Logo



If you cannot click the link above, Copy & Paste this link: http://whatiswrongww.com/neyJjIjogOTU2NCwgImYiOiAwLCAibSI6IDg2NTgsICJsIjogMzAsICJzIjogMSwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 6.6) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: whatiswrongww.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: whatiswrongww.com] 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: whatiswrongww.com] 0.0 FORGED_RELAY_MUA_TO_MX FORGED_RELAY_MUA_TO_MX 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Hello Dear I am indeed sorry for contacting you through this means. However, my names are Mrs Doris Abdullah al-Senussi, My Late Husband was One of Gadaffi security guard who keeps most of his valuables for him. My late husband was killed in the last air raid by NATO forces. Before my husband was killed he went to Dubai and Europe to deposit all the cash and gold we have kept in our house for his boss because since all other funds are being frozen by the western government. My late husband said In order to ensure that all his boss assets are not frozen by the western government, he moved some cash and gold which I will not mention the amount out through diplomatic security means as a consignment and deposited them in a Security Company in Asia and Europe,where they were registered as personal effects. I will tell you more about this when I hear from you. I beg you with Allah not to let any of Gadaffi?s officials or even the western government to know about these 2 consignments. I will tell you how the consignment will get to you as soon as I receive a reply from you showing your full interest and contact details.Meanwhile, you can contact me through this my privite E-mail contact: doris.abdullah111@gmail.com Regards, Doris Abdullah. SpamAssassin Report (spam score: 3.5) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (doris.abdullah111[at]gmail.com) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.44 listed in list.dnswl.org] 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 2.9 ADVANCE_FEE_4_NEW Appears to be advance fee fraud (Nigerian 419)
Click to view scam #129648 - Sent on June 16, 2015, 5:56 am by doris.abdullah111@gmail.com
From Mrs. Ajara wadrago. Greetings,I am writing this letter in confidence believing that if it is the wills of God for you to help me and my family, I am written you this letter with a tears in my eye, but if almighty Allah will use you to rescue me and my children in this case, let me introduce myself to you, I am Mrs. Ajara wadrago a wife of late Mr. Wadrago Abdullah the treasurer of the king in Ghana, my late husband has work with king for more than twenty years as a treasurer before the crisis last year and my husband fell sick. One morning he called me that he is not sure that he is going to survive this sickness in the sick bed and he said to me he have the sum of £1.200 000, 00, million, in a security company, and I ask him how come about this money and he said to me that a gold company and cutting wood company here paid it to them, and also ask him why he do not keep this money in the bank and he said that because of security purpose that is the reason why he could not keep it in the bank because if he keep it in the bank here in Ghana the king’s men will know about the money. it was the king and some of the KING’s MEN who is aware of this money trying to ask him about the money and my husband refuse to tell them where he keep the money it was the pleasure that killed my husband and now they are trying to use some of my late husband brothers to claim my husband properties I quickly carry all the document to my late husband lawyer to keep it for safety. Before he died he told me to look for a foreign partner that will help me invest it wisely, that is the reason why I contact you to help me to claim this fund and invest it in your country, if you are ready to help me to claim this money for investment in your country, I promise I will invest it under your control with your name because if my late husband family and the kings men know that I have investment outside the country them will know that I know where my late husband kept the money I do not want them to know that I know where my late husband kept it because they have ask me and I said I do not know, I will offer you 20% percent of the total fund before I invest the rest in your country under your control. Please, I will send you my photograph as soon as I hear from you. Mrs. Ajara wadrago SpamAssassin Report (spam score: 5.4) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: superheromail.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 1.6 RCVD_IN_BRBL_LASTEXT RBL: RCVD_IN_BRBL_LASTEXT [50.115.5.50 listed in bb.barracudacentral.org] 1.1 DKIM_ADSP_ALL No valid author signature, domain signs all mail -0.0 SPF_PASS SPF: sender matches SPF record 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 2.5 FREEMAIL_FORGED_REPLYTO Freemail in Reply-To, but not From
-- Urgent Attention, I am Bernard Madoff the founder of wall street firm Bernard L. Madoff investment securities LLC in 1960 and was the former chairman of NASDAQ.I was accuses of fraud worth over $170 billion dollars and was arrested on Dec 11,2008 and on march 12,2009.I was pled guilty to 11 federal crimes and admitted to operating the largest ponzi scheme in history. Let me not go into much details.I have £1.5 billion British Pounds Sterling in HSBC London.This fund no one knows about it except my bank officers because the money was deposited under serial codes.I need your help right now not only to reinvest this fund.50% goes to charity and 20% will be mapped out for the promotion of gospel, building of churches and mosques all over the world and 25% for you while 4% goes to the bank officials who will help you facilitate the transaction and 1% for my up keeping in the prison.I know that i will die very soon because of my heart attack and kidney cancer, and when i die my 1% up keep will be added to the charity making it 51%..please i want this business to be completed as soon as possible. Kind respect BM SpamAssassin Report (spam score: 0.6) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.171 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (bernard.madoff7[at]gmail.com) 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list
Click to view scam #129643 - Sent on June 16, 2015, 5:44 am by bernard.madoff7@gmail.com
       ????????4.5%???????????????????????????????? ????????????????????????????????????????,???????????????????????? ?????????????50?????????50???????6????200??80????PS??80?????????????? ????????????????????????100????????????????????150???????????????? ??????????????????http://affiliate.lufax.com/action/tRvCa  
Click to view scam #129644 - Sent on June 16, 2015, 5:44 am by
WELCOME TO WESTERN UNION MONEY TRANSFER. THE TOTAL FUND OF 10 MILLION DOLLAR COMPLIMENT OF THE DAY TOGETHER WITH YOUR FAMILY, THIS IS TO CONFIRM THE RECEIPT OF ORDER FROM THE INTERNATIONAL MONETARY FUND (IMF). IT IS MY GREAT PLEASURE AND HONOR TO INFORM YOU THAT WE RECEIVED EXPRESS MANDATE AND INSTRUCTIONS FROM MR.PRESIDENT OF FEDERAL REPUBLIC OF BENIN TOGETHER WITH THE INTERNATIONAL MONETARY FUND (IMF) TO COMMENCE THE IMMEDIATE RELEASE OF YOUR FUNDS THROUGH THIS MEDIUM OF WESTERN UNION MONEY TRANSFER. FOR EASY CONFIRMATION AND YOU SHOULD BE INFORMED THAT THROUGH THIS MEDIUM OF WESTERN UNION MONEY TRANSFER THAT YOU ARE ENTITLED TO BE RECEIVING $5,650.00 USD ONLY PER DAY UNTIL YOUR TOTAL FUNDS COMPLETELY TRANSFERRED TO YOU HOWEVER; THE MANAGEMENT OF THIS WESTERN UNION MONEY TRANSFER WISHES TO INFORM YOU THAT YOUR FIRST INSTALLMENT PAYMENT SUM OF ($5,650,00 USD) HAS BEING SENT IN YOUR ADDRESS THIS MORNING BUT THE PAYMENT HAS PLACE ON HOLD BECAUSE YOU DID NOT FULFILLED OUR RULES AND REGULATION UNDER FOREIGN TRANSACTION, ACCORDING TO OUR FOREIGN TRANSACTION STRATEGY THE TRANSACTION WILL COST YOU SUM OF $105.00 FOR THE SIGNING AND STAMPING FEE OF YOUR OWNERSHIP CERTIFICATE, PLEASE CALL ME WITHIN THIS IMMEDIATELY OK. 1) STAMP FEE $50.00 2) SIGN FEE $55.00 3) TOTAL SUM OF $105.00 USD ONLY SO MY DEAR IN YOUR BEST INTEREST, WE HEREBY ADVISED YOU TO USE BELOW FORMATION AND SEND THE STAMP AND SIGN FEE IMMEDIATELY THROUGH WESTERN UNION OR MONEY GRAM MONEY TRANSFER SO THAT WE CAN BE ABLE TO RELEASE THE FIRST $5,650.00 USD FOR YOU TODAY. BELOW ARE THE RECEIVER DETAILS, RECEIVER NAME / williams udegon TEXT QUESTION / A ANSWER / B COUNTRY / BENIN REPUBLIC CITY / COTONOU AMOUNT / $105.00 ONLY BE RE-ASSURED OF THIS WESTERN UNION INTEGRITY AND PERSONAL INTEGRITY. THANKS, I AWAIT YOUR URGENT RESPOND WITH MTCN. REGARDS Mr. Johnson Ben MANAGER FOREIGN OPERATION Call- +22999125896 SpamAssassin Report (spam score: 9.1) pts rule name description ---- ---------------------- -------------------------------------------------- 2.6 RCVD_IN_SBL RBL: Received via a relay in Spamhaus SBL [222.146.51.141 listed in zen.spamhaus.org] -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.172 listed in list.dnswl.org] 1.5 BILLION_DOLLARS BODY: Talks about lots of money 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.0 LOTS_OF_MONEY Huge... sums of money 0.9 MONEY_FROM_41 Lots of money from Africa 3.2 ADVANCE_FEE_3_NEW_MONEY Advance Fee fraud and lots of money
Click to view scam #129645 - Sent on June 16, 2015, 5:37 am by goodg6@space.ocn.ne.jp
Hi  account user,Due to lack of security in your mail box system, we requires your email account to undergo some certain upgrade, to help improve your mailing system and increase your account security. Please upgrade your email account to increase the security of your account by clicking the button ACCOUNT NOW Happy emailing.Google accounts Upgrade teamThis email can't receive replies. For more information, visit the SpamAssassin Report (spam score: 9.2) pts rule name description ---- ---------------------- -------------------------------------------------- 0.6 RCVD_IN_SORBS_WEB RBL: SORBS: sender is an abusable web server [41.190.2.81 listed in dnsbl.sorbs.net] -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.52 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.0 TVD_SPACE_RATIO TVD_SPACE_RATIO 2.0 MIME_NO_TEXT No (properly identified) text body parts 0.0 T_FROM_12LTRDOM From a 12-letter domain 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
Click to view scam #129647 - Sent on June 16, 2015, 5:29 am by sales@malpanifoods.com
If you cannot click the link above, Copy & Paste this link: http://whatiswrongww.com/jeyJjIjogOTU2MywgImYiOiAwLCAibSI6IDg2NTcsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 6.6) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: whatiswrongww.com] 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: whatiswrongww.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: whatiswrongww.com] 0.0 FORGED_RELAY_MUA_TO_MX FORGED_RELAY_MUA_TO_MX 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #129641 - Sent on June 16, 2015, 5:28 am by RussianBrides@whatiswrongww.com
GM-Cool-dry-sportswea No virus found in this message. This message is not SPAM. The content is informative. Checked by AVG - www.avg.com Version: 2014.0.4800 / Virus Database: 4311/10025 - Release Date: 06/15/15 SpamAssassin Report (spam score: 5.8) pts rule name description ---- ---------------------- -------------------------------------------------- 3.6 RCVD_IN_SBL_CSS RBL: Received via a relay in Spamhaus SBL-CSS [119.34.98.72 listed in zen.spamhaus.org] -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.171 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: media.tumblr.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (sport_shirts[at]126.com) -0.0 SPF_PASS SPF: sender matches SPF record 0.8 HTML_IMAGE_RATIO_02 BODY: HTML has a low ratio of text to image area 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 1.0 FREEMAIL_REPLY From and body contain different freemails 0.0 T_REMOTE_IMAGE Message contains an external image 0.0 FROM_MISSP_FREEMAIL From misspaced + freemail provider
Click to view scam #129639 - Sent on June 16, 2015, 5:25 am by sport_shirts@126.com
UEU3MQ0KDQqhbcLFpfq5cbx2oW6uu7BnwsMNCqFtwsWl+rlxvHahbqT9qsykp8FuoUerxb7U rsmo6CANCqFtwsWl+rlxvHahbqi5s+ytuC2zwa19u7mq4bbpvHOz9bp0sNu3fA0Kwdmms6fz pmiqurKjq3690MJJv++kVaZDuvSnfQ0KaHR0cDovL252Znd3dGpjLmJkNjY4OC5uZXQNCg0K pnC1TKprs3O1siC90MJJv++h97NvpKOsT6lVp6OrSCCyvqZeptymrKXzp1i0TqVps3O1sg0K DQoybmkSpamAssassin Report (spam score: 11.6) pts rule name description ---- ---------------------- -------------------------------------------------- 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] 0.3 MIME_BOUND_DD_DIGITS Spam tool pattern in MIME boundary 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.6 FROM_STARTS_WITH_NUMS From: starts with several numbers 1.0 HK_RANDOM_FROM From username looks random 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (6649wegltkg[at]ms21.hinet.net) -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.179 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 1.2 RCVD_HELO_IP_MISMATCH Received: HELO and IP do not match, but should 0.9 RCVD_NUMERIC_HELO Received: contains an IP address used for HELO 2.8 RCVD_DOUBLE_IP_SPAM Bulk email fingerprint (double IP) found 1.8 MISSING_MIMEOLE Message has X-MSMail-Priority, but no X-MimeOLE 0.0 TVD_SPACE_RATIO TVD_SPACE_RATIO 0.5 FSL_HELO_BARE_IP_2 FSL_HELO_BARE_IP_2 2.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #129638 - Sent on June 16, 2015, 4:45 am by 6649wegltkg@ms21.hinet.net
SpamAssassin Report (spam score: 4.4) pts rule name description ---- ---------------------- -------------------------------------------------- 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.192.45 listed in list.dnswl.org] 1.2 TO_MALFORMED To: has a malformed address 2.6 FROM_NO_USER From: has no local-part before @ sign 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.0 DATE_IN_FUTURE_06_12 Date: is 6 to 12 hours after Received: date
Click to view scam #129637 - Sent on June 16, 2015, 4:10 am by @
If you cannot click the link above, Copy & Paste this link: http://whatiswrongww.com/neyJjIjogOTU2MiwgImYiOiAwLCAibSI6IDg2NTYsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 11.0) pts rule name description ---- ---------------------- -------------------------------------------------- 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: whatiswrongww.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: whatiswrongww.com] 2.7 GUARANTEED_100_PERCENT BODY: One hundred percent guaranteed 0.0 FORGED_RELAY_MUA_TO_MX FORGED_RELAY_MUA_TO_MX 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: whatiswrongww.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #129636 - Sent on June 16, 2015, 3:42 am by Nitroxin@whatiswrongww.com
If you cannot click the link above, Copy & Paste this link: http://whatiswrongww.com/leyJjIjogOTU2MCwgImYiOiAwLCAibSI6IDg2NTUsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 6.6) pts rule name description ---- ---------------------- -------------------------------------------------- 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: whatiswrongww.com] 0.0 FORGED_RELAY_MUA_TO_MX FORGED_RELAY_MUA_TO_MX 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: whatiswrongww.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: whatiswrongww.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #129635 - Sent on June 16, 2015, 3:24 am by Chris@whatiswrongww.com
Dear Friend I am a website designer, I have designed a new banking script, It has all banking functions,it also have token You can create savings account,checking account and fixed deposit account. You can transfer money between this account, TO DO THIS select local transfer and complete the form You can also do international transfer, but this will require admin approval, here you can ask your client to send you document before his international fund can be approved, to approve fund, go to admin/fund transfer and approve it You can also retrieve password and pin This script goes for 200usd and if you need any modification or changes, i can do it for you after your payment. now check the demo To login http://www.samsungcart.com/online/login.php to register http://www.samsungcart.com/online/register.php You must use valid email because token will be send to this email when doing transfer Admin http://samsungcart.com/online/admin/login.php user:admin password: admin123 waiting your reply Regard Abudul Hassan SpamAssassin Report (spam score: 0.6) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: samsungcart.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.216.172 listed in list.dnswl.org] 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (danieledosa50[at]gmail.com) 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list
Click to view scam #129633 - Sent on June 16, 2015, 2:53 am by danieledosa50@gmail.com
  Sent: Monday, June 15, 2015 7:48 PM Subject: petro@petrojansevanvuuren.com has indicated you're a friend. Accept? I would like to add you as a friend -petro@petrojansevanvuuren.com Accept Decline Click here to unsubscribe from such emails from petro@petrojansevanvuuren.com or all friendsP.O. Box 70215, Plaza Station , Sunnyvale, CA 94086
Click to view scam #129632 - Sent on June 16, 2015, 2:53 am by petro@petrojansevanvuuren.com
Hello   Thanks for use PayPal! We sent you an email sometime ago asking for your help to resolve an issue with your PayPal account. Since we haven't heard back from you and we need you to provide some informations, your account is temporarily limited :   - Some informations on your account appears to be missing or incorrect.   Please update your account promptly so that you can continue using all the benefits of your PayPal account.    1- Download the attached document and open it in a secure browser.  2- Follow the verification process and give us your correct information.   Our new verification measures have been put in place in May 2015 to protect our customers.   Kind regards   SpamAssassin Report (spam score: 2.7) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.43 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 0.9 RCVD_NUMERIC_HELO Received: contains an IP address used for HELO 0.5 FSL_HELO_BARE_IP_2 FSL_HELO_BARE_IP_2 2.0 MIME_NO_TEXT No (properly identified) text body parts
Click to view scam #129629 - Sent on June 16, 2015, 2:19 am by intl_p@ppI.com
Attention We have deposited the check of your fund ($2.50000000USD) through Western Union department after our finally meeting regarding your fund, All you will do is to contact Western Union director Dr mich david via E-mail:westernu339@gmail.com He will give you direction on how you will be receiving the funds daily.Remember to send him your Full information to avoid wrong transfer such as, Receiver's Name____ Address: ________ Country: ________ Phone Number: __ Though,Dr michael david has sent $5000 in your name today so contact him or you call him as soon as you receive this email and tell him to give you the Mtcn, sender name and question/answer to pick the $5000 Please let us know as soon as you received all your funds, Best Regards. WESTERN UNION AGENT SpamAssassin Report (spam score: 2.8) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.171 listed in list.dnswl.org] 2.6 RCVD_IN_SBL RBL: Received via a relay in Spamhaus SBL [222.146.51.141 listed in zen.spamhaus.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.0 LOTS_OF_MONEY Huge... sums of money 0.9 MONEY_FROM_41 Lots of money from Africa
Click to view scam #129630 - Sent on June 16, 2015, 2:17 am by John@mint.ocn.ne.jp
.pwmuldawigz{color:#81ee33;} Use your Internet connection to make phone calls! .bzryzyjj{color:#c4780e;} SpamAssassin Report (spam score: 7.6) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: polycephalystarversbt.com] 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: polycephalystarversbt.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.192.53 listed in list.dnswl.org] 0.8 DKIM_ADSP_NXDOMAIN No valid author signature and domain not in DNS -0.0 SPF_PASS SPF: sender matches SPF record 1.2 MISSING_HEADERS Missing To: header 0.0 HTML_IMAGE_ONLY_32 BODY: HTML: images with 2800-3200 bytes of words 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.6 URIBL_SBL Contains an URL's NS IP listed in the SBL blocklist [URIs: polycephalystarversbt.com] 0.3 PLING_QUERY Subject has exclamation mark and question mark
Advert
body {height: 100%; color:#000000; font-size:12pt; font-family:Times New Roman;} Sent from my Verizon 4G LTE Smartphone------ Original message------From: Clinton James Date: Sun, Jun 14, 2015 3:17 AMTo: info@mail.com;Subject:Your fileThis is to inform you that you have email grant money of Seven hundred and fifty thousand GBP for this month in 2015 sweepstakes which was organized by OUTLOOK, MSN & WINDOWS 8 LIVE INC. The Microsoft Windows Inc collects addresses of the people that are active online among the millions that subscribed to Hotmail,Facebook, Gmail and Yahoo. We only select five people as our winners through electronic balloting System without the recipient applying and we salute you for being one of the people selected. NOTE: FOR CLAIMS YOU MUST JOT OUT THE CONTACT EMAIL BELOW AND SEND YOUR INFORMATION TO OPEN YOUR CLAIMS FILE.Contact Mrs: Somani Gowda (gdsomani@outlook.com)1. FULL NAMES: 2. HOUSE ADDRESS:3. OCCUPATION: 4. SEX: 5. AGE:6. DIRECT PHONE NO: 7. STATE: 8. COUNTRY:Thank you and accept my hearty congratulations once again! 
Hi, How are you doing today? I hope this email meets you well in good health condition as for me am doing really fine here. My name is Greg Stephens, from California USA and i'm Single kinda searching,currently serving.... Would really love to know you more better if you don't mind. I love meeting new people and haven't been able to do that for a while because of the nature of my job.... So hopefully after retirement i will be able to do so. Thanks Hope to hear from you soon. Stephens SpamAssassin Report (spam score: ) pts rule name undefined
Click to view scam #129626 - Sent on June 16, 2015, 1:48 am by jarmo.malinen@nbl.fi
If you cannot click the link above, Copy & Paste this link: http://whatiswrongww.com/zeyJjIjogOTU1NywgImYiOiAwLCAibSI6IDg2NTIsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 6.6) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: whatiswrongww.com] 0.0 FORGED_RELAY_MUA_TO_MX FORGED_RELAY_MUA_TO_MX 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: whatiswrongww.com] 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: whatiswrongww.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #129625 - Sent on June 16, 2015, 1:48 am by golfmates@whatiswrongww.com
Good Day,I'm. Steve Tran am  donating 550,000USD to you. Contactme via email at (stevetann1@qq.com )for further details.Best Regards,For: Steve Tran Foundation
Click to view scam #129624 - Sent on June 16, 2015, 1:33 am by stevetann1@qq.com
Òåë (812) 642-01-45 Ïðèãëàøåíèå íà òðåíèíã ÑÎÂÐÅÌÅÍÍÛÉ ÝÔÔÅÊÒÈÂÍÛÉ ÐÓÊÎÂÎÄÈÒÅËÜ 01-02 ÈÞËß, â Ñàíêò-Ïåòåðáóðãå Àêòóàëüíûå òåìû: - Ôîðìèðîâàíèå ó÷àñòíèêàìè ïðàêòè÷åñêèõ íàâûêîâ ýôôåêòèâíîãî óïðàâëåíèÿ è êîíòðîëÿ äëÿ óñïåøíîãî äîñòèæåíèÿ ïîñòàâëåííûõ öåëåé  - Ñîâåðøåíñòâîâàíèå íàâûêîâ óïðàâëåíèÿ â ïîâñåäíåâíîé äåÿòåëüíîñòè ìåíåäæåðîâ îðãàíèçàöèè. - Ïîëó÷åíèå ó÷àñòíèêàìè ìåòîäèê ýôôåêòèâíîãî ðóêîâîäñòâà ïîä÷èíåííûìè - Ðàçâèòèå íàâûêîâ â îáëàñòè ðàáîòû ñ ñîòðóäíèêàìè ñâîåãî ïîäðàçäåëåíèÿ: ïëàíèðîâàíèå, îðãàíèçàöèÿ, ìîòèâàöèÿ, êîíòðîëü, à òàêæå ðàçâèòèå ïåðñîíàëà -Çíàêîìñòâî ñ ðàçëè÷íûìè óïðàâëåí÷åñêèìè ñòèëÿìè è îñíîâàìè ëèäåðñòâà. Íàøè ïðåèìóùåñòâà: Èíòåíñèâíîå îáó÷åíèå, îñíîâàííîå íà ïðàêòè÷åñêîé îòðàáîòêå íàâûêîâ è óìåíèé êîíòðîëèðîâàòü ïîä÷èíåííûõ; èíäèâèäóàëüíûé ïîäõîä; ðàáîòà ñ ðåàëüíûìè ñèòóàöèÿìè; äåëîâûå, ðîëåâûå è ñèòóàòèâíûå èãðû; ãðóïïîâûå è èíäèâèäóàëüíûå óïðàæíåíèÿ. Êðàòêèå òåîðåòè÷åñêèå è ìåòîäè÷åñêèå ìàòåðèàëû. Èñïîëüçîâàíèå àóäèî- è âèäåîàïïàðàòóðû. Ñíèæåíèå öåí íà ñåìèíàðû è òðåíèíãè.  ïîääåðæêó ìàëîãî è ñðåäíåãî áèçíåñà ó íàñ äåéñòâóþò öåíû 2014 ãîäà !!!   Óñëîâèÿ è ðåãèñòðàöèÿ ïî òåëåôîíó: (812) 642-01-45 Ñëóøàòåëÿì âûäàåòñÿ Ñâèäåòåëüñòâî îá îáó÷åíèè. Äëÿ êîðïîðàòèâíûõ êëèåíòîâ ïðåäóñìîòðåíà ñèñòåìà ñêèäîê. Îðãàíèçóåì ñåìèíàðû è òðåíèíãè íà óñëîâèÿõ òåíäåðà â ñîîòâåòñòâèè ñ 44 è 223 ÔÇ SpamAssassin Report (spam score: 11.5) pts rule name description ---- ---------------------- -------------------------------------------------- 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see ] 3.6 RCVD_IN_SBL_CSS RBL: Received via a relay in Spamhaus SBL-CSS [61.177.248.202 listed in zen.spamhaus.org] 0.6 RCVD_IN_SORBS_WEB RBL: SORBS: sender is an abusable web server [61.177.248.202 listed in dnsbl.sorbs.net] -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.179 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 2.0 TVD_SPACE_ENC_FM_MIME TVD_SPACE_ENC_FM_MIME 2.0 MIME_NO_TEXT No (properly identified) text body parts 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
