Advert.

Do NOT tell your scammer he is posted here, or report their accounts as it puts others at risk!

Phishers impersonating FedEx

DO NOT click on any links in these emails.

Phishers impersonating FedEx

Unread postby SlapHappy » Fri Mar 27, 2015 10:25 pm

ricky.mcginnis@bostechservices.com

Return-Path: <bostech@gator3059.hostgator.com>
Received: from bostech by gator3059.hostgator.com with local (Exim 4.82)
(envelope-from <bostech@gator3059.hostgator.com>)
id 1YbU5F-0003GD-AX
for Fri, 27 Mar 2015 08:13:57 -0500
Subject: XXXXX, Courier was unable to deliver the parcel, ID0000868805
X-PHP-Script: bostechservices.com/post.php for 80.86.82.20
Date: Fri, 27 Mar 2015 08:13:57 -0500
From: "FedEx Ground" <ricky.mcginnis@bostechservices.com>
Reply-To: "FedEx Ground" <ricky.mcginnis@bostechservices.com>



Dear XXXXXX,

We could not deliver your parcel.
You can review complete details of your order in the find attached.

Thanks and best regards,
Ricky Mcginnis,
Sr. Station Manager.


Attachments area
Preview attachment Label_0000868805.zip
[Compressed Archive]
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

"FedEx 2Day A.M." <francisco.parsons@karapop.cz>

Unread postby SlapHappy » Wed Apr 15, 2015 12:06 am

* 89.187.131.19 Coolhousing S.r.o. n/a Czech Republic

Return-Path: <www-data@localhost>
Received: from localhost (hermes.itcrew.cz. [89.187.131.19])
by mx.google.com with ESMTP id f9si2440906wjx.87.2015.04.14.07.28.24
for <
Tue, 14 Apr 2015 07:28:25 -0700 (PDT)
Subject:xxxxx, Delivery Notification, ID 00295558
X-PHP-Originating-Script: 0:post.php(15) : eval()'d code
Date: Tue, 14 Apr 2015 16:28:24 +0200
From: "FedEx 2Day A.M." <francisco.parsons@karapop.cz>
Reply-To: "FedEx 2Day A.M." <francisco.parsons@karapop.cz>



Dear Robert,

We could not deliver your parcel.
You can review complete details of your order in the find attached.

Thanks and best regards,
Francisco Parsons,
FedEx Delivery Agent.


Attachments area
Preview attachment
00295558.zip
[Compressed Archive]
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

"FedEx International Ground" <darryl.starr@headstudio.com.br

Unread postby SlapHappy » Thu Apr 16, 2015 8:28 am

* 200.170.94.64 Durand Do Brasil Ltda n/a Brazil

Return-Path: <php@ww08-tvt-spo.fly.com.br>
Received: from relayweb02-tvt-spo.fly.com.br ([200.170.94.223])
by mx.google.com with ESMTPS id k8si29206435wiy.12.2015.04.15.17.57.16
for <
(version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128);
Wed, 15 Apr 2015 17:57:17 -0700 (PDT)
Received-SPF: none (google.com: php@ww08-tvt-spo.fly.com.br does not designate
permitted sender hosts) client-ip=200.170.94.223;
Authentication-Results: mx.google.com;
spf=none (google.com: php@ww08-tvt-spo.fly.com.br does not designate
permitted sender hosts) smtp.mail=php@ww08-tvt-spo.fly.com.br
Received: from ww08-tvt-spo (ww08-tvt-spo.fly.com.br [200.170.94.64])
by relayweb02-tvt-spo.fly.com.br (8.14.7/8.14.7) with SMTP id t3G10Ub9003731
for <; Wed, 15 Apr 2015 22:00:30 -0300 (BRT)
(envelope-from php@ww08-tvt-spo.fly.com.br)
Subject: xxxxxx, Courier was unable to deliver the parcel, ID000261891
To:
Date: Wed, 15 Apr 2015 21:57:14 -0300
From: "FedEx International Ground" <darryl.starr@headstudio.com.br>
Reply-To: "FedEx International Ground" <darryl.starr@headstudio.com.br>
Message-ID: <97914ead65d2eb9d127fe777cc814dee@headstudio.com.br>
X-Priority: 3
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary="b1_ca72354a32cc674df9fac525394c8611"
Content-Transfer-Encoding: 8bit



Dear xxxxx,

Your parcel has arrived at April 13. Courier was unable to deliver the parcel to you.
Please, download Delivery Label attached to this email.

