MOre Royal Bank of Canada Phish

From - Fri Mar 07 20:25:06 2008

X-Account-Key: account2

X-UIDL: D"i"!K>0"!jl="!*jE"!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1205352510.01826@x3VF5/FezqJXUgRV1iWOng

Return-Path:

Received: from doctor.nl2k.ab.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m27JqgUL004305

for ; Fri, 7 Mar 2008 12:52:48 -0700 (MST)

Received: (from root@localhost)

by doctor.nl2k.ab.ca (8.14.2/8.14.1/Submit) id m27JqgsL004303

for dave@doctor.nl2k.ab.ca; Fri, 7 Mar 2008 12:52:42 -0700 (MST)

Resent-From: root@doctor.nl2k.ab.ca

Resent-Date: Fri, 7 Mar 2008 12:52:42 -0700

Resent-Message-ID: <20080307195242.GB2588@doctor.nl2k.ab.ca>

Resent-To: Dave Yadallee

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1205346449.79904@JSgevqnatjBpFV63izF0dg

Received: from saibaba.myhostdns.com

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m27HhaZk025244

(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO)

for ; Fri, 7 Mar 2008 10:43:50 -0700 (MST)

X-Spam-Filter: check_local@doctor.nl2k.ab.ca by digitalanswers.org

Received: from nobody by saibaba.myhostdns.com with local (Exim 4.68)

(envelope-from )

id 1JXgbR-0005d4-Up

for root@doctor.nl2k.ab.ca; Fri, 07 Mar 2008 11:43:29 -0600

To: root@doctor.nl2k.ab.ca

Subject: {Spam?} {Disarmed} Your Profile Is Locked

From: RBC Royal Bank

MIME-Version: 1.0

Content-type: text/html; charset=iso-8859-1

Content-Transfer-encoding: 8bit

Reply-To: RBC Royal Bank

Message-ID: <532604769ba191f61b2866f878cc0910@>

X-Priority: 1

X-MSmail-Priority: High

X-Mailer: Microsoft Office Outlook, Build 11.0.5510

X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1441

Date: Fri, 07 Mar 2008 11:43:29 -0600

X-AntiAbuse: This header was added to track abuse, please include it with any abuse report

X-AntiAbuse: Primary Hostname - saibaba.myhostdns.com

X-AntiAbuse: Original Domain - doctor.nl2k.ab.ca

X-AntiAbuse: Originator/Caller UID/GID - [99 99] / [47 12]

X-AntiAbuse: Sender Address Domain - saibaba.myhostdns.com

X-Null-Tag: b4bbeaa0eed5c68cf72ff7345f5345cb

X-Null-Tag: 99968ef178e1823cf11e6e6c1a42aad8

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean, Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=7.705, required 5,

HTML_IMAGE_ONLY_24 2.21, HTML_IMAGE_RATIO_04 0.17, HTML_MESSAGE 0.00,

HTML_MIME_NO_HTML_TAG 1.05, INVALID_MSGID 2.60, MIME_HTML_ONLY 1.67,

NORMAL_HTTP_TO_IP 0.00, NO_RELAYS -0.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: sssssss

X-Spam-Status: Yes, No

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m27JqgUL004305

X-NetKnow-InComing-4.67.3-1-MailScanner-From: doctor@doctor.nl2k.ab.ca

X-UIDL: D"i"!K>0"!jl="!*jE"!



















Your

Profile Is Locked



Dear Customer,



Our record indicates that your Online Account profile could not be

verified,due to the timing out of your Online banking

session on our database.



We urge you to restore your banking data

immediately by using the below link avoid to

final shut down of your account.



MailScanner has detected a possible fraud attempt from "72.9.251.74" claiming to be Restore

Your Banking Data



Thanks For Using RBC Royal Bank.







RBC Royal Bank Of Canada









--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.







