Advert.

Do NOT tell your scammer he is posted here, or report their accounts as it puts others at risk!

Windows Account Update

Report any emails with fake links attempting to steal your ID, and any fake sites used by scammers.

Windows Account Update

Unread postby SlapHappy » Sat Jul 21, 2012 6:55 pm

Received: by 10.216.65.205 with SMTP id f55csp65330wed;
Sat, 21 Jul 2012 10:44:31 -0700 (PDT)
Received: by 10.236.79.100 with SMTP id h64mr9557698yhe.50.1342892670104;
Sat, 21 Jul 2012 10:44:30 -0700 (PDT)
Return-Path: <Scan@tristatepgh.com>
Received: from server518.appriver.com (server518a.appriver.com. [72.32.253.107])
by mx.google.com with ESMTPS id h15si3405254ani.174.2012.07.21.10.44.23
(version=TLSv1/SSLv3 cipher=OTHER);
Sat, 21 Jul 2012 10:44:30 -0700 (PDT)
Received-SPF: pass (google.com: domain of Scan@tristatepgh.com designates
72.32.253.107 as permitted sender) client-ip=72.32.253.107;
Authentication-Results: mx.google.com; spf=pass (google.com: domain of
Scan@tristatepgh.com designates 72.32.253.107 as permitted sender)
smtp.mail=Scan@tristatepgh.com
X-Note-AR-ScanTimeLocal: 7/21/2012 12:44:22 PM
X-Policy: tristatepgh.com - tristatepgh.com
X-Policy: tristatepgh.com - tristatepgh.com
X-Policy: tristatepgh.com - tristatepgh.com
X-Policy: tristatepgh.com - tristatepgh.com
X-Policy: tristatepgh.com - tristatepgh.com
X-Policy: Too many policies to list
X-Primary: scan@tristatepgh.com
X-Note: This Email was scanned by AppRiver SecureTide
X-ALLOW: @tristatepgh.com ALLOWED
X-Virus-Scan: V-
X-Note: Spam Tests Failed:
X-Country-Path: UNITED STATES->UNITED STATES->UNITED STATES
X-Note-Sending-IP: 72.164.26.211
X-Note-Reverse-DNS: mail.tristatepgh.com
X-Note-Return-Path: Scan@tristatepgh.com
X-Note: User Rule Hits:
X-Note: Global Rule Hits: G279 G280 G281 G282 G286 G287 G298 G389
X-Note: Encrypt Rule Hits:
X-Note: Mail Class: ALLOWEDSENDER
X-Note: Headers Injected
Received: from [72.164.26.211] (HELO mail.tristatepgh.com)
by server518.appriver.com (CommuniGate Pro SMTP 5.4.4)
with ESMTP id 325650031; Sat, 21 Jul 2012 12:44:22 -0500
Received: from User ([64.25.237.86]) by mail.tristatepgh.com with Microsoft
SMTPSVC(5.0.2195.7381);
Sat, 21 Jul 2012 13:44:17 -0400
Reply-To: <update@microsoft.com>
From: "Windows Security"<scan@tristatepgh.com>
Subject: Windows Account Update
Date: Sat, 21 Jul 2012 11:44:17 -0600
MIME-Version: 1.0
Content-Type: text/html;
charset="_iso-2022-jp$ESC"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2800.1081
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1081
Bcc:
Return-Path: scan@tristatepgh.com
Message-ID: <EXCHANGEAjfUKWTa9tf00000023@mail.tristatepgh.com>
X-OriginalArrivalTime: 21 Jul 2012 17:44:17.0870 (UTC)
FILETIME=[73AEAEE0:01CD6768]

>>
Dear Windows User,

It has come to our attention that your Microsoft windows Installation records are out of date. Every Windows installation has to be tied to an email account for daily update.

This requires you to verify the Email Account. Failure to verify your records will result in account suspension. Click on the Verify button below and enter your login information on the following page to Confirm your records.

VERIFY "http:/ /www.balder.com.br/windows/index1.htm" << Phishing website link.


Thank you,

Microsoft Windows Team.
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

Return to Fake sites/Phishing sites.

Who is online

Users browsing this forum: No registered users and 14 guests