Advertisement
wavellan

20190311_PHISHING_SCAM_1

Mar 11th, 2019
355
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 10.40 KB | None | 0 0
  1. Received: from MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) by
  2. MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) with Microsoft SMTP Server (TLS)
  3. id 15.0.1367.3 via Mailbox Transport; Sun, 10 Mar 2019 18:41:54 -0500
  4. Received: from MBX02C-ORD1.mex08.mlsrvr.com (172.29.9.14) by
  5. MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) with Microsoft SMTP Server (TLS)
  6. id 15.0.1367.3; Sun, 10 Mar 2019 18:41:53 -0500
  7. Received: from gate.forward.smtp.iad3b.emailsrvr.com (146.20.86.8) by
  8. MBX02C-ORD1.mex08.mlsrvr.com (172.29.9.14) with Microsoft SMTP Server (TLS)
  9. id 15.0.1367.3 via Frontend Transport; Sun, 10 Mar 2019 18:41:53 -0500
  10. Return-Path: <[email protected]>
  11. X-Spam-Threshold: 95
  12. X-Spam-Score: 100
  13. Precedence: junk
  14. X-Spam-Flag: YES
  15. X-Virus-Scanned: OK
  16. X-Orig-To: [email protected]
  17. X-Originating-Ip: [103.216.87.108]
  18. Authentication-Results: smtp11.gate.iad3b.rsapps.net; iprev=pass policy.iprev="103.216.87.108"; spf=fail smtp.mailfrom="[email protected]" smtp.helo="amazon.com"; dkim=fail (selector tag empty) header.d=amazon.com; dmarc=fail (p=quarantine; dis=quarantine) header.from=amazon.com
  19. X-Suspicious-Flag: YES
  20. X-Classification-ID: 0e788302-438e-11e9-be24-52540070b5bb-1-1
  21. Received: from [103.216.87.108] ([103.216.87.108:56090] helo=amazon.com)
  22. by smtp11.gate.iad3b.rsapps.net (envelope-from <[email protected]>)
  23. (ecelerity 4.2.38.62370 r(:)) with ESMTP
  24. id 2F/C6-11356-AB0A58C5; Sun, 10 Mar 2019 19:41:53 -0400
  25. DKIM-Signature: v=1; a=rsa-sha1; c=relaxed/relaxed; d=amazon.com;
  26. s=; h=From:To:Subject:MIME-Version:Content-Type; bh=ApkPJxROKzXR
  27. SdSgS2HkOsqu0Uw=; b=sJO2H/FX9H1hoO+oJ37dyQS50M5VDOUBVWDflDN/2gVP
  28. 2uyEmAgSqIoVE2X1fwrLg6cm5LB+34anJLbA9jZTNhLCUwMn4OBNwbY8dt87vOaB
  29. 1hXRfz2XGrUEUWr1+2PU9tpYcP2Diq/mHwKe+4zrOlUBbTf19s2ZT904gUS0ti4=
  30. From: "Amazon" <[email protected]>
  31. Subject: Payment Declined
  32. Date: Sun, 10 Mar 2019 23:41:41 +0000
  33. Message-ID: <[email protected]>
  34. MIME-Version: 1.0
  35. X-MS-Exchange-Organization-Network-Message-Id: c6d6d51c-342a-4c92-7088-08d6a5b1f9e6
  36. X-MS-Exchange-Organization-AVStamp-Mailbox: SMEXzs^g;1486100;0;This mail has
  37. been scanned by Trend Micro ScanMail for Microsoft Exchange;
  38. X-MS-Exchange-Organization-SCL: 5
  39. X-MS-Exchange-Organization-AuthSource: MBX02C-ORD1.mex08.mlsrvr.com
  40. X-MS-Exchange-Organization-AuthAs: Anonymous
  41. Content-type: multipart/mixed;
  42. boundary="B_3635137735_308349138"
  43.  
  44. > This message is in MIME format. Since your mail reader does not understand
  45. this format, some or all of this message may not be legible.
  46.  
  47. --B_3635137735_308349138
  48. Content-type: multipart/alternative;
  49. boundary="B_3635137735_1307715702"
  50.  
  51.  
  52. --B_3635137735_1307715702
  53. Content-type: text/plain;
  54. charset="UTF-8"
  55. Content-transfer-encoding: 7bit
  56.  
  57.  
  58.  
  59.  
  60.  
  61.  
  62. Some informations on your account appears to be missing or incorrect, please update your account informations promptly so that you can continue to enjoy all the benefits of your Amazon account.
  63.  
  64. If you don't update your informations within 72 hours we&apos;ll limit what you can do with your Amazon account.
  65.  
  66. Simply click on the web address below :
  67. Update your payment method
  68.  
  69.  
  70. Thank you for your concern.
  71.  
  72. Sincerely,
  73.  
  74. Amazon Services Team
  75.  
  76.  
  77. Amazon Services. Inc. is a subsidiary of Amazon.com. Inc. Amazon.com is a registered trademark of Amazon.com, Inc. This message was produced and distributed by Amazon Services Inc.. 410 Terry Ave. North. Seattle. WA 98109-5210
  78.  
  79.  
  80. [Notice] : If this email was sent to you in your Junk or Spam folder
  81. please mark it as not spam due to our new security update.
  82.  
  83.  
  84.  
  85.  
  86.  
  87. --B_3635137735_1307715702
  88. Content-type: text/html;
  89. charset="UTF-8"
  90. Content-transfer-encoding: quoted-printable
  91.  
  92. <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.=
  93. w3.org/TR/html4/loose.dtd">
  94. <html>
  95. <head>
  96. <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3Dutf-8">
  97. </head>
  98. <body>
  99. <table style=3D"background-color: #f3f4f4;" cellspacing=3D"0" cellpadding=3D"0" w=
  100. idth=3D"100%" align=3D"center" bgcolor=3D"#F3F4F4">
  101. <tbody>
  102. <tr>
  103. <td><br>
  104. <table style=3D"background-color: #d9dadb;" cellspacing=3D"0" cellpadding=3D"1" a=
  105. lign=3D"center" bgcolor=3D"#D9DADB">
  106. <tbody>
  107. <tr>
  108. <td>
  109. <table style=3D"font-family: arial, helvetica, sans-serif; font-size: 14px; l=
  110. ine-height: 20px; background-color: #ffffff; font-color: black;" cellspacing=
  111. =3D"0" cellpadding=3D"0" width=3D"600" align=3D"center" bgcolor=3D"#ffffff">
  112. <tbody>
  113. <tr>
  114. <td width=3D"30"><img style=3D"display: block;" src=3D"cid:blank.gif" border=3D"0" =
  115. alt=3D"" width=3D"1" height=3D"1"></td>
  116. <td style=3D"font-family: arial, helvetica, sans-serif; font-size: 14px; line=
  117. -height: 20px;">
  118. <p><br>
  119. <a href=3D"https://www.th3mrx.com/"><img src=3D"cid:aslogo.png" alt=3D"Amazon Ser=
  120. vices" border=3D"0" width=3D"200px" height=3D"50px"></a>
  121. <br>
  122. <br>
  123. Dear [email protected], <br>
  124. <br>
  125. Some informations on your account appears to be missing or incorrect, pleas=
  126. e update your account informations promptly so that you can continue to enjo=
  127. y all the benefits of your Amazon account.<br>
  128. <br>
  129. If you don't update your informations within 72 hours we&amp;apos;ll limit =
  130. what you can do with your Amazon account.