More Royal Bank of Canada Spam

From - Fri Mar 07 20:44:52 2008

X-Account-Key: account2

X-UIDL: !!F!!'f0!!>(~"!4~=!!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1205353342.00946@72fwTRjk+k6M03p2MKrdjA

Return-Path:

Received: from doctor.nl2k.ab.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m27KF227010688

for ; Fri, 7 Mar 2008 13:15:18 -0700 (MST)

Received: (from doctor@localhost)

by doctor.nl2k.ab.ca (8.14.2/8.14.1/Submit) id m27K881j008651

for dave@doctor.nl2k.ab.ca; Fri, 7 Mar 2008 13:08:08 -0700 (MST)

Resent-From: doctor@doctor.nl2k.ab.ca

Resent-Date: Fri, 7 Mar 2008 13:08:08 -0700

Resent-Message-ID: <20080307200808.GC4918@doctor.nl2k.ab.ca>

Resent-To: Dave Yadallee

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1205345731.41152@jN6EiDmCtbPsmogbFsE+Aw

Received: from servidor1.factoriadigital.com

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m27Hcbdo022697

(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO)

for ; Fri, 7 Mar 2008 10:38:57 -0700 (MST)

X-Spam-Filter: check_local@doctor.nl2k.ab.ca by digitalanswers.org

Received: from nobody by servidor1.factoriadigital.com with local (Exim 4.68)

(envelope-from )

id 1JXgWi-000559-JM

for doctor@nl2k.ab.ca; Fri, 07 Mar 2008 18:38:36 +0100

To: doctor@nl2k.ab.ca

Subject: {Spam?} {Disarmed} Your Profile Is Locked

From: RBC Royal Bank

MIME-Version: 1.0

Content-type: text/html; charset=iso-8859-1

Content-Transfer-encoding: 8bit

Reply-To: RBC Royal Bank

Message-ID:

X-Priority: 1

X-MSmail-Priority: High

X-Mailer: Microsoft Office Outlook, Build 11.0.5510

X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1441

Date: Fri, 07 Mar 2008 18:38:36 +0100

X-AntiAbuse: This header was added to track abuse, please include it with any abuse report

X-AntiAbuse: Primary Hostname - servidor1.factoriadigital.com

X-AntiAbuse: Original Domain - nl2k.ab.ca

X-AntiAbuse: Originator/Caller UID/GID - [99 32003] / [47 12]

X-AntiAbuse: Sender Address Domain - servidor1.factoriadigital.com

X-Source: 

X-Source-Args: /usr/local/apache/bin/httpd -DSSL

X-Source-Dir: carlaantonelli.com:/public_html/foros

X-Null-Tag: 91aa8a39f763b3b76c62667318cc3f04

X-Null-Tag: 72112d8767b82a60ad49ba981870f645

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean, Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=7.705, required 5,

HTML_IMAGE_ONLY_24 2.21, HTML_IMAGE_RATIO_04 0.17, HTML_MESSAGE 0.00,

HTML_MIME_NO_HTML_TAG 1.05, INVALID_MSGID 2.60, MIME_HTML_ONLY 1.67,

NORMAL_HTTP_TO_IP 0.00, NO_RELAYS -0.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: sssssss

X-Spam-Status: Yes, No

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m27KF227010688

X-NetKnow-InComing-4.67.3-1-MailScanner-From: doctor@doctor.nl2k.ab.ca

X-UIDL: !!F!!'f0!!>(~"!4~=!!



















Your

Profile Is Locked



Dear Customer,



Our record indicates that your Online Account profile could not be

verified,due to the timing out of your Online banking

session on our database.



We urge you to restore your banking data

immediately by using the below link avoid to

final shut down of your account.



MailScanner has detected a possible fraud attempt from "72.9.251.74" claiming to be Restore

Your Banking Data



Thanks For Using RBC Royal Bank.







RBC Royal Bank Of Canada









--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.







