I'm currently having this problem and spammers are somehow getting through. One instance is them using temu.to as a domain. Still, I've added "temu' into the spam phrases and they are still getting through. I'm looking into how and why this is the case.