Thursday, October 16, 2014

88nw74p


csui
2014/10/16

Email analysis :

NOTE : Return-Path : < weiqiangtpab@sohu.com >
NOTE : Received : from unknown (HELO websmtp.sohu.com) (61.135.181.42)
NOTE : Received : from ovfbwffr (unknown [58.251.146.199])
NOTE : by websmtp.sohu.com (Postfix)
NOTE : Mime-Version : 1.0
NOTE : X-Priority : 1
NOTE : X-Msmail-Priority : High
NOTE : X-Mailer : Microsoft Outlook Express 6.00.2900.5512
NOTE : X-Mimeole : Produced By Microsoft MimeOLE V6.00.2900.5512
NOTE : X-Sohu-Antispam-Bayes : 0
NOTE : 88nw74p

SECRET SERVICE, DEPARTMENT OF HOMELAND SECURITY

Our MailScanner believes that the attachment to this message sent to you

From: fbh@dhs.gov
Subject: SECRET SERVICE, DEPARTMENT OF HOMELAND SECURITY

is Unsolicited Commercial Email (spam). Unless you are sure that this message is incorrectly thought to be spam, please delete this message without opening it. Opening spam messages might allow the spammer to verify your email address. If you believe that this message has been incorrectly marked as spam, please forward this email to postmaster.

Date: 20141016

pts rule name description
---- ---------------------- --------------------------------------------------
-1.4 ALL_TRUSTED Passed through trusted hosts only via SMTP
0.0 MISSING_MID Missing Message-Id: header
1.8 SUBJ_ALL_CAPS Subject is all capitals
1.6 MISSING_HEADERS Missing To: header
1.8 MILLION_USD BODY: Talks about millions of dollars
1.2 US_DOLLARS_3 BODY: Mentions millions of $ ($NN,NNN,NNN.NN)
0.0 HTML_MESSAGE BODY: HTML included in message
1.7 MIME_HTML_ONLY BODY: Message only has text/html MIME parts
0.0 FORGED_OUTLOOK_TAGS Outlook can't send HTML in this format
2.0 ADVANCE_FEE_2 Appears to be advance fee fraud (Nigerian 419)
0.0 FORGED_OUTLOOK_HTML Outlook can't send HTML message only
4.2 FORGED_MUA_OUTLOOK Forged mail pretending to be from MS Outlook

< Pièce jointe.eml >

Content of mail :

SECRET SERVICE, DEPARTMENT OF HOMELAND SECURITY
U.S. DEPARTMENT OF HOMELAND SECURITY
WASHINGTON,DC 20528,USA.

Good day, This is the Department of Homeland Security we have vital mission: to secure the nation from the many threats we face as well as internet Fraud. This requires the dedication of more than 230,000 employees in jobs that range from aviation and border security to emergency response, from cyber security analyst to chemical facility inspector. Our duties are wide-ranging, but our goal is clear - keeping America safe.

We are happy to inform you that your funds valued at US$10,700,000.00 (Ten million Seven Hundred Thousand United States Dollars) have been approved by the Treasury Department of the United States.
Kindly get back to us for further directives.

Note: Do not reply to any e-mail that comes from the FBI Director Robert S. Mueller III. The FBI director does not e-mail people; He will rather send an agent to your door step in person. Do not fall a victim of scam again, a word is enough for the wise.

Thank you and have a good day.
Signed: Joseph P Clancy

Director, United States Secret Service
U.S. Department of Homeland Security
Washington, DC 20528,USA

Email analysis :

Received: from User (unknown [204.188.195.181])


NOTE : (Authenticated sender: sales)
NOTE : by computerhouseltd.com.hk (Postfix)
NOTE : Reply-To:
NOTE : From: "U.S. DEPARTMENT OF HOMELAND SECURITY"
NOTE : Subject: SECRET SERVICE, DEPARTMENT OF HOMELAND SECURITY
NOTE : MIME-Version: 1.0
NOTE : Content-Type: text/html;
NOTE : charset="Windows-1251"
NOTE : Content-Transfer-Encoding: 7bit
NOTE : X-Priority: 3
NOTE : X-MSMail-Priority: Normal
NOTE : X-Mailer: Microsoft Outlook Express 6.00.2600.0000
NOTE : X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000