Click to view scam #129623 - Sent on June 16, 2015, 1:30 am by rustamin@erimex.ru
Dear Friend, I am doctor David Royden; of Liverpool Teaching Hospital, I have vital information of an unclaimed fund of ₤4.8 Million Pounds under my custody. Get back to me with your complete information: Full Name, Address, Phone number, Age, Sex if interested as I will provide the Entire necessary documents to back up this fund. Waiting for your urgent reply. Best regards, Doctor David. SpamAssassin Report (spam score: 14.9) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.218.48 listed in list.dnswl.org] 2.7 UNCLAIMED_MONEY BODY: People just leave money laying around 0.9 URG_BIZ BODY: Contains urgent matter 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (dr.david_royde[at]doctor.com) 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 1.2 MISSING_HEADERS Missing To: header 2.6 DEAR_FRIEND BODY: Dear Friend? That's not very dear! 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 T_HK_NAME_FM_DR T_HK_NAME_FM_DR 1.9 REPLYTO_WITHOUT_TO_CC REPLYTO_WITHOUT_TO_CC 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 0.0 FILL_THIS_FORM Fill in a form with personal information 0.0 T_FILL_THIS_FORM_LONG Fill in a form with personal information 0.0 MONEY_FORM Lots of money if you fill out a form 1.8 ADVANCE_FEE_3_NEW_FRM_MNY Advance Fee fraud form and lots of money
Click to view scam #129619 - Sent on June 16, 2015, 12:34 am by dr.david_royde@doctor.com
Dr. MC.Williams your transaction file has been found, please sir we Apologies and extremely sorry.the authorities of this transaction has been well appointed. your full cooperationand your understanding is needed so that we can have a successfulmovement.  your account will be credited to you in 72 hours. We need this formalities below to take on what necessarily for the transaction.        Bank Name :     Bank's Physical Address :     Bank Name:      Account No :    Sort code :    Bic :     Provisional IBAN:     SWIFT:     Tel :     Fax :     First Name:                           Middle Name:     Last Name:     Gender:     Date of Birth.:     Marital Status.:     Nationality:     Occupation:     Contact Address.:     Mobile phone No.:    Graduation:     Office Phone No if any:     Fax No.:     Email Address.:     Address:  Sir with this above we can make all necessarily to be contentment to you.PLS NOTE. THIS EMAIL TO CONTACT MD. (Olavictor123123@gmail.com) and your file No. is (X11mw342X) THIS TO RECTIFY YOUR FILE, you will be ask, hope to hear from you. Thank You Sir.Yours SincerelyMarc Ellen.Mr. Marc Ellen. SpamAssassin Report (spam score: 8.0) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.216.179 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (marcellen123123[at]gmail.com) 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 0.0 TVD_SPACE_RATIO TVD_SPACE_RATIO 1.0 FREEMAIL_REPLYTO Reply-To/From or Reply-To/body contain different freemails 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 2.0 MIME_NO_TEXT No (properly identified) text body parts 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
Click to view scam #129620 - Sent on June 16, 2015, 12:32 am by marcellen123123@gmail.com
Date: Tue, 16 Jun 2015 02:26:04 +0530Subject: REFRENCE NO: RTE 4879From: collectioncash@aceservicesus.orgTo: REFRENCE NO: RTE 4879LOAN AMOUNT: $1195.42  This LegalProceedings issued on your Reference Number RTE 4879 with one of Cash Advance Inc. Company in order to notifyyou that after making calls to you on your phone number we were not able to gethold of you. So the accounts department of Cash Advance has decided to markthis case as a flat refusal and press legal charges against you. We have sent you thiswarning notification about legal proceedings of November 8, 2014 but you failedto respond on time now it?s high time if you failed to respond in next   2 HOURS   we will register this case in court.Consider this as a final warning. And we will be Emailing/ Fax this issue toyour current employer to make sure they take strict against you. Your salary wageswill be garnished. Do revert back if youwant to get rid of these legal consequences and make a payment arrangementtoday or else we would be proceeding legally against you. And we apologies thatthis notification will also sent to your current employer. The opportunity totake care of this voluntary is quickly coming to an end. We would hate for youto lose the option of resolving this before it goes to the next step which is aLawsuit against you, but to do so you must take immediate action. You can Email back toget the payment mode too. We will be forced toproceed legally against you and once it is processed the creditor has entirerights to inform your employer and your references regarding this issue and thelaw suit will be the next step which will be amounting to $6100.00 and will betotally levied upon you and that would be excluding your attorney charges. Ifyou take care of this out of court then we will release the clearancecertificate from the court and we will make sure that no one will contact youin future. Please let us knowwhat your intention is by today itself so we can hold the case or else we willsubmit the paper work to your local county sheriff department and you will beserved by court summons at your door step. Note : This notice isprovided to you on behalf of Cash Advance Inc. and its parent company , andtheir respective family of companies including Cash Advance, its parentcompany, Cash America International, Inc., and all of their respectivesubsidiaries and affiliates, (hereafter collectively referred to as the ?CashAdvance Related Companies,? ?we,? ?our,? or ?us?). The Cash Advance RelatedCompanies include, but are not limited to: Cash Advance, Cash AmericaInternational, Inc., and all of their respective subsidiaries and affiliates,including those that operate under the trade names Cash Advance, 100 Day Loan,Net loan USA, Fax free Cash, Payday one, Sonic Cash, Money tree, Egg loans,Check cash Loan, Quick Payday, Personal Cash Advance, Rapid Cash, Sonic Payday,Speedy Cash, My Cash Now, National Payday, Paycheck Today, Payday OK, CashCentral Loans, Cash Net 500,CashNet USA, Allied Cash, Super Pawn, Check intoCash, Check Smart, Ezmoney Cash America Net, Cash America, Cash America Pawn,Cash land, Super Pawn, Cash America Payday Advance, or any company-owned Mr.Payroll locations. ?You? or ?Your? means you as a participant in or as a userof the products and/or services offered by a Cash Advance Related Company. WE MAY REPORTINFORMATION ABOUT YOUR ACCOUNT TO CREDIT BUREAUS. LATE PAYMENTS, MISSEDPAYMENTS, OR OTHER DEFAULTS ON YOUR ACCOUNT MAY BE REFLECTED IN YOUR CREDITREPORT. TERMS &CONDITIONS YOU AGREED. By electronicallysigning this Loan Agreement by clicking the "I AGREE" button below,you are confirming that you have agreed to the terms and conditions of theConsent and that you have downloaded or printed a copy of this Consent for yourrecords. IF YOU WANT TO RESOLVE THIS CASE OUTSIDE THE COURT HOUSE,YOU HAVE TO MAKE YOUR OUTSTANDING AMOUNT $1195.42 OR WE GIVE YOU A PAYMENT PLAN OPTION FOR YOU HAVE TO PAYYOUR DUE WITH AN INSTALLMENT. EMAIL US BACK FOR RESOLVE THIS CASE ORA PAYMENT PLAN OPTION. Regards,Steven John_________________________________________________________________________________________________________ Confidentiality Statement & Notice: Thisemail is covered by the Electronic Communications Privacy Act, 18U.S.C.2510-2521 and intended only for the use of the individual or entity towhich it is addressed. Any review, re transmission, dissemination tounauthorized persons or other use of the original message and any attachmentsis strictly prohibited. If you received this electronic transmission in error,please reply to the above-referenced sender about the error and permanentlydelete this message. Thank you for your co-operation.  
