Advertisement
wavellan

201806129_PHISHING_SCAM_1

Jun 29th, 2018
238
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.40 KB | None | 0 0
  1. Received: from MBX05D-ORD1.mex08.mlsrvr.com (172.29.9.24) by
  2. MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) with Microsoft SMTP Server (TLS)
  3. id 15.0.1367.3 via Mailbox Transport; Fri, 29 Jun 2018 05:38:19 -0500
  4. Received: from MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) by
  5. MBX05D-ORD1.mex08.mlsrvr.com (172.29.9.24) with Microsoft SMTP Server (TLS)
  6. id 15.0.1367.3; Fri, 29 Jun 2018 05:38:18 -0500
  7. Received: from gate.forward.smtp.ord1c.emailsrvr.com (108.166.43.128) by
  8. MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) with Microsoft SMTP Server (TLS)
  9. id 15.0.1367.3 via Frontend Transport; Fri, 29 Jun 2018 05:38:18 -0500
  10. Return-Path: <PatrickCruz@bnetwork.hu>
  11. X-Spam-Threshold: 95
  12. X-Spam-Score: 100
  13. Precedence: junk
  14. X-Spam-Flag: YES
  15. X-Virus-Scanned: OK
  16. X-Orig-To: REMOVED
  17. X-Originating-Ip: [91.82.113.3]
  18. Authentication-Results: smtp10.gate.ord1c.rsapps.net; iprev=pass policy.iprev="91.82.113.3"; spf=pass smtp.mailfrom="PatrickCruz@bnetwork.hu" smtp.helo="mail.bnetwork.hu"; dkim=fail (key not found in DNS) header.d=bnetwork.hu; dmarc=none (p=nil; dis=none) header.from=bnetwork.hu
  19. X-Suspicious-Flag: YES
  20. X-Classification-ID: 8847e142-7b88-11e8-be25-0026b954785f-1-1
  21. Received: from [91.82.113.3] ([91.82.113.3:57686] helo=mail.bnetwork.hu)
  22. by smtp10.gate.ord1c.rsapps.net (envelope-from <PatrickCruz@bnetwork.hu>)
  23. (ecelerity 4.2.1.56364 r(Core:4.2.1.14)) with ESMTPS (cipher=DHE-RSA-AES256-GCM-SHA384)
  24. id 7D/F9-29806-A1C063B5; Fri, 29 Jun 2018 06:38:18 -0400
  25. Received: from localhost (localhost [127.0.0.1])
  26. by mail.bnetwork.hu (Postfix) with ESMTP id 78ADB36BE78
  27. for <REMOVED>; Fri, 29 Jun 2018 12:37:40 +0200 (CEST)
  28. DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=bnetwork.hu; h=
  29. content-language:content-type:content-type:mime-version
  30. :user-agent:date:date:message-id:subject:subject:from:from; s=
  31. default; t=1530268660; x=1532083061; bh=6SJhUW4gMNU8rqUBfHK3Pny6
  32. 5TR4IasNqcErrcHghKA=; b=ZSalN0ovciEMzkgkgP3zhC32gUBSqEAp/AoU0Uj0
  33. wsJI8jtLkFJIPRI4/3YSM6klQ+RTBH0qgYXPk+goXVr+LP/IweB52nKF0RFIN3QS
  34. +QMGcS6a30eE2IbNLOLPepSNHpUU4HWzSKgkTn6D8TcllSj0q4znTgcb9+07TxxW
  35. RHA=
  36. Received: from mail.bnetwork.hu ([127.0.0.1])
  37. by localhost (mail.bnetwork.hu [127.0.0.1]) (amavisd-new, port 10026)
  38. with ESMTP id mg6qiv6L2PbH for <REMOVED>;
  39. Fri, 29 Jun 2018 12:37:40 +0200 (CEST)
  40. Received: from bnetwork.hu (unknown [110.235.204.179])
  41. (Authenticated sender: frtt@bnetwork.hu)
  42. by mail.bnetwork.hu (Postfix) with ESMTPA id 3C5B836A67E
  43. for <REMOVED>; Fri, 29 Jun 2018 12:00:52 +0200 (CEST)
  44. To: REMOVED
  45. From: Patrick Cruz <PatrickCruz@bnetwork.hu>
  46. Subject: Fw (5): Patrick Cruz
  47. Message-ID: <591C4646-D150-4753-B4A0-87C2350ED1D1@bnetwork.hu>
  48. Date: Fri, 29 Jun 2018 03:00:52 -0700
  49. User-Agent: Mozilla/5.0 (Windows NT 6.1; rv:52.0) Gecko/20100101
  50. Thunderbird/52.5.2
  51. MIME-Version: 1.0
  52. Content-Language: en
  53. X-MS-Exchange-Organization-Network-Message-Id: 467065a2-fc4b-4a2e-e98e-08d5ddac6d71
  54. X-MS-Exchange-Organization-AVStamp-Mailbox: SMEXzs^g;1434700;0;This mail has
  55. been scanned by Trend Micro ScanMail for Microsoft Exchange;
  56. X-MS-Exchange-Organization-SCL: 5
  57. X-MS-Exchange-Organization-AuthSource: MBX05C-ORD1.mex08.mlsrvr.com
  58. X-MS-Exchange-Organization-AuthAs: Anonymous
  59. Content-type: multipart/alternative;
  60. boundary="B_3613108084_295651964"
  61.  
  62. > This message is in MIME format. Since your mail reader does not understand
  63. this format, some or all of this message may not be legible.
  64.  
  65. --B_3613108084_295651964
  66. Content-type: text/plain;
  67. charset="UTF-8"
  68. Content-transfer-encoding: 7bit
  69.  
  70. https://www.google.com/url?q=https%3A%2F%2Fbit.ly%2F2tLvmPT&sa=D&sntz=1&usg=AFQjCNEl3KcXX_gmBwMHDTP1UOz_AQDucg
  71.  
  72.  
  73. .
  74.  
  75. --
  76. From: Patrick Cruz
  77.  
  78.  
  79. --B_3613108084_295651964
  80. Content-type: text/html;
  81. charset="UTF-8"
  82. Content-transfer-encoding: quoted-printable
  83.  
  84. <html>
  85. <head>
  86. <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3Dutf-8">
  87. </head>
  88. <body text=3D"#000000" bgcolor=3D"#FFFFFF">
  89. <blockquote>
  90. <p><a href=3D"https://www.google.com/url?q=3Dhttps%3A%2F%2Fbit.ly%2F2tLvmPT&amp=
  91. ;sa=3DD&amp;sntz=3D1&amp;usg=3DAFQjCNEl3KcXX_gmBwMHDTP1UOz_AQDucg"><b>https://www.=
  92. google.com/url?q=3Dhttps%3A%2F%2Fbit.ly%2F2tLvmPT&amp;sa=3DD&amp;sntz=3D1&amp;usg=3D=
  93. AFQjCNEl3KcXX_gmBwMHDTP1UOz_AQDucg</b></a></p>
  94. </blockquote>
  95. <p><br>
  96. </p>
  97. <div class=3D"moz-signature">
  98. <div align=3D"right">.<br>
  99. </div>
  100. <font size=3D"-2"></font><br>
  101. -- <br>
  102. <i>From: Patrick Cruz</i></div>
  103. </body>
  104. </html>
  105.  
  106.  
  107. --B_3613108084_295651964--
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement