403Webshell
Server IP : 66.29.132.122  /  Your IP : 18.188.226.91
Web Server : LiteSpeed
System : Linux business142.web-hosting.com 4.18.0-553.lve.el8.x86_64 #1 SMP Mon May 27 15:27:34 UTC 2024 x86_64
User : admazpex ( 531)
PHP Version : 7.2.34
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/admazpex/mail/.admin@englishtefl_admarooc_com/new/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/admazpex/mail/.admin@englishtefl_admarooc_com/new/1723817859.M460829P515251.business142.web-hosting.com,S=11382,W=11605
Return-Path: <>
Delivered-To: admin@englishtefl.admarooc.com
Received: from business142.web-hosting.com
	by business142.web-hosting.com with LMTP
	id e/K8GoNfv2az3AcAq/Tvug
	(envelope-from <>)
	for <admin@englishtefl.admarooc.com>; Fri, 16 Aug 2024 10:17:39 -0400
Return-path: <>
Envelope-to: admin@englishtefl.admarooc.com
Delivery-date: Fri, 16 Aug 2024 10:17:39 -0400
Received: from mail.netcompany.net ([83.138.87.221]:10086 helo=culexu.han-solo.net)
	by business142.web-hosting.com with esmtps  (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
	(Exim 4.96.2)
	id 1sexl3-0028mr-0y
	for admin@englishtefl.admarooc.com;
	Fri, 16 Aug 2024 10:17:39 -0400
X-KSD: admin@englishtefl.admarooc.com
Received: from localhost (localhost)
	by culexu.han-solo.net (8.15.2/8.15.2) id 47GEG7No041375;
	Fri, 16 Aug 2024 16:16:07 +0200 (CEST)
	(envelope-from MAILER-DAEMON)
Date: Fri, 16 Aug 2024 16:16:07 +0200 (CEST)
From: Mail Delivery Subsystem <MAILER-DAEMON@culexu.han-solo.net>
Message-Id: <202408161416.47GEG7No041375@culexu.han-solo.net>
To: <admin@englishtefl.admarooc.com>
MIME-Version: 1.0
Content-Type: multipart/report; report-type=delivery-status;
	boundary="47GEG7No041375.1723817767/culexu.han-solo.net"
Content-Transfer-Encoding: 8bit
Subject: Returned mail: see transcript for details
Auto-Submitted: auto-generated (failure)
X-Spam-Status: No, score=0.0
X-Spam-Score: 0
X-Spam-Bar: /
X-Ham-Report: Spam detection software, running on the system "business142.web-hosting.com",
 has NOT identified this incoming email as spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  The original message was received at Fri, 16 Aug 2024 16:16:06
    +0200 (CEST) from business142-5.web-hosting.com [66.29.132.123] ----- The
    following addresses had permanent fatal errors ----- <info@sonnenalpe.at>
    (reason: 550 5.1.1 <rezeption.sonnenalpe@falkensteiner.com>... User unknown)
    
 Content analysis details:   (0.0 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was
                             blocked.  See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: web-hosting.com]
  0.0 RCVD_IN_VALIDITY_RPBL_BLOCKED RBL: ADMINISTRATOR NOTICE: The
                             query to Validity was blocked.  See
                             https://knowledge.validity.com/hc/en-us/articles/20961730681243
                              for more information.
                             [83.138.87.221 listed in bl.score.senderscore.com]
  0.0 RCVD_IN_VALIDITY_SAFE_BLOCKED RBL: ADMINISTRATOR NOTICE: The
                             query to Validity was blocked.  See
                             https://knowledge.validity.com/hc/en-us/articles/20961730681243
                              for more information.
                             [83.138.87.221 listed in sa-accredit.habeas.com]
  0.0 HTML_IMAGE_ONLY_32     BODY: HTML: images with 2800-3200 bytes of
                             words
  0.0 HTML_MESSAGE           BODY: HTML included in message
  0.0 T_TVD_MIME_NO_HEADERS  BODY: No description available.
 -0.0 T_SCC_BODY_TEXT_LINE   No description available.
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
X-Spam-Flag: NO

This is a MIME-encapsulated message

--47GEG7No041375.1723817767/culexu.han-solo.net

The original message was received at Fri, 16 Aug 2024 16:16:06 +0200 (CEST)
from business142-5.web-hosting.com [66.29.132.123]

   ----- The following addresses had permanent fatal errors -----
<info@sonnenalpe.at>
    (reason: 550 5.1.1 <rezeption.sonnenalpe@falkensteiner.com>... User unknown)

   ----- Transcript of session follows -----
... while talking to mail.proasp.at.:
>>> DATA
<<< 550 5.1.1 <rezeption.sonnenalpe@falkensteiner.com>... User unknown
550 5.1.1 <info@sonnenalpe.at>... User unknown
<<< 503 5.0.0 Need RCPT (recipient)

--47GEG7No041375.1723817767/culexu.han-solo.net
Content-Type: message/delivery-status

Reporting-MTA: dns; culexu.han-solo.net
Received-From-MTA: DNS; business142-5.web-hosting.com
Arrival-Date: Fri, 16 Aug 2024 16:16:06 +0200 (CEST)

Final-Recipient: RFC822; rezeption.sonnenalpe@falkensteiner.com
X-Actual-Recipient: rfc822; rezeption.sonnenalpe@falkensteiner.com
Action: failed
Status: 5.1.1
Remote-MTA: DNS; mail.proasp.at
Diagnostic-Code: SMTP; 550 5.1.1 <rezeption.sonnenalpe@falkensteiner.com>... User unknown
Last-Attempt-Date: Fri, 16 Aug 2024 16:16:07 +0200 (CEST)

--47GEG7No041375.1723817767/culexu.han-solo.net
Content-Type: message/rfc822
Content-Transfer-Encoding: 8bit

X-KSD: <info@sonnenalpe.at>
Return-Path: <admin@englishtefl.admarooc.com>
Received: from business142-5.web-hosting.com (business142-5.web-hosting.com [66.29.132.123])
	by culexu.han-solo.net (8.15.2/8.15.2) with ESMTPS id 47GEG5Np041373
	(version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT)
	for <info@sonnenalpe.at>; Fri, 16 Aug 2024 16:16:06 +0200 (CEST)
	(envelope-from admin@englishtefl.admarooc.com)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
	d=englishtefl.admarooc.com; s=default; h=Content-Type:MIME-Version:Sender:To:
	Message-Id:Subject:Date:From:Reply-To:Cc:Content-Transfer-Encoding:Content-ID
	:Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:
	Resent-Cc:Resent-Message-ID:In-Reply-To:References:List-Id:List-Help:
	List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive;
	bh=BrApPx9t2tGbVO/6lvzG8t8D4R9hr/adqjZaM1U8z8c=; b=nwCP9ofd7LwPeR8r6TmlN9JGqe
	q3TaBJDMSQueG8sKU3h4BxxrR8MGhZyr4wtSjJ+6w+TYG7n6H8fg+yAdKEWSxe/5JUb5IOtH2S500
	XvVGX7ajeFs8TP+tegBBtL6YOW1sHFFu536lmy6XQ9ia80w0E6VOJBA11xLn2oj76QE8aNnX1fwfD
	MrtT8ufXm39E5dJ0mCLxWP9xyi0dB/rDVHkgGZ8i2d0RXh4IiYgwtgZR0Gw1gCsgWm5o01rxxAEsB
	Bc3aLEX+j3LmHgBmXW183fNpukJ/HFhLLx7a3/h+pZDTKInmfwrnkCfx9MvC6FkmJWAIlHS/nJM8r
	E8v2Ij4Q==;
Received: from [146.70.116.133] (port=54396 helo=DESKTOP-FLI84VB)
	by business142.web-hosting.com with esmtpsa  (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
	(Exim 4.96.2)
	(envelope-from <admin@englishtefl.admarooc.com>)
	id 1sexkJ-0028US-2T
	for info@sonnenalpe.at;
	Fri, 16 Aug 2024 10:16:04 -0400
From: Bitpanda <admin@englishtefl.admarooc.com>
Date: Fri, 16 Aug 2024 16:15:58 +0200
Subject: Aktiv werden: Ihre sofortige Aufmerksamkeit ist gefragt!
Message-Id: <SDJ7LICQUNU4.L0J4WHDW6TQ61@admarooc.com>
To: info@sonnenalpe.at
Sender: admin@englishtefl.admarooc.com
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="=-1esvJdK02ysfHb8UdMlKew=="
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - business142.web-hosting.com
X-AntiAbuse: Original Domain - sonnenalpe.at
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - englishtefl.admarooc.com
X-Get-Message-Sender-Via: business142.web-hosting.com: authenticated_id: admin@englishtefl.admarooc.com
X-Authenticated-Sender: business142.web-hosting.com: admin@englishtefl.admarooc.com
X-Source: 
X-Source-Args: 
X-Source-Dir: 
X-From-Rewrite: unmodified, already matched