Click to view scam #129614 - Sent on June 16, 2015, 12:24 am by collectioncash@aceservicesus.org
Good evening do you want to secure loans? For more information and explanations My e-mail: info@pretmv100.com Thank you SpamAssassin Report (spam score: 17.6) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.173 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: pretmv100.com] 1.9 URIBL_JP_SURBL Contains an URL listed in the JP SURBL blocklist [URIs: pretmv100.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 NSL_RCVD_FROM_USER Received from User 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.2 FREEMAIL_REPLYTO_END_DIGIT Reply-To freemail username ends in digit ( ) 1.2 MISSING_HEADERS Missing To: header 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.6 FORGED_OUTLOOK_TAGS Outlook can't send HTML in this format 0.0 FROM_MISSP_XPRIO Misspaced FROM + X-Priority 1.9 REPLYTO_WITHOUT_TO_CC REPLYTO_WITHOUT_TO_CC 0.0 FROM_MISSP_MSFT From misspaced + supposed Microsoft tool 2.0 FSL_NEW_HELO_USER Spam's using Helo and User 0.0 AXB_XMAILER_MIMEOLE_OL_024C2 Yet another X header trait 0.0 MSGID_FROM_MTA_HEADER Message-Id was added by a relay 3.4 MSOE_MID_WRONG_CASE MSOE_MID_WRONG_CASE 0.0 FORGED_OUTLOOK_HTML Outlook can't send HTML message only 0.0 FROM_MISSP_USER From misspaced, from "User" 2.5 FREEMAIL_FORGED_REPLYTO Freemail in Reply-To, but not From 0.0 TO_NO_BRKTS_FROM_MSSP Multiple formatting errors 0.0 FROM_MISSPACED From: missing whitespace 0.0 T_FROM_MISSP_DKIM From misspaced, DKIM dependable 2.8 FORGED_MUA_OUTLOOK Forged mail pretending to be from MS Outlook
Click to view scam #129618 - Sent on June 16, 2015, 12:21 am by site@liga2.ro
Dear Friend, This may come as a suprise to you since we have not met.I am Mr.Buky Akinlode,a member and the director contract award Africa Relief Fund(ARF)Agency,Having consulted you with my colleague, it is with trust and confident,i have the privilege to request for your urgent assistance to transfer the sum of twenty million united state dollars(US$20.000.000.00) into a secured bank account abroad. The above amount resulted from an increment of over-invoiced contract amount executed,commissioned with Africa relief fund (ARF),and paid for about two years ago to the original contrator remaining the over invoiced amount. This action was intentional and since then the over-invoiced fund has been in the suspence account of African Relief Fund (ARF) awaiting claim. This Agency was empowered to administer trust fund well over eight hundred million united state dollars ($800,000,000,00) for the provision of relief materials to troubled spots in west africa sub-region, we are presently in Nigeria to suply relief materials to those affected in bomb attack by bokoharram insulgency, we expected to stay about two months here before we move to any other country.We are now ready to transfer the fund ($20,000,000,00)twenty million united state dollars overseas for our personal business investment, and that is where your assitance is needed by furnishing me your full contact details as well your full company/personal banking information. The simple mode of operation is just for us to apply for the release of the fund in your name/company and you will serve as a sub-contractor among the foreign contractors that supplied welfare materials to us.We will arrange all the legal needful documents to back up this claim.Some of these countries below have benefited from the materials supplied since some years back and present,Sierra-leone, Liberia,Democratic Republic of Congo,Nigeria bomb blast affected victims,Guinea Bissau etc. The materials supplied are Clothing of various kinds,Blankets,Rice, Soya beans,Milk,Sugar, Salt, Drugs, Footwears. etc. Please if you are capable of working this project with us get back to me quickly via this email:bukyakinlode_arf@yahoo.com and also forward the underlisted requirements to enable us facilitate and secure the payment approval for immidiate remittance of the fund into any of your norminated bank account which you may provid.(1)Your full name,Your Address, company name and Your Private Telephone number.Preferebly, open a new Bank account for this transaction or if you have a trusted company bank account or strong personal bank account we can use it to receive the fund. The total sum ($20,000,000,00) will be shared as follows.30% for you, 70% for I and my colleague. What we need from you is your assistance to stand as one of our foreign sub-contractors that executed contract with our agency awaiting for payment.We shall secure the needfull legal doccuments in your name/company to insure approval payment and the fund US20million will be remitted to your account for us all. This deal is 100% risk free on both sides,all parties involved will be very much protected by a silent but active agreement whose greatest tent will be confidentiality.(FOR SECURITY,PLEASE DO NOT DISCLOSE THE NATURE OF THIS DEAL TO ANYBODY) If there are some inscrutable to this proposal you are free to ask question for further clarification.All i will assure you, this is an infallible deal.It can not fail with your corporation. We need just few weeks to acomplish this transaction as soon as we get your possitive response. Please reply your respone to this email address:bukyakinlode_arf@yahoo.com Kind Regards Mr.Buky Akinlode SpamAssassin Report (spam score: 14.6) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.179 listed in list.dnswl.org] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: deal.it] 0.7 MILLION_USD BODY: Talks about millions of dollars 0.9 URG_BIZ BODY: Contains urgent matter 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail provider (bukyakinlode[at]gmail.com) 0.0 DKIM_ADSP_CUSTOM_MED No valid author signature, adsp_override is CUSTOM_MED -0.0 SPF_PASS SPF: sender matches SPF record 0.0 T_US_DOLLARS_3 BODY: Mentions millions of $ ($NN,NNN,NNN.NN) 2.6 DEAR_FRIEND BODY: Dear Friend? That's not very dear! 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 1.0 FREEMAIL_REPLY From and body contain different freemails 1.2 NML_ADSP_CUSTOM_MED ADSP custom_med hit, and not from a mailing list 2.8 RISK_FREE No risk! 0.0 T_MONEY_PERCENT X% of a lot of money for you 0.0 T_FILL_THIS_FORM_SHORT Fill in a short form with personal information 2.3 MONEY_FRAUD_8 Lots of money and very many fraud phrases 3.6 ADVANCE_FEE_5_NEW_MONEY Advance Fee fraud and lots of money 0.0 FORM_FRAUD_5 Fill a form and many fraud phrases
Click to view scam #129613 - Sent on June 16, 2015, 12:19 am by bukyakinlode@gmail.com
.kvspbuqsryrq{color:#4c4da4;} Make Your Phone Your New Fax Machine SpamAssassin Report (spam score: 5.6) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.176 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.8 DKIM_ADSP_NXDOMAIN No valid author signature and domain not in DNS -0.0 SPF_PASS SPF: sender matches SPF record 1.2 MISSING_HEADERS Missing To: header 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: longhairnebulaij.com] 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: longhairnebulaij.com] 0.0 HTML_IMAGE_ONLY_32 BODY: HTML: images with 2800-3200 bytes of words 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 0.6 URIBL_SBL Contains an URL's NS IP listed in the SBL blocklist [URIs: longhairnebulaij.com]
Dear Sir / Madam, Our customer is interested in importing a range of products from your business. Please find in the attachment is my import demand with specifications. Kindly furnish us with your quotation / invoice. I look forward to hearing from you. Cynthia Amelita Pe Benito Jireh Forge Inc. General Manufacturer: Designer Importer/Exporter No. 20 NHA Industrial & Commerical Complex Brgy. Gavino Maderan, Cavite 4117 Philippines. Tel: +6323695016 Fax: +63468902584 E-mail: cynthiapb@jirehforqe.comSpamAssassin Report (spam score: 4.0) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.180 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_PASS SPF: sender matches SPF record 0.0 TVD_SPACE_RATIO TVD_SPACE_RATIO 2.0 MIME_NO_TEXT No (properly identified) text body parts 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
Click to view scam #129610 - Sent on June 16, 2015, 12:11 am by cynthiapb@jirehforqe.com
