Need help nailing a spammer... advice?

geno

Lifer
Dec 26, 1999
25,074
4
0
Damnit I'm getting sick of this - I can deal with small time spam, but when 150 of the same damn emails come through, I get irate :|

I have the header/source of the email:
Received: from mc2-f31.law16.hotmail.com ([65.54.237.38]) by mc2-s6.law16.hotmail.com with Microsoft SMTPSVC(5.0.2195.5600);
Sun, 6 Oct 2002 15:46:32 -0700
Received: from japy.com ([194.206.138.146]) by mc2-f31.law16.hotmail.com with Microsoft SMTPSVC(5.0.2195.5600);
Sun, 6 Oct 2002 15:45:30 -0700
Received: from mx1.mail.yahoo.com - 200.212.202.202 by japy.com with Microsoft SMTPSVC(5.5.1774.114.11);
Mon, 7 Oct 2002 00:23:47 +0200
Message-ID: < PA_W\JbTLepV:NUW(WXjsXf]saXTKf\\y]_#PkWX[]jtXcRToWLW8U_[gGdb_Q5IthiUTA:KRVAS>BT;R@mx1.mail.yahoo.com>
To: <cindypkuem9w@yahoo.com>
From: amyqkz2us0@yahoo.com
Subject: READ ANYONE'S CRIMINAL FILES! 30502
Date: Mon, 07 Oct 2002 06:40:05 -0700
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary="----=_NextPart_000_42D6_0000068F.000046C3"
Return-Path: amyqkz2us0@yahoo.com
X-OriginalArrivalTime: 06 Oct 2002 22:45:31.0241 (UTC) FILETIME=[130E3D90:01C26D8A]

------=_NextPart_000_42D6_0000068F.000046C3
Content-Type: text/html;
charset="iso-8859-1"
Content-Transfer-Encoding: base64

*bunch of garbled crap*



How can I go about getting the loser's IP that sent this at the time? I want to contact the ISP (japy.com??). It may be a futile attempt, but I gotta try something, this is pissing me off :|
 

gopunk

Lifer
Jul 7, 2001
29,239
2
0
have you tried spamcop?

also, i would just block it, if this is the same email all the time....
 

bmacd

Lifer
Jan 15, 2001
10,869
1
0
turn on the high filter on hotmail. Block the sender if it's the same address. If it's the same sender, but not the same address, you're out of luck. You can also try writing an email to admin@host.com and send a complaint. More than likely, the whole server is a spam server.

Good luck...i go through it everyday with my hotmail account. I've learned to live with it. Just make sure that you check your junk mail folder daily to make sure you're not deleting important email.

-=bmacd=-

edit: i saw hotmail in the header and assumed you were using it. I went back and looked that you were using yahoo. Maybe they have similar settings. Sorry :p
 

geno

Lifer
Dec 26, 1999
25,074
4
0
Like I said, I'm usually ok with the 20 or so spam emails I get a day, it's just when one message is sent over 150 times, and floods my mailbox...kinda pisses me off :p Thanks for the help so far guys! I'll see where it goes :) I'm on hotmail, but for some reason, the "To:" field reads another addy? :confused:

Also, I thought that an IP address had to be supplied in the header? Is this something Hotmail leaves out or can the sender bypass that?
 

db

Lifer
Dec 6, 1999
10,575
292
126
OT - man, I'm impressed that anyone can tolerate HotMail anymore....
 

Legendary

Diamond Member
Jan 22, 2002
7,019
1
0
Originally posted by: geno
Like I said, I'm usually ok with the 20 or so spam emails I get a day, it's just when one message is sent over 150 times, and floods my mailbox...kinda pisses me off :p Thanks for the help so far guys! I'll see where it goes :) I'm on hotmail, but for some reason, the "To:" field reads another addy? :confused:

Also, I thought that an IP address had to be supplied in the header? Is this something Hotmail leaves out or can the sender bypass that?

194.206.138.146 is the IP you're looking for.

Traceroute to the IP leads through FRANCE of all places.

19 101 ms 101 ms 102 ms P15-0.ntsta202.Paris.francetelecom.net [193.
126.57]
20 107 ms 108 ms 108 ms P9-0.nrncy102.Nancy.francetelecom.net [193.2
26.61]
21 113 ms 112 ms 112 ms P0-3.ncdij202.Dijon.francetelecom.net [193.2
60.109]
22 114 ms 112 ms 128 ms 217.167.131.170
23 120 ms 114 ms 114 ms 194.51.162.206
24 156 ms 158 ms 160 ms westfalia-japy [194.206.138.146]