
07-01-08, 04:27 PM
|
 | Administrator | | | |
Paypal Phishing - www.b13-bw.com - Update Your Information | | A Parked Domain
Header Analysis The following IP addresses were extracted from your headers:
IP Address Probable Country Additional Info
80.12.242.49 France (Moulineaux)* Whois Google DNSStuff Urgentmessage.org 41.249.90.73 Morocco (Rabat)* Whois Google DNSStuff Urgentmessage.org
* The last IP listed is usually the originating IP address
Here is the text you submitted, with the IP addresses highlighted:
Delivered-To: scamfraudalert@gmail.com
Received: by 10.150.123.2 with SMTP id v2cs25514ybc;
Tue, 1 Jul 2008 12:44:46 -0700 (PDT)
Received: by 10.125.164.7 with SMTP id r7mr1502115mko.161.1214941481438;
Tue, 01 Jul 2008 12:44:41 -0700 (PDT)
Return-Path:
Received: from smtp21.orange.fr (smtp21.orange.fr [80.12.242.49])
by mx.google.com with ESMTP id 31si16468368fkt.7.2008.07.01.12.42.32;
Tue, 01 Jul 2008 12:44:41 -0700 (PDT)
Received-SPF: neutral (google.com: 80.12.242.49 is neither permitted nor denied by domain of paypal@admin.com) client-ip=80.12.242.49;
Authentication-Results: mx.google.com; spf=neutral (google.com: 80.12.242.49 is neither permitted nor denied by domain of paypal@admin.com) smtp.mail=paypal@admin.com
Received: from User (unknown [41.249.90.73])
by mwinf2122.orange.fr (SMTP Server) with ESMTP id 9AC001C00076;
Tue, 1 Jul 2008 21:42:12 +0200 (CEST)
X-ME-UUID: 20080701194212633.9AC001C00076@mwinf2122.orange.fr
Reply-To: paypal@admin.com
From: Paypal
Subject: Your account is limited !
Date: Tue, 1 Jul 2008 20:42:26 -0000
MIME-Version: 1.0
Content-Type: text/html;
charset="Windows-1251"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000
Message-Id: <20080701194212.9AC001C00076@mwinf2122.orange.fr>
To: undisclosed-recipients:; www.B13-bw.com on 2008-06-29 - Domain History
Domain: b13-bw.com - Domain History
Cache Date: 2008-06-29
Registrar: NETWORK SOLUTIONS, LLC.
Registrant Search: Click on an email address we found in this whois record
to see which other domains the registrant is associated with: yy4re5sj2v8@networksolutionsprivateregistration.com
Registrant:
givenchi, dllk
ATTN: B13-BW.COM
c/o Network Solutions
P.O. Box 447
Herndon, VA. 20172-0447
Domain Name: B13-BW.COM
Administrative Contact, Technical Contact:
givenchi, dllk yy4re5sj2v8@networksolutionsprivateregistration.com
dilman
ATTN: B13-BW.COM
c/o Network Solutions
P.O. Box 447
Herndon, VA 20172-0447
570-708-8780
Record expires on 28-Jun-2009.
Record created on 28-Jun-2008.
Database last updated on 29-Jun-2008 16:03:37 EDT.
Domain servers in listed order: NS79.WORLDNIC.COM 205.178.190.40
NS80.WORLDNIC.COM 205.178.144.40
Last edited by Scrub; 07-01-08 at 04:45 PM.
|