Has someone offered you a huge sum of money or a valuable consignment? It's a 419 or advance fee fraud - find out how they work, and what to do to be safe.
by Faizan Docherty Wed Oct 02, 2013 9:02 am
ipTRACKERonline.com wrote:Header Analysis Quick Report<br>Originating IP: 190.82.95.253<br>Originating ISP: Telefonica Empresas<br> City: Santiago<br>Country of Origin: Chile<br>* For a complete report on this email header goto ipTRACKERonline


Delivered-To: <snipped>
Received: by 10.70.54.202 with SMTP id l10csp65336pdp;
Sun, 29 Sep 2013 10:41:33 -0700 (PDT)
X-Received: by 10.43.60.139 with SMTP id ws11mr13646158icb.12.1380476493259;
Sun, 29 Sep 2013 10:41:33 -0700 (PDT)
Return-Path: <[email protected]>
Received: from r8-chicago.webserversystems.com (r8-chicago.webserversystems.com. [184.154.1.124])
by mx.google.com with ESMTPS id je3si18576335icb.36.1969.12.31.16.00.00
(version=TLSv1 cipher=RC4-SHA bits=128/128);
Sun, 29 Sep 2013 10:41:33 -0700 (PDT)
Received-SPF: softfail (google.com: domain of transitioning [email protected] does not designate 184.154.1.124 as permitted sender) client-ip=184.154.1.124;
Authentication-Results: mx.google.com;
spf=softfail (google.com: domain of transitioning [email protected] does not designate 184.154.1.124 as permitted sender) [email protected];
dmarc=fail (p=NONE dis=NONE) header.from=gmail.com
Received: from 190-82-95-253.static.tie.cl ([190.82.95.253]:41739 helo=mail.startfire.cl)
by r8-chicago.webserversystems.com with esmtp (Exim 4.80)
(envelope-from <[email protected]>)
id 1VQKzr-0002XE-GV
for <snipped>; Sun, 29 Sep 2013 12:41:32 -0500
Received: from localhost (localhost.localdomain [127.0.0.1])
by mail.startfire.cl (Postfix) with ESMTP id 585D225B836F
for <<snipped>>; Sun, 29 Sep 2013 13:36:57 -0400 (CLT)
X-Virus-Scanned: amavisd-new at startfire.cl
Received: from mail.startfire.cl ([127.0.0.1])
by localhost (mail.startfire.cl [127.0.0.1]) (amavisd-new, port 10024)
with ESMTP id BgzxBM2+aJvC for <<snipped>>;
Sun, 29 Sep 2013 13:36:57 -0400 (CLT)
Received: from [192.168.2.100] (unknown [192.168.1.240])
by mail.startfire.cl (Postfix) with ESMTP id 59CC725B8359
for <<snipped>>; Sun, 29 Sep 2013 13:36:55 -0400 (CLT)
Content-Type: text/plain; charset="iso-8859-1"
MIME-Version: 1.0
Content-Transfer-Encoding: quoted-printable
Content-Description: Mail message body
To: <snipped>
From: [email protected]
Date: Mon, 30 Sep 2013 00:41:21 +0700
Reply-To: [email protected]
Message-Id: <[email protected]>
X-Spam-Status: Yes, score=10.6
X-Spam-Score: 106
X-Spam-Bar: ++++++++++
X-Spam-Report: Spam detection software, running on the system "r8-chicago.webserversystems.com", has
identified this incoming email as possible spam. The original message
has been attached to this so you can view it (if it isn't spam) or label
similar future email. If you have any questions, see
root\@localhost for details.


Dear Friend

It is my interest to contact you in respect of our client from your country, who share almost the same name with your name . I shall explain in details when I read your reply.You are my first contact, I shall wait for days and if I do not hear from you. I shall continue with my search, Thanks

Waiting to hear from you

Mr. Tep Sereya

Please DO NOT tell a scammer that he has been posted here!

If you wish you can email me at
faizandocherty @ scamwarners [dot] com

How do I find email headers???

How to analyze an email header.
Advertisement

Who is online

Users browsing this forum: ClaudeBot, Google [Bot] and 27 guests