Has someone offered you a huge sum of money or a valuable consignment? It's a 419 or advance fee fraud - find out how they work, and what to do to be safe.
by Faizan Docherty Mon Oct 07, 2013 12:56 am
ipTRACKERonline.com wrote:Header Analysis Quick Report<br>Originating IP: 36.37.196.187<br>Originating ISP: Viettel (cambodia) Pte., Ltd.<br> City: Phnom Penh<br>Country of Origin: Cambodia<br>* For a complete report on this email header goto ipTRACKERonline


From Mr. Sopha Chum. Wed Oct 2 13:51:19 2013
X-Apparently-To: <snipped> via 98.139.210.165; Mon, 07 Oct 2013 01:19:26 +0000
Return-Path: <[email protected]>
X-YahooFilteredBulk: 174.142.138.143
Received-SPF: none (domain of nx22.irchatan.com does not designate permitted sender hosts)
X-YMailISG: <snipped>
X-Originating-IP: [174.142.138.143]
Authentication-Results: mta1519.mail.gq1.yahoo.com from=; domainkeys=neutral (no sig); from=yahoo.com; dkim=neutral (no sig)
Received: from 127.0.0.1 (EHLO nx22.irchatan.com) (174.142.138.143)
by mta1519.mail.gq1.yahoo.com with SMTP; Mon, 07 Oct 2013 01:19:25 +0000
Received: from nobody by nx22.irchatan.com with local (Exim 4.80.1)
(envelope-from <[email protected]>)
id 1VRTOB-0001IW-KV
for <snipped>; Thu, 03 Oct 2013 00:21:19 +0330
To: <snipped>
Subject: GOOD NEWS
X-PHP-Script: helli852.ir/wp-content//themes/moharam/cache/errr.php for 36.37.196.187
From: Mr. Sopha Chum. <[email protected]>
Reply-To: [email protected]
MIME-Version: 1.0
Content-Type: text/plain
Content-Transfer-Encoding: 8bit
Message-Id: <[email protected]>
Date: Thu, 03 Oct 2013 00:21:19 +0330
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - nx22.irchatan.com
X-AntiAbuse: Original Domain - yahoo.com
X-AntiAbuse: Originator/Caller UID/GID - [99 99] / [0 0]
X-AntiAbuse: Sender Address Domain - nx22.irchatan.com
X-Get-Message-Sender-Via: nx22.irchatan.com: uid via acl_c_vhost_owner from authenticated_id: nobody from /only user confirmed/virtual account not confirmed
Content-Length: 1574


Dear Friend,

We can not transfer your fund to another person as the bank records have showed that all the entire transfer documents have already been confirmed in your name.

I have made several procedures for onward shipment of your fund of US$3.700,000.00 (Three Million Seven Hundred United States Dollars). Through Diplomatic Immunity to INDIA, DUBAI, SAUDI ARABIA, MALAYSIA, UNITED KINGDOM, AMSTERDAM NETHERLANDS, SPAIN, QATAR, as was concluded, you have to choose any of the countries in other to clear your fund.

Necessary arrangements have been madeand perfected for the delivery of your consignment via Diplomatic Immunity, packaged and disguised as Arti -Facts belonging to you and will be delivered to you without stress. This is to enable the Diplomat to carry out his duty perfectly. The content has been declared as Arti -Facts for security reasons since the Diplomat does not know that the content of the box is money but Arti fact. The immunity of the Diplomat provides guaranteed water tight and unquestionable secrecy and more importantly utmost safety for the funds.

PLEASE, DO RECONFIRM YOUR FULL NAMES, YOUR ADDRESS, YOUR DIRECT MOBILE NUMBER AND YOUR PASSPORT COPY WHERE THE DIPLOMAT WILL MAKE DELIVERY BECAUSE YOU WILL CALL AT THE TIME UPON DELIVERY.

At the receipt of your mail today or Tomorrow, I will furnish you with the details of the diplomat, date of arrival hopefully within the week. Hence there is need to hear form you within 48hrs.

I will get you posted soon and please revert.

Best Regards,
Mr. Sopha Chum.
[email protected]

Please DO NOT tell a scammer that he has been posted here!

If you wish you can email me at
faizandocherty @ scamwarners [dot] com

How do I find email headers???

How to analyze an email header.
Advertisement

Who is online

Users browsing this forum: Bing [Bot], ClaudeBot, Majestic-12 [Bot] and 27 guests