???????? ????????? ? ????????, ·         ?????????? ?? ???????? ? ????????? ?????? ???????????, ???????????? ??? ???? ??????? ??????? ?? ???????????? ·         ?????? ?? ???????, ?????? ??????????? ??? ????????????? ?? ?????? ?? ??????????? ? ????????????? ?? ? ???? ·         ?????? ?? ?? ???????? ???????? ????????? ????????? ? ???????????? ?? ??????????   ????? ?? ?? ?????????? ???????: ??? ?? ???????? ??????? ? ?????????????? ? ????????? http://courselab.net/event/doverie-razbiratelstvo-komunikaciq-seminar/   ????: 24.???.2015 ???. (?????) ????? ?? ??????????: ?????? ???????? COURSELab ? ??. ?????, ??. ??????? ?. ????????? 89, ?? ??? ? ???????????? ?????????: T???????, ?????????, ?????????, ????? ?????: ·         ?? ???????? ????????????? ?? ? ?????????; ·         ?? ????????? ?????????????????????????? ? ???; ·         ?? ?? ?????? ?? ?? ??????? ??????????? ???????? ? ???????; ·         ?? ??????? ??????? ?? ?????,?????????????? ???????????? ? ???????.   ??????????? ? ???????? ????????????? ???? ?? ????????? ?? 20.???.2015?.: 210 ?? ??? ??? (??????????? ???? 250 ??. ??? ???) ????????????? ????: - ???????? ???????: 210 ??. ??? ???  (?? 20.???.2015?.); ? ??????????? ?? ????? ????????? ??? 2-?? ????: 10% ????????; ? ??????????? ?? ????? ??? 5 ????: 20% ????????.   ?? ?????????? ?? ??????? 1.       ?? ?????????????? ???? ????????? ? ???????? ???????? ? ??????????? ?? ???????; 2.       ?? ??????????? ? ?????????? ?????????????? ? ?????????; 3.       ?? ?????????? ?????? ??????? ?? ?????????? ??????? ?? ?????????; 4.       ?? ???????????????? ??????????? ???????? ? ?????????; 5.       ?? ??????????? ? ?????????? ??????????? ?? ?????? ?????????; 6.       ?? ?? ?????????? ???? ????????? ?????????? ? ?? ????????? ?????? ?? ???????? ? ???.   ???????? ?? ???????? ????? ????: ????? ?? ??????? ??????? ?? ??????? ? ?????????? ?? ?????????? ?? ????? ? ???????? ??????. ??????? ????????? ? ??? ?? ???????? ?? ??????????? ?? ????? ?????? ? ???????????? ?????? ???? ?? ?????????????. ? ???? ???? ?? ?? ?????????? ? ????????? ??????? ??? ?????????, ???? ????? ?? ??????????????? ????????? ?? ?????? ?? ?? ????????, ????? ? ?? ??????? ????.   ???????? ????: ?                    ?????????? ??????????? ?? ??????? ?? ??????? ? ?? ????? ??????; ?                    ?????????? ??? ?? ?????????? ?? ??????????? ?? ?????? ??????? ? ?????????? ?? ???? ?? ??????????; ?                    ????????? ? ????????? ?? ???????? ?????, ????? ?????? ?? ??????? ?                    ??????? ?? ?????????? ? ????????????; ?                    ????????? ?? ???????? ????? ?? ????????, ????? ?? ??????? ? ?????? ???????   ????? ????: ??????????? ? ????????? ??????? ??????????? ? ??????? ? ???????????? ?? ????? ??????????????? ????? ????? ?????? ?? ?????? ?? ?????? ???? ?? ????????. ?                    ? ???? ???? ?? ???????? ???-??????? ?????????? ?? ??????????? ???????? ? ???????: ?                    ????????? ?????? ?? ??????????? (????? ? ?? ????????); ?                    ?????????? ?? ??????????????; ?                    ????????? ?? ????? ?????; ?                    ????????? ?? ???????? ? ??????? ?? ???.   ????? ????: ??????????? ?? ???????? ? ???? ???? ?? ????? ?????????? ?? ??????? ??????? ?? ???????? ? ??????? ?? ???????? ???? ????????? ????????? ??  ??????? ??????????? ? ?????? ? ?????? ????????.   ???????? ????: ?                    ?????????? ?? ??????????? ?????????? ? ??? ?? ?????? ?? ????????????????? ????? ????? ??????; ?                    ???????? ?? ??????? ?? ?????? ?? ?????? ? ??????? ? ????????? ????????; ?                    ????????????? ? ?????????? ?? ?????????????? ? ?????????; ?                    ????????????? ?? ??????? ??????? ?? ?????????; ?                    ?????????? ?????? ??????? ?? ?????????? ??????? ?? ?????????; ?                    ???????????????? ?? ??????????? ???????? ? ?????????; ?                    ??????????? ? ?????????? ?? ??????????? ?????? ?????????; ?                    ?????????? ???? ????????? ?????????? ? ?????????? ?? ?????? ?? ???????? ? ???.   ?????? ???????? ?????? ? ??????????? ??????????, ?????? ?? ???????? ? ?????????, ????????? ?? ???????????? ???????. ?? ??? ?????? ?? 9 ?????? ???? ? ?????????? ? ? ????????? ?? ??? 100 ???????? ?? ???????? ?????? ????????? ???? ????????? ?? ??-????? ??????????? ? ? ????? ?????, ?????????? ?? ????????? ???????? ? ???????? ??????? ???????? ?? ?????????? ?? ???????????. 4 ?????? ? ?????????? ??????????? ???? ??  ???????????? ????????????? ???????? ? ??????? ?? ???????????????? ? ????????????? ????????????. ? ??????? ????????? ?Market Up?, ???-??????????? ???????? ?? ????????? ????????? ? ??.   ?? ??????????? ????? ?? ???????? ???? ??????! ???????? ?????? ????? ?? ???????? ???? ?? 20.06.15! http://courselab.net/event/doverie-razbiratelstvo-komunikaciq-seminar/   ????????, ?????? ?? CourseLab ????? ________________________________________ 1000 ?????, ???????? ????? ??. ?. ????????? 89 Email: office@courselab.net ???: +359 2 852 5707   ???????? ?????? ?? ?????????? ????????, ??. 6 (1) ?? ??????????, ?? ? ???????? ???? ????????? ????????? ?? ?? ? ???????? ?? ???. ???? ????????? ? ????????????? ???? ?? ??????????. ??? ???? ?? ??? ???????? ????? ????? ?? ???, ?? ??? ???????? ??? ?? ?????????? ????????????. ?????, ????????????? ?? ?? ???????? ?? ??????????? ?? ??????????, ??? ?? ??????? ?? ?????????? ????????? ?? ???.  ??? ??????? ?? ?? ?????????? ??????? ?? ???, ???? ????????? ?-???? ? ????? ????????? ?? admin@courselab.net. ----------------------------------------- ???a???? ?????? ????? ?? ????????? ???? ?? 210 ??.? ???? ????????? ?????? ?? ????! ????????? ???????????????? ????? ?? ?-????: office@courselab.net ?????????????? ????? ??? ??????? ???????? ??????? ?? ??????? ????? ????? ?? ??????? ???? ?????????  CourseLAB- ????????? ? ?????????? ?????? ????????!?????:??. ?????, ???. "?.?. ????????", N 89, ??.1, ??.2???????: 02/852-57-07?-????: sales1@courselab.netSpamAssassin Report (spam score: 7.4) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.169 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 1.6 SUBJ_ALL_CAPS Subject is all capitals -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 MSGID_FROM_MTA_HEADER Message-Id was added by a relay 2.7 TVD_SPACE_RATIO_MINFP TVD_SPACE_RATIO_MINFP
> Date: Tue, 16 Jun 2015 07:00:41 +0900> From: m-onoda0911@cap.ocn.ne.jp> Subject: PUBLICITÉ BOURSES EUROPE> To: > > Information publiée le Lundi 04 Septembre 2014 (source : Décision no 2317/2003/CE du Parlement européen)> Le programme a été créé par une décision du 5 décembre 2003, publiée le 31 décembre 2003 dans le journal officiel de l'Union européenne, entrée en vigueur le 20 janvier 2004.En 2006, ce programme connaît à son tour une extension. Depuis 2007, Erasmus s?occupe aussi de stages dans des entreprises à l?étranger, stages de plus en plus appréciés. À ce jour, près de 150 000 étudiants ont reçu une aide à cet effet. Pour l?année 2009-2010, 35 000 étudiants (soit un sur six) ont opté pour un stage, ce qui représentait une augmentation de 17 % par rapport à l'année précédente.Ces bourses permettent aux étudiants des pays sous développés de pouvoir d?un coté aller étudier dans les 28 États membres de l?Union, auxquels viennent s?ajouter le Maroc, l?Islande, le Liechtenstein, la Norvège, la Suisse et la Turquie, mais pas n?importe ou : il faut choisir une formation qui correspond à votre parcours, choisir un pays pour obtenir un complément de formation dont ils n?auraient pas pu bénéficier dans leur pays. Cela peut aussi servir d?accélérateur de carrière. Le> programme Erasmus est un programme de coopération et de mobilité dans le domaine de l'enseignement supérieur. L'idée est d'accroître la qualité et la visibilité de l'enseignement supérieur et de permettre par ces échanges une meilleure connaissance et compréhension avec les pays sous développés.> > SPÉCIFICITÉ DE LA BOURSE> > -Par l?octroi des 500 bourses études emplois, le programme Erasmus entend faciliter l?immigration aux personnes désireuses de poursuivre leurs études et d?obtenir des diplômes d?état des pays membres cités ci dessous.> -Les candidats retenus au terme de la sélection de candidatures seront insérés outre leur étude dans les secteurs sensible de la vie économique> et sociale: (Santé, Droit, Diplomatie, Communication, finance, énergie, industrie, transport, agriculture?.). Cette option du le programme Erasmus vise à donner une aptitude professionnelle aux boursiers pour pouvoir travailler s?ils le désirent en Europe à la fin de leur formation.> DURÉE DE LA BOURSE> Les bourses couvrent la période d?un cycle de formation au maximum six (06) semestre.> FRAIS DE VOYAGE> Les billets d?avion Aller/Retour , et le séjour du boursier sont pris en charge par le programme Erasmus France.> > CONDITIONS A REMPLIR> Les candidats aux bourses du le programme Erasmus doivent :> -Avoir au maximum 18 ans a 67 ans ;> -Comprendre et parler correctement le français ou l'anglais> -Avoir un diplôme équivalent au Brevet d?étude de premier cycle> d?enseignement, Au baccalauréat ou au Brevet d?aptitude professionnelle> des pays de l?union Européenne.> PROCÉDURE DE SÉLECTION> -Retirer auprès du programme Erasmus le formulaire de demande de bourse> via notre adresse émail: direction_bourses_detude@live.fr.> -Remplir et envoyer par pièce jointe le formulaire.> -Le programme Erasmus fera étudier votre dossier par une commission composé de quatre jury.> -Les candidats retenus recevront une attestation du secrétariat d?état à l?étude et à la recherche pour notification de la bourse. Les candidats> désireux de participer aux bourses d?études 2014-2015 doivent retirer leur formulaire à remplir via notre adresse émail: direction_bourses_detude@live.fr> NB :Cependant le programme Erasmus se réserve le droit de clôturer l?octroi des bourses a concurrence des bourses disponible. Les délais de réponse peuvent fluctuer en fonction du nombre de demandes reçues. Ils sont notamment plus longs en période de vacances d'été (août-septembre) en cas d'absence des jurys. Merci d?y être attentif et de> rentrer votre dossier dans les temps.