Yours sincerely,
Darryl Starr,
Station Manager.

Attachments area
Preview attachment
FedEx_000261891.zip

Compressed Archive
FedEx_000261891.zip
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

<tyrone.brandt@213-241-55-180.ip.webion.net.pl>

Unread postby SlapHappy » Wed Aug 19, 2015 6:35 pm

* 213.241.55.180 Netia Sa Warsaw Poland

Return-Path: <kosedowski@conversion24.pl>
Received: from vps108.webion.pl (213-241-55-180.ip.webion.net.pl. [213.241.55.180])
by mx.google.com with ESMTPS id bb6si14297962lbc.153.2015.08.18.21.58.50
for xxx
(version=TLSv1 cipher=RC4-SHA bits=128/128);
Tue, 18 Aug 2015 21:58:51 -0700 (PDT)
Received-SPF: pass (google.com: domain of kosedowski@conversion24.pl designates
213.241.55.180 as permitted sender) client-ip=213.241.55.180;
Authentication-Results: mx.google.com;
spf=pass (google.com: domain of kosedowski@conversion24.pl designates
213.241.55.180 as permitted sender) smtp.mailfrom=kosedowski@conversion24.pl
Received: from kosedowski by vps108.webion.pl with local (Exim 4.85)
(envelope-from <kosedowski@conversion24.pl>)
id 1ZRvSa-0007Qw-T5
for xxx; Wed, 19 Aug 2015 06:58:49 +0200
To: xxx
Subject: Courier was unable to deliver the parcel, ID000374515
X-PHP-Originating-Script: 1019:post.php(13) : eval()'d code
Date: Wed, 19 Aug 2015 06:58:48 +0200
From: "FedEx International MailService" <tyrone.brandt@213-241-55-180.ip.webion.net.pl>
Reply-To: "FedEx International MailService" <tyrone.brandt@213-241-55-180.ip.webion.net.pl>
Message-ID: <55f72f7039d547ebbad6ebacd9f2028e@213-241-55-180.ip.webion.net.pl>
X-Priority: 3
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary="b1_383bda10532c7aec3f199e4021e3b1b8"
Content-Transfer-Encoding: 8bit
X-Authenticated-Id: kosedowski


Dear Customer,

This is to confirm that one or more of your parcels has been shipped.
You can review complete details of your order in the find attached.

Regards,
Tyrone Brandt,
Sr. Support Agent.

Attachments area
Preview attachment Delivery_Notification_000374515.zip

Compressed Archive
Delivery_Notification_000374515.zip
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

<eduardo.walls@01-sh-r19c03b11-ds74.simplehelix.com>

Unread postby SlapHappy » Sat Aug 29, 2015 1:13 am

* 77.111.207.70 Neo Telecoms S.a.s. Véry France

Return-Path: <pb@01-sh-r19c03b11-ds74.simplehelix.com>
Received: from 01-sh-r19c03b11-ds74.simplehelix.com (01-sh-r19c03b11-ds74.simplehelix.com.
[199.101.146.170])
by mx.google.com with ESMTPS id u207si5089321ywu.49.2015.08.28.16.20.57
for
(version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128);
Fri, 28 Aug 2015 16:20:57 -0700 (PDT)
Received-SPF: pass (google.com: best guess record for domain of
pb@01-sh-r19c03b11-ds74.simplehelix.com designates 199.101.146.170 as permitted sender)
client-ip=199.101.146.170;
Authentication-Results: mx.google.com;
spf=pass (google.com: best guess record for domain of pb@01-sh-r19c03b11-ds74.simplehelix.com
designates 199.101.146.170 as permitted sender)
smtp.mailfrom=pb@01-sh-r19c03b11-ds74.simplehelix.com
Received: from pb by 01-sh-r19c03b11-ds74.simplehelix.com with local (Exim 4.85)
(envelope-from <pb@01-sh-r19c03b11-ds74.simplehelix.com>)
id 1ZVSx7-0000yz-CG
for Fri, 28 Aug 2015 18:20:57 -0500
To:
Subject: Delivery Notification, ID 00000705429
X-PHP-Script: outsidetalent.com/post.php for 77.111.207.70
Date: Fri, 28 Aug 2015 18:20:57 -0500
From: "FedEx 2Day A.M." <eduardo.walls@01-sh-r19c03b11-ds74.simplehelix.com>
Reply-To: "FedEx 2Day A.M." <eduardo.walls@01-sh-r19c03b11-ds74.simplehelix.com>
Message-ID: <b68eb8deb26fc3001b052fbe790aeb20@01-sh-r19c03b11-ds74.simplehelix.com>


Dear Customer,

Courier was unable to deliver the parcel to you.
Shipment Label is attached to this email.

