Mailing List Archive

BogusSpamStatusHeaders
Hi,

I have installed spamassassins and got exactly the problem discribed here:
http://wiki.spamassassin.org/w/BogusSpamStatusHeader

The mails run recursiv throu the MTA ( Sendmail Sendmail version 8.12.8 )
and every timy the mail is scanned again and added to the body.

Can anybody give me a hint what to do?

Josef Juni
(Sorry for my bad english)

Here is an example:

This is a multi-part message in MIME format.

------------=_40326CDA.D6BF07BF
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: 8bit

Spam detection software, running on the system "Schlampe", has
identified this incoming email as possible spam. The original message
has been attached to this so you can view it (if it isn't spam) or block
similar future email. If you have any questions, see
the administrator of that system for details.

Content preview: Spam detection software, running on the system
"Schlampe", has identified this incoming email as possible spam. The
original message has been attached to this so you can view it (if it
isn't spam) or block similar future email. If you have any questions,
see the administrator of that system for details. [...]

Content analysis details: (107.9 points, 5.0 required)

pts rule name description
---- ---------------------- --------------------------------------------------
1.5 WS_DEBP_PHRASE BODY: Enthält vermutlich pornographische Phrasen
0.1 HTML_FONTCOLOR_UNKNOWN BODY: HTML font color is unknown to us
0.0 HTML_MESSAGE BODY: HTML included in message
100 USER_IN_BLACKLIST From: address is in the user's black-list
2.0 HG_HORMONE Talks about hormones for human growth
4.3 OBFUSCATING_COMMENT HTML comments which obfuscate text

The original message was not completely plain text, and may be unsafe to
open with some email clients; in particular, it may contain a virus,
or confirm that your address can receive spam. If you wish to view
it, it may be safer to save it to a file and open it with an editor.


------------=_40326CDA.D6BF07BF
Content-Type: message/rfc822; x-spam-type=original
Content-Description: original message before SpamAssassin
Content-Disposition: attachment
Content-Transfer-Encoding: 8bit

Return-Path: <root@localhost.localdomain>
Received: from localhost.localdomain (Schlampe [127.0.0.1])
by localhost.localdomain (8.12.8/8.12.5) with ESMTP id i1HJVpta028671
for <spam@localhost.localdomain>; Tue, 17 Feb 2004 20:31:52 +0100
Received: (from root@localhost)
by localhost.localdomain (8.12.8/8.12.5/Submit) id i1HJVotm028669
for spam; Tue, 17 Feb 2004 20:31:50 +0100
Received: from localhost by Schlampe
with SpamAssassin (2.63 2004-01-11);
Tue, 17 Feb 2004 20:31:48 +0100
From: "Jem" <dnopkfidf@hotmail.com>
To: "Connie" <info@juni.de>
Subject: nfrcc SUPER HGH! Restore your sex drive and vigor. db
Date: Tue, 17 Feb 2004 08:56:57 -0800
Message-Id: <7013691077037017@210.205.169.57>
X-Spam-Flag: YES
X-Spam-Checker-Version: SpamAssassin 2.63 (2004-01-11) on Schlampe
X-Spam-Level: **************************************************
X-Spam-Status: Yes, hits=107.9 required=5.0 tests=HG_HORMONE,
HTML_FONTCOLOR_UNKNOWN,HTML_MESSAGE,OBFUSCATING_COMMENT,
USER_IN_BLACKLIST,WS_DEBP_PHRASE autolearn=no version=2.63
MIME-Version: 1.0
Content-Type: multipart/mixed; boundary="----------=_40326C24.D20F7A96"
X-AntiVirus: checked by AntiVir Milter 1.0.0.3; AVE 6.24.0.4; VDF 6.24.0.8
...
...
...

this repeats up to 20 and more times..... der Telekom Geschäftskundenvertrieb hat
seinen Namen doch nicht etwa aus dem Grunde
weil er aktiv Geschäftskunden vertreibt ???????