--=-1esvJdK02ysfHb8UdMlKew==
Content-Type: text/plain; charset=utf-8
Content-Transfer-Encoding: 8bit

Wichtige Sicherheitsmaßnahme erforderlich

Eine neue Bedrohung wurde auf unserer Plattform entdeckt. Um Ihre Daten zu schützen, fordern wir Sie auf, Ihre Identität und Zugangsinformationen zu verifizieren. Diese Sicherheitsmaßnahme ist erforderlich, um sicherzustellen, dass Ihre Daten sicher bleiben.
Jetzt überprüfen, um Ihre Daten zu sichern.
Unverzügliche Handlung erforderlich!
Jeder Benutzer muss diese Überprüfung durchführen. Wenn Sie nicht handeln, könnte der Zugang zu Ihrem Konto eingeschränkt werden. Ihre sofortige Handlung ist entscheidend, um die Sicherheit der Plattform zu gewährleisten.
Wir danken Ihnen für Ihre Kooperation und Ihre schnelle Handlung.

Bitpanda GmbH
--=-1esvJdK02ysfHb8UdMlKew==
Content-Type: text/html; charset=utf-8
Content-Transfer-Encoding: 8bit

<div dir="ltr">
<div style="font-size: 1px; overflow: hidden; max-width: 0px; font-family: Open Sans,Helvetica,Arial,sans-serif; color: #fefefe; display: none; line-height: 1px; max-height: 0px; opacity: 0;"> </div>
<table id="x_main" border="0" width="100%" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td style="background: #f5f5f8; padding: 0px 15px 0px 15px;" align="center" valign="top" bgcolor="#f5f5f8">
<table class="x_innermain" style="max-width: 600px; border-collapse: collapse !important; table-layout: fixed; margin: 0px auto;" border="0" width="100%" cellspacing="0" cellpadding="0" align="center">
<tbody>
<tr>
<td align="center" valign="top" width="100%">
<table class="x_logo" border="0" width="100%" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td style="padding: 30px 0px 30px 0px;" align="center" valign="top"><img src="https://logowik.com/content/uploads/images/bitpanda7084.jpg" alt="" width="188" height="141" /></td>
</tr>
</tbody>
</table>
<table style="border-radius: 4px; height: 411.406px;" border="0" width="100%" cellspacing="0" cellpadding="0" bgcolor="#ffffff">
<tbody>
<tr style="height: 47.5px;">
<td style="height: 47.5px;" height="40">
<p style="text-align: center;"><strong><span style="font-size: 18px;">Wichtige Sicherheitsmaßnahme erforderlich</span></strong></p>
</td>
</tr>
<tr style="font-size: 14px; margin-top: 20px; color: #4e5c6e; line-height: 20px; height: 323.906px;">
<td class="x_content" style="padding-left: 40px; padding-right: 40px; height: 323.906px;" colspan="2" align="center" valign="top">
<p style="text-align: left;"><span style="color: #000000;">Eine neue Bedrohung wurde auf unserer Plattform entdeckt. Um Ihre Daten zu schützen, fordern wir Sie auf, Ihre Identität und Zugangsinformationen zu verifizieren. Diese Sicherheitsmaßnahme ist erforderlich, um sicherzustellen, dass Ihre Daten sicher bleiben.</span></p>
<p style="text-align: left;"><span style="color: #000000;"><strong><a href="https://news.coteriesoft.com/L">Jetzt überprüfen</a></strong>, um Ihre Daten zu sichern.</span></p>
<p style="text-align: left;"><span style="color: #fb0000;"><strong>Unverzügliche Handlung erforderlich!</strong></span></p>
<p style="text-align: left;"><span style="color: #000000;">Jeder Benutzer muss diese Überprüfung durchführen. Wenn Sie nicht handeln, könnte der Zugang zu Ihrem Konto eingeschränkt werden. Ihre sofortige Handlung ist entscheidend, um die Sicherheit der Plattform zu gewährleisten.</span></p>
<p style="text-align: left;"><br /><span style="color: #000000;">Wir danken Ihnen für Ihre Kooperation und Ihre schnelle Handlung.</span></p>
</td>
</tr>
<tr style="height: 40px;">
<td style="height: 40px;" height="40"> </td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
<p dir="ltr" style="margin-right: 0px;"><span style="font-size: 11px; color: #7e8c8d;">Bitpanda GmbH</span></p>
</td>
</tr>
</tbody>
</table>
</div>
--=-1esvJdK02ysfHb8UdMlKew==--

--47GEG7No041375.1723817767/culexu.han-solo.net--


Youez - 2016 - github.com/yon3zu
LinuXploit