Hur kunde jag ta emot detta mailet?

Avdelningen för programmering, nätverk samt alternativa OS.
Post Reply
User avatar
snigel
Hedersbit
Posts: 9632
Joined: 2002-03-08 15:06:33
Location: Göteborg

Hur kunde jag ta emot detta mailet?

Post by snigel »

Fick spam häromdagen, som var adresserat till en annan adress i min egen. Blir inte riktigt klok på hur detta går till och jag är lite nyfiken. Har headern här, hoppas det kan hjälpa någon

Delivered-To: [min mailadress]
Received: by 10.103.229.16 with SMTP id g16cs1039013mur;
Tue, 18 Aug 2009 16:38:58 -0700 (PDT)
Received: by 10.103.126.36 with SMTP id d36mr2133926mun.104.1250638737431;
Tue, 18 Aug 2009 16:38:57 -0700 (PDT)
Return-Path: <Liliana@cars.com>
Received: from smtp27.orange.fr (smtp27.orange.fr [80.12.242.94])
by mx.google.com with ESMTP id b9si27327570mug.39.2009.08.18.16.38.55;
Tue, 18 Aug 2009 16:38:57 -0700 (PDT)
Received-SPF: neutral (google.com: 80.12.242.94 is neither permitted nor denied by domain of Liliana@cars.com) client-ip=80.12.242.94;
Authentication-Results: mx.google.com; spf=neutral (google.com: 80.12.242.94 is neither permitted nor denied by domain of Liliana@cars.com) smtp.mail=Liliana@cars.com
Received: from me-wanadoo.net (localhost [127.0.0.1])
by mwinf2703.orange.fr (SMTP Server) with ESMTP id 96F811C00092;
Wed, 19 Aug 2009 01:38:55 +0200 (CEST)
Received: from me-wanadoo.net (localhost [127.0.0.1])
by mwinf2703.orange.fr (SMTP Server) with ESMTP id 8780D1C000B9;
Wed, 19 Aug 2009 01:38:55 +0200 (CEST)
Received: from SERVEUR (LPuteaux-156-16-5-32.w80-14.abo.wanadoo.fr [80.14.84.32])
by mwinf2703.orange.fr (SMTP Server) with SMTP id 522801C00092;
Wed, 19 Aug 2009 01:38:53 +0200 (CEST)
X-ME-UUID: 20090818233853336.522801C00092@mwinf2703.orange.fr
Message-ID: <005401ca20c0$b1ce36ca$daa338ad@byki>
From: "=?windows-1251?B?SXJpbmE=?=" <Liliana@cars.com>
To: <ZojaAngelina@yahoo.com>
Subject: =?windows-1251?B?TmV3IHJlcGx5IGZyb20gTWFyaWEgKDI3IHlvKSBmb3IgeW91?=
Date: Wed, 19 Aug 2009 01:38:53 +0200
MIME-Version: 1.0
Content-Type: multipart/related;
boundary="----=_NextPart_000_0075_01C2AA85.29B0F4E4"
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2900.2180
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2900.2180

This is a multi-part message in MIME format.

------=_NextPart_000_0075_01C2AA85.29B0F4E4
Content-Type: text/html;
charset="windows-1251"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; charset=3Dwindows=
-1251">
<META content=3D"MSHTML 6.00.2800.1081" name=3DGENERATOR>
</HEAD>
<body bgcolor=3D#FFFFFF leftmargin=3D5 topmargin=3D5 rightmargin=3D5=20=
bottommargin=3D5>
<FONT size=3D2 color=3D#000000 face=3D"Arial">
<DIV><table border=3D0 cellpadding=3D1 bordercolor=3D#000000 cellspacin=
g=3D2>
<TR valign=3Dtop>
<TD width=3D109><FONT size=3D2 color=3D#000000 face=3D"Arial">
<DIV><A href=3D"http://nadya-sp.com.ua"><img border=3D0 width=3D100 hei=
ght=3D120 src=3D"cid:003a01ca20c0$f9cab10c$f45a22ff@byki" ></A></DIV>
</FONT>
</TD>
<td width=3D317><FONT size=3D2 color=3D#000000 face=3D"Arial">
<DIV>Hello, I am Maria, 27 yo,<FONT color=3D#FFFFFF>Lija</FONT></DIV>
<DIV>I am on-line now, let` chat?<FONT color=3D#FFFFFF>Viktorija</FONT>=
</DIV>
<DIV>here you can look through my profile:</DIV>
<DIV>&nbsp;</DIV>
<DIV><A href=3D"http://marina-sp.com.ua "><FONT color=3D#0000FF><U>htt=
p://nadya-sp.com.ua</U></FONT></A></DIV>
<DIV>&nbsp;</DIV>
<DIV>kisses, Maria&nbsp;<FONT color=3D#FFFFFF>Ljudmila</FONT></DIV>
<DIV>&nbsp;</DIV>
</FONT>
</TD>
</TR>
</TABLE>
</DIV>
<DIV>&nbsp;</DIV>
<DIV><FONT color=3D#808080>to unsubscribe -click&nbsp; link and enter=20=
e-mail address.</FONT></DIV>
</FONT>
</BODY></HTML>
http://sniglom.blogspot.com
Work |i5 760@4.2GHz|16GB|P55|GTX 670|850 500GB|Xonar D2|2TB
Extra |q9550@3.4GHz|8GB|P45|GTX 670|830 256GB|Audigy 2
MacB.|p8600@2.4GHz|8GB|320m|BX100 500GB
Serve|c1037@1.8GHz|8GB|NM70|X25-M 80GB|Seagate 4TB
User avatar
poller
Hedersbit
Posts: 4387
Joined: 2002-03-11 10:33:23
Contact:

Re: Hur kunde jag ta emot detta mailet?

Post by poller »

Det är ganska enkelt. To:-headern har egentligen ingenting med mottagaren att göra, det är fritt fram för avsändaren att sätta den till vad som helst, precis som From:-headern.

I själva SMTP-konversationen används ett annat kommando (RCPT TO:) för att bestämma mottagare, detta är inte en del av headern.

Delivered-To:-headern är något som den mottagande SMTP-servern lägger till i mailet.
User avatar
snigel
Hedersbit
Posts: 9632
Joined: 2002-03-08 15:06:33
Location: Göteborg

Re: Hur kunde jag ta emot detta mailet?

Post by snigel »

Hah, det var intressant, kände bara till att man kunde fejka avsändaren enkelt.
http://sniglom.blogspot.com
Work |i5 760@4.2GHz|16GB|P55|GTX 670|850 500GB|Xonar D2|2TB
Extra |q9550@3.4GHz|8GB|P45|GTX 670|830 256GB|Audigy 2
MacB.|p8600@2.4GHz|8GB|320m|BX100 500GB
Serve|c1037@1.8GHz|8GB|NM70|X25-M 80GB|Seagate 4TB
User avatar
IcePic
Hedersbit
Posts: 6061
Joined: 2002-03-08 16:09:38

Re: Hur kunde jag ta emot detta mailet?

Post by IcePic »

Det du eg. ville se är ju "Kuvert-addressen", dvs vad man sa till din SMTP-server att mottagaren var, en del mailprogram loggar ju "delivered for <foo@bar" eller så, oavsett vad som sen i brevet anges som mottagare.
Oh give me a clone, my very own clone,
with the Y chromosome changed to X!
And since she's my own, of my own flesh and bone,
she'll be thinking of nothing but sex!
Post Reply