Has someone offered you a huge sum of money or a valuable consignment? It's a 419 or advance fee fraud - find out how they work, and what to do to be safe.
by Faizan Docherty Fri Dec 05, 2014 9:11 pm
ipTRACKERonline.com wrote:Header Analysis Quick Report
Originating IP: 190.41.235.179
Originating ISP: Telefonica Del Peru
City: Lima
Country of Origin: Peru
* For a complete report on this email header goto ipTRACKERonline


Delivered-To: <snipped>
Received: by 10.25.145.137 with SMTP id t131csp244932lfd;
Fri, 5 Dec 2014 12:38:00 -0800 (PST)
X-Received: by 10.70.47.195 with SMTP id f3mr31278945pdn.156.1417811879285;
Fri, 05 Dec 2014 12:37:59 -0800 (PST)
Return-Path: <[email protected]>
Received: from mail.ec3s.com ([123.103.16.231])
by mx.google.com with ESMTP id gh3si33093424pac.177.2014.12.05.12.37.57
for <multiple recipients>;
Fri, 05 Dec 2014 12:37:59 -0800 (PST)
Received-SPF: softfail (google.com: domain of transitioning [email protected] does not designate 123.103.16.231 as permitted sender) client-ip=123.103.16.231;
Authentication-Results: mx.google.com;
spf=softfail (google.com: domain of transitioning [email protected] does not designate 123.103.16.231 as permitted sender) [email protected];
dkim=pass [email protected]
Message-Id: <548217a7.63bd420a.0455.ffffba6bSMTPIN_ADDED_MISSING@mx.google.com>
Received: from localhost (localhost [127.0.0.1])
by oldmail.ec3s.com (Postfix) with ESMTP id 247641ED5EA;
Fri, 5 Dec 2014 23:52:25 +0800 (CST)
X-Virus-Scanned: amavisd-new at ec3s.com
Received: from mail.ec3s.com ([127.0.0.1])
by localhost (mail.ec3s.com [127.0.0.1]) (amavisd-new, port 10024)
with ESMTP id asPM1j85KNFW; Fri, 5 Dec 2014 23:52:19 +0800 (CST)
Received: from User (unknown [190.41.235.179])
by oldmail.ec3s.com (Postfix) with ESMTPA id 41DBD1ED03B;
Fri, 5 Dec 2014 23:51:47 +0800 (CST)
X-DKIM: Sendmail DKIM Filter v2.8.3 oldmail.ec3s.com 41DBD1ED03B
DKIM-Signature: <snipped>
Reply-To: <[email protected]>
From: "Stanley"<[email protected]>
Subject: RE: URGENT
Date: Fri, 5 Dec 2014 10:52:09 -0500
MIME-Version: 1.0
Content-Type: text/plain;
charset="Windows-1251"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000


Hello,
My name is Paul Stanley , Chief Financial Officer of Ulster Bank Group, I am in possession of the sum of 50,000,000.(Fifty Million United States Dollars which belong to a late customer of my bank who died declaring no next of kin.I can make you the next of kin and arrange for this Money to be transferred to your detailed Account if we have a good understading Reply me if interested so i can give you more details.But if you feel is a Scam then i will advice you dont respond back
Regards,
Paul Stanley
Tel:+447024080645

Please DO NOT tell a scammer that he has been posted here!

If you wish you can email me at
faizandocherty @ scamwarners [dot] com

How do I find email headers???

How to analyze an email header.
Advertisement

by Faizan Docherty Sun Dec 14, 2014 11:07 am
ipTRACKERonline.com wrote:Header Analysis Quick Report
Originating IP: 201.127.46.91
Originating ISP: Uninet S.a. De C.v.
City: Monclova
Country of Origin: Mexico
* For a complete report on this email header goto ipTRACKERonline


Delivered-To: <snipped>
Received: by 10.25.141.131 with SMTP id p125csp239869lfd;
Sat, 13 Dec 2014 00:46:49 -0800 (PST)
X-Received: by 10.68.174.131 with SMTP id bs3mr33354956pbc.20.1418460408518;
Sat, 13 Dec 2014 00:46:48 -0800 (PST)
Return-Path: <[email protected]>
Received: from mail.nisso.co.jp (mail.nisso.co.jp. [210.170.63.143])
by mx.google.com with ESMTPS id sf7si5276529pbb.127.2014.12.13.00.46.39
for <multiple recipients>
(version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128);
Sat, 13 Dec 2014 00:46:48 -0800 (PST)
Received-SPF: pass (google.com: domain of [email protected] designates 210.170.63.143 as permitted sender) client-ip=210.170.63.143;
Authentication-Results: mx.google.com;
spf=pass (google.com: domain of [email protected] designates 210.170.63.143 as permitted sender) [email protected]
Received: from User (dsl-201-127-46-91-dyn.prod-infinitum.com.mx [201.127.46.91] (may be forged))
(authenticated bits=0)
by mail.nisso.co.jp with ESMTP id sBD8jvbe024388-sBD8jvbg024388;
Sat, 13 Dec 2014 17:45:58 +0900
Message-Id: <[email protected]>
Reply-To: <[email protected]>
From: "Stanley"<[email protected]>
Subject: Urgent Please Respond
Date: Sat, 13 Dec 2014 02:45:54 -0600
MIME-Version: 1.0
Content-Type: text/plain;
charset="Windows-1251"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000


Hello,
My name is Paul Stanley , Chief Financial Officer of Ulster Bank Group, I am in possession of the sum of 50,000,000.(Fifty Million United States Dollars which belong to a late customer of my bank who died declaring no next of kin.I can make you the next of kin and arrange for this Money to be transferred to your detailed Account if we have a good understading Reply me if interested so i can give you more details.But if you feel is a Scam then i will advice you dont respond back
Regards,
Paul Stanley
Tel:+447024080645

Please DO NOT tell a scammer that he has been posted here!

If you wish you can email me at
faizandocherty @ scamwarners [dot] com

How do I find email headers???

How to analyze an email header.

Who is online

Users browsing this forum: ClaudeBot, Google [Bot] and 43 guests