Advertisement
wavellan

20190115_PHISHING_SCAM_2

Jan 16th, 2019
275
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 7.88 KB | None | 0 0
  1. Received: from MBX05D-ORD1.mex08.mlsrvr.com (172.29.9.24) by
  2. MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) with Microsoft SMTP Server (TLS)
  3. id 15.0.1367.3 via Mailbox Transport; Tue, 15 Jan 2019 13:51:37 -0600
  4. Received: from MBX04D-ORD1.mex08.mlsrvr.com (172.29.9.21) by
  5. MBX05D-ORD1.mex08.mlsrvr.com (172.29.9.24) with Microsoft SMTP Server (TLS)
  6. id 15.0.1367.3; Tue, 15 Jan 2019 13:51:36 -0600
  7. Received: from gate.forward.smtp.ord1c.emailsrvr.com (108.166.43.128) by
  8. MBX04D-ORD1.mex08.mlsrvr.com (172.29.9.21) with Microsoft SMTP Server (TLS)
  9. id 15.0.1367.3 via Frontend Transport; Tue, 15 Jan 2019 13:51:36 -0600
  10. Return-Path: <[email protected]>
  11. X-Spam-Threshold: 95
  12. X-Spam-Score: 100
  13. Precedence: junk
  14. X-Spam-Flag: YES
  15. X-Virus-Scanned: OK
  16. X-Orig-To:
  17. X-Originating-Ip: [108.166.43.99]
  18. Authentication-Results: smtp25.gate.ord1c.rsapps.net; iprev=pass policy.iprev="108.166.43.99"; spf=permerror smtp.mailfrom="[email protected]" smtp.helo="smtp99.ord1c.emailsrvr.com"; dkim=pass header.d=cimetrics.com; dmarc=none (p=nil; dis=none) header.from=cimetrics.com
  19. X-Suspicious-Flag: NO
  20. X-Classification-ID: f78916de-18fe-11e9-9d28-b8ca3a673c88-1-1
  21. Received: from [108.166.43.99] ([108.166.43.99:32976] helo=smtp99.ord1c.emailsrvr.com)
  22. by smtp25.gate.ord1c.rsapps.net (envelope-from <[email protected]>)
  23. (ecelerity 4.2.38.62370 r(:)) with ESMTPS (cipher=DHE-RSA-AES256-GCM-SHA384)
  24. id 5D/B1-05140-8C93E3C5; Tue, 15 Jan 2019 14:51:36 -0500
  25. Received: from smtp5.relay.ord1c.emailsrvr.com (localhost [127.0.0.1])
  26. by smtp5.relay.ord1c.emailsrvr.com (SMTP Server) with ESMTP id C6818406E8;
  27. Tue, 15 Jan 2019 14:51:33 -0500 (EST)
  28. Message-ID: <[email protected]>
  29. DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cimetrics.com;
  30. s=20170502; t=1547581893;
  31. bh=MPgG/YY0y59JBmlnBerrb3nDuGWOeQr+VwvYaomKlSA=;
  32. h=Subject:To:From:Date:From;
  33. b=F+jF2BFbqo0szy/feU3AqeCgOzu4u75cIzVA4kQNkUgxgMtAuDGaFfUdPEK+bwdFL
  34. FQ8SfB5m0/JAbEQ6ctKe+8phgTlOcqjTjLEPjCCaVzoD2409vfgSxEpnCLUVr2aPtL
  35. t7S/iCjrZ6Cfg6+vd2TwJiDSSH4htA7sy/xMABd0=
  36. X-Auth-ID: [email protected]
  37. Received: by smtp5.relay.ord1c.emailsrvr.com (Authenticated sender: dtaylor-AT-cimetrics.com) with ESMTPA id F244C4062C;
  38. Tue, 15 Jan 2019 14:51:22 -0500 (EST)
  39. X-Sender-Id: [email protected]
  40. Received: from WIN-2TQFV2AIA7G.us-east-2.compute.internal (ec2-18-216-43-86.us-east-2.compute.amazonaws.com [18.216.43.86])
  41. by 0.0.0.0:25 (trex/5.7.12);
  42. Tue, 15 Jan 2019 14:51:33 -0500
  43. MIME-Version: 1.0
  44. Subject: New Audio-Voice +1 (437) 090 0722***
  45. From: " +1 (437) 090 07 Audio Voice Note " <[email protected]>
  46. Date: Tue, 15 Jan 2019 19:51:22 +0000
  47. X-MS-Exchange-Organization-Network-Message-Id: 01044b7a-a5c2-43c8-d224-08d67b22dbcb
  48. X-MS-Exchange-Organization-AVStamp-Mailbox: SMEXzs^g;1475100;0;This mail has
  49. been scanned by Trend Micro ScanMail for Microsoft Exchange;
  50. X-MS-Exchange-Organization-SCL: 5
  51. X-MS-Exchange-Organization-AuthSource: MBX04D-ORD1.mex08.mlsrvr.com
  52. X-MS-Exchange-Organization-AuthAs: Anonymous
  53. Content-type: multipart/alternative;
  54. boundary="B_3630478274_858625276"
  55.  
