Monday, February 22, 2016

Limitation ! (Don't Ignore This E-mail )


Hello Client, Your Account logged from another device
IP Address Of Device : 180.151.40.175
Country : India

Fix It : http://tinyurl.com/PayTeam

Signed,
Security Team

all copyrights reserved ,call us at 65-6510-4584, 7:00 WIB to 21:00 WIB from Monday to Friday.

Phishing analysis :

CLICK : http://tinyurl.com/PayTeam
REDIRECT : http://just-eat.pk/Verification/Update/
SCREENSHOT :


CLICK : Log In
SCREENSHOT :


Email analysis :

NOTE : paypal@team.com
NOTE : X-Source : /usr/bin/php
NOTE : Sender Address Domain - server.bargainistascloset.com
NOTE : X-Source-Args : /usr/bin/php
NOTE : Return-Path : bargaini@server.bargainistascloset.com
NOTE : Mime-Version : 1.0
NOTE : X-Source-Dir : bargainistascloset.com:/public_html/barksdalemarine
NOTE : X-Priority : 1
NOTE : Message-Id : < *@barksdalemarine.com >
NOTE : X-Mailer : PHPMailer (phpmailer.sourceforge.net) [version ]
NOTE : X-Authenticated-Sender : server.bargainistascloset.com: bargaini
NOTE : Content-Transfer-Encoding : 8bit
NOTE : X-Get-Message-Sender-Via : server.bargainistascloset.com:
NOTE : authenticated_id: bargaini/only user confirmed/virtual account not confirmed
NOTE : Content-Type : text/html; charset="iso-8859-1"
NOTE : client-ip=162.144.77.64;
NOTE : Received : from bargaini
NOTE : by server.bargainistascloset.com with local (Exim 4.86)
NOTE : Limitation ! (Don't Ignore This E-mail )

just-eat.pk whois :

Contact Person : Enhance Technologies - eteck Imran Imran
Address : Rawalpindi
Country : Pakistan
Registered On : 11/12/2010
Expired On : 11/12/2016
Agent Name : eteck
Organization : Enhance Technologies - eteck
Name : Imran Faryad Imran Faryad
Address : Rawalpindi Punjab46000
Company : Enhance Technologies - eteck Imran Imran
Hosting Server Address : dns.site5.com
Hosting Server Address : dns2.site5.com

No comments:

Post a Comment