Злобный хацкер прислал спам. Вот его исходник, в котором видно, что ссылка ведёт на фишинговый сайт:
Delivered-To:
[email protected]
Received: by 10.152.131.164 with SMTP id on4csp203640lab;
Fri, 16 Nov 2012 07:19:23 -0800 (PST)
Received: by 10.112.11.99 with SMTP id p3mr1041315lbb.73.1353079163300;
Fri, 16 Nov 2012 07:19:23 -0800 (PST)
Return-Path: <
[email protected]>
Received: from 01host.ru ([2a00:1c48:7:2:221:85ff:fe60:e896])
by mx.google.com with ESMTPS id s2si1086210lbg.70.2012.11.16.07.19.22
(version=TLSv1/SSLv3 cipher=OTHER);
Fri, 16 Nov 2012 07:19:22 -0800 (PST)
Received-SPF: softfail (google.com: domain of transitioning
[email protected] does not designate 2a00:1c48:7:2:221:85ff:fe60:e896 as permitted sender) client-ip=2a00:1c48:7:2:221:85ff:fe60:e896;
Authentication-Results: mx.google.com; spf=softfail (google.com: domain of transitioning
[email protected] does not designate 2a00:1c48:7:2:221:85ff:fe60:e896 as permitted sender)
[email protected]
Received: from www-data by 01host.ru with local (Exim 4.69)
(envelope-from <
[email protected]>)
id 1TZNhS-0002mc-Ae
for
[email protected]; Fri, 16 Nov 2012 19:19:22 +0400
To:
[email protected]
Subject: Your account has encountered.
From: Benson Union <
[email protected]>
Reply-To:
MIME-Version: 1.0
Content-Type: text/html
Content-Transfer-Encoding: 8bit
Message-Id: <
[email protected]>
Date: Fri, 16 Nov 2012 19:19:22 +0400
<html><head><style type="text/css"><!-- blockquote, dl, ul, ol, li {
padding-top: 0 ; padding-bottom: 0 }
--></style><title>ING Direct UK - Customer Message Alert</title></head><body>
<blockquote type="cite" cite>
<blockquote type="cite" cite><font face="Verdana" size="1">
<P align=justify><STRONG>Dear Customer</STRONG><BR><BR><FONT face=Verdana size=-1>
It has come to our attention that your account has encountered security<br>
Problems. This might have happened because:<br><br>
1. You did not complete the security update.<br>
2. Your Account has been accessed by an unauthorized 3rd-party.<br><br>
Upgrade your details now to get the maximum security exposure by clicking on the link below:<br><br>
<a href="
htt p://www. crosscountryadventures. us/files/www. bensonunion. net/index.html">https://secure.bensonunion.net/?command=displayLogin&device=web&locale=en_GB&showDesktop=YES&uid=1352808410841198022</a><br><br>
if you don't get upgrade within the next 48hours, Your account will<br>
be assumed fraudulent and it will be suspended.<br><br>
Yours sincerely,<br>
Security Center<br>
BENSON UNION</strong></b><br></FONT></P>
</FONT></A></P>
</A></TD></TR>
<TR>
<TD borderColor=#000000 width=650 bgColor=#ffffff height=28><FONT
face=Arial color=#808080 size=1>Please do not reply to this e-mail. Mail
sent to this address cannot be answered.</FONT></TD></TR></TBODY></TABLE></BODY></HTML>