  56. > This message is in MIME format. Since your mail reader does not understand
  57. this format, some or all of this message may not be legible.
  58.  
  59. --B_3630478274_858625276
  60. Content-type: text/plain;
  61. charset="UTF-8"
  62. Content-transfer-encoding: quoted-printable
  63.  
  64. You have received a new voice mail from "+1 (437) 090 0722 =E2=80=9D
  65.  
  66. =20
  67.  
  68. From: +1(437) 090 0722
  69.  
  70. Received:"01-15-2019
  71.  
  72. Duration:"00:00:17" =20
  73.  
  74. =20
  75.  
  76. Attach File
  77.  
  78.  
  79.  
  80. =20
  81.  
  82. =20
  83.  
  84. File:"vmail'4088913169_102_2018110621132
  85.  
  86.  
  87.  
  88. Thanks and Regards,
  89. Office (C) 2019 Secured Service=20
  90.  
  91.  
  92. --B_3630478274_858625276
  93. Content-type: text/html;
  94. charset="UTF-8"
  95. Content-transfer-encoding: quoted-printable
  96.  
  97. <html>
  98. <head>
  99. <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3Dutf-8">
  100. </head>
  101. <body>
  102. <p></p>
  103. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  104. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  105. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  106. 4,34,34)">You have received a new voice mail from &quot;&#43;1
  107. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  108. 4,34,34)">
  109. (437) 090 0722</span> =E2=80=9D<span></span></span></p>
  110. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  111. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  112. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  113. 4,34,34)"><span></span></span>&nbsp;</p>
  114. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  115. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  116. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  117. 4,34,34)">From: &#43;1(437) 090 0722<span></span></span></p>
  118. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  119. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  120. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  121. 4,34,34)">Received:&quot;01-15-2019<span></span></span></p>
  122. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  123. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  124. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  125. 4,34,34)">Duration:&quot;00:00:17&quot;&nbsp; &nbsp; &nbsp;<span></span></sp=
  126. an></p>
  127. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  128. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  129. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  130. 4,34,34)"><span></span></span>&nbsp;</p>
  131. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  132. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  133. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  134. 4,34,34)"><a style=3D"COLOR: rgb(5,99,193); TEXT-DECORATION: underline" href=3D"=
  135. http://www.x.co/em3ilsrv3???--&#43;-&#43;-&#43;%7BG04L00%7D&#43;=3DW2" target=3D=
  136. "_blank" data-saferedirecturl=3D"https://www.google.com/url?q=3Dhttp://www.x.co/=
  137. svr8em8em??--%2B-%2B-%2B%257BG04L00%257D%2B%3DW2&amp;source=3Dgmail&amp;ust=3D15=
  138. 47561799909000&amp;usg=3DAFQjCNH6LRS7wEBmXIH-KNqwyrPaaGNIGw"><span style=3D"COLO=
  139. R: rgb(17,85,204)">Attach
  140. File</span></a><span><br>
  141. </span></span></p>
  142. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  143. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  144. <br>
  145. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  146. 4,34,34)"><span></span></span></p>
  147. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  148. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  149. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  150. 4,34,34)"><span></span></span>&nbsp;</p>
  151. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  152. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  153. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  154. 4,34,34)"><span></span></span>&nbsp;</p>
  155. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  156. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  157. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  158. 4,34,34)">File:&quot;vmail'4088913169_102_<wbr>2018110621132</span></p>
  159. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  160. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  161. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  162. 4,34,34)"><br>
  163. </span></p>
  164. <p class=3D"MsoNormal" style=3D"FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri',sans-se=
  165. rif; BACKGROUND: white; MARGIN: 0in 0in 0pt">
  166. <span style=3D"FONT-SIZE: 12pt; FONT-FAMILY: 'Arial',sans-serif; COLOR: rgb(3=
  167. 4,34,34)">Thanks and Regards,<br>
  168. Office (C) 2019 Secured Service <span></span></span></p>
  169. </body>
  170. </html>
  171.  
  172.  
  173. --B_3630478274_858625276--
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement