Advance fee loan scams and fraudulent loan sites.
by Faizan Docherty Sat Dec 14, 2013 2:36 pm
ipTRACKERonline.com wrote:Header Analysis Quick Report<br>Originating IP: 41.203.69.4<br>Originating ISP: Globacom Ltd<br> City: n/a<br>Country of Origin: Nigeria<br>* For a complete report on this email header goto ipTRACKERonline


From <snipped> Fri Dec 13 17:51:38 2013
Return-Path: <[email protected]>
Received: from conecel.com (pgccforward2.conecel.com [192.168.1.29])
by pgccportafree.portafree.com (8.13.6/8.12.11) with ESMTP id rBDKXSsQ009720
for <snipped>; Fri, 13 Dec 2013 15:33:48 -0500
Received: from ([157.56.116.98])
by pgccforward2.conecel.com with ESMTP with TLS id DYFX5P1.38221675;
Fri, 13 Dec 2013 15:31:43 -0500
Received: from [10.178.53.246] (41.203.69.4) by
AM3PR07MB369.eurprd07.prod.outlook.com (10.242.109.143) with Microsoft SMTP
Server (TLS) id 15.0.842.7; Fri, 13 Dec 2013 20:31:42 +0000
Content-Type: text/plain; charset="iso-8859-1"
MIME-Version: 1.0
Content-Description: Mail message body
Subject:
To: Recipients <snipped>
From: "Mr. Robert Anthony" <[email protected]>
Date: Fri, 13 Dec 2013 20:31:21 +0000
Reply-To: <[email protected]>
X-Antivirus: avast! (VPS 131213-0, 12/13/2013), Outbound message
X-Antivirus-Status: Clean
Message-ID: <79670704-ba30-4020-aa6c-2b8c94612814@AM3PR07MB369.eurprd07.prod.outlook.com>
X-Originating-IP: [41.203.69.4]
X-ClientProxiedBy: AM3PR06CA015.eurprd06.prod.outlook.com (10.242.16.35) To
AM3PR07MB369.eurprd07.prod.outlook.com (10.242.109.143)
X-Forefront-PRVS: 00594E8DBA
X-Forefront-Antispam-Report: SFV:SPM;SFS:(10019001)(639001)(649001)(189002)(199002)(66066001)(23756003)(80022001)(83072002)(85852003)(47446002)(74502001)(74662001)(558084003)(59766001)(77982001)(54316002)(56776001)(64872005)(89136003)(5406001)(90146001)(1496004)(56816005)(47776003)(33646001)(43066001)(65816001)(25636003)(53256004)(77096001)(79102001)(63696002)(19580395003)(19580405001)(83322001)(10646002)(76482001)(50466002)(69226001)(51856001)(85306002)(42186004)(54356001)(325944007)(81686001)(31686002)(81816001)(74706001)(74366001)(80976001)(74316001)(74876001)(49866001)(47736001)(47976001)(87266001)(76576001)(4396001)(87976001)(81542001)(76176001)(50986001)(81342001)(46102001)(76796001)(76786001)(90576001);DIR:OUT;SFP:1501;SCL:9;SRVR:AM3PR07MB369;H:[10.178.53.246];CLIP:41.203.69.4;FPR:;RD:InfoNoRecords;MX:1;A:0;LANG:en;
X-OriginatorOrg: robertosmith069.onmicrosoft.com
X-esp: ESP<30>=
SHA:<8>
SHA_FLAGS:<100>
UHA:<10>
ISC:<0>
BAYES:<-1>
SenderID:<0>
DKIM:<0>
TS:<13>
SIG:<gHcABoAUAAITVFMyMC0xN0w1LTJPVTQtUFNES4AEAAEALtwTgAIABQACgAgA
BAdEWUZYNVAxgBkABxhNZGJQNE5GcTZURzNQRm5YNE1DSndBPT2ADQAIDDIu
MC4zLjAyLTk1M4AEAAkDSU0ggAcACgY2LjcuMiAAAAAAgIAACYABAA8CgAgA
B0tzOvoqJRXUgAQAAp04dGKACAATkXlSJsxEUWqACAAJKqyxZC/EJDSACAAK
y4fuIMQO+zGACQALWik1o1tA1uoAgAgACJO4ha3+DaCJgAQADAAAAQ+AFAAD
AAAAAtuANhau2Fsscxk90ErdrkiAAgAEAAAAAAAA>
DSC:<0>
TRU_spam1: <0>
TRU_freehosting: <0>
TRU_money_spam: <0>
TRU_urllinks: <0>
TRU_medical_spam: <0>
TRU_lotto_spam: <0>
TRU_watch_spam: <0>
TRU_legal_spam: <0>
TRU_scam_spam: <0>
TRU_adult_spam: <0>
TRU_playsites: <0>
TRU_stock_spam: <0>
TRU_phish_spam: <0>
URL Real-Time Signatures: <0>
TRU_profanity_spam: <0>
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by pgccportafree.portafree.com id rBDKXSsQ009720
Status: R


Do you need business or personal loan? Contact us via Email: [email protected]
Contact us with info
Applicant name:
Amount Needed:
Loan Duration:
Phone Number:
NOTE: Forward your response only to this Email: [email protected]

Please DO NOT tell a scammer that he has been posted here!

If you wish you can email me at
faizandocherty @ scamwarners [dot] com

How do I find email headers???

How to analyze an email header.
Advertisement

Who is online

Users browsing this forum: ClaudeBot and 13 guests