件名:Payment transfer slipは迷惑メールです。

送付先は、中継されている。
内容では、ウィルス付きですね
このような訳の分からんのは捨てましょう。

件名
Are you still alive
差出人
From: “paul c pollard”
返信先
paulpollard2@aol.com
宛先
undisclosed-recipients
内容

Hi,
The payment Receipt is attached.
Yours sincerely.
Afnan Hasoneh

添付ファイル
Slip_pdf.exe
———————————————
ソース
From – Mon May 22 2017
X-Account-Key:
X-UIDL:
X-Mozilla-Status:
X-Mozilla-Status2:
X-Mozilla-Keys:
Return-Path:
X-Original-To:
Delivered-To:
Received: from amout07.alpha-mail.net (amout07.alpha-mail.net [216.230.254.47])
by (Postfix) with ESMTP id
for ; Sun, 21 May 2017 23:27:51 +0900 (JST)
Received: from webarc04.alpha-mail.jp (webarc04 [216.230.254.84])
by amout07.alpha-mail.net with ESMTP id ;
Sun, 21 May 2017 23:27:35 +0900
X-Virus-Scanned: amavisd-new at Alpha-Mail Out
Received: from ISVW07 (amis07 [216.230.254.37])
by webarc04.alpha-mail.jp (Postfix) with SMTP id ;
Sun, 21 May 2017 23:27:26 +0900 (JST)
Received: from 216.230.254.28 by ISVW07 (InterScan VirusWall); Sun, 21 May +0900
Received: from User (unknown [89.33.246.82])
by amsub02.alpha-mail.net (Alpha-mail) with ESMTP id E69CFB4004F;
Sun, 21 May 2017 (JST)
From: “Afnan Hasoneh”
Subject: Payment transfer slip
Date: Sun, 21 May 2017
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary=”—-=_NextPart_000_00D6_01C2A9A6.42A78C16″
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000
Message-Id: <@amsub02.alpha-mail.net>
To: undisclosed-recipients:;

———————————————
Received: from amout07.alpha-mail.net (amout07.alpha-mail.net [216.230.254.47])
IPv4 address:

216.230.254.47
IPv4 expanded:

216.230.254.047
IPv4 decimal:

3639017007
Internet service provider:
Pacific Software Publishing
Organization:
Pacific Software Publishing
Country name:
United States
Country ISO alpha-2 code:
US
State:
Washington
City:
Seattle
DMA code:
819
Timezone:
America/Los_Angeles
Longitude:
-122.2712
Latitude:
47.5407
WHOIS last updated:
new WHOIS data is currently unavailable for all requests [GL3000-3000]. Try again in 26 min, 8 sec.
Reverse DNS host:
alpha-mail.net
Reverse DNS pointer:
amout07.alpha-mail.net
Reverse DNS in-addr.arpa:
47.254.230.216.in-addr.arpa domain name pointer amout07.alpha-mail.net.
Reverse DNS last updated:
0 seconds ago on May 21, 2017, 11:33 pm GMT Time
Reverse DNS next check:
in 5 months, 29 days on May 21, 2017, 11:33 pm GMT Time
———————————————
Received: from webarc04.alpha-mail.jp (webarc04 [216.230.254.84])
IPv4 address:

216.230.254.84
IPv4 expanded:

216.230.254.084
IPv4 decimal:

3639017044
Internet service provider:
Pacific Software Publishing
Organization:
Pacific Software Publishing
Country name:
United States
Country ISO alpha-2 code:
US
State:
Washington
City:
Seattle
DMA code:
819
Timezone:
America/Los_Angeles
Longitude:
-122.2712
Latitude:
47.5407
WHOIS last updated:
new WHOIS data is currently unavailable for all requests [GL3000-3000]. Try again in 25 min, 28 sec.
Reverse DNS host:
alpha-mail.jp
Reverse DNS pointer:
webarc04.alpha-mail.jp
Reverse DNS in-addr.arpa:
84.254.230.216.in-addr.arpa domain name pointer webarc04.alpha-mail.jp.
Reverse DNS last updated:
0 seconds ago on May 21, 2017, 11:34 pm GMT Time
Reverse DNS next check:
in 5 months, 29 days on May 21, 2017, 11:34 pm GMT Time
—————————————————–
Received: from ISVW07 (amis07 [216.230.254.37])
IPv4 address:

216.230.254.37
IPv4 expanded:

216.230.254.037
IPv4 decimal:

3639016997
Internet service provider:
Pacific Software Publishing
Organization:
Pacific Software Publishing
Country name:
United States
Country ISO alpha-2 code:
US
State:
Washington
City:
Seattle
DMA code:
819
Timezone:
America/Los_Angeles
Longitude:
-122.2712
Latitude:
47.5407
WHOIS last updated:
new WHOIS data is currently unavailable for all requests [GL3000-3000]. Try again in 24 min, 23 sec.
Reverse DNS host:
alpha-mail.net
Reverse DNS pointer:
amis07.alpha-mail.net
Reverse DNS in-addr.arpa:
37.254.230.216.in-addr.arpa domain name pointer amis07.alpha-mail.net.
Reverse DNS last updated:
0 seconds ago on May 21, 2017, 11:35 pm GMT Time
Reverse DNS next check:
in 5 months, 29 days on May 21, 2017, 11:35 pm GMT Time
————————————————————–
Received: from User (unknown [89.33.246.82])
IPv4 address:

89.33.246.82
IPv4 expanded:

089.033.246.082
IPv4 decimal:

1495397970
Internet service provider:
M247 Europe SRL
Organization:
M247 Europe SRL
Country name:
Romania
Country ISO alpha-2 code:
RO
Timezone:
Europe/Bucharest
Longitude:
25
Latitude:
46
WHOIS last updated:
new WHOIS data is currently unavailable for all requests [GL3000-3000]. Try again in 23 min, 29 sec.
Reverse DNS in-addr.arpa:
No valid reverse DNS record has been found at this time.
Reverse DNS last updated:
0 seconds ago on May 21, 2017, 11:36 pm GMT Time
Reverse DNS next check:
in 1 day on May 21, 2017, 11:36 pm GMT Time
Update DNS Records:

Enter to update DNS:
Bot/spider
No

コメントを残す

メールアドレスが公開されることはありません。 * が付いている欄は必須項目です