Advertisement
wavellan

20181127_PHISHING_SCAM_1

Nov 30th, 2018
271
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.35 KB | None | 0 0
  1. Received: from MBX05D-ORD1.mex08.mlsrvr.com (172.29.9.24) by
  2. MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) with Microsoft SMTP Server (TLS)
  3. id 15.0.1367.3 via Mailbox Transport; Tue, 27 Nov 2018 22:01:31 -0600
  4. Received: from MBX06D-ORD1.mex08.mlsrvr.com (172.29.9.27) by
  5. MBX05D-ORD1.mex08.mlsrvr.com (172.29.9.24) with Microsoft SMTP Server (TLS)
  6. id 15.0.1367.3; Tue, 27 Nov 2018 22:01:31 -0600
  7. Received: from gate.forward.smtp.ord1d.emailsrvr.com (161.47.34.7) by
  8. MBX06D-ORD1.mex08.mlsrvr.com (172.29.9.27) with Microsoft SMTP Server (TLS)
  9. id 15.0.1367.3 via Frontend Transport; Tue, 27 Nov 2018 22:01:31 -0600
  10. Return-Path: <[email protected]>
  11. X-Spam-Threshold: 95
  12. X-Spam-Score: 100
  13. Precedence: junk
  14. X-Spam-Flag: YES
  15. X-Virus-Scanned: OK
  16. X-Orig-To: REMOVED
  17. X-Originating-Ip: [68.64.155.162]
  18. Authentication-Results: smtp37.gate.ord1d.rsapps.net; iprev=pass policy.iprev="68.64.155.162"; spf=neutral smtp.mailfrom="[email protected]" smtp.helo="h152.cpanellogin.net"; dkim=none (message not signed) header.d=none; dmarc=none (p=nil; dis=none) header.from=hmeranti.com
  19. X-Suspicious-Flag: NO
  20. X-Classification-ID: 493d0944-f2c2-11e8-bd54-525400a11cf3-1-1
  21. Received: from [68.64.155.162] ([68.64.155.162:57865] helo=h152.cpanellogin.net)
  22. by smtp37.gate.ord1d.rsapps.net (envelope-from <[email protected]>)
  23. (ecelerity 4.2.38.62370 r(:)) with ESMTPS (cipher=DHE-RSA-AES256-SHA)
  24. id 02/AF-18017-A131EFB5; Tue, 27 Nov 2018 23:01:31 -0500
  25. Received: from [127.0.0.1] (port=43748 helo=webmail.dynamicjo.com)
  26. by h152.cpanellogin.net with esmtpa (Exim 4.87)
  27. (envelope-from <[email protected]>)
  28. id 1gRqv8-0006Mb-KD; Tue, 27 Nov 2018 19:53:50 -0800
  29. MIME-Version: 1.0
  30. Date: Wed, 28 Nov 2018 05:53:50 +0200
  31. From: Rana Rahaman <[email protected]>
  32. To: undisclosed-recipients:;
  33. Subject: PLS KNDLY CFM QOUTE
  34. Reply-To: <[email protected]>
  35. Mail-Reply-To: [email protected]
  36. Message-ID: <[email protected]>
  37. User-Agent: Roundcube Webmail/0.9.5
  38. X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
  39. X-AntiAbuse: Primary Hostname - h152.cpanellogin.net
  40. X-AntiAbuse: Original Domain - REMOVED
  41. X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
  42. X-AntiAbuse: Sender Address Domain - hmeranti.com
  43. X-Get-Message-Sender-Via: h152.cpanellogin.net: authenticated_id: [email protected]
  44. X-Authenticated-Sender: h152.cpanellogin.net: [email protected]
  45. X-Source:
  46. X-Source-Args:
  47. X-Source-Dir:
  48. X-MS-Exchange-Organization-Network-Message-Id: 218f41d5-25ef-4153-d9a8-08d654e62e2b
  49. X-MS-Exchange-Organization-AVStamp-Mailbox: SMEXzs^g;1465100;0;This mail has
  50. been scanned by Trend Micro ScanMail for Microsoft Exchange;
  51. X-MS-Exchange-Organization-SCL: 5
  52. X-MS-Exchange-Organization-AuthSource: MBX06D-ORD1.mex08.mlsrvr.com
  53. X-MS-Exchange-Organization-AuthAs: Anonymous
  54. Content-type: multipart/mixed;
  55. boundary="B_3626446943_786630211"
  56.  
  57. > This message is in MIME format. Since your mail reader does not understand
  58. this format, some or all of this message may not be legible.
  59.  
  60. --B_3626446943_786630211
  61. Content-type: multipart/alternative;
  62. boundary="B_3626446943_710103333"
  63.  
  64.  
  65. --B_3626446943_710103333
  66. Content-type: text/plain;
  67. charset="UTF-8"
  68. Content-transfer-encoding: 7bit
  69.  