Yours sincerely,
Eduardo Walls,
Sr. Support Agent.
Attachments area
Preview attachment FedEx_ID_00000705429.zip

Compressed Archive
FedEx_ID_00000705429.zip
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

<joe.pennington@192.161.173.100.static.quadranet.com>

Unread postby SlapHappy » Sat Aug 29, 2015 3:50 am

* 192.161.173.100 Quadranet Los Angeles United States

Return-Path: <blogscom@server53.01domain.net>
Received: from server53.01domain.net ([192.161.173.98])
by mx.google.com with ESMTPS id k7si8140428pdn.206.2015.08.27.23.44.55
for
(version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128);
Thu, 27 Aug 2015 23:44:55 -0700 (PDT)
Received-SPF: neutral (google.com: 192.161.173.98 is neither permitted nor denied
by best guess record for domain of blogscom@server53.01domain.net)
client-ip=192.161.173.98;
Authentication-Results: mx.google.com;
spf=neutral (google.com: 192.161.173.98 is neither permitted nor denied by
best guess record for domain of blogscom@server53.01domain.net)
smtp.mailfrom=blogscom@server53.01domain.net
Received: from blogscom by server53.01domain.net with local (Exim 4.85)
(envelope-from <blogscom@server53.01domain.net>)
id 1ZVDPA-001iel-Db
for Thu, 27 Aug 2015 23:44:52 -0700
To:
Subject: Problems with item delivery, n.00742395
X-PHP-Script: onlinegamesblog.org/post.php for 77.111.207.70
Date: Fri, 28 Aug 2015 06:44:52 +0000
From: "FedEx Ground" <joe.pennington@192.161.173.100.static.quadranet.com>
Reply-To: "FedEx Ground" <joe.pennington@192.161.173.100.static.quadranet.com>
Message-ID: <b68eb8deb26fc3001b052fbe790aeb20@192.161.173.100.static.quadranet.com>
X-Priority: 3
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary="b1_ab87e685b7fb7f2b9d9bc3ba8d608ec9"
Content-Transfer-Encoding: 8bit
X-OutGoing-Spam-Status: No, score=-0.9
X-AntiAbuse: This header was added to track abuse, please include it with any
abuse report
X-AntiAbuse: Primary Hostname - server53.01domain.net
X-AntiAbuse: Original Domain - gmail.com
X-AntiAbuse: Originator/Caller UID/GID - [1138 1149] / [47 12]
X-AntiAbuse: Sender Address Domain - server53.01domain.net
X-Get-Message-Sender-Via: server53.01domain.net: authenticated_id: blogscom/only
user confirmed/virtual account not confirmed



Dear Customer,

Courier was unable to deliver the parcel to you.
You can review complete details of your order in the find attached.

Sincerely,
Joe Pennington,
Sr. Operation Manager.

Attachments area
Preview attachment FedEx_ID_00742395.zip

Compressed Archive
FedEx_ID_00742395.zip
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

<peter.dickinson@p3nw8sh263.shr.prod.phx3.secureserver.net>

Unread postby SlapHappy » Sun Aug 30, 2015 10:37 pm

* 184.168.152.39 Godaddy.com, Llc Scottsdale United States

Return-Path: <noreply@secureserver.net>
Received: from p3nlsmtp16.shr.prod.phx3.secureserver.net
(p3nlsmtp16.shr.prod.phx3.secureserver.net. [72.167.234.241])
by mx.google.com with ESMTPS id k12si20530265pbq.59.2015.08.30.12.12.09
for
(version=TLS1_2 cipher=AES128-SHA bits=128/128);
Sun, 30 Aug 2015 12:12:09 -0700 (PDT)
Received-SPF: pass (google.com: domain of noreply@secureserver.net
designates 72.167.234.241 as permitted sender) client-ip=72.167.234.241;
Authentication-Results: mx.google.com;
spf=pass (google.com: domain of noreply@secureserver.net designates
72.167.234.241 as permitted sender) smtp.mailfrom=noreply@secureserver.net
Received: from P3NW8SH263 ([184.168.152.39])
by p3nlsmtp16.shr.prod.phx3.secureserver.net with
id B7C81r00z0rFYEo017C83k; Sun, 30 Aug 2015 12:12:08 -0700
Subject: We could not deliver your parcel, #000308952
To:
Date: Sun, 30 Aug 2015 12:12:08 -0700
From: "FedEx 2Day" <peter.dickinson@p3nw8sh263.shr.prod.phx3.secureserver.net>
Reply-To: "FedEx 2Day" <peter.dickinson@p3nw8sh263.shr.prod.phx3.secureserver.net>
Message-ID: <14b89ab9a50ff11c1ef2f1b506e3873d@p3nw8sh263.shr.prod.phx3.secureserver.net>
X-Priority: 3
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary="b1_447120a8838209124c0a74bb686b03a9"
Content-Transfer-Encoding: 8bit



Dear Customer,

Courier was unable to deliver the parcel to you.
You can review complete details of your order in the find attached.

Thanks and best regards,
Peter Dickinson,
FedEx Support Manager.

Attachments area
Preview attachment Label_000308952.zip
[Compressed Archive]
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

"FedEx International Ground" <ray.bryant@top1.net-wings.eu>

Unread postby SlapHappy » Mon Aug 31, 2015 2:56 am

* 89.29.122.55 Poda A.s. Orlova Czech Republic

Return-Path: <webmaster@top1drive.cz>
Received: from top1.net-wings.eu (top1.net-wings.eu. [89.29.122.55])
by mx.google.com with ESMTPS id u2si16092711wjz.147.2015.08.29.02.35.53
for
(version=TLSv1 cipher=RC4-SHA bits=128/128);
Sat, 29 Aug 2015 02:35:54 -0700 (PDT)
Received-SPF: pass (google.com: domain of webmaster@top1drive.cz
designates 89.29.122.55 as permitted sender) client-ip=89.29.122.55;
Authentication-Results: mx.google.com;
spf=pass (google.com: domain of webmaster@top1drive.cz designates
89.29.122.55 as permitted sender) smtp.mailfrom=webmaster@top1drive.cz
Received: from top1.net-wings.eu (top1.net-wings.eu [127.0.0.1])
by top1.net-wings.eu (8.13.8/8.13.8) with ESMTP id t7T9ZrhI003058
for <; Sat, 29 Aug 2015 11:35:53 +0200
Received: (from web4@localhost)
by top1.net-wings.eu (8.13.8/8.13.8/Submit) id t7T9ZrsV003057;
Sat, 29 Aug 2015 11:35:53 +0200
X-Authentication-Warning: top1.net-wings.eu: web4 set sender to
webmaster@top1drive.cz using -f
To:
Subject: Shipment delivery problem #00000822512
Date: Sat, 29 Aug 2015 11:35:53 +0200
From: "FedEx International Ground" <ray.bryant@top1.net-wings.eu>
Reply-To: "FedEx International Ground" <ray.bryant@top1.net-wings.eu>
Message-ID: <b68eb8deb26fc3001b052fbe790aeb20@top1.net-wings.eu>
X-Priority: 3
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary="b1_ab87e685b7fb7f2b9d9bc3ba8d608ec9"
Content-Transfer-Encoding: 8bit



Dear Customer,

We could not deliver your item.
Please, download Delivery Label attached to this email.

Regards,
Ray Bryant,
Sr. Operation Manager.
Attachments area
Preview attachment Delivery_Notification_00000822512.zip
[Compressed Archive]
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