TV sem mensalidades - Assista 3000 canais

Conheça agora o primeiro e melhor sistema de TV pelo computador do Brasil. Você poderá assistir a todos os canais pagos, sem pagar mensalidade, sem instalar nada no computador, e de qualquer computador em que estiver. Veja abaixo algumas das vantagens exclusivas do nosso sistema: QUALQUER PESSOA PODE ADQUIRIR TV NO PC Você pode assistir em qualquer Computador ou Notebook com Internet banda larga. O QUE É O Super Guia de TV no seu Computador? É um Guia de Canais Online, ao vivo e vídeos da internet, com os quais é possível receber e assistir variados canais de TV e Rádio do mundo inteiro. NÃO PRECISA INSTALAR NENHUM PROGRAMA EM SEU COMPUTADOR Enviaremos uma senha de acesso em seu email para você assistir TV Ao Vivo em tempo real, 24 horas por dia,não importa aonde você esteja, no trabalho, em casa, no lazer, etc, basta sempre acessar seu canais online através da internet a qualquer hora do dia. FÁCIL ACESSO: Interface de fácil acesso através de senha, tudo em português. Em LINUX ou WINDOWS. Basta ter um navegador de Internet, conexão Banda Larga e Windows Media Player. TECNOLOGIA DIGITAL VIA INTERNET: Esta nova tecnologia chegou para proporcionar a você uma programação infinita de canais, sem cobrança de mensalidades. PROGRAMAÇÃO COMPLETA: Assista filmes, programas jornalísticos, de entretenimento, culturais, documentários, canais de videoclipes, em qualquer lugar do mundo. MAIS DE 10.000 CANAIS: Assista de mais de 180 países diferentes no mundo. São mais de 10.000 canais de TV e rádio disponíveis para sua escolha. TVs DO MUNDO INTEIRO: Transmissão de TV do Brasil e de todos os países do mundo em tempo real! SUPER FÁCIL DE USAR: Seletor rápido de canais na tela do seu computador. Basta selecionar o país e a programação desejada, e pronto! NENHUM APARELHO PRECISA SER INSTALADO NO SEU COMPUTADOR: Somente é necessário um computador ou notebook conectado à Internet e mais nada! SEM PAGAMENTOS MENSAIS OU ASSINATURA: Sem nenhuma taxa extra. Sem mensalidades. Você nunca será cobrado por nada. Somente a taxa de aquisição.

Estamos esperando por você.

Atenciosamente,

Equipe de divulgação - TV2010
http://togoto.us/pxc

CLICK : http://togoto.us/pxc
REDIRECT : https://www.tv-ao-vivo.net/utc

tv-ao-vivo.net whois :

Domain Name: TV-AO-VIVO.NET
Registry Domain ID: 1859930449_DOMAIN_NET-VRSN
Registrar WHOIS Server: whois.enom.com
Registrar URL: www.enom.com
Updated Date: 2014-05-23 10:12:09Z
Creation Date: 2014-05-23 17:11:00Z
Registrar Registration Expiration Date: 2015-05-23 17:11:00Z
Registrar: ENOM, INC.
Registrar IANA ID: 48
Registrar Abuse Contact Email: abuse@enom.com
Registrar Abuse Contact Phone: +1.4252982646
Domain Status: clientTransferProhibited
Registrant Name: LEANDRO DIA
Registrant Street: PRA?A TR?S PODERES
Registrant City: BRASILIA
Registrant State/Province: DF
Registrant Postal Code: 70150-900
Registrant Country: BZ
Registrant Phone: +501.999994444
Registrant Email: INFO@MEUDOMINIO.INFO
Admin Name: LEANDRO DIA
Admin Street: PRA?A TR?S PODERES
Admin City: BRASILIA
Admin State/Province: DF
Admin Postal Code: 70150-900
Admin Country: BZ
Admin Phone: +501.999994444
Admin Email: INFO@MEUDOMINIO.INFO
Tech Name: LEANDRO DIA
Tech Street: PRA?A TR?S PODERES
Tech City: BRASILIA
Tech State/Province: DF
Tech Postal Code: 70150-900
Tech Country: BZ
Tech Phone: +501.999994444
Tech Email: INFO@MEUDOMINIO.INFO
Name Server: ANDY.NS.CLOUDFLARE.COM
Name Server: LADY.NS.CLOUDFLARE.COM
DNSSEC: unSigned

RE: Specialize in IP Camera

Dear Purchasing Manager,

This is BASCCTV.

