Has someone offered you a huge sum of money or a valuable consignment? It's a 419 or advance fee fraud - find out how they work, and what to do to be safe.
#385945 by buried under 419s Wed May 15, 2019 8:57 pm
Return-path: <[email protected]>
Envelope-to:
Delivery-date: Wed, 15 May 2019 17:21:44 -0700
Received: from host.gamezeditores.com ([94.130.161.201]:57402)
by with esmtps (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256)
(Exim 4.89)
(envelope-from <[email protected]>)
id 1hR49X-0008H0-1w
for ; Wed, 15 May 2019 17:21:44 -0700
Received: from [81.17.17.71] (port=51186 helo=[192.168.0.100])
by host.gamezeditores.com with esmtpsa (TLSv1:DHE-RSA-AES256-SHA:256)
(Exim 4.92)
(envelope-from <[email protected]>)
id 1hR3Fz-0003HW-J2; Wed, 15 May 2019 18:24:19 -0500
Content-Type: text/plain; charset="iso-8859-1"
MIME-Version: 1.0
Content-Transfer-Encoding: quoted-printable
Content-Description: Mail message body
To: YOU <[email protected]>
From: Anonymous' <[email protected]>
Date: Thu, 16 May 2019 00:23:37 +0100
Reply-To: [email protected]
X-dongee-MailScanner-Information: Please contact the ISP for more information
X-dongee-MailScanner-ID: 1hR3Fz-0003HW-J2
X-dongee-MailScanner: Found to be clean
X-dongee-MailScanner-SpamCheck:
X-dongee-MailScanner-From: [email protected]
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - host.gamezeditores.com
X-AntiAbuse: Original Domain -
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - diariodelnorte.net
X-Get-Message-Sender-Via: host.gamezeditores.com: authenticated_id: diariodelnorte/from_h
X-Authenticated-Sender: host.gamezeditores.com: [email protected]
X-Spam-Status: Yes, score=13.2
X-Spam-Score: 132
X-Spam-Bar: +++++++++++++
X-Spam-Report: Spam detection software, running on the system "",
has identified this incoming email as possible spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
root\@localhost for details.

Content preview: I won the $1.5 Billion Mega Millions jackpot, I have decided
to pay it forward to a few random people, Get back to me with your name and
address for further details. https://www.marketwatch.com/story/15-bi ... 2019-03-04
[...]

Content analysis details: (13.2 points, 7.0 required)

pts rule name description
---- ---------------------- --------------------------------------------------
1.0 BAYES_999 BODY: Bayes spam probability is 99.9 to 100%
[score: 1.0000]
5.0 BAYES_99 BODY: Bayes spam probability is 99 to 100%
[score: 1.0000]
1.3 RCVD_IN_RP_RNBL RBL: Relay in RNBL,
https://senderscore.org/blacklistlookup/
[94.130.161.201 listed in bl.score.senderscore.com]
1.8 PYZOR_CHECK Listed in Pyzor (https://pyzor.readthedocs.io/en/latest/)
1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any
anti-forgery methods
1.0 FSL_BULK_SIG Bulk signature with no Unsubscribe
1.6 MISSING_MID Missing Message-Id: header
0.5 KAM_LINKBAIT Short messages containing little more than a link, from
a domain with no security in place
X-Spam-Flag: YES
Subject: ***SPAM*** Hello-


I won the $1.5 Billion Mega Millions jackpot, I have decided to pay it forward to a
few random people, Get back to me with your name and address for further details.

https://www.marketwatch.com/story/15-bi ... 2019-03-04

Anonymous

Questions about scams? fraudatiocruor @ gmail.com to contact remove spaces
Advertisement

Who is online

Users browsing this forum: Google [Bot] and 112 guests