D'ou provient ce mail ?
... / D'ou provient ce mail ?
BMPCreated with Sketch.BMPZIPCreated with Sketch.ZIPXLSCreated with Sketch.XLSTXTCreated with Sketch.TXTPPTCreated with Sketch.PPTPNGCreated with Sketch.PNGPDFCreated with Sketch.PDFJPGCreated with Sketch.JPGGIFCreated with Sketch.GIFDOCCreated with Sketch.DOC Error Created with Sketch.
question

D'ou provient ce mail ?

Par
TTY
Contributeur
Créé le 2023-05-23 16:31:24 (edited on 2024-09-04 12:22:42) dans Emails-old

Bonjour,

Quelqu'un (au hasard @Fritz2cat :) ) peut-il me dire comment savoir d’où provient cet email ?
La partie :
> Received: from output44.mail.ovh.net

me fait penser qu'il pourrait provenir de l'infra OVH.

Received: from DAG4EX3.indiv4.local (172.16.2.33) by DAG4EX3.indiv4.local
(172.16.2.33) with Microsoft SMTP Server (version=TLS1_2,
cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.1.2507.23 via Mailbox
Transport; Fri, 19 May 2023 08:45:26 +0200
Received: from CAS5.indiv4.local (172.16.1.5) by DAG4EX3.indiv4.local
(172.16.2.33) with Microsoft SMTP Server (version=TLS1_2,
cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.1.2507.23; Fri, 19 May
2023 08:45:26 +0200
Received: from output44.mail.ovh.net (164.132.34.44) by ex4.mail.ovh.net
(172.16.1.5) with Microsoft SMTP Server (version=TLS1_2,
cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.1.2507.23 via Frontend
Transport; Fri, 19 May 2023 08:45:26 +0200
Received: from vr46.mail.ovh.net (unknown [10.101.8.46])
by out44.mail.ovh.net (Postfix) with ESMTP id 4QMy5f289TzSfY2hj
for ; Fri, 19 May 2023 06:45:26 +0000 (UTC)
Received: from in70.mail.ovh.net (unknown [10.101.4.70])
by vr46.mail.ovh.net (Postfix) with ESMTP id 4QMy5f0Lfqz3J9WSb
for ; Fri, 19 May 2023 06:45:26 +0000 (UTC)
Received-SPF: None (DAG4EX3.indiv4.local: MAILER-DAEMON@mo541.mail-out.ovh.net
does not designate permitted sender hosts)
Received-SPF: None (no SPF record) identity=no SPF record; client-ip=146.59.177.44; helo=smtpout13.mo541.mail-out.ovh.net; envelope-from=<>; receiver=contacts@xxx.com
Authentication-Results: in70.mail.ovh.net; dkim=none; dkim-atps=neutral
Received: from smtpout13.mo541.mail-out.ovh.net (smtpout13.mo541.mail-out.ovh.net [146.59.177.44])
by in70.mail.ovh.net (Postfix) with ESMTPS id 4QMy5d6ZSPz2HB7Cg
for ; Fri, 19 May 2023 06:45:25 +0000 (UTC)
Received: by mo541.mail-out.ovh.net (Postfix)
id B4C2C23783; Fri, 19 May 2023 06:45:25 +0000 (UTC)
Date: Fri, 19 May 2023 06:45:25 +0000
From: Mail Delivery System
Subject: Undelivered Mail Returned to Sender
To:
Auto-Submitted: auto-replied
MIME-Version: 1.0
Content-Type: multipart/report; report-type=delivery-status;
boundary="B546C2481E.1684478725/mo541.mail-out.ovh.net"
Message-ID: <20230519064525.B4C2C23783@mo541.mail-out.ovh.net>
X-OVH-Remote: 146.59.177.44 (smtpout13.mo541.mail-out.ovh.net)
X-Ovh-Tracer-Id: 1946962417546855933
X-VR-SPAMSTATE: BOUNCE
X-VR-SPAMSCORE: 10000
X-VR-SPAMCAUSE: gggruggvucftvghtrhhoucdtuddrgedvhedrfeeigedgudduvdcutefuodetggdotefrodftvfcurfhrohhfihhlvgemucfqggfjpdevjffgvefmvefgnecuuegrihhlohhuthemucehtddtnecupfhothhifhhitggrthhiohhnucdluddttddttddmnecujfgurhepfffhuffvgggtsehptddtredttddvnecuhfhrohhmpefotefknffgtfdqffetgffoqffpsehmohehgedurdhmrghilhdqohhuthdrohhvhhdrnhgvthculdforghilhcuffgvlhhivhgvrhihucfuhihsthgvmhdmnecuggftrfgrthhtvghrnhepueeuveevleeliedugfdvudegiefgheevjeevgedvjeefleefvddtledthfejfedvnecuffhomhgrihhnpehovhhhrdhnvghtrdhimhdpsggtvghmohhushhsrghgnhgvrdhsphgrtggvnecukfhppedugeeirdehledrudejjedrgeegnecuvehluhhsthgvrhfuihiivgeptdenucfrrghrrghmpehinhgvthepudegiedrheelrddujeejrdeggedpmhgrihhlfhhrohhmpeeoqedpnhgspghrtghpthhtohepuddprhgtphhtthhopegtohhnthgrtghtshesphgvohhplhgvqdgsrghsvgdqtggsmhdrtghomhdpoffvtefjohhsthepvhhrgeeipdgukhhimhepphgrshhspdhgvghokffrpefpqfdprhgvvhfkrfepshhmthhpohhuthdufedrmhhoheeguddrmhgrihhlqdhouhhtrdhovhhhrdhnvght
X-Ovh-Spam-Status: OK
X-Ovh-Spam-Reason: vr: BOUNCE; dkim: OK; spf: unknown
X-Ovh-Message-Type: BOUNCE
Return-Path: <>
X-MS-Exchange-Organization-Network-Message-Id: bce53b31-c01e-495a-995b-08db5834a0f3
X-MS-Exchange-Organization-PRD: mo541.mail-out.ovh.net
X-MS-Exchange-Organization-SenderIdResult: None
X-MS-Exchange-Organization-AVStamp-Enterprise: 1.0
X-MS-Exchange-Organization-AuthSource: CAS5.indiv4.local
X-MS-Exchange-Organization-AuthAs: Anonymous
X-MS-Exchange-Transport-EndToEndLatency: 00:00:00.3898812
X-MS-Exchange-Processed-By-BccFoldering: 15.01.2507.023

Merci !


2 réponses ( Latest reply on 2023-05-23 16:53:30 Par
TTY
)


au hasard @Fritz2cat :)


Ca pourrait avoir un rapport avec un retour en erreur concernant un de ces deux domaines ?
par exemple un read receipt demandé par un spam?

peopleXbaseXcbmXcom
bcemoussagneXspace

Merci,
Oui tu as raison, se sont des retours en erreur de mail que cette boite n'a pas envoyé.
Les mails en questions sont des spam classiques envoyés avec sa propre adresse en expéditeur.

J'ai "durci" la SPF en mettant un "-all" mais si le mail provient de chez OVH. c'est inutile et je leur signalerait le problème.