Writing to introduce Hot IP Cameras & NVRs to you. It's time to updater your security cameras now


Any question or demand you have, pls don't hesitate to contact us

Best regards!

Limy
(Sales and Marketing Department)

-----------------------------------------------------------------

Bas Science And Technology Limited
Add: No.702,7th Floor Building D,Xintang Business Park, Daguan Road,
Tianhe District,Guangzhou China
Tel:0086-2082170827 Fax:0086-2082170826
Mail:sales6@basnsms.com
skype:bascctv10 Web:www.bascctv.com

bascctv.com whois :

Domain Name ..................... bascctv.com
Name Server ..................... ns1.dns100.net ns2.dns100.net
Registration Date ............... 2013-07-15 00:00:00
Expiration Date ................. 2016-07-15 00:00:00
Registrant Name ................. WHOIS AGENT
Registrant Organization ......... DOMAIN WHOIS PROTECTION SERVICE
Registrant Address .......... Room 513, Building A, Suifeng Mansion, No. 75 Xianliezhong Road
Registrant City ................. Guangzhou
Registrant Province/State ....... Guangdong Registrant Postal Code .......... 510059
Registrant Country Code ......... CN
Registrant Phone Number ......... +86.2037588345
Registrant Fax .................. +86.2037588178
Registrant Email ................ Whoisprotection@topvhost.com
Administrative Name ............. WHOIS AGENT
Administrative Organization ..... DOMAIN WHOIS PROTECTION SERVICE
Administrative Address ...... Room 513, Building A, Suifeng Mansion, No. 75 Xianliezhong Road
Administrative City ............. Guangzhou Administrative Province/State ... Guangdong
Administrative Postal Code ...... 510059
Administrative Country Code ..... CN
Administrative Phone Number ..... +86.2037588345
Administrative Fax .............. +86.2037588178
Administrative Email ............ Whoisprotection@topvhost.com
Technical Name .................. WHOIS AGENT
Technical Organization .......... DOMAIN WHOIS PROTECTION SERVICE
Technical Address ........... Room 513, Building A, Suifeng Mansion, No. 75 Xianliezhong Road
Technical City .................. Guangzhou
Technical Province/State ........ Guangdong
Technical Postal Code ........... 510059
Technical Country Code .......... CN
Technical Phone Number .......... +86.2037588345
Technical Fax ................... +86.2037588178
Technical Email ................. Whoisprotection@topvhost.com
Billing Name .................... WHOIS AGENT
Billing Organization ............ DOMAIN WHOIS PROTECTION SERVICE
Billing Address ................. Room 513, Building A, Suifeng Mansion, No. 75 Xianliezhong Road
Billing City .................... Guangzhou
Billing Province/State .......... Guangdong
Billing Postal Code ............. 510059
Billing Country Code ............ CN
Billing Phone Number ............ +86.2037588345
Billing Fax ..................... +86.2037588178
Billing Email ................... Whoisprotection@topvhost.com

Dear Friend (Abandoned Treasure At The Atlanta Airport In Your Name)

Dear Friend,

Please I have an abandoned UN consignment box at the Atlanta Airport in your name and it shows to contain Federal Reserve Notes on the X-ray result from Customs. This package shows it belongs to you and has been abandoned for over one year at this facility so get back to if it is yours to ensure we can work out the modalities of getting the item to your location.