  70. Hello, Good day.
  71.  
  72. I noticed an email from you confirm rates for the products which we requested for from your good company.
  73.  
  74. I have had some issues with my PC and now the mail has gone from my in box
  75.  
  76. Sorry to ask but confirm to us once more? Kindly find our attached RFQ once more for your kind reference.
  77.  
  78. I look forward to receiving your kind confirmation.
  79.  
  80.  
  81.  
  82. Thank you
  83.  
  84.  
  85.  
  86. Kind Regards
  87.  
  88. Asst. Manager, Commercial & Logistics Weber Solutions Ltd.
  89.  
  90. A House-10(2nd Floor), Road-06, Sector-01, Uttara, Dhaka.
  91. M +8801977552228
  92. W www.weberbd.com
  93.  
  94.  
  95.  
  96.  
  97.  
  98.  
  99.  
  100.  
  101. --B_3626446943_710103333
  102. Content-type: text/html;
  103. charset="UTF-8"
  104. Content-transfer-encoding: quoted-printable
  105.  
  106. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN">
  107. <html>
  108. <head>
  109. <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3Dutf-8">
  110. </head>
  111. <body style=3D"font-family: Verdana,Geneva,sans-serif">
  112. <p>Hello, Good day.</p>
  113. <p>I noticed an email from you confirm rates for the products which we requ=
  114. ested for from your good company.</p>
  115. <p>I have had some issues with my PC and now the mail has gone from my in b=
  116. ox</p>
  117. <p><span>Sorry to ask but confirm to us once more? Kindly find our attached=
  118. RFQ once more for your kind&nbsp;reference.</span></p>
  119. <p><span>I&nbsp;look&nbsp;forward to receiving your kind confirmation.</spa=
  120. n></p>
  121. <p><span style=3D"text-decoration: underline;"></span>&nbsp;<span style=3D"text=
  122. -decoration: underline;"></span></p>
  123. <p>Thank you<span style=3D"text-decoration: underline;"></span><span style=3D"t=
  124. ext-decoration: underline;"></span></p>
  125. <p><span style=3D"text-decoration: underline;"></span>&nbsp;<span style=3D"text=
  126. -decoration: underline;"></span></p>
  127. <p>Kind Regards</p>
  128. <table>
  129. <tbody>
  130. <tr>
  131. <td width=3D"328">
  132. <table style=3D"width: 100%;">
  133. <tbody>
  134. <tr>
  135. <td width=3D"328">
  136. <table style=3D"width: 100%;">
  137. <tbody>
  138. <tr>
  139. <td>
  140. <p>Asst. Manager, Commercial &amp; Logistics</p>
  141. <p>Weber Solutions Ltd.</p>
  142. </td>
  143. </tr>
  144. </tbody>
  145. </table>
  146. </td>
  147. </tr>
  148. <tr>
  149. <td width=3D"328">&nbsp;</td>
  150. </tr>
  151. <tr>
  152. <td width=3D"328">
  153. <table style=3D"width: 100%;">
  154. <tbody>
  155. <tr>
  156. <td>
  157. <p><strong>A&nbsp;</strong>&nbsp;House-10(2nd Floor), Road-06, Sector-01, U=
  158. ttara, Dhaka.</p>
  159. </td>
  160. </tr>
  161. <tr>
  162. <td>
  163. <table>
  164. <tbody>
  165. <tr>
  166. <td>
  167. <p><strong>M&nbsp;</strong><a>&#43;8801977552228&nbsp;</a></p>
  168. </td>
  169. </tr>
  170. </tbody>
  171. </table>
  172. </td>
  173. </tr>
  174. <tr>
  175. <td>
  176. <table>
  177. <tbody>
  178. <tr>
  179. <td>
  180. <p><strong>W&nbsp;</strong><a href=3D"http://www.weberbd.com/">www.weberbd.co=
  181. m</a></p>
  182. </td>
  183. </tr>
  184. </tbody>
  185. </table>
  186. </td>
  187. </tr>
  188. <tr>
  189. <td>&nbsp;</td>
  190. </tr>
  191. </tbody>
  192. </table>
  193. </td>
  194. </tr>
  195. </tbody>
  196. </table>
  197. </td>
  198. </tr>
  199. </tbody>
  200. </table>
  201. <div>&nbsp;</div>
  202. <div>&nbsp;</div>
  203. <div>&nbsp;</div>
  204. <div>&nbsp;</div>
  205. <div>&nbsp;</div>
  206. </body>
  207. </html>
  208.  
  209.  
  210. --B_3626446943_710103333--
  211.  
  212.  
  213. --B_3626446943_786630211
  214. Content-type: application/zip; name="RFQ 218_1118.r00";
  215. x-mac-creator="4F50494D"
  216. Content-ID: <[email protected]>
  217. Content-disposition: attachment;
  218. filename="RFQ 218_1118.r00"
  219. Content-transfer-encoding: base64
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement