217.198.120.6])
	(using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits))
	(No client certificate requested)
	by smtp-beta-1.zoner.com (Postfix) with ESMTPS id 5E50D1800721
	for <marketing@asjudinet.com>; Tue, 23 Feb 2021 01:18:36 +0100 (CET)
Received: from posta.gvun.cz (unknown [89.190.77.36])
	(using TLSv1.1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits))
	(No client certificate requested)
	(Authenticated sender: postmaster@gvun.cz)
	by smtp.zoner.com (Postfix) with ESMTPSA id 136303000075
	for <marketing@asjudinet.com>; Tue, 23 Feb 2021 01:18:36 +0100 (CET)
Received: from localhost
	by posta.gvun.cz (Kerio Connect 9.2.12 patch 1); Tue, 23 Feb 2021 01:18:33 +0100
Date: Tue, 23 Feb 2021 01:18:33 +0100
Message-ID: <2877439312-9084@posta.gvun.cz>
MIME-Version: 1.0
From: Mail Delivery Subsystem <postmaster@posta.gvun.cz>
To: <marketing@asjudinet.com>
Subject: =?utf-8?Q?Zpr=C3=A1vu_nelze_doru=C4=8Dit=3A_V=C3=A1s_syst=C3=A9m?=
	=?utf-8?Q?_byl_napaden_virem=2E_Vase_zar=C3=ADzen=C3=AD_bylo=20?=
	=?utf-8?Q?=C3=BAspesne_hacknuto=2E?=
Content-Type: multipart/report; report-type=delivery-status;
	boundary="MIME--1417527984-30320-delim"
X-Spam-Status: No, score=0.0
X-Spam-Score: 0
X-Spam-Bar: /
X-Ham-Report: Spam detection software, running on the system "server.asjudinet.com",
 has NOT identified this incoming email as spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 
 Content preview:  Toto je informační zpráva automaticky poslaná serverem
    posta.gvun.cz. Vaši zprávu Subject: Vás systém byl napaden virem. Vase
    zarízení bylo úspesne hack ... Date: Tue, 23 Feb 2021 03:17:59 +0300 [...]
    
 
 Content analysis details:   (0.0 points, 5.0 required)
 
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was blocked.
                             See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: asjudinet.com]
  0.0 RCVD_IN_MSPIKE_H3      RBL: Good reputation (+3)
                             [217.198.120.69 listed in wl.mailspike.net]
  0.0 RCVD_IN_MSPIKE_WL      Mailspike good senders
X-Spam-Flag: NO

--MIME--1417527984-30320-delim
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit


Toto je informační zpráva automaticky poslaná serverem posta.gvun.cz.

Vaši zprávu 

  Subject: Vás systém byl napaden virem. Vase zarízení bylo úspesne hack ...
  Date: Tue, 23 Feb 2021 03:17:59 +0300



se nepodařilo doručit na následující adresy:

  <ruby.johny@gvun.cz> (smtp.zoner.com: 550 5.7.1 Sender address forgery.)
--MIME--1417527984-30320-delim
Content-Type: message/delivery-status

Reporting-MTA: dns; posta.gvun.cz
Arrival-Date: Tue, 23 Feb 2021 01:18:28 +0100

Original-Recipient: ruby.johny@gvun.cz
Final-Recipient: rfc822;ruby.johny@gvun.cz
Action: failed
Status: 5.3.2
Remote-MTA: smtp.zoner.com
Diagnostic-Code: SMTP; 550 5.7.1 Sender address forgery.
	
