Has someone offered you a huge sum of money or a valuable consignment? It's a 419 or advance fee fraud - find out how they work, and what to do to be safe.
#375080 by buried under 419s Sat Oct 20, 2018 2:06 pm
Return-path: <[email protected]>
Envelope-to:
Delivery-date: Sat, 20 Oct 2018 08:58:34 -0700
Received: from post.bg.net.ua ([193.227.206.66]:40386 helo=mail.bg.net.ua)
by with esmtps (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256)
(Exim 4.89)
(envelope-from <[email protected]>)
id 1gDte5-00042w-Ai
for ; Sat, 20 Oct 2018 08:58:34 -0700
Received: from [91.196.101.135] (helo=User)
by mail.bg.net.ua with smtp (Exim 4.88 (FreeBSD))
(envelope-from <[email protected]>)
id 1gDtdD-0005c8-P4; Sat, 20 Oct 2018 18:57:40 +0300
Reply-To: <[email protected]>
From: "Mrs. Claire Grady"<[email protected]>
Date: Sat, 20 Oct 2018 16:57:41 +0100
MIME-Version: 1.0
Content-Type: text/html;
charset="Windows-1251"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000
X-Spam-Status: Yes, score=20.6
X-Spam-Score: 206
X-Spam-Bar: ++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "",
has identified this incoming email as possible spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
root\@localhost for details.

Content preview: Homeland Security Department Southwest, Washington, D.C.,
Washington, D.C., United States [...]

Questions about scams? fraudatiocruor @ gmail.com to contact remove spaces
Advertisement

#379408 by buried under 419s Fri Jan 04, 2019 2:18 pm
Return-path: <[email protected]>
Envelope-to:
Delivery-date: Fri, 04 Jan 2019 10:12:03 -0800
Received: from [95.213.143.15] (port=35630 helo=ts1153.tehnodom.com)
by with esmtps (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256)
(Exim 4.89)
(envelope-from <[email protected]>)
id 1gfTwv-0005bT-LO
for ; Fri, 04 Jan 2019 10:12:03 -0800
Received: from localhost ([127.0.0.1] helo=User)
by ts1153.tehnodom.com with smtp (Exim 4.80.1)
(envelope-from <[email protected]>)
id 1gfTxz-0006Rr-4L; Fri, 04 Jan 2019 21:13:07 +0300
Reply-To: <[email protected]>
From: "Mrs. Claire Grady"<[email protected]>
Date: Fri, 4 Jan 2019 19:10:29 +0100
MIME-Version: 1.0
Content-Type: text/html;
charset="Windows-1251"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000
X-Spam-Status: Yes, score=24.3
X-Spam-Score: 243
X-Spam-Bar: ++++++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "",
has identified this incoming email as possible spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
root\@localhost for details.

Content preview: Homeland Security Department Southwest, Washington, D.C.,
Washington, D.C., United States [...]

Content analysis details: (24.3 points, 7.0 required)

pts rule name description
---- ---------------------- --------------------------------------------------
4.4 RCVD_IN_XBL RBL: Received via a relay in Spamhaus XBL
[95.213.143.15 listed in zen.spamhaus.org]
5.0 BAYES_99 BODY: Bayes spam probability is 99 to 100%
[score: 1.0000]
1.0 BAYES_999 BODY: Bayes spam probability is 99.9 to 100%
[score: 1.0000]
0.0 NSL_RCVD_HELO_USER Received from HELO User
0.0 FSL_CTYPE_WIN1251 Content-Type only seen in 419 spam
1.3 RCVD_IN_RP_RNBL RBL: Relay in RNBL,
https://senderscore.org/blacklistlookup/
[95.213.143.15 listed in bl.score.senderscore.com]
1.0 MISSING_HEADERS Missing To: header
0.7 MIME_HTML_ONLY BODY: Message only has text/html MIME parts
0.0 HTML_MESSAGE BODY: HTML included in message
0.0 T_HK_NAME_MR_MRS No description available.
1.6 REPLYTO_WITHOUT_TO_CC No description available.
0.1 FORGED_OUTLOOK_TAGS Outlook can't send HTML in this format
1.6 MISSING_MID Missing Message-Id: header
0.0 AXB_XMAILER_MIMEOLE_OL_024C2 Yet another X header trait
0.0 FSL_NEW_HELO_USER Spam's using Helo and User
1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any
anti-forgery methods
0.0 FORGED_OUTLOOK_HTML Outlook can't send HTML message only
2.0 RDNS_NONE Delivered to internal network by a host with no rDNS
2.1 FREEMAIL_FORGED_REPLYTO Freemail in Reply-To, but not From
1.9 FORGED_MUA_OUTLOOK Forged mail pretending to be from MS Outlook
0.7 TO_NO_BRKTS_NORDNS_HTML To: lacks brackets and no rDNS and HTML only
0.0 FROM_MISSP_EH_MATCH From misspaced, matches envelope
X-Spam-Flag: YES
Subject: ***SPAM*** Attention: Sir/Madam....

Homeland Security Department

Southwest, Washington, D.C.,

Washington, D.C., United States





Attention: Sir/Madam.





Reply back as soon as you get this email for further directives.





Thank you and have a good day.





Signed:

Mrs. Claire Grady

Acting Director,

United States Secret Service

Questions about scams? fraudatiocruor @ gmail.com to contact remove spaces

Who is online

Users browsing this forum: No registered users and 199 guests