Skip to content

Instantly share code, notes, and snippets.

@johnsyweb
Created May 7, 2013 19:56
Show Gist options
  • Save johnsyweb/5535613 to your computer and use it in GitHub Desktop.
Save johnsyweb/5535613 to your computer and use it in GitHub Desktop.
Phishing LOLs

It seems AAPL are now using MSFT mail services to deliver "Important" messages.

Received: from CO9EHSNDR001.bigfish.com (mail14-co9on0067.outbound.messaging.microsoft.com [157.56.211.67])
  (using TLSv1 with cipher AES128-SHA (128/128 bits))
	(No client certificate requested)
	by beaujolais.extremis.net (Postfix) with ESMTPS id 3b4rGJ5GXPzXCl8
	for <pete@xxxxxx.org>; Tue,  7 May 2013 20:19:04 +0100 (BST)
Received: from co9outboundpool.messaging.microsoft.com (10.236.132.244) by
 CO9EHSNDR001.bigfish.com (10.236.130.55) with Microsoft SMTP Server (TLS) id
 14.1.225.23; Tue, 7 May 2013 19:19:01 +0000
Received: from mail140-co9-R.bigfish.com (10.236.132.244) by
 CO9EHSOBE035.bigfish.com (10.236.130.98) with Microsoft SMTP Server id
 14.1.225.23; Tue, 7 May 2013 19:19:01 +0000
Received: from mail140-co9 (localhost [127.0.0.1])	by
 mail140-co9-R.bigfish.com (Postfix) with ESMTP id B3D0338010A;	Tue,  7 May
 2013 19:19:01 +0000 (UTC)
X-Forefront-Antispam-Report: CIP:136.165.233.224;KIP:(null);UIP:(null);IPV:NLI;H:incoming1.louisville.edu;RD:incoming1.louisville.edu;EFVD:NLI
X-BigFish: VPS225(zzc85dh77f5h4015I609I1e89tqzz1f42h1fc6h1d77h1ee6h1de0h1fdah1202h1e76h1d1ah1d2ahzz17326ah1954cbh8275bh1b9c21hz2dh668h839hd24hf0ah11a0h1288h12a5h12bdh137ah1441h1504h1537h153bh162dh1631h16a6h1758h18b6h18e1h1946h19b5h1b0ah1bceh1d0ch1d3fh10a4m1d02im)
X-FB-OUTBOUND-SPAM: yes
X-SpamScore: 225
Received: from mail140-co9 (localhost.localdomain [127.0.0.1]) by mail140-co9
 (MessageSwitch) id 136795434047501_1278; Tue,  7 May 2013 19:19:00 +0000
 (UTC)
Received: from CO9EHSMHS032.bigfish.com (unknown [10.236.132.234])	by
 mail140-co9.bigfish.com (Postfix) with ESMTP id F0E2A320063;	Tue,  7 May 2013
 19:18:59 +0000 (UTC)
Received: from incoming1.louisville.edu (136.165.233.224) by
 CO9EHSMHS032.bigfish.com (10.236.130.42) with Microsoft SMTP Server id
 14.1.225.23; Tue, 7 May 2013 19:18:59 +0000
Message-ID: <8a3845$e47nkj@smtp1.louisville.edu>
Received: from unknown (HELO Sean-PC.home) ([109.144.240.178])  by
 smtp1.louisville.edu with ESMTP/TLS/DHE-RSA-AES256-SHA; 07 May 2013 15:18:42
 -0400
Content-Type: multipart/alternative; boundary="===============1724789343=="
MIME-Version: 1.0
Subject: Important Message From Apple Store
To: Recipients <sam@louisville.edu>
From: Apple <sam@louisville.edu>
Date: Tue, 7 May 2013 20:18:35 +0100
Reply-To: <sam@louisville.edu>
X-OriginatorOrg: louisville.edu

Of course I didn't follow any of the links in the email 😄

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment