Spam detection software, running on the system "mail.ikayzo.net", has identified this incoming email as possible spam. The original message has been attached to this so you can view it (if it isn't spam) or label similar future email. If you have any questions, see the administrator of that system for details. Content preview: The United States National Medical Association Do you buy pharmaceuticals online? The US NMA was specifically established to protect the consumer. Our experts check every online shop for bogus medicines. The blacklist of unreliable or simply fraud shops is updated every week. We strongly recommend to visit our site before buying any medical products online. visit us [...] Content analysis details: (13.0 points, 13.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- -0.1 CONTENT_TYPE_PRESENT exists:Content-Type 1.0 CHINANET [CN]Chinanet - large provider in China 0.1 MULTIPART_ALTERNATIVE Multipart/alternative 0.1 X_MAILER_PRESENT exists:X-Mailer 1.5 CNCGROUP [CN]Japanese spammer's footstool: CNCGROUP 0.5 UNPARSEABLE_RELAY Informational: message has unparseable relay lines 1.0 HTML_MESSAGE BODY: HTML included in message 0.3 HTML_FONT_BIG BODY: HTML tag for a big font size 3.1 RCVD_IN_XBL RBL: Received via a relay in Spamhaus XBL [61.167.78.33 listed in sbl-xbl.spamhaus.org] 1.0 RCVD_IN_SORBS_WEB RBL: SORBS: sender is a abuseable web server [61.167.78.33 listed in dnsbl.sorbs.net] 0.1 RCVD_IN_CBL RBL: Received via a relay in cbl.abuseat.org [Blocked - see ] 0.1 RCVD_IN_CHINA RBL: Received via a China IP address in china.blackholes.us [61.167.78.33 listed in china.blackholes.us] 0.5 RCVD_IN_DSBL RBL: Received via a relay in list.dsbl.org [] 2.2 RCVD_IN_WHOIS_INVALID RBL: CompleteWhois: sender on invalid IP block [61.167.78.33 listed in combined-HIB.dnsiplists.completewhois.com] 0.1 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] 0.1 RCVD_IN_CHINA_KR RBL: Received from China or Korea [61.167.78.33 listed in cn-kr.blackholes.us] 1.5 URLBL_RBLJP Has URI in url.rbl.jp [URIs: enmukasunfdes.com us-nma.com] The original message was not completely plain text, and may be unsafe to open with some email clients; in particular, it may contain a virus, or confirm that your address can receive spam. If you wish to view it, it may be safer to save it to a file and open it with an editor.