Phising email messages passed trough uce filters on June 2020. (spamhaus.org and other filters which we made ourselves )
(迷惑メールフィルタすり抜けを確認したPhishing-メッセージ 2020年6月)
(迷惑メールフィルタすり抜けを確認したPhishing-メッセージ 2020年6月)
Last Update: 2020.7.04
(2020年6月にSpamhause.org および我々が作成した迷惑メールフィルタをすり抜けたPhishing攻撃です。ご利用は自己責任でお願いいたします)
Gray backgroud items are blocked right now.
Jun, 2020 (06/01-06/30)
Title (date) | Sender address(送信者アドレス) | Return-Path | SMTP Client (送信サーバ) | Network User | Network Owner | Remarks (備考) |
---|---|---|---|---|---|---|
Amazonプライムの自動更新設定を解除いたしました!番号:874905558604 (2020.06.30 09:18) |
Amazon顧客サービス:20200628756 (forged) amazon@permeamazonl.eatuo.com |
amazon@permeamazonl.eatuo.com | permeamazonl.eatuo.com (unknown [128.14.164.18]) | ZL-LAX-ZENWORKS-0078 128.14.164.0/24 (128.14.164.0/27) | Zenlayer Inc US | jun-30-01 b.barracudacentral.org-listed Snowshoe Attack-Blocked on Jul-02 |
Amazonプライムの自動更新設定を解除いたしました!番号:012827681400 (2020.06.29 18:29) |
Amazon顧客サービス:20200629124 (forged) |
amazon@permeamazonl.eatuo.com | permeamazonl.eatuo.com (unknown [128.14.164.18]) | ZL-LAX-ZENWORKS-0078 128.14.164.0/24 (128.14.164.0/27) | Zenlayer Inc US | jun-29-03 b.barracudacentral.org-listed Snowshoe Attack-Blocked on Jul-02 |
Amazonプライムの自動更新設定を解除いたしました!番号:861112361859 (2020.06.29 16:17) |
Amazon顧客サービス:20200630194(forged) amazon@permeamazonl.eatuo.com |
amazon@permeamazonl.eatuo.com | permeamazonl.eatuo.com (unknown [128.14.164.18]) | ZL-LAX-ZENWORKS-0078 128.14.164.0/24 (128.14.164.0/27) | Zenlayer Inc US | jun-29-03 b.barracudacentral.org-listed Snowshoe Attack-Blocked on Jul-02 |
Amazonプライムの自動更新設定を解除いたしました!番号:229302468177 (2020.06.29 03:34) |
Amazon (forged) amazon@your.domain(reducted/forged) |
aazon@permeamazomn.eatuo.com | permeamazomn.eatuo.com (unknown [128.14.164.9]) | ZL-LAX-ZENWORKS-0078 128.14.164.0/24 (128.14.164.0/27) | Zenlayer Inc US | jun-29-01 b.barracudacentral.org-listed Snowshoe Attack-Blocked on Jul-02 |
Amazonプライムの自動更新設定を解除いたしました! (2020.06.28 09:16) |
Amazon (forged) amazon@amazodnpro.eatuo.com |
amazon@amazodnpro.eatuo.com | amazonper.eatuo.com (unknown [128.14.164.12]) | ZL-LAX-ZENWORKS-0078 128.14.164.0/24 (128.14.164.0/27) | Zenlayer Inc US | jun-28-01 b.barracudacentral.org-listed Snowshoe Attack-Blocked on Jul-02 |
(2020.06.27 07:40) | Amazon (forged) amazon@your.domain(reducted/forged |
amazon@permeamaazonn.eatuo.com | permeamaazonn.eatuo.com (unknown [128.14.164.15]) | ZL-LAX-ZENWORKS-0078 128.14.164.0/24 (128.14.164.0/27) | Zenlayer Inc US | jun-27-01 b.barracudacentral.org-listed Snowshoe Attack-Blocked on Jul-02 |
Amazonプライムの自動更新設定を解除いたしました!番号:107370894258 (2020.06.26 08:13) |
Amazon 管理者:Claire Harold 0538 (forged) |
amazon@amazonadminper.s.3322.net | amazonadminper.s.3322.net (unknown [128.14.164.17]) | ZL-LAX-ZENWORKS-0078 128.14.164.0/24 (128.14.164.0/27) | Zenlayer Inc US | jul-26-01 b.barracudacentral.org-listed Snowshoe Attack-Blocked on Jul-02 |
Mailbox Upgrade (2020.06.25 20:57) |
Mail Admin (forged) noreply@mailadmin.com |
noreply@mailadmin.com | cun23.com (unknown [45.127.62.113]) | uih.co.th 45.127.60.0/22 | United Information Highway TH | jun-25-04 b.barracudacentral.org-listed |
電子メール ポータルで配信待ちのメッセージ (2020.06.25 07:36) |
Mail Portal Admin (forged) info@riverfield.biz |
info@riverfield.biz | sv102.wadax.ne.jp (sv102.wadax.ne.jp [211.1.224.72]) | WADAX-NET102 211.1.224.64/26 | GMO CLOUD/NTT SmartConnect Corporation JP | jun-25-03 ips.backscatterer.org-listed |
電子メール ポータルで配信待ちのメッセージ (2020.06.25 07:26) |
Mail Portal Admin (forged) info@riverfield.biz |
info@riverfield.biz | sv102.wadax.ne.jp (sv102.wadax.ne.jp [211.1.224.72]) | WADAX-NET102 211.1.224.64/26 | GMO CLOUD/NTT SmartConnect Corporation JP | jun-25-02 ips.backscatterer.org-listed |
Amazonプライムの自動更新設定を解除いたしました!番号:028289669750 (2020.06.25 06:32) |
Amazon@amazon.com (forged) Amazon@amazon.com(forged) |
amazon@amazonvip.eatuo.com | amazonvip.eatuo.com (unknown [128.14.174.99] | ZL-LAX-ZENWORKS-0088 128.14.174.0/24 | Zenlayer Inc US | jun-25-01 b.barracudacentral.org-listed |
Amazonプライムの自動更新設定を解除いたしました!番号:644478809167 (2020.06.24 04:56) |
Amazon (forged) Amazon@xxxx.xxx.xx.jp (xx=your.domain->forged) |
amazon@amazonvip.eatuo.com | amazonpro.eatuo.com (unknown [128.14.174.105]) | ZL-LAX-ZENWORKS-0088 128.14.174.0/24 | Zenlayer Inc US | jun-24-01 b.barracudacentral.org-listed |
Amazonプライムの自動更新設定を解除いたしました!番号:037773820321 (2020.06.20 17:26) |
Admin@amazonpro.7766.org admin@amazonpro.7766.org |
admin@amazonpro.7766.org | amazonpro.7766.org (unknown [128.14.16.22]) | ZL-LAX-ZENWORKS-0078 128.14.164.0/24 (128.14.164.0/27) | Zenlayer Inc US | jun-20-01 b.barracudacentral.org-listed |
xxxxxxxx@xxxxx.xxx.xx.jp (=your email address)のメールセキュリティ (2020.06.18 15:09) |
Email Admin info@york-co.jp |
info@york-co.jp (might be hacked?) | sv32.wadax.ne.jp (sv32.wadax.ne.jp [211.133.134.82]) <-unknown (HELO 38.68.38.87) (info@york-co.jp@38.68.38.87) |
211.133.134.82/32=York JP under WADAX-NET3 211.133.134.0/25 |
GMO CLOUD/Yahoo Japan JP | jun-18-02 backscstter? or relay? |
xxxxxxxx@xxxxx.xxx.xx.jp (=your email address)のメールセキュリティ (2020.06.18 14:54) |
Email Admin info@york-co.jp |
info@york-co.jp | sv32.wadax.ne.jp (sv32.wadax.ne.jp [211.133.134.82]) <-unknown (HELO 38.68.38.87) (info@york-co.jp@38.68.38.87) |
211.133.134.82/32=York JP under WADAX-NET3 211.133.134.0/25 |
GMO CLOUD/Yahoo Japan JP | jun-18-01 backscstter? or relay? |
New Message (2020.06.17 08:29) |
Webmail Support webmail@nishimura.co.jp |
webmail@nishimura.co.jp | main25.ps.cwj.ad.jp (10.main25.ps.cwj.ad.jp [61.114.227.105]) <-[45.137.22.86] (unknown [45.137.22.86]) |
61.114.227.105/32=nishimura.co.jp under Cyber Wave Japan 61.114.226.0/23 |
Cyber Wave Japan JP | jun-17-02 backscstter? or relay? |
Amazonプライムの自動更新設定を解除いたしました!番号:%{RAND_NUMBER_12} (2020.06.17 03:55) |
Amazon.co.jp (forged) Amazon.co.jp@xxxxx.xxx.xx.jp (your domain) |
bounces+17035242-87fc-xxxxxxxx=xxxxx.xxx.xx.jp@sendgrid.net (xx=your mail address) | wrqvfnvd.outbound-mail.sendgrid.net (wrqvfnvd.outbound-mail.sendgrid.net [149.72.242.141]) | SENDGRID-149-72-0-0-16 | SendGrid, Inc US | jun-17-01 >b.barracudacentral.org-listed |
xxxxxxxx@xxxxx.xxx.xx.jp (=your email address)のメールセキュリティアラート (2020.06.16 14:53) |
Email Admin info@gatomikio.jp |
info@gatomikio.jp (might be hacked?) | sv122.wadax.ne.jp (sv122.wadax.ne.jp [211.1.231.66]) <-unknown (HELO 38.68.38.87) (info@gatomikio.jp@38.68.38.87) |
211.1.231.66/32=gatomikio.jp under WADAX-NET123 211.1.231.64/26 |
GMO CLOUD/NTT SmartConnect JP | jun-16-02 backscstter? or relay? |
xxxxxxxx@xxxxx.xxx.xx.jp (=your email address)のメールセキュリティアラート (2020.06.16 14:43) |
Email Admin info@gatomikio.jp |
info@gatomikio.jp (might be hacked?) | sv122.wadax.ne.jp (sv122.wadax.ne.jp [211.1.231.66]) <-unknown (HELO 38.68.38.87) (info@gatomikio.jp@38.68.38.87) |
211.1.231.66/32=gatomikio.jp under WADAX-NET123 211.1.231.64/26 |
GMO CLOUD/NTT SmartConnect JP | jun-16-01 backscstter? or relay? |
Amazonプライムの自動更新設定を解除いたしました!番号:%{RAND_NUMBER_12} (2020.06.15 03:57) |
Amazon.co.jp (forged) Amazon.co.jp@xxxxx.xxx.xx.jp (your domain) |
bounces+16988818-0899-xxxxxxxx=xxxxx.xxx.xx.jp@sendgrid.net (xx=your mail address) | wrqvftdw.outbound-mail.sendgrid.net (wrqvftdw.outbound-mail.sendgrid.net [149.72.247.217]) | SENDGRID-149-72-0-0-16 | SendGrid, Inc US | jun-15-01 b.barracudacentral.org-listed |
払い戻された支払い (2020.06.10 19:17) |
Sumitomo Mitsui Banking (forged) noreply@smbc-ecards.com |
admin@smbc-ecards.com | smbc-ecards.com (vps60014.inmotionhosting.com [23.235.196.195]) | IMH-23-235-192 23.235.192.0/19 | InMotion Hosting US | jun-10-01 b.barracudacentral.org-listed smbc-ecards.com is a "FAKE" domain |
1 New Message (2020.06.07 12:16) |
Webmail info@tp.edu.tw |
info@tp.edu.tw (might be hacked?) | smtp.tp.edu.tw (smtp1.tp.edu.tw [163.21.249.243]) <-[107.175.31.152] (unknown [163.21.178.141]) |
moe.edu.tw 163.21.0.0/16 | MOE (Ministry of Education Republic of China?) TW | jun-07-02 backscstter? or relay? |
重要なメッセージ (2020.06.07 10:49) |
"メール管理者" fukube@mxi.netwave.or.jp |
fukube@mxi.netwave.or.jp (might be hacked?) | mgw1.stnet.ne.jp (mgw2.stnet.ne.jp [218.231.54.123]) | STCN 218.231.54.0/24 | STNet, Inc JP | jun-07-01 b.barracudacentral.org-listed |
Important Message: Email Full ( 97% ) (2020.06.06 12:33) |
Webmail noreply@update.jp (forged) |
noreply@update.jp (forged) | server251.serverflex.de (server251.serverflex.de [193.151.6.51]) <-[107.175.31.152] (azteca-comunicaciones.com [186.179.100.184] (may be forged)) |
ispone-business.de 193.151.4.0/22 | Vserver Solutions DE | jun-06-01 |
[Back to the top page of the jun-watanabe.org]
[Back to the recent month]