|
|
|
|
|
|
|
|
|
|
From: Garamov, Iuriy
Garamov, Iuriy
|
|
|
|
|
|
|
|
|
Date Reported: 10th May 2015 |
Risk Level: MEDIUM-HIGH |
|
|
|
|
|
Email Subject: |
From: Garamov, Iuriy |
|
Apparent Sender: |
Garamov, Iuriy |
|
Return Address: |
Not found |
|
Email Format: |
HTML |
|
URL of Web Content: |
http://www.hsdex.com/name.php |
|
Anchor text of URLs: |
1) , "arev1998" , "jenninah" , "arevat garamova 26" , "sweetzdulce" , "natelka" , "arev1998" , "lentmay" , "natellavg" , "arev 1998" , "ingrambp" , "spoof"
MIME-Version: 1.0
Content-Type: text/html; charset=us-ascii
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - gvo255173.gvodatacenter.com
X-AntiAbuse: Original Domain - millersmiles.co.uk
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - rodnorman.com
X-Get-Message-Sender-Via: gvo255173.gvodatacenter.com: authenticated_id: -censored by MillerSmiles-
X-Source:
X-Source-Args:
X-Source-Dir:
Hi! How are you?News from Oprah: http://www.hsdex.com/name.php |
|
Location: |
HANGZHOU, ZHEJIANG, CHINA |
|
Scam number: |
23669-65469-260447 |
|
Comments: |
- Email asks you to confirm/update/verify your account data at Garamov, Iuriy by visiting the given link. You will be taken to a spoof website where your details will be captured for the phishers.
- Garamov, Iuriy never send their users emails requesting personal details in this way.
- The anchor text appears as a legitimate URL, but don't be fooled - clicking on it will take you to a phishing site!
|
|
|
|
|
|
|
|
|
Return-path: Envelope-to: spoof@millersmiles.co.uk Delivery-date: Sun, 10 May 2015 11:09:39 +0100 Received: from jasonallenonline.co.uk ([199.116.255.173]:34060 helo=gvo255173.gvodatacenter.com) by server5.webserver25.net with esmtps (TLSv1:DHE-RSA-AES256-SHA:256) (Exim 4.85) (envelope-from ) id 1YrOB1-0008LR-MO for spoof@millersmiles.co.uk; Sun, 10 May 2015 11:09:39 +0100 Received: from [105.103.221.47] (portC25 helo=rodnorman.com) by gvo255173.gvodatacenter.com with esmtpa (Exim 4...
|
|
|
|
Website: |
|
|
|
|
|
|
|
|
|
|
|
|
See our most recent scam reports |
|
Browse our scam report archives |
|
Search |
Please send us any scam/phishing emails you have received by reporting them here
For access to our huge blacklist of domain names and to sign up to our live feed of ALL the scams we receive please take a look at our Honeytrap service
If you have received the email below, please remember that it is very common for these email scams to be redistributed at a later date with only slightly different content, such as a different subject or return address, or with the fake webpage(s) hosted on a different webserver.
We aim to report every variant of the scams we receive, so even if it appears that a scam you receive has already been reported, please submit it to us anyway.
|
|
|
|
|
|