"FedEx Post" <acaluqui@umet.ec> mic.wrods@outlook.com

Unread postby SlapHappy » Mon Jan 25, 2016 11:41 pm

* 116.202.108.2 Mts Bangalore India

Return-Path: <acaluqui@umet.ec>
Received: from mail.umet.ec (mail.umet.ec. [200.24.215.156])
by mx.google.com with ESMTP id v3si5427451ybb.46.2016.01.23.23.30.54;
Sat, 23 Jan 2016 23:30:55 -0800 (PST)
Received-SPF: pass (google.com: domain of acaluqui@umet.ec designates
200.24.215.156 as permitted sender) client-ip=200.24.215.156;
Authentication-Results: mx.google.com;
spf=pass (google.com: domain of acaluqui@umet.ec designates 200.24.215.156
as permitted sender) smtp.mailfrom=acaluqui@umet.ec
Received: from localhost (localhost [127.0.0.1])
by mail.umet.ec (Postfix) with ESMTP id 3650A17E9A1A;
Thu, 21 Jan 2016 09:29:36 -0500 (ECT)
X-Virus-Scanned: amavisd-new at umet.ec
Received: from mail.umet.ec ([127.0.0.1])
by localhost (mail.umet.ec [127.0.0.1]) (amavisd-new, port 10024)
with ESMTP id rHwqO8SXEXqW; Thu, 21 Jan 2016 09:29:15 -0500 (ECT)
Received: from [116.202.108.2] (unknown [116.202.108.2])
by mail.umet.ec (Postfix) with ESMTPSA id B4CFD16E97F1;
Thu, 21 Jan 2016 08:43:11 -0500 (ECT)
Content-Type: multipart/mixed; boundary="===============0389840560=="
MIME-Version: 1.0
Subject: Dear
To: Recipients <acaluqui@umet.ec>
From: "FedEx Post" <acaluqui@umet.ec>
Date: Thu, 21 Jan 2016 19:08:46 +0530
Reply-To: mic.wrods@outlook.com
Message-Id: <20160121134311.B4CFD16E97F1@mail.umet.ec>


Kindly Open attachment for more details.

Attachments area
Preview attachment DearFirst1.docx
[Word]
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

fdxpackagedelivery@careceo.com

Unread postby SlapHappy » Thu Jan 28, 2016 9:49 pm

* 116.203.24.68 Mts Mumbai India

Return-Path: <acaluqui@umet.ec>
Received: from mail.umet.ec (mail.umet.ec. [200.24.215.156])
by mx.google.com with ESMTP id g184si361547ywg.59.2016.01.26.03.58.21;
Tue, 26 Jan 2016 03:58:23 -0800 (PST)
Received-SPF: pass (google.com: domain of acaluqui@umet.ec designates
200.24.215.156 as permitted sender) client-ip=200.24.215.156;
Authentication-Results: mx.google.com;
spf=pass (google.com: domain of acaluqui@umet.ec designates 200.24.215.156
as permitted sender) smtp.mailfrom=acaluqui@umet.ec
Received: from localhost (localhost [127.0.0.1])
by mail.umet.ec (Postfix) with ESMTP id 0C0EF1629EDF;
Tue, 26 Jan 2016 04:38:11 -0500 (ECT)
X-Virus-Scanned: amavisd-new at umet.ec
Received: from mail.umet.ec ([127.0.0.1])
by localhost (mail.umet.ec [127.0.0.1]) (amavisd-new, port 10024)
with ESMTP id W+q6YxHQhPWs; Tue, 26 Jan 2016 04:37:51 -0500 (ECT)
Received: from [116.203.24.68] (unknown [116.203.24.68])
by mail.umet.ec (Postfix) with ESMTPSA id 4D85016E8896;
Tue, 26 Jan 2016 01:57:20 -0500 (ECT)
Content-Type: multipart/mixed; boundary="===============1169066111=="
MIME-Version: 1.0
Subject: Package
To: Recipients <acaluqui@umet.ec>
From: "FedEx Post" <acaluqui@umet.ec>
Date: Tue, 26 Jan 2016 12:22:29 +0530
Reply-To: fdxpackagedelivery@careceo.com
Message-Id: <20160126065721.4D85016E8896@mail.umet.ec>



We have an International Cashier Bank Draft/Cheque package worth the sum of $800,000.00 USD in your name at our office. Open attachment for more details.

Attachments area
Preview attachment Your FedEx delivery.docx
[Word]
If anyone asks you for money on the Internet they are always a scammer, 100% of the time.
Blackmail Scammed? Go here: https://www.scamsurvivors.com/blackmail/#/
FAQ viewtopic.php?f=3&t=19
Victim of a scam? Go here: https://scamsurvivors.com/forum/viewtop ... =3&t=26504
User avatar
SlapHappy
Retired admin/co creator
 
Posts: 44968
Joined: Tue Apr 17, 2012 5:18 am
Location: Just a face in a magazine, watching you post your scammer's details.

Next

Return to No clicky clicky. Sites that try to install a virus on your PC.

Who is online

Users browsing this forum: No registered users and 10 guests