Phish source

[!] This SBL record is to show an example of ongoing network abuse. It currently is not being published in the SBL list, but is instead being presented on the webpage so that the network owner has evidence to investigate and correct the problem.

w 209.85.208.66 mail-ed1-f66.google.com «mail-ed1-f66.google.com» 2021-12-04T18:20:00Z (+/-10 min)
w 209.85.208.67 mail-ed1-f67.google.com «mail-ed1-f67.google.com» 2021-12-04T17:20:00Z (+/-10 min)
w 209.85.208.68 mail-ed1-f68.google.com «mail-ed1-f68.google.com» 2021-12-04T16:40:00Z (+/-10 min)
w 209.85.208.193 mail-lj1-f193.google.com «mail-lj1-f193.google.com» 2021-12-04T16:40:00Z (+/-10 min)
209.85.208.0/24 (209.85.208.0 .. 209.85.208.255)

w+ 209.85.210.66 mail-ot1-f66.google.com «mail-ot1-f66.google.com» 2021-12-04T16:40:00Z (+/-10 min)
209.85.210.66/32 (209.85.210.66 .. 209.85.210.66)

w+ 209.85.219.196 mail-yb1-f196.google.com «mail-yb1-f196.google.com» 2021-12-04T17:10:00Z (+/-10 min)
209.85.219.196/32 (209.85.219.196 .. 209.85.219.196)

2607:f8b0:4864:20::/64 /mail-.*1-x.*4.*.google.com/ «/mail-.*1-x.*4.*.google.com/» 2021-12-04T17:40:00Z (+/-10 min)
2607:f8b0:4864:20::/64 (2607:f8b0:4864:20:: .. 2607:f8b0:4864:20::)

2a00:1450:4864:20::/64 mail-lf1-x141.google.com «mail-lf1-x141.google.com» 2021-12-04T17:30:00Z (+/-10 min)
2a00:1450:4864:20::/64 (2a00:1450:4864:20:: .. 2a00:1450:4864:20::)

== Sample ==========================

Received: by .* with SMTP id .*so.*..*
for <.*>; .*
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=gmail.com; s=20210112;
h=mime-version:reply-to:from:date:message-id:subject:to
:content-transfer-encoding;
bh=8R5Fe+yULH75FMhSw5SncwsK3xbWCasADG4F/Gir4Vs=;
b=.*0.*
.*y.*
.*h.*
.*V.*
.*3.*v.*
.*==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=1e100.net; s=20210112;
h=x-gm-message-state:mime-version:reply-to:from:date:message-id
:subject:to:content-transfer-encoding;
bh=8R5Fe+yULH75FMhSw5SncwsK3xbWCasADG4F/Gir4Vs=;
b=.*
.*
.*
.*
.*
.*==
X-Gm-Message-State: AOAM53.*=
X-Google-Smtp-Source: ABdhPJ.*y.*=
X-Received: by 2002:a.*:.*:: with SMTP id .*mr2.*3.*..*.163863.*9.*;
.*
MIME-Version: 1.0
Received: by 2002:a05:.*1.*:.*:.* with HTTP; Sat, 4 Dec 2021.*
.* (PST)
Reply-To: huanjlaying008@hotmail.com
From: Frau Huan Jlaying <.*>
Date: .*
Message-ID: <CA.*C.*@mail.gmail.com>
Subject: =?UTF-8?Q?Gesch=C3=A4ftsvorschlag?=
To: undisclosed-recipients:;
Content-Type: text/plain; charset=»UTF-8″
Content-Transfer-Encoding: quoted-printable
Bcc: .*

—=20
Guten Tag mein Name ist Frau Huan Jlayinga Ich bin Bankerin, der
Direktor f=C3=BCr Kredit & Marketing Wing Hang Bank, Hongkong, Wing Hang
Bank Center, 24 Des Voeux Road Central, Hongkong., Ich habe eine
gewisse Menge an Geldern, die ich aus dem Land bewegen m=C3=B6chte. Ich
brauche einen guten Partner, dem ich vertrauen kann. Es ist risikofrei
und legal. Antwort darauf

E-Mail: huanjlaying008@hotmail.com

Frau Huan Jlayinga

Опубликовано
В рубрике google.com

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *