Tuesday, September 04, 2012

看來社交工程看上我了.

還好我的英文很爛. 下次強烈建議真的該認真一點發中文的給我. 拜託!

Return-Path: 
X-Original-To: ZZZZZZ@XXXXXX.daemonland.org
Delivered-To: ZZZZZZ@XXXXXX.daemonland.org
Received: from mail.daemonland.org (localhost.daemonland.org [127.0.0.1])
 by mail.daemonland.org (Postfix) with ESMTP id BEA8030A8EE8
 for ; Tue, 28 Aug 2012 03:08:44 +0800 (CST)
Authentication-Results: mail.daemonland.org; sender-id=neutral header.from=no-reply@googlemail.com; spf=neutral smtp.mfrom=no-reply@googlemail.com
X-Quarantine-ID: 
X-Virus-Scanned: amavisd-new at daemonland.org
X-Spam-Flag: YES
X-Spam-Score: 28.786
X-Spam-Level: ****************************
X-Spam-Status: Yes, score=28.786 tagged_above=2 required=6.2
 tests=[BAYES_50=0.8, DKIM_ADSP_CUSTOM_MED=0.001,
 FORGED_MUA_OUTLOOK=1.927, FREEMAIL_FROM=0.001, FREEMAIL_REPLYTO=2.398,
 FROM_MISSPACED=2.292, FROM_MISSP_DKIM=0.001,
 FROM_MISSP_EH_MATCH=1.801, FROM_MISSP_FREEMAIL=1.757,
 FROM_MISSP_MSFT=1.324, FROM_MISSP_REPLYTO=1.297,
 FROM_MISSP_TO_UNDISC=0.643, FROM_MISSP_USER=2.153, FSL_UA=0.001,
 FSL_XM_419=0.908, MSOE_MID_WRONG_CASE=2.584, NML_ADSP_CUSTOM_MED=0.9,
 NSL_RCVD_FROM_USER=3.05, RCVD_IN_BRBL_LASTEXT=1.449, RCVD_IN_PSBL=2.7,
 SPF_NEUTRAL=0.779, T_FREEMAIL_DOC_PDF=0.01,
 T_TO_NO_BRKTS_FREEMAIL=0.01] autolearn=spam
Received: from mail.daemonland.org ([127.0.0.1])
 by mail.daemonland.org (mail.daemonland.org [127.0.0.1]) (amavisd-new, port 10024)
 with ESMTP id rjtk3A0Afb2L for ;
 Tue, 28 Aug 2012 03:08:40 +0800 (CST)
Received: from wzr.ug.edu.pl (wzr.ug.edu.pl [153.19.121.200])
 (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits))
 (No client certificate requested)
 by mail.daemonland.org (Postfix) with ESMTPS id 516BB30A8EE3
 for ; Tue, 28 Aug 2012 03:08:34 +0800 (CST)
Received: from localhost (localhost [127.0.0.1])
 by wzr.ug.edu.pl (Postfix) with ESMTP id 46AA311F9E9;
 Mon, 27 Aug 2012 20:41:18 +0200 (CEST)
X-Virus-Scanned: Antywirus amavisd-new na wzr.ug.edu.pl
Received: from wzr.ug.edu.pl ([127.0.0.1])
 by localhost (jowita.zr.univ.gda.pl [127.0.0.1]) (amavisd-new, port 10024)
 with SMTP id pfzxGTTCPeR4; Mon, 27 Aug 2012 20:41:18 +0200 (CEST)
Received: from User (rrcs-71-41-65-58.se.biz.rr.com [71.41.65.58])
 by wzr.ug.edu.pl (Postfix) with ESMTPA id AA80611F9DC;
 Mon, 27 Aug 2012 20:40:57 +0200 (CEST)
Reply-To: 
From: "Google"
Subject: ***SPAM*** Attn::User
Date: Mon, 27 Aug 2012 14:41:07 -0400
MIME-Version: 1.0
Content-Type: multipart/mixed;
 boundary="----=_NextPart_000_0071_01C2A9A6.03BBAB76"
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000
Message-Id: <20120827184057.AA80611F9DC@wzr.ug.edu.pl>
To: undisclosed-recipients:;

This is a multi-part message in MIME format.

------=_NextPart_000_0071_01C2A9A6.03BBAB76
Content-Type: text/plain;
 charset="Windows-1251"
Content-Transfer-Encoding: 7bit

Dear Google User.
Attached to this email is your Official notification of You being among
one of the selected winners in the ongoing GOOGLE USER REWARD
PROMOTION,see attached document for more details.

Eduardo Molestina,
Chief Announcer.
Google INC.

------=_NextPart_000_0071_01C2A9A6.03BBAB76
Content-Type: application/msword;
 name="Google__Reward..doc"
Content-Transfer-Encoding: base64
Content-Disposition: attachment;
 filename="Google__Reward..doc"


附件檔案內容
From: Google Inc.
Corporate Headquarters,
1600 Amphitheatre Parkway,
 Mountain View,
 California, 94043,
United States,

Thru: Google Inc,
Google UK,
Manchester, Peter House
Oxford Street, Manchester
M1 5AN
Manchester, United Kingdom.