Regards,

Mr. Augustus Hudson
Security/Inspection Manager
Hartsfield-Jackson Atlanta International Airport
P.O. Box 20509 Atlanta, GA 30320
Tel: (404) 369-5836
Fax: (404) 530-6667
Private Email: ( augustushudson@aol.com )

Email analysis :

NOTE : Return-Path : < suad.horozovic@bih.net.ba >
NOTE : Received : from hosting0-win.per.eftel.com (HELO mail.hosting0-win.per.eftel.com)
NOTE : (203.24.100.43)
NOTE : Received : from User ([204.44.118.206])
NOTE : Mime-Version : 1.0
NOTE : Content-Type : text/plain; charset="Windows-1251"
NOTE : Content-Transfer-Encoding : 7bit
NOTE : X-Priority : 3
NOTE : X-Msmail-Priority : Normal
NOTE : X-Mailer : Microsoft Outlook Express 6.00.2600.0000
NOTE : X-Mimeole : Produced By Microsoft MimeOLE V6.00.2600.0000
Dear Friend (Abandoned Treasure At The Atlanta Airport In Your Name) unasco.com.au

unasco.com.au whois :

Domain Name unasco.com.au
Last Modified 06-Jun-2013 06:10:08 UTC
Registrar ID NetRegistry
Registrar Name NetRegistry
Status ok
Registrant Unasco Pty Ltd
Registrant ID OTHER 000 396 261
Eligibility Type Other
Registrant Contact ID JOIA1099
Registrant Contact Name Ian Johnson
Registrant Contact Email ian@isee.com.au
Tech Contact ID TPP370930-C
Tech Contact Name Platform Hostmaster
Tech Contact Email hostmaster@platformnetworks.net
Name Server nsa.ozhosting.com
Name Server nsb.ozhosting.com

Col.Wayne

Greetings! Sir/Madam,

I want to trust you with this confidential proposal. Before I continue, let me introduce myself to you, I am Colonel.Wayne Larry the commander of the Special N.A.T.O coalition force with the United Nation troops in Afghanistan, on war against terrorism. I was working with General Stanley McChrystal, the former commander of U.S and NATO forces in Afghanistan before he was replaced last June by another General David Petraeus. I am serving currently in a Taliban territory; a remote Village in Bamyan province to the bustling capital Kabul (CBC's Doc Zone).

Because of series of killing of United States troops in Afghanistan especially the shot down of US helicopter that killed 30 American soldiers on the 5th of August 2011 and the five American soldiers who were killed by a bomb in Afghanistan on Thursday. After this series of killing I and my colleague decided to share the money we recovered on our raids on terrorist's camp in Afghanistan. I have now in my possession the sum of US$13 Million (Thirteen million US Dollars).

I have carefully packaged the money in a box, I have made contact with a friend who is working with the RED CROSS office here in Kabul. He will assist me move the consignment out of the trouble area down to your country which would be the only safer means of moving it out of this hell place, Arrangement has been fully made to move out the Consignment as a diplomatic luggage, I have already told him that the luggage belongs to one of our soldier that died during the attack but before giving up he told me to make sure the luggage get to his family successfully,for safe keep and to make contacts for its proper use.

So I need someone I can work with on trust and that is why I contacted you. So if you accept, I will put you forward as the beneficiary/owner of the funds and then the box shall be registered for delivering on your name as the beneficiary and the RED CROSS Agent will deliver the box to you anywhere in the world. I just need your acceptance and all is done. I have 100% assurance that you will surely receive the box without any hitch through RED CROSS CARGO SHIPMENT, as every arrangement will be handled to proceed to your country.

Once I confirm your interest to my proposal, and your positive reply I will proceed with the arrangement to move the consignment out of the trouble area and register your name as the beneficiary then move the consignment to your designated address in your country. I am willing to give you 30% of the total sum when the money is delivered to you. I wait for your response so we can proceed immediately. In less than 7days the money should be in your safe custody.

The only telephone access we have here is radio message which is for our general use and is being monitored, therefore all communication will be via email till we finish our assignment. Please keep it to your self even if you are not interested, thank God for President Barrack Obama whose keen interest is to call us back home soon.

Regards,
Colonel.Wayne Larry.