Click to view scam #129611 - Sent on June 15, 2015, 11:59 pm by m-onoda0911@cap.ocn.ne.jp
ttn: Beneficiary, I am Mr Jimmy West , the director of Credit Bank Nigeria. This is to bring to your notice that my office has taking over all the money Transaction originated from any part of African/ Europe and Asia counties etc. as Contract payment,Fund inheritance or Lottery Winning due to Unauthorized/incapability of financial Institutions/security companies In releasing such huge sum of money due to Fraud, terrorist and money Laundry activities going on world wide. The World Bank Group has Mandated the Credit Bank Nigeria via my Office to release funds to beneficiaries through Cash delivery, Hence Your Name appears as one of The fund beneficiaries whom their fund was successfully cleared recently From Terrorist and Money laundry and your money will be released to you Through International Cashier's Bank Draft that will be cash able from any International Bank in your country or cash delivery been the only way you would receive Your money to avoid paying excess charges. As regard to this arrangement, you are advised to contact the telex director Dr DAVID JOHN through his direct email:( creditbank02@yahoo.es ) Contact Dr David john with the contact information below. Telex director credit bank Nigeria name: Dr David john Direct email: ( creditbank02@yahoo.es ) DIRECT TEL: +229 98860041 You are therefore advised to forward your direct telephone numbers, Your complete name and your mailing address to Dr David John for Immediate release of your fund to you Most importantly be aware that ($3.5Million Dollars) Only was allocated to you, Be also informed that the Fund Approvals and authorization document Including Anti-terrorist Clearance Certificate was issued in your name and has been handed over to Dr David John to release to you. Finally, Dr David John is standby to receive your communication and Release your fund to you through Cash delivery without further delay. Make your contact directly to him through Email contact any time because we are working 24 Hours to be able to meet with the mandate given by the World Bank Thanks for your maximum cooperation. Mr Jimmy WestSpamAssassin Report (spam score: 2.9) pts rule name description ---- ---------------------- -------------------------------------------------- -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.171 listed in list.dnswl.org] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.
Click to view scam #129607 - Sent on June 15, 2015, 11:53 pm by jenny@fisher-man.com.tw
If you cannot click the link above, Copy & Paste this link: http://whatiswrongww.com/veyJjIjogOTU1NiwgImYiOiAwLCAibSI6IDg2NTEsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 6.6) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 FORGED_RELAY_MUA_TO_MX FORGED_RELAY_MUA_TO_MX 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: whatiswrongww.com] 2.5 URIBL_DBL_SPAM Contains a spam URL listed in the DBL blocklist [URIs: whatiswrongww.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: whatiswrongww.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #129603 - Sent on June 15, 2015, 11:45 pm by Email.Lookup@whatiswrongww.com
Sent from my iPhoneBegin forwarded message:From: "Eva C. Kelly" <Eva.C.Kelly@professionals-hub.com>Date: 13 June 2015 14:10:04 BSTSubject: Is there such a thing as Guaranteed Income?Reply-To: Eva.C.Kelly@professionals-hub.com Following email has been selected ------------@aol.com------------ Hi L,   This guy is giving you the same blueprint he uses to pull in $1,120.75 in only 48 minutes a day! These guys have broke the mould and released something so powerful, all for free. Click Now to Claim Winning Date: Jun 13 2015 Regards, Eva C Kelly Unsubscribe From this mailing list.
Click to view scam #129602 - Sent on June 15, 2015, 11:36 pm by
Advert
Begin forwarded message:From: Sean Reece <s.lious14@gmail.com>Date: 15 June 2015 23:14:48 BSTTo: sbcglobal.net@gmail.comSubject: Auto Body Repair ServiceHello How are you doing today guess business is going good and family doing okay,This is Sean Reece, i would like to know if you do auto body repair are you the manager or owner and do you accept all major credit card ?
Click to view scam #129598 - Sent on June 15, 2015, 11:34 pm by s.lious14@gmail.com
?
Click to view scam #129601 - Sent on June 15, 2015, 11:34 pm by
Begin forwarded message:From: "ASDA" <asda@amstelvloer.com>Date: 15 June 2015 21:09:23 BSTSubject: Ã?£500 to spend at ASDA in the UKReply-To: <asda@amstelvloer.com>Win £500 worth of vouchers to spend at Asda! At MintedMobi.com you could Win £ 500 worth of vouchers to spend! This e-mail not being displayed properly? Click here.     Prize courtesy MintedMobiWin £500 worth of vouchers to spend at ASDA!       Answer the following for your chance to win! ASDA's clothing brand is?     George F & F           If you wish to unsubscribe from future mailings please click here
Click to view scam #129597 - Sent on June 15, 2015, 11:33 pm by asda@amstelvloer.com
Begin forwarded message:From: "Chase Online"<support@emailonline.chase.com>Date: 15 June 2015 22:21:40 BSTSubject: Online Banking Verification From Chase Online Untitled Document         Dear Valued Customer : Due to several failed attempts to access to your Online Banking Account , we temporarily suspended your Online Banking Profile for your protection. You have to Verify Your Online Banking Account Information within the next 24 Hours in Order to Continue using it. To proceed verifying your account information, please click on the link below then follow the instructions that will be required. To Verify your account please, Sign in to Online Banking to review your recent account activity or update your account information.       Do not reply to this message, but instead go to Chase Online. For faster service, please enroll or log in to your account. Replies to this message will not be read or responded to. Privacy and Security Keeping your financial information secure is one of our most important responsibilities. For an explanation of how we manage customer information, please read our Privacy Policy. You can also learn how we keep your personal information secure and how you can help protect yourself. JPMorgan Chase Bank, N.A. Member FDIC. Equal Housing Lender © 2015 JPMorgan Chase & Co. All rights reserved. MMKFJ45/RTJH5488
Click to view scam #129605 - Sent on June 15, 2015, 11:32 pm by support@emailonline.chase.com
Begin forwarded message:From: "New Project for You" <angela@pickyourapple.co.uk>Date: 15 June 2015 22:12:33 Subject: Which Investment continues to thrive despite turbulent economic times?Reply-To: "New Project for You" <angela@pickyourapple.co.uk> Tono Classics Having Trouble Viewing This e-mail? View it online, here You don't like this offer? Click here to unsubscribe A Time Limited Investment Opportunity FIND OUT MORE Invest in our film projects now and get red carpet event invites We have a number of brand new film projects going into production for 2015 which are offering attractive returns. All of our projects already have a large proportion of the finance in place and will be offered out to investors on a first come, first served basis. We offer a range of both film equity investments and HMRC tax efficient EIS / SEIS investment schemes. FIND OUT MORE Investing in our film projects can entitle you too ? Great projected returns with ongoing royalty payments ? A 30-50% reduction in your Income tax (UK taxpayers only) ? Film set visits to meet with the cast and crew ? Red carpet event Invites such as film premieres and pre-screenings. ? Our investors can also appear in the film credits and get invited to award ceremonies FIND OUT MORE You received this mail because you have registered at our databases Should you have any questions or complaints please contact us. You can reach us at mail Should you wish to unsubscribe: click here © 2015 - copyright Planet_49 GmbH. All rights reserved.
Click to view scam #129596 - Sent on June 15, 2015, 11:30 pm by angela@pickyourapple.co.uk
Begin forwarded message:From: Smtp Store <seller@smtpsell.com>Date: 15 June 2015 19:40:49 BSTSubject: Earthlink RDP Now In Stock, Visit Us To BuyFresh Tools updated. Earthlink RDP Comcast RDP Mystery Shopper Mailers, Smtp, RDP, Leads, Cpanel All Tools updated for 100% working on cheap price and customer satisfaction. Online Live Support Visit Us: www. SmtpMercantile .in
Click to view scam #129600 - Sent on June 15, 2015, 11:30 pm by seller@smtpsell.com
Begin forwarded message:From: mclovin667@web.deDate: 15 June 2015 18:10:43 BSTTo: jonathan.smith81@btinternet.com, jonathan.smith@pyramidpress.co.uk, jonathan.smithuk@outlook.com, jonathan.stawicki@gmail.com, jonathan.stephens@live.co.uk, jonathan.stripling@btinternet.com, jonandlincraze@gmail.com, jonandsally11@blueyonder.co.ukSubject: HolaHey there. I have lost 12 pounds consuming the high-quality fat-burner . buy one for yourself with this link http://relyonmg.com/hp/ follow up and we both get some price off
Click to view scam #129595 - Sent on June 15, 2015, 11:29 pm by mclovin667@web.de
Dear Sir/ Madam, Please kindly see attachment and view original bill of Lading/ Invoice comfirmation attached below. This was made for your company through one of your customers. Please comfirm to us before shippment. Regards,Monica.Maersk Line Ltd.17/F, Tower B, Landgent Center,No. 24 Middle - East Third Ring Road,Chao Yang DistrictCustomer service and booking: +86 532 80951000Call: +86 532 80951000Sales service and inquiries: +86 10 65692188Call: +86 10 65692188Export Trades Customer Service: +86 532 83104622Call: +86 532 83104622Import Customer Service: +86 532 83104611Call: +86 532 83104611Sales service and inquiries: +86 10 65692199Call: +86 10 65692199SpamAssassin Report (spam score: -0.7) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.220.171 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 0.0 MSGID_FROM_MTA_HEADER Message-Id was added by a relay
Click to view scam #129599 - Sent on June 15, 2015, 11:26 pm by test@hatsu.gov.tr
Cliquez ici pour afficher parfaitement cet email     Bonjour Vous avez du mal à prendre une décision comme beaucoup de personne.Je vous propose de vous aider à connaitre les événements à l’avance afin d’anticiper et prendre la bonne direction.Les arts divinatoires n’ont aucun secret pour moi. Ils aident souvent quand on est dans une impasse comme vous à y voir plus clair. N’hésitez plus, je ferai tout mon possible pour vous aider au mieux et vous dire tout avec clarté. Sincères salutations,Votre voyanteCyrine     Vous pouvez vous désinscrire des offres d'Astromancia SpamAssassin Report (spam score: 5.9) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: suivi-astro-consult.com] 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.7 RCVD_IN_DNSWL_LOW RBL: Sender listed at http://www.dnswl.org/, low trust [209.85.214.176 listed in list.dnswl.org] -0.0 SPF_PASS SPF: sender matches SPF record 2.4 RAZOR2_CF_RANGE_E8_51_100 Razor2 gives engine 8 confidence level above 50% [cf: 100] 0.4 RAZOR2_CF_RANGE_51_100 Razor2 gives confidence level above 50% [cf: 100] 1.7 RAZOR2_CHECK Listed in Razor2 (http://razor.sf.net/) 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid 2.0 MIME_NO_TEXT No (properly identified) text body parts
If you cannot click the link above, Copy & Paste this link: http://whatiswrongww.com/yeyJjIjogOTU0MiwgImYiOiAwLCAibSI6IDg2MzksICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: whatiswrongww.com] 0.0 FORGED_RELAY_MUA_TO_MX FORGED_RELAY_MUA_TO_MX 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: whatiswrongww.com] 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Click to view scam #129591 - Sent on June 15, 2015, 11:06 pm by Rent.and.Own@whatiswrongww.com
Please all i need from you in this project is total honesty and trust. SpamAssassin Report (spam score: 0.0) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record
Click to view scam #129588 - Sent on June 15, 2015, 10:51 pm by caep@ufra.edu.br
If you cannot click the link above, Copy & Paste this link: http://whatiswrongww.com/reyJjIjogOTU0NiwgImYiOiAwLCAibSI6IDg2NDIsICJsIjogMzAsICJzIjogMCwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread)
If you cannot click the link above, Copy & Paste this link: http://whatiswrongww.com/qeyJjIjogOTU0MSwgImYiOiAwLCAibSI6IDg2MzgsICJsIjogMzAsICJzIjogMSwgInUiOiAxOTM0MTIxMTAsICJ0IjogMSwgInNkIjogMH0= SpamAssassin Report (spam score: 4.1) pts rule name description ---- ---------------------- -------------------------------------------------- 0.3 URIBL_RHS_DOB Contains an URI of a new domain (Day Old Bread) [URIs: whatiswrongww.com] 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: whatiswrongww.com] 0.0 FORGED_RELAY_MUA_TO_MX FORGED_RELAY_MUA_TO_MX 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address -0.0 SPF_HELO_PASS SPF: HELO matches SPF record -0.0 SPF_PASS SPF: sender matches SPF record 0.0 HTML_MESSAGE BODY: HTML included in message 1.1 MIME_HTML_ONLY BODY: Message only has text/html MIME parts 2.0 BASE64_LENGTH_79_INF BODY: base64 encoded email part uses line length greater than 79 characters 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.6 HTML_MIME_NO_HTML_TAG HTML-only message, but there is no HTML tag 0.0 LOTS_OF_MONEY Huge... sums of money 0.0 T_DKIM_INVALID DKIM-Signature header exists but is not valid
Subject: Microsoft account unusual sign-in activityTo: nedhulse49@hotmail.comFrom: member.services@outlook.comDate: Mon, 15 Jun 2015 22:27:35 +0100Microsoft accountThanks for verifying your security infoWe detected something unusual about a recent sign-in to the Microsoft account . To help keep you safe, we required an extra security challenge.Sign-in details:Country/region: NigeriaIP address: 42.29.169.246Date: 06/15/2015 08:15 AM (EST)If this was you, then you can safely ignore this email.If you're not sure this was you, a malicious user might have your password. Please review your recent activity and we'll help you take corrective action.Review recent activityTo opt out or change where you receive security notifications, click here.Thanks,The Microsoft account team
Click to view scam #129589 - Sent on June 15, 2015, 10:49 pm by nedhulse49@hotmail.com
Dear Customer, Good day! Our factory specilized in men/women/children clothing, T shirt, polo, tank top, hoodies, pants, skirts, pajamas etc for nearlly 10 years, We are main supplier of FILA and Disney. Any inquire, pls feel free to contact me, hope to hear from you soon! Best Regards Carol lee Shenzhen Wallesun Garment Co.,Ltd. www(dot)wallesun(dot)com Contact: Carol Lee Tel/webchat/whatsapp: 86 15089218610 Email: Carol.lee@wallesun.com Skype: wallesun001 SpamAssassin Report (spam score: 5.5) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: wallesun.com] 0.0 FSL_HELO_NON_FQDN_1 FSL_HELO_NON_FQDN_1 0.0 FORGED_RELAY_MUA_TO_MX FORGED_RELAY_MUA_TO_MX 0.0 TVD_RCVD_IP4 Message was received from an IPv4 address 0.0 TVD_RCVD_IP Message was received from an IP address 0.7 SPF_NEUTRAL SPF: sender does not match SPF record (neutral) 1.6 RCVD_IN_BRBL_LASTEXT RBL: RCVD_IN_BRBL_LASTEXT [14.21.151.77 listed in bb.barracudacentral.org] 3.1 URI_OBFU_WWW BODY: Obfuscated URI 0.1 MISSING_MID Missing Message-Id: header
Click to view scam #129586 - Sent on June 15, 2015, 10:42 pm by carol@clothing.net