Do you have a question? Post it now! No Registration Necessary. Now with pictures!
- Posted on
April 22, 2007, 12:28 am
rate this thread
X-Apparently-To: firstname.lastname@example.org via 188.8.131.52; Wed, 18 Apr
2007 08:14:53 -0700
Authentication-Results: mta228.mail.re2.yahoo.com from=paypal.org;
domainkeys=neutral (no sig)
Received: from 184.108.40.206 (HELO smtp101.biz.mail.re2.yahoo.com)
by mta228.mail.re2.yahoo.com with SMTP; Wed, 18 Apr 2007 08:14:53
Received: (qmail 17882 invoked from network); 18 Apr 2007 15:14:50
Received: from unknown (HELO User) (email@example.com@220.127.116.11 with
by smtp101.biz.mail.re2.yahoo.com with SMTP; 18 Apr 2007 15:14:49
Is the following an accurate interpretation of the mail header? Any
comments/teaching are appreciated.
This e-mail was sent by a user called "unknown", who logged on to a
mail server, (firstname.lastname@example.org), using a device which IP address
was 18.104.22.168. to the mail receipient, email@example.com. The e-mail
was routed through a qmail server then onto
smtp101.biz.mail.re2.yahoo.com, then to mta228.mail.re2.yahoo.com.
The authentication of the sender by mta228.mail.re2.yahoo.com was
unable to validate as the domainkeys=neutral (no sig.)
Is this an accurate interpretation? Any comments are appreciated.
By the way, Is firstname.lastname@example.org@ a server? domain name? or else?
Also how I can find out the physical location of
mta228.mail.re2.yahoo.com, smtp101.biz.mail.rec.yahoo.com, and also
email@example.com@? Are they in Asia, Africa or Australia?
Any comments/pointers are appreciated.
Re: Is this an accurate interpretation of this mail header? Any advice is thankful.
Cleary a forged From.
so smtp101.biz.mail.re2.yahoo.com received a forged email from who knows
where. Which was then sent by smtp101.biz.mail.re2.yahoo.com to
mta228.mail.re2.yahoo.com . Of course smtp101.biz.mail.re2.yahoo.com could
also be forged.
No that is not accurate because that information is untrustworthy.
Maybe. That could also be forged.
the last does not exist. The middle is owned by yahoo, if you believe the
address, but who knows where it is located. Ask Yahoo. The last you