--MIME--1417527984-30320-delim
Content-Type: text/rfc822-headers

X-Kerio-Anti-Spam:  Build: [Engines: 2.15.14.1342, Stamp: 3], Multi: [Enabled, t: (0.000003,0.003967)], BW: [Enabled, t: (0.000008)], RTDA: [Enabled, t: (0.156206), Hit: Yes, Details: v2.7.170; Id: 15.1i7pkaj.1ev640qlj.5fvi; categories: extortion; fipr(104j86cfefbdb7c8b10b128b3cbf84f19e2f:840;); btc(5760c901e84c09fb663e41c390f01f89:843;)], extortion, total: 843(700)
X-Spam-Status: No, hits=2.3 required=5.0
	tests=KERIO_ANTI_SPAM: 4.000, BAYES_00: -1.665, TOTAL_SCORE: 2.335,autolearn=ham
X-Spam-Level: **
Received: from server.asjudinet.com ([216.14.122.114])
	by posta.gvun.cz (Kerio Connect 9.2.12 patch 1) with ESMTPS
	(using TLSv1 with cipher DHE-RSA-AES256-SHA (256 bits))
	for ruby.johny@gvun.cz;
	Tue, 23 Feb 2021 01:18:28 +0100
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
	d=asjudinet.com; s=default; h=Content-Type:Content-Transfer-Encoding:To:Date:
	Subject:Message-ID:MIME-Version:From:Sender:Reply-To:Cc:Content-ID:
	Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc
	:Resent-Message-ID:In-Reply-To:References:List-Id:List-Help:List-Unsubscribe:
	List-Subscribe:List-Post:List-Owner:List-Archive;
	bh=uhVZmzBK8MvMv013xvGPycB7xa+ob2fFcrP8SXiyPlM=; b=omX/bLAYICdabLJ/KqZF8K7I0W
	2W/f7K2cvPzYvvQ6q6EqqFbmvlCly4Dq0iEDgn558zdG0/8SLiZXTChJKjtWZ7kM6niwGSb4aHny1
	aAwTcJa/llA2qIr09Q2+qw+5bLl4XNDxLNVY1+2BPOa/DssJO7wwpZjFPF+KGvEDyeMAUJR9swobm
	+yY0k2ZyKxXs+/MRMFf2vbnbNH3k/DxUCKtPquFdmCZjzOs5eqW/4/Un7jbwbcnZ3opvldskL0thg
	FMFHF6kJKHPTkPBUpoCYfeNQylEItERJhqEXCk3ZhmM4qSWSuXU/KjM6rdwuoQyFr0LwuTXsc2toX
	oevAc6Aw==;
Received: from [188.255.237.215] (port=32792 helo=[127.0.0.1])
	by server.asjudinet.com with esmtpsa (TLSv1:DHE-RSA-AES256-SHA:256)
	(Exim 4.87)
	(envelope-from <marketing@asjudinet.com>)
	id 1lELP8-0000cQ-EO
	for ruby.johny@gvun.cz; Mon, 22 Feb 2021 18:18:18 -0600
From: Reign <marketing@asjudinet.com>
MIME-Version: 1.0
Message-ID: <5.6.4C.942.4M271P01DPJ3931.7@asjudinet.com>
Subject: =?UTF-8?B?VsOhcyBzeXN0w6lt?= byl napaden virem. Vase
 =?UTF-8?B?emFyw616ZW7DrQ==?= bylo =?UTF-8?B?w7pzcGVzbmU=?= hacknuto.
Date: Tue, 23 Feb 2021 03:17:59 +0300
To: ruby.johny@gvun.cz
Content-Transfer-Encoding: quoted-printable
Content-Type: text/plain; charset=UTF-8
X-EMarSys-Environment: jzcmeuor
X-Felis-L: 9AA33MG4G3T20Z18Y3Q6HW8BL15OMGAPY
X-ClientProxiedBy: 655.97.688.241
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - server.asjudinet.com
X-AntiAbuse: Original Domain - gvun.cz
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - asjudinet.com
X-Get-Message-Sender-Via: server.asjudinet.com: authenticated_id: marketing@asjudinet.com
X-Authenticated-Sender: server.asjudinet.com: marketing@asjudinet.com

--MIME--1417527984-30320-delim--