RABOBANK PHISING
07-02-2011,11:54 doorAnoniem
Ik krijg zojuist een phising mail met onderstaande tekst:
---------
New Page 1
Onze gewaardeerde klant,
Je hebt 1 ongelezen beveiligd Alert!

Klik hier om het probleem op te lossen

Bedankt dat je ons helpt om je te beschermen.

Groet,
Rabo internetbankieren
------

De link verwijst naar:
http://www.edilblucase.com/files/update.php


------
Header:
X-Message-Delivery: Vj0xLjE7dXM9MDtsPTA7YT0wO0Q9MjtTQ0w9NA==
X-Message-Status: n
X-SID-PRA: Rabo Internet Bankieren <upgrade@rabobank.nl>
X-AUTH-Result: NONE
X-Message-Info: 6sSXyD95QpWYohrS6oAlryygSmgO3IjnSMG68pXV7o02Yjgae3VdKAKjjUpLNaC2oqI6qoCPuNvdtQK/v9xbix5b3mDlliepWKbElpxYpCs=
Received: from mx.juno.inetware.com ([78.6.13.100]) by COL0-MC4-F11.Col0.hotmail.com with Microsoft SMTPSVC(6.0.3790.4675);
Mon, 7 Feb 2011 02:32:40 -0800
Received: from localhost (localhost [127.0.0.1])
by mx.juno.inetware.com (Postfix) with ESMTP id 569DEEC168
for <xxxxxxxxxxxx@hotmail.com>; Mon, 7 Feb 2011 11:32:39 +0100 (CET)
X-Quarantine-ID: <HYYLbLNeFfAM>
X-Amavis-Alert: BAD HEADER Improper use of control character (char 0D hex):
From: Rabo Internet Bankieren <upgrade@rabobank.nl>\r\n
Received: from mx.juno.inetware.com ([127.0.0.1])
by localhost (juno.inetware.com [127.0.0.1]) (amavisd-new, port 10024)
with ESMTP id HYYLbLNeFfAM for <xxxxxxxxxxxx@hotmail.com>;
Mon, 7 Feb 2011 11:32:39 +0100 (CET)
Received: by mx.juno.inetware.com (Postfix, from userid 1001)
id 741ACEC59B; Mon, 7 Feb 2011 11:27:26 +0100 (CET)
To: xxxxxxxxxxxx@hotmail.com
Subject: Je hebt 1 ongelezen beveiligd Alert
From: Rabo Internet Bankieren <upgrade@rabobank.nl>
Reply-To:
MIME-Version: 1.0
Content-Type: text/html
Content-Transfer-Encoding: 8bit
Message-Id: <20110207102726.741ACEC59B@mx.juno.inetware.com>
Date: Mon, 7 Feb 2011 11:27:26 +0100 (CET)
Return-Path: dtc@mx.juno.inetware.com
X-OriginalArrivalTime: 07 Feb 2011 10:32:40.0253 (UTC) FILETIME=[58906ED0:01CBC6B2]
X-EsetId: D9A495202581DD3683E6
X-EsetScannerBuild: 8687