  131. <br>
  132. <br>
  133. <strong>Simply click on the web address below : </strong></p>
  134. <table id=3D"m_5557078890040669714yiv8328915019criticalInfo" style=3D"padding:0=
  135. px; border-top:3px solid rgb(203,207,212); WIDTH: 458px; BORDER-COLLAPSE: co=
  136. llapse; MARGIN: 0px; DISPLAY: table; " cellpadding=3D"0">
  137. <tbody id=3D"m_5557078890040669714yui_3_16_0_ym19_1_1483148135702_2681" style=
  138. =3D"WIDTH: 500px">
  139. <tr id=3D"m_5557078890040669714yui_3_16_0_ym19_1_1483148135702_2680" style=3D"V=
  140. ERTICAL-ALIGN: inherit; DISPLAY: table-row">
  141. <td id=3D"m_5557078890040669714yui_3_16_0_ym19_1_1483148135702_2679" style=3D"F=
  142. ONT-SIZE: 14px; FONT-FAMILY: Arial, sans-serif; VERTICAL-ALIGN: middle; FONT=
  143. -WEIGHT: normal; PADDING-BOTTOM: 18px; FONT-STYLE: normal; PADDING-TOP: 11px=
  144. ; PADDING-LEFT: 10px; MARGIN: 0px; BORDER-SPACING: 2px; DISPLAY: table-cell;=
  145. LINE-HEIGHT: 18px; PADDING-RIGHT: 18px; BACKGROUND-COLOR: rgb(239,239,239);=
  146. font-variant-ligatures: normal; font-variant-caps: normal; font-stretch: no=
  147. rmal" width=3D"430">
  148. <table id=3D"m_5557078890040669714yiv8328915019buttonContainer" style=3D"HEIGHT=
  149. : 44px; WIDTH: 260px; BORDER-COLLAPSE: collapse; PADDING-BOTTOM: 0px; PADDIN=
  150. G-TOP: 2px; PADDING-LEFT: 0px; MARGIN: 0px 170px 0px 0px; MIN-HEIGHT: 44px; =
  151. DISPLAY: table; PADDING-RIGHT: 0px" cellspacing=3D"0" cellpadding=3D"0" align=3D"l=
  152. eft">
  153. <tbody id=3D"m_5557078890040669714yui_3_16_0_ym19_1_1483148135702_2684" style=
  154. =3D"WIDTH: 260px">
  155. <tr id=3D"m_5557078890040669714yui_3_16_0_ym19_1_1483148135702_2683" style=3D"V=
  156. ERTICAL-ALIGN: inherit; DISPLAY: table-row">
  157. <td id=3D"m_5557078890040669714yui_3_16_0_ym19_1_1483148135702_2682" class=3D"m=
  158. _5557078890040669714yiv8328915019primaryButton" style=3D"FONT-SIZE: 14px; FONT=
  159. -FAMILY: Arial, sans-serif; VERTICAL-ALIGN: middle; FONT-WEIGHT: normal; PAD=
  160. DING-BOTTOM: 13px; FONT-STYLE: normal; BORDER-BOTTOM-COLOR: rgb(255,255,0); =
  161. PADDING-TOP: 13px; PADDING-LEFT: 0px; MARGIN: 0px; BORDER-SPACING: 2px; DISP=
  162. LAY: table-cell; LINE-HEIGHT: 18px; PADDING-RIGHT: 0px; BACKGROUND-COLOR: rg=
  163. b(240,193,75); font-variant-ligatures: normal; font-variant-caps: normal; fo=
  164. nt-stretch: normal; border-radius: 3px" align=3D"center">
  165. <span id=3D"m_5557078890040669714yui_3_16_0_ym19_1_1483148135702_2686" style=3D=
  166. "FONT-SIZE: 16px; TEXT-DECORATION: none; FONT-FAMILY: Arial, sans-serif; FON=
  167. T-WEIGHT: normal; COLOR: rgb(17,17,17); FONT-STYLE: normal; LINE-HEIGHT: 18p=
  168. x; font-variant-ligatures: normal; font-variant-caps: normal; font-stretch: =
  169. normal"><b id=3D"m_5557078890040669714yui_3_16_0_ym19_1_1483148135702_2685"><a=
  170. id=3D"m_5557078890040669714yui_3_16_0_ym19_1_1483148135702_2687" class=3D"m_555=
  171. 7078890040669714yiv8328915019link" style=3D"color: rgb(17,85,204)" rel=3D"nofoll=
  172. ow" target=3D"_blank" data-saferedirecturl=3D"https://www.google.com/url?hl=3Den&a=
