Discussion in 'Computer Support' started by Marvelous, Jan 3, 2004.

  1. Marvelous

    Marvelous Guest

    Happy new year people!

    Finally sick to death of 80 odd spams every day I thought I would figure
    out how to read headers to complain (New years resolution). Any help
    would be appreciated. One email headers are below, for example...

    From: - Sat Jan 03 12:01:16 2004
    X-UIDL: <>
    X-Mozilla-Status: 0000
    X-Mozilla-Status2: 00000000
    Return-Path: <>
    Received: from ([]) by
    (InterMail vM. 201-229-121-137-20020806) with SMTP
    id <>
    for <******.********>; Sat, 3 Jan 2004
    11:59:09 +0000
    Date: Mon, 29 Dec 2003 19:15:38 -0500
    Content-Type: text/plain; charset="US-ASCII"
    Subject: Daughter with Mother
    From: Lena Rhyolite <>
    To: <******.*********>
    Message-ID: <>

    I figure that this email is sent from ( being
    spoofed). Would I be correct or am I way off mark?
    The traceroute to the porn site being advertised shows....

    1 14ms 6ms 6ms TTL: 0 (No rDNS)
    2 25ms 13ms 15ms TTL: 0 (No rDNS)
    3 15ms 15ms 28ms TTL: 0
    ( ok)
    4 23ms 16ms 25ms TTL: 0
    ( ok)
    5 23ms 25ms 25ms TTL: 0
    ( ok)
    6 19ms 26ms 21ms TTL: 0
    ( ok)
    7 18ms 26ms 31ms TTL: 0
    ( ok)
    8 24ms 96ms 96ms TTL: 0
    ( ok)
    9 89ms 93ms 91ms TTL: 0
    ( ok)
    10 108ms 101ms 107ms TTL: 0
    ( ok)
    11 101ms 101ms 108ms TTL: 0
    ( ok)
    12 109ms 109ms 108ms TTL: 0
    ( ok)
    13 105ms 109ms 121ms TTL: 0
    ( ok)
    14 111ms 103ms 110ms TTL: 0
    ( ok)
    15 175ms 180ms 174ms TTL: 0
    ( ok)
    16 184ms 186ms 185ms TTL: 0
    (213.ATM6-0.GW2.VEG2.ALTER.NET probable bogus rDNS: No DNS)
    17 387ms 186ms 185ms TTL: 0 (
    probable bogus rDNS: No DNS)
    18 316ms 196ms 228ms TTL: 0 (
    probable bogus rDNS: No DNS)
    19 297ms 193ms TTL: 40 (
    probable bogus rDNS: No DNS)

    Would I be correct in assuming that the ISP hosting is or (the nameservers listed show, who I dont think would
    be worth complaining to, or would they?)

    Am I on the right track???

    Thanks in advance
    Marvelous, Jan 3, 2004
  2. Marvelous

    °Mike° Guest

    Originator is

    whois -h

    inetnum: -
    netname: DISHNET
    descr: 19, Cathedral Garden Road
    descr: Nungambakkam
    descr: CHENNAI
    country: IN
    admin-c: DIH1-AP
    tech-c: DIH1-AP
    mnt-by: APNIC-HM
    mnt-lower: MAINT-IN-DISHNET
    changed: 20000321
    changed: 20000927
    changed: 20020612
    source: APNIC

    role: DISHNET IP Hostmaster
    address: DishnetDSL Limited
    address: 19, Cathedral Garden Road
    address: Chennai, 600 034
    phone: +91-44-825 6201
    phone: +91-44-825 6149
    phone: +91-44-826 9801
    fax-no: +91-44-825 7477
    trouble: Network abuse issues and SPAM complaints
    trouble: should be sent to
    admin-c: BR31-AP
    tech-c: BR31-AP
    nic-hdl: DIH1-AP
    remarks: role object for Dishnet IP Administrators
    mnt-by: MAINT-IN-DISHNET
    changed: 20020530
    source: APNIC

    °Mike°, Jan 3, 2004
  3. It's probably not worth going down that route - you'll spend ages every
    day sorting through that lot. You may as well get something like or and just
    delete the junk.
    Hywel Jenkins, Jan 3, 2004
  4. Marvelous

    Marvelous Guest

    Yeah I know, and like all new years resolutions I am sure I will get fed
    up with it quite soon, but for now it gives me something fun to do till
    I can get rid of this bloody virus (real human one) and get back to work.

    Marvelous, Jan 3, 2004
  5. Marvelous

    Spider Guest

    My two cents (spendable anywhere you want) is to get yourself a decent spam
    filter, train it to filter your junk out of your inbox, and forget about it.
    The spam problem has blown to such proportion that the abuse departments of
    the ISP's can not possibly handle all of the reports they get. If you
    insist on trying to report spam, get ready for a lesson in frustration.
    Spider, Jan 3, 2004
  6. Marvelous

    Marvelous Guest


    Thanks for that Mike. Don't know how I ended up with melbourneit, it
    seems kinda obvious now.

    Marvelous, Jan 3, 2004
  7. Marvelous

    °Mike° Guest

    Here's some references on decoding headers:

    SpamCop FAQ Parsing and reporting spam

    Tracking SPAM

    A Quick Guide to E-Mail Headers

    Reading Email Headers

    Dealing With Junk Email

    The SPAM-L FAQ
    °Mike°, Jan 3, 2004
  8. Marvelous

    anthonyberet Guest

    If you really want to be free of spam try
    anthonyberet, Jan 3, 2004
  9. Marvelous

    Ionizer Guest

    If you register for a free account with SpamCop
    you can forward all those spams as an attachment. SpamCop will
    automatically determine the sources and compose letters of complaint for
    you. You just need to click on the "send spam reports" button and the job
    will be done for you.

    Ionizer, Jan 3, 2004
  10. Marvelous

    ragz Guest

    Try downloadingSpam Inspector and add a phrase into the Friendly Quotations
    then tell people that you want to have access to your email address to
    always send the quotation you chose at the end of the email they are
    sending you ,Then only set spam inspector to only except mail containing
    your friendly quatation.
    ragz, Jan 3, 2004