More Royal Bank of Canada Spam

From - Fri Mar 07 18:34:20 2008

X-Account-Key: account2

X-UIDL: )^O"!
X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1205345731.45308@ode9bAjlfubbdfNKko2grQ

Return-Path:

Received: from gallifrey.nk.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m27Hcx77022901

(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL)

for ; Fri, 7 Mar 2008 10:39:05 -0700 (MST)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Watermark: 1205343523.65094@SAWxPTK0vYUBoi/CsyZDJQ

Received: from hosting.system.ssp.vn

by gallifrey.nk.ca (8.14.2/8.14.2) with ESMTP id m27HcRvT029432

(version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=NO)

for ; Fri, 7 Mar 2008 10:38:38 -0700 (MST)

X-Spam-Filter: check_local@gallifrey.nk.ca by digitalanswers.org

Received: from nobody by hosting.system.ssp.vn with local (Exim 4.68)

(envelope-from )

id 1JXgVQ-0003DQ-KF

for dave@nk.ca; Sat, 08 Mar 2008 00:37:16 +0700

To: dave@nk.ca

Subject: {Spam?} {Disarmed} Your Profile Is Locked

From: RBC Royal Bank

MIME-Version: 1.0

Content-type: text/html; charset=iso-8859-1

Content-Transfer-encoding: 8bit

Reply-To: RBC Royal Bank

Message-ID: <0fad0de3769c7dc8a4d7f3b5554593d7@>

X-Priority: 1

X-MSmail-Priority: High

X-Mailer: Microsoft Office Outlook, Build 11.0.5510

X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1441

Date: Sat, 08 Mar 2008 00:37:16 +0700

X-AntiAbuse: This header was added to track abuse, please include it with any abuse report

X-AntiAbuse: Primary Hostname - hosting.system.ssp.vn

X-AntiAbuse: Original Domain - nk.ca

X-AntiAbuse: Originator/Caller UID/GID - [99 99] / [47 12]

X-AntiAbuse: Sender Address Domain - hosting.system.ssp.vn

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-NetKnow-OutGoing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamCheck: spam, RFC-IGNORANT-WHOIS,

SpamAssassin (cached, score=7.705, required 1,

HTML_IMAGE_ONLY_24 2.21, HTML_IMAGE_RATIO_04 0.17, HTML_MESSAGE 0.00,

HTML_MIME_NO_HTML_TAG 1.05, INVALID_MSGID 2.60, MIME_HTML_ONLY 1.67,

NORMAL_HTTP_TO_IP 0.00, NO_RELAYS -0.00)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamScore: sssssss

X-NetKnow-OutGoing-4.67.3-1-MailScanner-From: nobody@hosting.system.ssp.vn

X-Spam-Status: Yes, Yes

X-Null-Tag: 9a00c0d7aa57fe724dc7b99eeaa0841b

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m27Hcx77022901

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam, RFC-IGNORANT-WHOIS,

SpamAssassin (not cached, score=7.536, required 5,

HTML_IMAGE_ONLY_24 2.21, HTML_IMAGE_RATIO_06 0.00, HTML_MESSAGE 0.00,

HTML_MIME_NO_HTML_TAG 1.05, INVALID_MSGID 2.60, MIME_HTML_ONLY 1.67,

NORMAL_HTTP_TO_IP 0.00, NO_RELAYS -0.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: sssssss

X-NetKnow-InComing-4.67.3-1-MailScanner-From: nobody@hosting.system.ssp.vn

X-UIDL: )^O"!


















Your

Profile Is Locked



Dear Customer,



Our record indicates that your Online Account profile could not be

verified,due to the timing out of your Online banking

session on our database.



We urge you to restore your banking data

immediately by using the below link avoid to

final shut down of your account.



MailScanner has detected a possible fraud attempt from "72.9.251.74" claiming to be Restore

Your Banking Data



Thanks For Using RBC Royal Bank.







© RBC Royal Bank Of Canada









--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.




--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.









More Paypal phish

From - Thu Mar 06 23:37:25 2008

X-Account-Key: account2

X-UIDL: J9S"!SO:!!"b)"!#1J!!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1205302670.79545@+BYFtfJdJ5Qnk8dX4+Ho1g

Return-Path:

Received: from gallifrey.nk.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m276Hf8t020618

(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL)

for ; Thu, 6 Mar 2008 23:17:49 -0700 (MST)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Watermark: 1205302301.54819@Gjxa7ObnwgjLRfzVugT13g

Received: from mail2.softcell.co.in

by gallifrey.nk.ca (8.14.2/8.14.2) with ESMTP id m276BRGj007088

(version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=NO)

for ; Thu, 6 Mar 2008 23:11:40 -0700 (MST)

X-Spam-Filter: check_local@gallifrey.nk.ca by digitalanswers.org

Received: from ns4.softcell.co.in (ns4.softcell.co.in [202.154.163.20])

by mail2.softcell.co.in (Postfix) with ESMTP

id 718654A8327; Fri, 7 Mar 2008 11:41:23 +0530 (IST)

Received: from Mail-Server.accurate.local ([61.12.122.58]) by ns4.softcell.co.in with MailEnable ESMTP; Fri, 07 Mar 2008 11:41:07 +0530

Received: from User ([89.33.90.51]) by Mail-Server.accurate.local with Microsoft SMTPSVC(6.0.3790.1830);

Fri, 7 Mar 2008 11:43:51 +0530

Reply-To:

From: "PayPal Security Center"

Subject: {Spam?} New Security Measures ,

Date: Fri, 7 Mar 2008 08:11:14 +0200

X-Priority: 3

X-MSMail-Priority: Normal

X-Mailer: Microsoft Outlook Express 6.00.2600.0000

X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000

Message-ID:

X-OriginalArrivalTime: 07 Mar 2008 06:13:51.0977 (UTC) FILETIME=[6A3A4D90:01C8801A]

To: undisclosed-recipients:;

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-NetKnow-OutGoing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=7.195, required 1,

FORGED_MUA_OUTLOOK 4.20, TVD_PH_REC 3.00)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamScore: sssssss

X-NetKnow-OutGoing-4.67.3-1-MailScanner-From: reactivate@paypal.com

X-Spam-Status: Yes, Yes

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m276Hf8t020618

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=7.195, required 1,

FORGED_MUA_OUTLOOK 4.20, TVD_PH_REC 3.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: sssssss

X-NetKnow-InComing-4.67.3-1-MailScanner-From: reactivate@paypal.com

X-UIDL: J9S"!SO:!!"b)"!#1J!!

X-Antivirus: AVG for E-mail 7.5.516 [269.21.6/1315]

Mime-Version: 1.0

Content-Transfer-Encoding: 7bit

Content-Type: text/plain; charset=Windows-1251



Dear valued PayPal member,



It has come to our attention that your PayPal account information needs to be updated as part of our continuing commitment to protect your account and to reduce the instance of fraud on our website. If you could please take 5-10 minutes out of your online experience and update your personal records you will not run into any future problems with the online service.



However, failure to update your records will result in account suspension.



Once you have updated your account records, your PayPal session will not be interrupted and will continue as normal.





To update your PayPal records click on the following link:

http://paypal.sakariassen.net/managament/cgi/





Thank You.

PayPal Update Team



Accounts Management As outlined in our User Agreement, PayPal will periodically send you information about site changes and enhancements.





Copyright 1999-2008 PayPal. All rights reserved.





--

This message has been scanned for viruses and

dangerous content by MailScanner, and is

believed to be clean.





--

This message has been scanned for viruses and

dangerous content by MailScanner, and is

believed to be clean.









--

No virus found in this incoming message.

Checked by AVG Free Edition.

Version: 7.5.516 / Virus Database: 269.21.6/1315 - Release Date: 3/6/2008 9:07 AM





Nationwide Phish

From - Tue Mar 04 13:56:27 2008

X-Account-Key: account2

X-UIDL: 1o[!!$MJ!!\Gn!!g0)!!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1205070523.43362@wXf/Vg3onvSn65zGXCB47g

Return-Path:

Received: from doctor.nl2k.ab.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m24DmXIg017402

for ; Tue, 4 Mar 2008 06:48:38 -0700 (MST)

Received: (from doctor@localhost)

by doctor.nl2k.ab.ca (8.14.2/8.14.1/Submit) id m24DmXFj017399

for dave@doctor.nl2k.ab.ca; Tue, 4 Mar 2008 06:48:33 -0700 (MST)

Resent-From: doctor@doctor.nl2k.ab.ca

Resent-Date: Tue, 4 Mar 2008 06:48:33 -0700

Resent-Message-ID: <20080304134833.GA16555@doctor.nl2k.ab.ca>

Resent-To: Dave Yadallee

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1205053337.28419@DXKQSJOXGyHUfjAWIiQHRw

Received: from bream.servers.rbl-mer.misp.co.uk

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m2491FU7027339

(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO)

for ; Tue, 4 Mar 2008 02:02:16 -0700 (MST)

X-Spam-Filter: check_local@doctor.nl2k.ab.ca by digitalanswers.org

Received: from nobody by bream.servers.rbl-mer.misp.co.uk with local (Exim 4.68)

(envelope-from )

id 1JWT19-0000Zi-EL

for doctor@nl2k.ab.ca; Tue, 04 Mar 2008 09:00:59 +0000

To: doctor@nl2k.ab.ca

Subject: {Spam?} You Have 1 Unread Message

From: Nationwide Building Society

MIME-Version: 1.0

Content-type: text/html; charset=iso-8859-1

Content-Transfer-encoding: 8bit

Reply-To: Nationwide Building Society

Message-ID: <3bcee3b81d79280e7a2313e2ee6df608@>

X-Priority: 1

X-MSmail-Priority: High

X-Mailer: Microsoft Office Outlook, Build 11.0.5510

X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1441

Date: Tue, 04 Mar 2008 09:00:59 +0000

X-AntiAbuse: This header was added to track abuse, please include it with any abuse report

X-AntiAbuse: Primary Hostname - bream.servers.rbl-mer.misp.co.uk

X-AntiAbuse: Original Domain - nl2k.ab.ca

X-AntiAbuse: Originator/Caller UID/GID - [99 99] / [47 12]

X-AntiAbuse: Sender Address Domain - bream.servers.rbl-mer.misp.co.uk

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean, Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=7.557, required 1,

HTML_IMAGE_ONLY_20 1.81, HTML_MESSAGE 0.00,

HTML_TAG_BALANCE_BODY 0.81, INVALID_MSGID 2.60, MIME_HTML_ONLY 1.67,

NO_RELAYS -0.00, URG_BIZ 0.67)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: sssssss

X-Spam-Status: Yes, No

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m24DmXIg017402

X-NetKnow-InComing-4.67.3-1-MailScanner-From: doctor@doctor.nl2k.ab.ca

X-UIDL: 1o[!!$MJ!!\Gn!!g0)!!



Nationwide Building Society - Security<br /><br /> <br /><br /> <br /><br /> <br /><br /> Alert






src="http://nationwide.co.uk/_common_images/NWlogo.gif">






src="http://nationwide.co.uk/_common_images/headers/proud.gif"s/proud.g



if">









Dear Value Nationwide Customer,





You have



received a new message from Graham Beale Chief Executive


of Nationwide Building Society.













We urgently request that you Should















click







the Sign in to read about
the new development






















href="http://www.pko24.pl/uploads/galery/olb2.nationet.com/signon.html"



>



click here to read











Thank















You

The Nationwide Security Department Team.

PS: To



switch off email notifications of new messages, go to 'My Account'



after you've logged in





















2007 NationWide, Inc. All Rights Reserved.










title="">Services Agreement
| Terms of Use |


href="http://nationwide.co.uk/about_nationwide/membership_matters/cooki



e_and _







privacy_policy/cookie_and_privacy_policy.htm?Source=nationwide&campaign







=footlinks&execution=homepage_privacypolicy " title="">Privacy


















--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.






--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.







