spamreports

fibank spam phishing

Oct 6th, 2019
259
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
HTML 6.68 KB | None | 0 0
  1. From - Sun Oct  6 11:43:33 2019
  2. X-Account-Key: account3
  3. X-UIDL: 1042748947.53780
  4. X-Mozilla-Status: 0001
  5. X-Mozilla-Status2: 00000000
  6. X-Mozilla-Keys:                                                                                
  7. Return-Path: <bestadv@sav.saversuper.info>
  8. Received: from mx2.mail.bg ([unix socket])
  9.      by stor3 (Cyrus 2.5.10-Debian-2.5.10-3) with LMTPA;
  10.      Sun, 06 Oct 2019 11:35:01 +0300
  11. X-Sieve: CMU Sieve 2.4
  12. X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on stor3.stor3
  13. X-Spam-Level: **
  14. X-Spam-Status: No, score=2.4 required=5.0 tests=BAYES_50,DKIM_ADSP_NXDOMAIN,
  15.     DKIM_SIGNED,DKIM_VALID,HTML_MESSAGE,MIME_HTML_ONLY shortcircuit=no
  16.     autolearn=no autolearn_force=no version=3.4.2
  17. Received-SPF: none (sav.saversuper.info: No applicable sender policy available) receiver=mx3.mail.bg; identity=mailfrom; envelope-from="bestadv@sav.saversuper.info"; helo=sav.saversuper.info; client-ip=216.172.179.34
  18. Authentication-Results: mx2.mail.bg; dkim=pass (1024-bit key)
  19.     header.i=@bestadvertising.us; dkim-adsp=nxdomain
  20. Received: from sav.saversuper.info (sav.saversuper.info [216.172.179.34])
  21.     (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits))
  22.     (No client certificate requested)
  23.     by mx2.mail.bg (Postfix) with ESMTPS id E127840F2FBF
  24.     for <@mail.bg>; Sun,  6 Oct 2019 11:35:00 +0300 (EEST)
  25. DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
  26.     d=bestadvertising.us; s=default; h=Date:Message-Id:From:Content-type:
  27.     MIME-Version:Subject:To:Sender:Reply-To:Cc:Content-Transfer-Encoding:
  28.     Content-ID:Content-Description:Resent-Date:Resent-From:Resent-Sender:
  29.     Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References:List-Id:
  30.     List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive;
  31.      bh=xZx8/oKNrAofCm4x8rTas+ew6xS5vQI7vGWTdvInI/w=; b=I0/7NrEYr1GvUEEBDkCN6Ewr2
  32.     qdOMtZrLYWl6pn0sF1jZ0csSSyVHeL9KBM8oaXSP+da1lq23uCWpV5LMW/HswHOXLhQK183Q2QlSD
  33.     LO3pHYmxWAZGp7pUIBDJ5raZdPMhcNQP1gGmotrV5eIzC2zvIMid79sTBd1JhbgeDtv+g=;
  34. Received: from bestadv by sav.saversuper.info with local (Exim 4.92)
  35.     (envelope-from <bestadv@sav.saversuper.info>)
  36.     id 1iH20J-0005DZ-CU
  37.     for @mail.bg; Sun, 06 Oct 2019 03:34:59 -0500
  38. To: @mail.bg
  39. Subject: Account -alert (case id # 098764774)
  40. X-PHP-Script: bestadvertising.us/wp-content/plugins/iamredj/mailer1.php for 197.0.176.98
  41. MIME-Version: 1.0
  42. Content-type: text/html; charset=iso-8859-1
  43. From: Fibank <ddonotrephere@fibnk.bg>
  44. Message-Id: <E1iH20J-0005DZ-CU@sav.saversuper.info>
  45. Date: Sun, 06 Oct 2019 03:34:59 -0500
  46. X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
  47. X-AntiAbuse: Primary Hostname - sav.saversuper.info
  48. X-AntiAbuse: Original Domain - mail.bg
  49. X-AntiAbuse: Originator/Caller UID/GID - [507 501] / [47 12]
  50. X-AntiAbuse: Sender Address Domain - sav.saversuper.info
  51. X-Get-Message-Sender-Via: sav.saversuper.info: authenticated_id: bestadv/only user confirmed/virtual account not confirmed
  52. X-Authenticated-Sender: sav.saversuper.info: bestadv
  53. X-Source: /opt/cpanel/ea-php70/root/usr/bin/php-cgi
  54. X-Source-Args: /opt/cpanel/ea-php70/root/usr/bin/php-cgi /home/bestadv/public_html/wp-content/plugins/iamredj/mailer1.php
  55. X-Source-Dir: bestadvertising.us:/public_html/wp-content/plugins/iamredj
  56.  
  57. <html>
  58.  
  59. <head>
  60. <meta http-equiv="Content-Type" content="text/html; charset=windows-1252">
  61. <title></title>
  62. </head>
  63.  
  64. <body>
  65.  
  66. <p align="center" style="font-family: Tahoma, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(255, 255, 255); text-decoration-style: initial; text-decoration-color: initial; font-size: 14px; color: rgb(51, 102, 255); margin: 0px; padding: 0px;">
  67. <font size="4" style="margin: 0px; padding: 0px;">Имаме нужда от твоята помощ</font></p>
  68. <p style="color: rgb(0, 0, 0); font-family: Tahoma, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(255, 255, 255); text-decoration-style: initial; text-decoration-color: initial; font-size: 14px; margin: 0px; padding: 0px;">Â </p>
  69. <p align="center" style="color: rgb(0, 0, 0); font-family: Tahoma, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(255, 255, 255); text-decoration-style: initial; text-decoration-color: initial; font-size: 14px; margin: 0px; padding: 0px;">
  70. Уважаеми потребители<br style="margin: 0px; padding: 0px;">
  71. Наскоро профилът ви беше маркиран поради потенциална връзка с някои измамни
  72. сделки.<br style="margin: 0px; padding: 0px;">
  73. За да избегнете евентуално ограничение на вашия акаунт<br style="margin: 0px; padding: 0px;">
  74. моля, потвърдете информацията си, като влезете в нашия мениджър по съдебни дела.</p>
  75. <p align="center" style="color: rgb(0, 0, 0); font-family: Tahoma, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(255, 255, 255); text-decoration-style: initial; text-decoration-color: initial; font-size: 14px; margin: 0px; padding: 0px;">
  76. <br style="margin: 0px; padding: 0px;">
  77. <font size="4">
  78. <a target="_blank" href="https://fbnk.bg-supervisor.cnfg.ld-details.net.mydogstuff.pw/bg">потвърдете сега</a></font></p>
  79.  
  80. </body>
  81.  
  82. </html>
Add Comment
Please, Sign In to add comment