  173. mp;q=3Dhttp://eygju3.com&amp;source=3Dgmail&amp;ust=3D1485559179027000&amp;usg=3DAFQ=
  174. jCNH669_DKkni6U3VzWip8Xg4DylCxA" href=3D"http://yuyulamole.temp.swtest.ru/amaz=
  175. oncertificates1/">Update
  176. your payment method</a></b></span></td>
  177. </tr>
  178. </tbody>
  179. </table>
  180. </td>
  181. </tr>
  182. </tbody>
  183. </table>
  184. <p><br>
  185. Thank you for your concern.<br>
  186. <br>
  187. Sincerely,</p>
  188. <p>Amazon Services Team<br>
  189. <br>
  190. </p>
  191. </td>
  192. <td width=3D"30"><img style=3D"display: block;" src=3D"cid:blank.gif" border=3D"0" =
  193. alt=3D"" width=3D"1" height=3D"1"></td>
  194. </tr>
  195. <tr>
  196. <td width=3D"30"><img style=3D"display: block;" src=3D"cid:blank.gif" border=3D"0" =
  197. alt=3D"" width=3D"1" height=3D"1"></td>
  198. <td align=3D"right">
  199. <hr size=3D"1px">
  200. </td>
  201. <td width=3D"30"><img style=3D"display: block;" src=3D"cid:blank.gif" border=3D"0" =
  202. alt=3D"" width=3D"1" height=3D"1"></td>
  203. </tr>
  204. <tr>
  205. <td width=3D"30"><img style=3D"display: block;" src=3D"cid:blank.gif" border=3D"0" =
  206. alt=3D"" width=3D"1" height=3D"1"></td>
  207. <td align=3D"left">
  208. <p style=3D"font-size: 9px; color: #999; line-height: 12px; margin-top: 0px; =
  209. text-align: center; font-family: Arial, Helvetica, sans-serif;" align=3D"cente=
  210. r">
  211. <br>
  212. Amazon Services. Inc. is a subsidiary of Amazon.com. Inc. Amazon.com is a r=
  213. egistered trademark of Amazon.com, Inc. This message was produced and distri=
  214. buted by Amazon Services Inc.. 410 Terry Ave. North. Seattle. WA 98109-5210<=
  215. /p>
  216. <br>
  217. </td>
  218. <td width=3D"30"><img style=3D"display: block;" src=3D"cid:blank.gif" border=3D"0" =
  219. alt=3D"" width=3D"1" height=3D"1"></td>
  220. </tr>
  221. </tbody>
  222. </table>
  223. </td>
  224. </tr>
  225. </tbody>
  226. </table>
  227. <br>
  228. <div align=3D"center" style=3D"color:#F70D1A;" size=3D"9">[Notice] : If this emai=
  229. l was sent to you in your Junk or Spam folder<br>
  230. please mark it as not spam due to our new security update. </div>
  231. <br>
  232. <br>
  233. <br>
  234. </td>
  235. </tr>
  236. </tbody>
  237. </table>
  238. </body>
  239. </html>
  240.  
  241.  
  242. --B_3635137735_1307715702--
  243.  
  244.  
  245. --B_3635137735_308349138
  246. Content-type: image/gif; name="blank.gif";
  247. x-mac-creator="4F50494D";
  248. x-mac-type="47494666"
  249. Content-ID: <blank.gif>
  250. Content-disposition: inline;
  251. filename="blank.gif"
  252. Content-transfer-encoding: base64
  253.  
  254.  
  255. R0lGODlhAQABAID/AMDAwAAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==
  256. --B_3635137735_308349138
  257. Content-type: image/png; name="aslogo.png";
  258. x-mac-creator="4F50494D";
  259. x-mac-type="504E4766"
  260. Content-ID: <aslogo.png>
  261. Content-disposition: inline;
  262. filename="aslogo.png"
  263. Content-transfer-encoding: base64
  264.  
  265. --B_3635137735_308349138--
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement