Home Mega Sweepstakes Raffle

Sweepstakes scams NEVER die. Online researched have shown that most originate scamalert2out of the Caribbean. Consumers need to be vigilant and caution when receiving mails, emails or text messages regarding sweepstakes winnings. The sad thing is that these scam artists target the elderly.

Advertisement

Hershel Escrow.Hershel Escrow’s Website

The The Dubai Financial Services Authority (DFSA) ALERT the financial services shutterstock_344117816-1community and members of the public to false claims made by Hershel Escrow.Hershel Escrow’s website (https://hershelescrow.com/) includes the following false statements:
• its office is located in the DIFC; and
• all escrows (client assets placed in custody or trust until specified conditions are met) are deposited in a “DFSA-insured bank”.

Hershel Escrow is not and has never been authorised by the DFSA. Additionally, Hershel Escrow is not located within the DIFC jurisdiction. Further, the DFSA does not “insure” any person, including any bank.

Click Here to see the latest update.

Click Here if you no longer wish to receive updates from the DFSA.

The DFSA Website Team.

CONTACT
Level 13, West Wing, The Gate, DIFC
Via telephone: +971 (0)4 362 1500 | Via fax: +971 (0)4 362 0801

CONTACT WESTERN UNION VERY URGENT

from: IKE OBI <obiike787@yahoo.com>
to: scamfraudalert@gmail.comLogo_Fraudalert
date: Tue, Sep 5, 2017 at 9:06 AM
subject:Cancelled: CONTACT WESTERN UNION VERY URGENT @ Tuesday, 05 September 2017
mailed-by:yahoo.com
Tuesday, 05 September 2017
10:00 AM to 11:00 AM
(GMT) Greenwich Mean Time – Dublin / Edinburgh / Lisbon / London
Message

Attention. Good day,
Please we need your current home address and telephone number to enable us start sending your $2.5mUSD to you as we were instructed by IMF to be sending you $5000.00 each day till the whole amount $2.5mUSD,Now we need your
full name…….
Home Address…..
Telephone number………

Forward the wwwwestern20@outlook.fr
Or call with this telephone number +229-99 -19- 65-95

Thanks Regard
mr Ike Obi

Epoch.com ~ WcBilling.Com~ Webcams.com

consumers are complaining about unauthorized charges to their bank accounts Fraud Alertassociated with http://www.epoch.com and related porn sites. Epoch has been around since 08/20/1999
It is rumor that the Adriana Spam mail is said to be associated with this spam.

  1. Epoch.com
  2. WcBilling.Com
  3. Webcams.com
  4. 18FirstSex.com
  5. AboutGirlsLove.com
  6. SafeDateUnlock.com
  7. Anal-Angels.com
  8. FlirtHookUp.com
  9. SafeNsaFun.com
  10. ManMood.com
  11. ATMovs.com
  12. Beauty-Angels.com
  13. Boys-Love18.com
  14. Creampie-Angels.com
  15. FirstBGG.com
  16. Fuc*Studies.com
  17. Gag-N-Gape.com
  18. HomeTeenVids.com
  19. HomeToyTeens.com
  20. iTeenVideo.com
  21. Latin-Shemales.net
  22. LollyHardcore.com
  23. NubileGirlsHD.com
  24. Old-N-Young.com
  25. PrivateTeenVideo.com
  26. SoloTeenGirls.net
  27. Squirtingvirgin.com
  28. TeenMegaWorld.net
  29. Teens3Some.com
  30. TeenSexMania.com
  31. teensexmovs.com
  32. TeenSexMovs.com
  33. TeenStarsOnly.com
  34. TheyDidntKnow.com
  35. TrickyMasseur.com
  36. WatchMeFuc*ed.com
  37. WMBGirls.com
  38. CollegeFuckBook.com
  39. web.MaryTob.com
  40. Safer-Verify.com
  41. Lookerse.com
  42. CalmaDay.com
  43. SocialSex.com
  44. CalmaDay.com
  45. Salne.com

Related Article:

Epoch.com ~ WcBilling.Com~ Webcams.com

consumers are complaining about unauthorized charges to their bank accounts Fraud Alertassociated with http://www.epoch.com and related porn sites. Epoch has been around since 08/20/1999
It is rumor that the Adriana Spam mail is said to be associated with this spam.

  1. Epoch.com
  2. WcBilling.Com
  3. Webcams.com
  4. 18FirstSex.com
  5. AboutGirlsLove.com
  6. SafeDateUnlock.com
  7. Anal-Angels.com
  8. FlirtHookUp.com
  9. SafeNsaFun.com
  10. ManMood.com
  11. ATMovs.com
  12. Beauty-Angels.com
  13. Boys-Love18.com
  14. Creampie-Angels.com
  15. FirstBGG.com
  16. Fuc*Studies.com
  17. Gag-N-Gape.com
  18. HomeTeenVids.com
  19. HomeToyTeens.com
  20. iTeenVideo.com
  21. Latin-Shemales.net
  22. LollyHardcore.com
  23. NubileGirlsHD.com
  24. Old-N-Young.com
  25. PrivateTeenVideo.com
  26. SoloTeenGirls.net
  27. Squirtingvirgin.com
  28. TeenMegaWorld.net
  29. Teens3Some.com
  30. TeenSexMania.com
  31. teensexmovs.com
  32. TeenSexMovs.com
  33. TeenStarsOnly.com
  34. TheyDidntKnow.com
  35. TrickyMasseur.com
  36. WatchMeFuc*ed.com
  37. WMBGirls.com
  38. CollegeFuckBook.com
  39. web.MaryTob.com
  40. Safer-Verify.com
  41. Lookerse.com
  42. CalmaDay.com
  43. SocialSex.com
  44. CalmaDay.com
  45. Salne.com

Related Article:

Epoch.com ~ WcBilling.Com~ Webcams.com

consumers are complaining about unauthorized charges to their bank accounts Fraud Alertassociated with http://www.epoch.com and related porn sites. Epoch has been around since 08/20/1999
It is rumor that the Adriana Spam mail is said to be associated with this spam.

  1. Epoch.com
  2. WcBilling.Com
  3. Webcams.com
  4. 18FirstSex.com
  5. AboutGirlsLove.com
  6. SafeDateUnlock.com
  7. Anal-Angels.com
  8. FlirtHookUp.com
  9. SafeNsaFun.com
  10. ManMood.com
  11. ATMovs.com
  12. Beauty-Angels.com
  13. Boys-Love18.com
  14. Creampie-Angels.com
  15. FirstBGG.com
  16. Fuc*Studies.com
  17. Gag-N-Gape.com
  18. HomeTeenVids.com
  19. HomeToyTeens.com
  20. iTeenVideo.com
  21. Latin-Shemales.net
  22. LollyHardcore.com
  23. NubileGirlsHD.com
  24. Old-N-Young.com
  25. PrivateTeenVideo.com
  26. SoloTeenGirls.net
  27. Squirtingvirgin.com
  28. TeenMegaWorld.net
  29. Teens3Some.com
  30. TeenSexMania.com
  31. teensexmovs.com
  32. TeenSexMovs.com
  33. TeenStarsOnly.com
  34. TheyDidntKnow.com
  35. TrickyMasseur.com
  36. WatchMeFuc*ed.com
  37. WMBGirls.com
  38. CollegeFuckBook.com
  39. web.MaryTob.com
  40. Safer-Verify.com
  41. Lookerse.com
  42. CalmaDay.com
  43. SocialSex.com
  44. CalmaDay.com
  45. Salne.com

Related Article:

Facebook Update ~ 3 information messages has been sent to you

Email Header Analysis

IP Address:  216.109.71.2 (216.109.71.2)
IP Address Country:  United States
IP Continent:  North America
IP Address City Location:  Chesterfield
IP Address Region:  Missouri
IP Address Latitude:  38.65,
IP Address Longtitude:  -90.5334
Organization:  SAVVIS Communications Corporation
_____________________

From: Facebook
To:scamFRAUDalert@gmail.com

facebook: Notification message.

Here are some notifications you’ve missed.
3 information messages has been sent to you.

See All Notifications
This message was sent to scamFRAUDalert@gmail.com. If you don’t want to receive these emails in the future, please unsubscribe.
_______________________
2 messages notices
From Facebook Sat Jun 29 04:18:40 2013
X-Apparently-To: scamFRAUDalert via 98.138.213.179;
Sat, 29 Jun 2013 15:18:40 +0000
Return-Path: wlg@game-point.net
X-YahooFilteredBulk: 216.109.71.2
Received-SPF: none (domain of game-point.net does not designate
permitted sender hosts)
X-YMailISG: mos_M.0WLDu77ii4RANx9NsamQXmcjW6hJZtNppILsxKPWG8
9cZF1DbkCzs4IM5ZXqLRtc9wHA1MlYVH_3KhEr8ifZCK6KBDsnW8kfdpW8nl
p9KcJY6azoD4Ef20DeF_uNiN.1eQ95Ds.3eTIPxse0Hsvmsig0H_D9xblvBZ
WeKdlFQ050u47OgvTX_1s2v2duETMtoZPK.dP4Gri_eyqL2jXHMF0mR5N0wz
xL_BCMQb0gaQIV6za3ch0YKUP1gtFJzu5VfuqT.7y2XSC4bes19xzXqxoWDc
NBlFdnXMadvH5.ztOk5tQp1IZAhae8v7KSpqxm9AOs8lqvSVMDRL3.PujGvV
XxrxoM1X.ARbfYj2Py82Yj0vJMTSG4kVjGUD8qkMbyhIwFu7n.tE1Vghjcs_
7_H6GTR0fiETpBV0cbe.lASXHO1EJDncHP4X_W3m2w9jmqZlDefnI6TJT2HP
7RShTHkNVCGA6lPn27IrWO.cuDtgcicKJAYlHT8NpplepOrV06BwSSue.FxO
GLR.7La9cv5f_hLYYR7XKbmXSw1IA7WeWbzbzt43hg5d75uZkVq8AWrzATmi
KEfbt4fA_IHkUDlkGSpZULomD4EE0soClX0.sTAJotxq.UiHJXphbl1mhArg
IjnHsSYs1v5L3TuIwM2iGbYgZr9ujB60Lgq1O1L1UHxgPvUV8ZdvUEEeNg7b
XXc1r2DZiPZItCbAzJEgl1RatAnU91jHzQ4O0tRpIhV3ELIoFUly0cFTAVJt
uf4TOVKsCl4or2aYbXuqi6qkLFfBf.BFrYiPrmQEG2J90t9xIAPHzwHca_h_
XhYE1HYFH4GzZEUiAxaa0_eR_GnL6_HDycEaK5JJCiQU0bkreg9nA0t5ZkZ4
aljhM0wSqCbOzsnqtAU6kIBylw1w7yQa2eo0V5SXJVFTIb7DRa2Tj7rcn3gc
kbkMdAwgguUUuQd3PWEQo_kVbiysKTl0VeuSOgEQFd8DMTF_aV3jcdRYmvNH
XtVElCMeaXJf6qytGw7LyfGkI2gq7D5fmLHfyz6dRnNKrwBQO8EprB0z1zbC
e3epl23bi0fWqs_EqYh0fhAxDpotxLAevth4GK6oBqY_R74aykwt1Ji7oM8n
kIfJ.Z7TD6i12whvad6esa0Ywd7kNa.utIyJyAs1aRwYi79FSUC5G0Gegsyq
7T9U252Lwj3FgPd4yINMzIoabn12WIJIxTZUvWj5n3uvw_BQ5rkVw5_FIz6r
d8QQt4L0mgxxbgEf8htuV0VmA.afMnrUr4HEBMJkxY4y8XNAMmlTAGuiy1TP
2WEvqMUaf_C75RUdUSo7yhqlDkJ_m4GBs4UX
X-Originating-IP: [216.109.71.2]
Authentication-Results: mta1086.sbc.mail.ne1.yahoo.com
from=game-point.net; domainkeys=neutral (no sig);
from=game-point.net; dkim=neutral (no sig)
Received: from 127.0.0.1 (HELO localhost) (216.109.71.2)
by mta1086.sbc.mail.ne1.yahoo.com with
SMTP; Sat, 29 Jun 2013 15:18:40 +0000
Date: 29 Jun 2013 11:18:40 +0000
To: scamFRAUDalert@gmail.com
From: Facebook ~ wlg@game-point.net
Subject: 3 information messages has been sent to you
Message-ID: f514b.7e97f9f.874e@localhost
MIME-Version: 1.0
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 7bit
Content-Length: 4810

home-based Key Account Manager – mybusiness-google.com

The Purpose of this post is to ALERT you that the job you are about to apply for or may have applied FOR or is CONSIDERING APPLYING FOR is FRAUDULENT.

These job postings are an attempt to lure you into cashing counterfeit checks and have you wire funds via Western Union or MoneyGram. Essentially You Become A Money or RePackage Mule.

The identity of an individual or entity have been stolen along with fund from their bank accounts. You are being recruited to wire transfer these funds either by WESTERN UNION, MONEYGRAM, into your bank, a DOMESTIC BANK or FOREIGN BANK ACCOUNT

  1. Understanding The Cyber Theft Ring
  2. Money Mule Explained
  3. Protecting Yourself Against Money Mule
  4. Washingtonpost.com by Brian Kerbs
  5. Interview With A Money Mule
  6. Bobbear.co.UK ~ Historical Money Mule Sites

____________________

Email Header Analysis

IP Address:  190.234.188.114 (190.234.188.114)
IP Address Country:  Peru
IP Continent:  South America
IP Address City Location:  Lima
IP Address Region:  Lima
IP Address Latitude:  -12.05,
IP Address Longtitude:  -77.05
Organization:  Telefonica del Pe

We have an opening for an apprentice in a rapidly expanding company.

We require a hardworking, home-based Key Account Manager who can handle calls courteously and maintain the highest level of customer service.

Applicants with an excellent telephone mannerism, a friendly disposition, and excellent communication and computer skills may apply.

Applicants who wish to apply must also have a good computer with an internet connection at home, a valid email address and good typing skills as This position is a home-based opportunity and applicants must be able to type while speaking over the telephone as they will have to enter information into databases and take down customer details too.

If you fit this description and wish to apply for the position,
please reply to this advertisement clearly stating your location.

You will be processing orders and typically earning $1000 per week depending on whether you work full-time or part-time.

The amount you earn depends on you – if you choose to work full-time or part-time.

This is not a scam so please; only serious candidates apply stating job reference number 2972-456/1HR.

Contacts of our company: Caroline@mybusiness-google.com

guaranteed loan of 2% interest rate

Email Header Analysisscamalert

IP Address:  66.4.9.32 (mail.wcs.edu)
IP Address Country:  United States
IP Continent:  North America
IP Address City Location:  Spring Hill
IP Address Region:  Tennessee
IP Address Latitude:  35.7174,
IP Address Longtitude:  -86.8926
Organization:  BellSouth.net

______________________________
from: Harriet Medlin <harrietm@wcs.edu
to:
date: Wed, Jun 5, 2013 at 12:38 PM
subject: RE
mailed-by: wcs.edu

 

Harriet Medlin <harrietm@wcs.edu>
12:38 PM (4 hours ago)

to undisclosed recipients
Do you need a guaranteed loan of 2% interest rate to pay your bills or your debts or for business purposes, education costs, home repairs or unpaid bills? If yes, then contact us today via E-mail: j.jordanfinancial@outlook.com.

NOTE: All E-mail should be reply to j.jordanfinancial@outlook.com for more Detail….

andromeda-uk.com

The Purpose of this post is to ALERT you that the job you are about to apply for or may have applied FOR or is CONSIDERING APPLYING FOR is FRAUDULENT.

These job postings are an attempt to lure you into cashing counterfeit checks and have you wire funds via Western Union or MoneyGram. Essentially You Become A Money or RePackage Mule.

The identity of an individual or entity have been stolen along with fund from their bank accounts. You are being recruited to wire transfer these funds either by WESTERN UNION, MONEYGRAM, into your bank, a DOMESTIC BANK or FOREIGN BANK ACCOUNT

  1. Understanding The Cyber Theft Ring
  2. Money Mule Explained
  3. Protecting Yourself Against Money Mule
  4. Washingtonpost.com by Brian Kerbs
  5. Interview With A Money Mule
  6. Bobbear.co.UK ~ Historical Money Mule Sites

____________________

31.193.133.167 resolves to 31-193-133-167.static.as29550.net.
The following A records are set to 31.193.133.167:

  1. abc-solutions-uk.org
  2. andromeda-ltd.org
  3. andromeda-uk.com,
  4. best-way-corp.biz,
  5. best-way-outsource-ltd.org
  6. beyond-atlantis-ltd.org
  7. beyond-atlantis.biz
  8. biz-software.org
  9. bmc-outsourcing-inc.com
  10. consult-compass-ltd.biz
  11. consult-compass-us.org
  12. dynamite-solutions.com
  13. dynamitesolutions-ltd.net
  14. folcongroupinc.biz
  15. fundstransferalliance-us.org
  16. fundstransferalliance.biz
  17. infinityplus-one.biz
  18. infotech-directuk.org
  19. interbrite-solutions.biz
  20. interbrite-solutions.org
  21. italfastsrl.biz
  22. italfastsrl.org
  23. jxconsulting.biz
  24. maxpacltd.net
  25. nowfastsrl.biz
  26. nowfastsrl.org
  27. optimus-consulting.biz
  28. optimus-consulting.org
  29. power-stretch-inc.com
  30. ship-expressinc.com
  31. ship-expressinc.net
  32. solution-inn-llc.org
  33. solutionbuild.biz
  34. solutionbuild.org
  35. titan-advisers-ltd.com
  36. titan-advisers-uk.org
  37. uk-underone-umbrella.net
  38. ukachall-ltd.biz
  39. ukachall-ltd.org
  40. ukmax-pac-ltd.com
  41. uksolution-management.org
  42. under-one-umbrella.com
  43. us-bmc-outsourcing.net
  44. us-folcongroup.org
  45. worldwidefreelance.net

www.molaviajar.com

IP Address:  78.24.9.106 (proholding2.vshosting.cz)
IP Address Country:  Czech Republic
IP Continent:  Europe
IP Address City Location:
IP Address Region:
IP Address Latitude:  49.75,
IP Address Longtitude:  15.5
Organization:  network for our customers

__________________________________

Delivered-To: scamfraudalert@gmail.com
Received: by 10.204.36.12 with SMTP id r12csp28244bkd;
Sat, 25 May 2013 17:39:21 -0700 (PDT)
X-Received: by 10.14.45.68 with SMTP id o44mr5195623eeb.80.1369528760922;
Sat, 25 May 2013 17:39:20 -0700 (PDT)
Return-Path: <www-data@proholding2.vshosting.cz>
Received: from proholding2.vshosting.cz (proholding2.vshosting.cz. [78.24.9.106])
by mx.google.com with ESMTPS id 43si6040247eel.71.2013.05.25.17.39.20
for <scamfraudalert@gmail.com>
(version=TLSv1 cipher=RC4-SHA bits=128/128);
Sat, 25 May 2013 17:39:20 -0700 (PDT)
Received-SPF: pass (google.com: best guess record for domain of www-data@proholding2.vshosting.cz designates 78.24.9.106 as permitted sender) client-ip=78.24.9.106;
Authentication-Results: mx.google.com;
spf=pass (google.com: best guess record for domain of www-data@proholding2.vshosting.cz designates 78.24.9.106 as permitted sender) smtp.mail=www-data@proholding2.vshosting.cz
Received: from proholding2.vshosting.cz (localhost [127.0.0.1])
by proholding2.vshosting.cz (Postfix) with ESMTP id 5B21F1BAE4C9
for <scamfraudalert@gmail.com>; Sun, 26 May 2013 02:39:13 +0200 (CEST)
Received: by proholding2.vshosting.cz (Postfix, from userid 33)
id 5832A1BAE4C7; Sun, 26 May 2013 02:39:13 +0200 (CEST)
X-PHP-Originating-dir: /var/www/vhosts/evergreen.cz/httpdocs
To: scamfraudalert@gmail.com
Subject: Google Updates
From: <Privacy@System-support.com> Reply-To:
MIME-Version: 1.0
Content-Type: text/html
Message-Id: <20130526003913.5832A1BAE4C7@proholding2.vshosting.cz>
Date: Sun, 26 May 2013 02:39:13 +0200 (CEST)
Content-Transfer-Encoding: quoted-printable

=0D

Your account was recently accessed from another IP:=A0184.148.53.86 Pl=
ease Click=
Here
to update your account.

=0D

Address lookup
canonical name http://www.molaviajar.com

aliases
addresses 217.160.232.30
Domain Whois record

Queried whois.internic.net with “dom molaviajar.com

The following A records are set to 217.160.232.30:
adrianrodriguezperez.com
alupovesa.com
apartamentosruralessierraespadan.com
berdionyrodriguez.com
canaceciliadesalinas.com
canalkrishna.com
casasruraleslastinajasloscantaros.com
cirurgiaesteticabarcelona.com
correduriametrica.com
deumec.com
disttec.com
emelting.com
emelting.info
emelting.net
gesruta.com
granadavoyages.com
grupoabora.com
hercafontaneros.com
herrador.org
inmometrica.com
insumar-online.com
insumar-shop.com
insumar.com
labombilladeedison.com
lideramis.com
magmacafe.com
marcatulogo.com
molaviajar.com
ms-managementsolutions.org
newsletter-dubon-group.com
obrasencasa.net
occidentia.info
otabogados.com
patriciayraulfotobodaonline.com
perezmarti.com
qubit.info
rgdinternational.com
sabugo.org
scoutsantotomas.org
servicios-de-urgencias.com
tufastfood.com
tvbasura.com
ubicargo.com
viajarmola.com
websociales.org
xn--inmomtrica-f7a.com
yupitravel.info
yupitravel.org
zelaikoetxe.com

Domain Name: MOLAVIAJAR.COM
Registrar: 1 & 1 INTERNET AG
Whois Server: whois.schlund.info
Referral URL: http://1and1.com
Name Server: NS63.1AND1.ES
Name Server: NS64.1AND1.ES
Status: ok
Updated Date: 05-nov-2012
Creation Date: 04-nov-2008
Expiration Date: 04-nov-2013

>>> Last update of whois database: Sun, 26 May 2013 00:44:29 UTC <<<

Queried whois.schlund.info with “molaviajar.com”…

domain: molaviajar.com
created: 04-Nov-2008
last-changed: 04-Nov-2012
registration-expiration: 04-Nov-2013

nserver: ns63.1and1.es
nserver: ns64.1and1.es

status: CLIENT-TRANSFER-PROHIBITED

registrant-firstname: Adrian
registrant-lastname: Rodriguez Perez
registrant-street1: Calle Redondela 11
registrant-street2: 1d
registrant-pcode: 36209
registrant-state: PO
registrant-city: Vigo
registrant-ccode: ES
registrant-phone: +34.650291912
registrant-email: adrianrp20@hotmail.com

admin-c-firstname: Adrian
admin-c-lastname: Rodriguez Perez
admin-c-street1: Calle Redondela 11
admin-c-street2: 1d
admin-c-pcode: 36209
admin-c-state: PO
admin-c-city: Vigo
admin-c-ccode: ES
admin-c-phone: +34.650291912
admin-c-email: adrianrp20@hotmail.com

tech-c-firstname: Hostmaster
tech-c-lastname: ONEANDONE
tech-c-organization: 1&1 Internet Espana S.L.U.
tech-c-street1: Calle Narciso Serra 14
tech-c-street2: NULL
tech-c-pcode: 28007
tech-c-state: M
tech-c-city: Madrid
tech-c-ccode: ES
tech-c-phone: +34.902585111
tech-c-fax: +34.902023296
tech-c-email: hostmaster@1and1.es

bill-c-firstname: Hostmaster
bill-c-lastname: ONEANDONE
bill-c-organization: 1&1 Internet Espana S.L.U.
bill-c-street1: Calle Narciso Serra 14
bill-c-street2: NULL
bill-c-pcode: 28007
bill-c-state: M
bill-c-city: Madrid
bill-c-ccode: ES
bill-c-phone: +34.902585111
bill-c-fax: +34.902023296
bill-c-email: hostmaster@1and1.es

Network Whois record

Queried whois.ripe.net with “-B 217.160.232.30″…

% Information related to ‘217.160.232.0 – 217.160.232.255’

inetnum: 217.160.232.0 – 217.160.232.255
netname: SCHLUND-SHARED
descr: 1&1 Internet AG
country: ES
admin-c: IPAD-RIPE
tech-c: IPOP-RIPE
remarks: INFRA-AW
remarks: in case of abuse or spam, please mailto: abuse@oneandone.net
status: ASSIGNED PA
notify: ripe-role@oneandone.net
mnt-by: AS8560-MNT
mnt-lower: AS8560-MNT
mnt-domains: AS8560-MNT
mnt-routes: AS8560-MNT
changed: ripe-role@oneandone.net 20100304
source: RIPE

role: IP Administration
address: 1&1 Internet AG
e-mail: ripe-role@oneandone.net
admin-c: AFI5-RIPE
admin-c: RME9-RIPE
admin-c: JR2342-RIPE
admin-c: KHO13-RIPE
admin-c: LTO3-RIPE
admin-c: ZIG-RIPE
admin-c: MI-RIPE
admin-c: MINK-RIPE
admin-c: VR-RIPE
tech-c: AFI5-RIPE
tech-c: RME9-RIPE
tech-c: JR2342-RIPE
tech-c: KHO13-RIPE
tech-c: LTO3-RIPE
nic-hdl: IPAD-RIPE
notify: ripe-role@oneandone.net
abuse-mailbox: abuse@oneandone.net
mnt-by: AS8560-MNT
changed: ripe-role@oneandone.net 20090520
changed: ripe-role@oneandone.net 20091218
changed: ripe-role@oneandone.net 20100624
source: RIPE

role: IP Operations
address: 1&1 Internet AG
e-mail: noc@oneandone.net
admin-c: AFI5-RIPE
admin-c: RME9-RIPE
admin-c: JR2342-RIPE
admin-c: KHO13-RIPE
admin-c: LTO3-RIPE
tech-c: AFI5-RIPE
tech-c: RME9-RIPE
tech-c: JR2342-RIPE
tech-c: KHO13-RIPE
tech-c: LTO3-RIPE
nic-hdl: IPOP-RIPE
notify: ripe-role@oneandone.net
abuse-mailbox: abuse@oneandone.net
mnt-by: AS8560-MNT
changed: ripe-role@oneandone.net 20090528
changed: ripe-role@oneandone.net 20090528
changed: ripe-role@oneandone.net 20100624
source: RIPE

% Information related to ‘217.160.0.0/16AS8560’

route: 217.160.0.0/16
descr: SCHLUND-PA-3
origin: AS8560
notify: ripe-role@oneandone.net
mnt-by: AS8560-MNT
changed: ncc@schlund.net 20040611
changed: ripe-role@oneandone.net 20071030
changed: ripe-role@oneandone.net 20090514
source: RIPE

% This query was served by the RIPE Database Query Service version 1.60.2 (WHOIS2)

DNS records
name class type data time to live
http://www.molaviajar.com IN A 217.160.232.30 10800s (03:00:00)
molaviajar.com IN MX
preference: 10
exchange: aspmx2.googlemail.com
86400s (1.00:00:00)
molaviajar.com IN MX
preference: 1
exchange: aspmx.l.google.com
86400s (1.00:00:00)
molaviajar.com IN SOA
server: ns63.1and1.es
email: hostmaster@1and1.es
serial: 2011081701
refresh: 28800
retry: 7200
expire: 604800
minimum ttl: 86400
86400s (1.00:00:00)
molaviajar.com IN A 217.160.232.30 10800s (03:00:00)
molaviajar.com IN MX
preference: 5
exchange: alt1.aspmx.l.google.com
86400s (1.00:00:00)
molaviajar.com IN NS ns64.1and1.es 86400s (1.00:00:00)
molaviajar.com IN NS ns63.1and1.es 86400s (1.00:00:00)
molaviajar.com IN MX
preference: 5
exchange: alt2.aspmx.l.google.com
86400s (1.00:00:00)
30.232.160.217.in-addr.arpa IN PTR clienteservidor.es 7200s (02:00:00)
30.232.160.217.in-addr.arpa IN NS crns.1and1-dns.biz 3600s (01:00:00)
30.232.160.217.in-addr.arpa IN NS crns.1and1-dns.com 3600s (01:00:00)
30.232.160.217.in-addr.arpa IN NS crns.1and1-dns.org 3600s (01:00:00)
30.232.160.217.in-addr.arpa IN NS crns.1and1-dns.de 3600s (01:00:00)

— end —

We’re upgrading Yahoo! Mail 2013

Email Header Analysisyahoo

IP Address:  41.138.190.133 (41.138.190.133)
IP Address Country:  Nigeria
IP Continent:  Africa
IP Address City Location:  Lagos
IP Address Region:  Lagos
IP Address Latitude:  6.4531,
IP Address Longtitude:  3.3958
Organization:  VISAFONE

_____________________________

What you need to know

Dear Customer,

We’ve got a better version of Yahoo! Mail. It’s lots easier to use, you can hang onto all your contacts, folders and messages, plus you get:

faster email
the latest spam protection
unlimited email storage

What do I need to do?

If you use Internet Explorer 7, Firefox 3, Safari 4, or Chrome 5 or newer, you should upgrade now.

Click Here

Thanks for choosing Yahoo!.
Warren Buckley
Managing Director, Customer Service

AdrianaDirtyGirlNaked.com

BABE… i guess your not getting any of my email huh? ive beenscamalert
tryign to email u so many times but this dam laptop is such a piece of garbage and keeps freezing.. anyways how u been?

In case u dont know who this is its ME Adriana.. we used to chat a bit on facebook and then I think u deleted me 😦 haha.. anyways guess what… I got 2 things to tell u.. both good news..

1) im single now.. yup me and my bf broke up about 3 months ago… and

2) guess where im moving? RIGHT EFFING NEAR U.. lol… ur actually the only person im gonna know there.. well 3 cousins too but i cant chill with them lol..

I remember when we chatted u told me u thought i was cute and u wanted to chill so now we finally
can HAHA! im kinda scared to move.. im hoping this email addy is still the one you use and u can chat with me ebfore i get there.. maybe even help me move my shit in…are u still on facebook? i cudnt find ui was soo confused…anyways im gonna need someone to show me the town and take me out so u better be around bebe…

we only chatted a couple times but i remember thinking to myself i wanted to get ot know u
better when i was single..a nd i thoguth u were cute too but cudnt tell u cause i wasnt single lol…ok so more info about me.. well im 23.. virgo.. love the outdoors and love to socialize, go out for drinks, restaurants, movies etc.. travel.. i have a lil kitty named BOO and i luv her to death… uhhh oh im a super horny gurl too but
every gurl is they just wont admit it. so ilove watching p0rn and all that.. love sex etc blah blah blah…who doesnt..

I really hope we get a chance to chat for a bit either online or on the fone before i get there enxt week.. i hope u remmeber me and still wanna chill and arent married yet lol.. OH YA also.. i need to find a job when i get there..

do u have any hookups or know anybody hiring? id LOVE to work in a bar or osmehting like that…really anythgin cause my current job is fun and all.. and technically i CUD keep doign it but i want a change.. i currently work from home and well thats cool but i need ot be out meeting people.. oh wait. i dont think i ever actually told u what i did? hmm shud i……???? ok WELLLL… and dont get all weirded out on me.. i work on a webcam chat community site and i get paid to chat with people and get naked HHAHA… BOMB right :)? I KNOW.. like i figure iim horny anyways why not get paid to chat with people and play with myself heheh…anyways i hope u dont look down on that and NO THATS NOT WHY IM CONTACTING U RELAX URSELF lol… i actually need help once i move and i remembered u live there so im reaching out….like i said before this computer is a complete piece of CRAP and freezes NON STOP.. ive tried ot send this email to u maybe 3 times already and im
hopign this time i can hit SEND before i run into trouble lol..

ANYWAYS.. heres the deal….every month natalie (my boss) gives each of us 3 VIP codes to give out to whoever we want.. so with this code u can lgoin to watch me at work for free and dont have to pay like everyone else… the only way i can give u one of the codes (so we can chat) is if you absolutey DO NOT give it out to anyone else and u ONLY USE IT FOR URSELF… i only get 3 a month and she gets pissed if more than 3 people use them so DONT SHARE IT MISTER… i figured u cud always email me back instead but my email account doesnt even let me login half the time.. so the bets palce ot chat me is my chat room…

if theres anyone else logged in when u sign in ill boot them out.. but remember DONT SHARE THIS PASSWORD PLEASE BABE IM BEGGING U.. I TRUST U… im online most of the day now to try and save money for my move.. also since im in such a huge debt already form my student loan 😦 I really thingk we need to chat before i get there and make sure u evern remember me hahha.. anyways ive rambled on and on now and ur probably soooo annnoyed with me so ill stop now.. im gonna go start work.. i really hope u come chat me. it wud make my day and releive a lot of my stress about the move… REALLY i mean that….anyways once i see u in insdie ill shoot u myc ell number and u can gimme yours.. if u dont wanna come chat i understand but its really the only palce to find me now days.. if u email me abck ill probably get it once i get there after my internet is setup so about 2-3 weeks fomr now.. but im hopign to see u in my chat room.. rmemeber its 100% free with this code im gonna give u.. just DONT GIVE IT OUT OR ILL KICK U IN THE BALLS INSTEAD OF LICK U IN THE BALLS WHEN IS EE U hahahahha…k babe im out for now… chat ya soon.. kisses xoxo Adriana

FREE VIP BYPASS LINK —> http://www.AdrianaDirtyGirlNaked.com

You have a new direct message from Facebook Technical Support

Email Header Analysis

IP Address:  128.61.186.135 (ironman.ae.gatech.edu)
IP Address Country:  United States
IP Continent:  North America
IP Address City Location:  Atlanta
IP Address Region:  Georgia
IP Address Latitude:  33.793,
IP Address Longtitude:  -84.4432
Organization:  Georgia Institute of Technology

________________

From Facebook Technical Support Tue Apr 9 00:00:52 2013
X-Apparently-To: scamFRAUDalert via 98.138.213.179;
Tue, 09 Apr 2013 06:00:48 +0000
Return-Path: <dj@ironman.ae.gatech.edu>
X-YahooFilteredBulk: 128.61.186.135
Received-SPF: none (domain of ironman.ae.gatech.edu does not designate permitted sender hosts)
X-YMailISG: YwWpYgIWLDuhG5AUrvLI4xLOFvc8cCvG9Bv8c02ILUbyWzBB
WHaYj_fsPNYpvTBkUNc_aFBjthZ4AUTBHTqg9U7bhTmqgWfa3EL7zvUmUD8P
n5zYOZ7a9WREvEzfuu.YhyCTbROVylEE3tyqAwuAZpDpB_uYnNVc.RGtyg2R
Oo_ONqds6DdFlThdScfuO1jL7pSi0pf6q8_ZKYXe44iiOtAqlizTZowt8pa3
T2eqZEI1xG6jnYJ8W_vt7jNYzBDu5zT7eaFmSoRKR_8wrAOtxvt.8vFIVOsp
Xq0oTF9gUV1VUMfWfsCAPtyiHdIXDqbGGzW.hjryFX._zBZ1fOQzO8n1g02E
pwVUX4XIQQCbhv4scnPCeQf6V_1kSLZ_Lh95YDhKxtr8BDdE20R9FXrQ1lYj
xNmNyYKGSzwXYiTZ2VmG_qNyhBpEIiW1plVXu0zIrVZb.SBvlIVd2KAoT1UI
s52Xy7.WZ9ZtBU6DUrThiD5saP_g9aoBRUiRsqSOR2o1vQsNBw0gZY3fJG.s
gqWD542YVUw8044D5Gm.ltXgijci54bKSjIppvw5DrNPMaP6qMO_af5b9C60
j6X_j0.nUNOi9proajBlXRDFKkyyIauOA.PTAsz7eNz0.1UE6OgZXdI37U_l
6GnxYy87cz1riWozXeEVZ1BS4Zj0BCoYZnTqxa2UZc36W8yp11oOHZOIMEsD
vrnlMetCZ6dGFFp2p8xQtbfxExbN0cXzPDdnxLPgY67tONZ310OhfdRc38WB
oo9CfdIn0kwtmCEojJiZCwhLLJzwzbk8xmUDBCJDyF_GEmknlbYX4pFiuyec
H_y4HK89__sddRk8C2scODhjifkITOLUm2j.phAOQFypmMhJ.bexzthUOPAp
kscUX6vd2Z10Z8YqI8N0.BUEfA.jYuj0LZcaxkP6PrSt3k561BIwv7IHn5wc
uAGMfH62blqaBhCaP4ZFXssMr0YaDcN1Usjw0iOEd_u9Ml_o9njWZ5dslDmP
Uzqmh9Yer9rAPKeoGCLlydsrARRr9Mgv8YJEzg86N5RFg7RxhwaqobyQopX6
ZssVDd4MtWtG1kj6u_M4aaRSr6yZ0pv5ll1LGlw1fzTqwLhBchnA5B3wEGav
WOpO44TU9ILNty_91WA1Wn64xpTCtzUJ6OqMD.qZYuwgmWNdFJgtOToIEL3B
Y67Q0cUnAY9pNsF6VkV7BdPymMUkklkcw1s-
X-Originating-IP: [128.61.186.135]
Authentication-Results: mta1080.sbc.mail.ne1.yahoo.com from=ironman.ae.gatech.edu; domainkeys=neutral (no sig); from=ironman.ae.gatech.edu; dkim=neutral (no sig)
Received: from 127.0.0.1 (HELO ironman.ae.gatech.edu) (128.61.186.135)
by mta1080.sbc.mail.ne1.yahoo.com with SMTP; Tue, 09 Apr 2013 06:00:48 +0000
Date: 9 Apr 2013 02:00:52 -0500
To: scamFRAUDalert
From: Facebook Technical Support <dj@ironman.ae.gatech.edu>
Subject: You have a new direct message from Facebook Technical Support
Message-ID: <63bef7_536ce_68e399166@dj.ironman.ae.gatech.edu>
MIME-Version: 1.0
Content-Type: text/html; charset=utf-8
Content-Transfer-Encoding: 7bit
Content-Length: 5197

notification8

PAYMENT AUTHENTICATION

from: Sam Dennison <samdennison333@gmail.com>
reply-to: captsd@hotmail.comscamalert
to:
date: Mon, Apr 8, 2013 at 4:52 AM
subject: PAYMENT AUTHENTICATION

Mr. Sam Dennison
General secretary
Foreign Affairs Ministry.
Foreign Affairs Ministry
Accra Ghana.

Re: PAYMENT AUTHENTICATION

I am Mr. Sam Dennison General secretary to Foreign Affairs Ministry; my office monitors and controls the affairs of all banks and financial institutions in Ghana

concerned with foreign contract payments. I am the final signatory to any transfer or remittance of huge funds moving within banks both on the local and

international levels in line to foreign contracts settlement.

I have before me list of funds, which could not be transferred to some nominated accounts as these accounts have been identified either as ghost accounts, unclaimed

deposits and over-invoiced sum etc. I write to present you to the federal government that you are among the people expecting the funds to be transferred into their

account, on this note; I wish to have a deal with you as regards to the unpaid certified contract funds.

I have every files before me and the data’s will be to change to your name to enable you receive the fund into your nominated bank account as the beneficiary of the

fund’s amount $35 Million U.S.D. As it is my duty to recommend the transfer of these surplus funds to the Federal Government Treasury and Reserve Accounts as

unclaimed deposits,I have the opportunity to write you based on the instructions i received 2 days ago from the Senate Committee on Contract Payments /Foreign Debts

to submit the List of payment reports / expenditures and audited reports of revenues. Among several others, I have decided to remit this sum following my idea that

we have a deal/agreement and I am going to do this legally.

MY CONDITIONS.
1. You will give me 50% of your contract funds as soon as you confirm it in your designated bank account.
2. This deal must be kept secret forever, and all correspondence will be strictly by email / telephone, for security purposes.
3. There should be no third parties as most problems associated with your fund release are caused by your agents or representative.
If you AGREE with my conditions, l advise you on what to do immediately and the transfer will commence without delay as I will proceed to fix your name on the

Payment schedule instantly to meet the three days mandate. I hope you don’t reject this offer and have the funds transferred
Waiting for your reply soon. Email: captsd006@yahoo.com.

Yours Sincerely.

Mr. Sam Dennison
General secretary