Dear Google User.

GOOGLE REWARD
Google Incorporation is one company that earns its profit mainly from advertising using their very own Google Ad Sense, Google Chrome browser, Google search engine, Gmail, Gala, Sify, e-mail service Google Maps, Google Apps, Orkut social networking and YouTube video sharing, which are offered to the public and was officially Incorporated on the 4th of September 1998, and our profit margin have been great.

In a bid to reward our numerous users/customers/clients who in one way or the other have contributed to our great success and achievement and had dealings with Google Services, Search Engine, Gmail, YouTube, Translator, Google Map, Google Earth, Ad Sense e.tc, 

The Board of Directors and Management have decided to come up with the Google Reward Scheme (GRS) to show our appreciation and also pray your continual usage of our services. In view of this A GOOGLE REWARD PROGRAM was organized which is first of its kind to encourage our users, and that the interest of our users are dear to us and also to say thank you. This promotion was set-up to encourage the active use of the Google search engine and the Google ancillary services. 

We wish to congratulate you, for being selected as one of our lucky winner in the ongoing GOOGLE REWARD PROGRAM. Hence we do believe with your prize, you will continue to be active in your patronage and loyalty to Google as a total of 6 Winners emerged worldwide, Draw from different continents of the world.

A Bank Cheque have been issued in your favor, hence you have won for yourself the sum of $1,000.000.00 (One Million United States Dollars) and also you have been enlisted as One of the Google Ambassadors. 

We are aware of the rampant abuse of Google as a company  and we are assuring all our users that we are working on this, as Google does not run a lottery and we will bring all those involved to book.

To claim your reward, please contact our Reward  Co-Ordinatoor Dr. Paul Lind by neatly filling the verification and funds release form below, as your payment will be released and arranged by our United Kingdom Office;

VERIFICATION AND FUNDS RELEASE FORM.
*First Name

*Last Name

*Residential Address

*Telephone/ Mobile

*Nationality/Country

*Age

*Sex

*Occupation/Position

*Amount Won

*Alternate Email



To File For Your Claim, Please Contact Our,
REWARD  CO-ORDINATOOR
DR. PAUL LIND
E-MAIL:  USERREWARD2012@GMAIL.COM
PHONE: +44- 702-3073-975/+44- 702-3073-983

Note: You can fill your verification and funds release form by printing and manually filling or you can fill directly on mail, or provide the details on Microsoft Word.

Congratulations from the Staff & Members of Google Incorporation.


Dr. Larry Page.
Chairman of the Board and Chief Executive Officer,
Google Inc.
Corporate Headquarters,
1600 Amphitheatre Parkway,
 Mountain View,
 California, 94043,
United States of America.                                              


寄出郵件的機器資料
Whois
#
# Query terms are ambiguous.  The query is assumed to be:
#     "n 71.41.65.58"
#
# Use "?" to get help.
#

#
# The following results may also be obtained via:
# http://whois.arin.net/rest/nets;q=71.41.65.58?showDetails=true&showARIN=false&ext=netref2
#

NetRange:       71.40.0.0 - 71.43.255.255
CIDR:           71.40.0.0/14
OriginAS:
NetName:        RCSW
NetHandle:      NET-71-40-0-0-1
Parent:         NET-71-0-0-0-0
NetType:        Direct Allocation
RegDate:        2005-04-01
Updated:        2012-02-24
Ref:            http://whois.arin.net/rest/net/NET-71-40-0-0-1


OrgName:        Road Runner HoldCo LLC
OrgId:          RCSW
Address:        13820 Sunrise Valley Drive
City:           Herndon
StateProv:      VA
PostalCode:     20171
Country:        US
RegDate:        2001-09-07
Updated:        2011-07-06
Comment:        Allocations for this OrgID serve Road Runner commercial customers out of the Austin, TX and Tampa Bay, FL RDCs.
Ref:            http://whois.arin.net/rest/org/RCSW

ReferralServer: rwhois://ipmt.rr.com:4321

OrgTechHandle: IPTEC-ARIN
OrgTechName:   IP Tech
OrgTechPhone:  +1-703-345-3416
OrgTechEmail:  abuse@rr.com
OrgTechRef:    http://whois.arin.net/rest/poc/IPTEC-ARIN

OrgAbuseHandle: ABUSE10-ARIN
OrgAbuseName:   Abuse
OrgAbusePhone:  +1-703-345-3416
OrgAbuseEmail:  abuse@rr.com
OrgAbuseRef:    http://whois.arin.net/rest/poc/ABUSE10-ARIN

#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#

3 comments:

Unknown said...

请问我也是收到类似的信件,请问是真的?

Unknown said...

请问我也是收到类似的信件,这是真的吗?

Computer Geek said...

不要相信啦! 這位大哥. 這是社交工程入侵法的第一步亂槍打鳥. 拿到那些資料, 再加上網路上 Google(或 ...) hacking 就可以拿到更多您的私人資訊. 再加上公部門意外或刻意流出的資訊要玩弄一個人就易如反掌.