Spam detection software, running on the system "alsa0.alsa-project.org", has identified this incoming email as possible spam. The original message has been attached to this so you can view it (if it isn't spam) or label similar future email. If you have any questions, see the administrator of that system for details. Content preview: Prestige Replicas Made similar to that of the real brand ones Wathes Tiffany & CO Pens [...] Content analysis details: (14.8 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- 3.2 HELO_DYNAMIC_IPADDR2 Relay HELO'd using suspicious hostname (IP addr 2) 3.3 HELO_DYNAMIC_HCC Relay HELO'd using suspicious hostname (HCC) 0.7 DATE_IN_PAST_06_12 Date: is 6 to 12 hours before Received: date 0.0 HTML_MESSAGE BODY: HTML included in message 0.3 HTML_FONT_BIG BODY: HTML tag for a big font size 0.0 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.5 DNS_FROM_RFC_ABUSE RBL: Envelope sender in abuse.rfc-ignorant.org 2.0 RCVD_IN_SORBS_DUL RBL: SORBS: sent directly from dynamic IP address [201.223.178.158 listed in dnsbl.sorbs.net] 1.4 DNS_FROM_RFC_POST RBL: Envelope sender in postmaster.rfc-ignorant.org 3.4 URIBL_JP_SURBL Contains an URL listed in the JP SURBL blocklist [URIs: rialz.com] The original message was not completely plain text, and may be unsafe to open with some email clients; in particular, it may contain a virus, or confirm that your address can receive spam. If you wish to view it, it may be safer to save it to a file and open it with an editor.