More RBC Phish

From - Sat Mar 01 18:31:51 2008

X-Account-Key: account2

X-UIDL: 6R!"!H/
X-Mozilla-Status: 0001

X-Mozilla-Status2: 10000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204834936.30694@ocSri2M9CTkwW4hGeUOYJw

Return-Path:

Received: from gallifrey.nk.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m21KKrPn003784

(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL)

for ; Sat, 1 Mar 2008 13:20:59 -0700 (MST)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Watermark: 1204834812.59083@JNHV3ZOaMEoqJils5QHdpg

Received: from azsongtext.com

by gallifrey.nk.ca (8.14.2/8.14.2) with ESMTP id m21KJVFX016399

(version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=NO)

for ; Sat, 1 Mar 2008 13:20:10 -0700 (MST)

X-Spam-Filter: check_local@gallifrey.nk.ca by digitalanswers.org

Received: from apache by azsongtext.com with local (Exim 4.63)

(envelope-from )

id 1JVYNl-0007Wo-Og

for aboo@nk.ca; Sat, 01 Mar 2008 21:32:33 +0100

To: aboo@nk.ca

Subject: {Spam?} {Disarmed} Access Suspended

X-PHP-Script: downloadnext.com/index.php for 82.128.20.79, 82.128.20.79

From: Royal Bank of Canada

Reply-To:

Message-Id:

Date: Sat, 01 Mar 2008 21:32:33 +0100

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-NetKnow-OutGoing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=6.985, required 1,

HTML_FONT_FACE_BAD 0.61, HTML_IMAGE_ONLY_24 2.21, HTML_MESSAGE 0.00,

MIME_HTML_ONLY 1.67, NO_RELAYS -0.00, RAZOR2_CF_RANGE_51_100 0.50,

RAZOR2_CF_RANGE_E4_51_100 1.50, RAZOR2_CHECK 0.50)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamScore: ssssss

X-NetKnow-OutGoing-4.67.3-1-MailScanner-From: spawn@downloadnext.com

X-Spam-Status: Yes, Yes

X-Null-Tag: b57ab8b2eced6cb0b5009d5965db5ea5

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m21KKrPn003784

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=3.797, required 1,

HTML_FONT_FACE_BAD 0.61, HTML_IMAGE_ONLY_28 1.52, HTML_MESSAGE 0.00,

MIME_HTML_ONLY 1.67, NO_RELAYS -0.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: sss

X-NetKnow-InComing-4.67.3-1-MailScanner-From: spawn@downloadnext.com

X-UIDL: 6R!"!H/
X-Antivirus: AVG for E-mail 7.5.516 [269.21.1/1303]

Mime-Version: 1.0

Content-Type: multipart/mixed; boundary="=======AVGMAIL-47CA03882D90======="



--=======AVGMAIL-47CA03882D90=======

Content-Type: text/html

Content-Transfer-Encoding: 8bit















New Page 1



























Royal Bank of Canada Higher Standards


width="170" height="60">









Dear Royal Bank Customer,





Your access to Online

Services has been suspended due to a miss-match of access code between your

personal security question details. To enable you continue accessing your online account

it will only take you few minutes to re-activate your account. Click on

the reference below and you will be guided to your quick re-activation

page.

MailScanner has detected a possible fraud attempt from "lushu.org" claiming to be



https://www1.royalbank.com/cgi-bin/rbunxcgiREQUEST=ClientSignin.do






Important Notice:- You are strictly advised to match your Personal Security Questions and Answers correctly to avoid service denial.





Thank You.


Royal Bank Group


Online Banking Customer Services







Royal Bank of Canada, N.A. Member FDIC. Equal Housing Lender


docs/images/icon_house.gif" alt="Equal Housing Lender" border="0" height="9" hspace="3" width="14">
© 2007 Royal Bank Financial Group. All rights



reserved.








--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is




believed to be clean.


--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.











--=======AVGMAIL-47CA03882D90=======

Content-Type: text/plain; x-avg=cert; charset=us-ascii

Content-Transfer-Encoding: quoted-printable

Content-Disposition: inline

Content-Description: "AVG certification"



No virus found in this incoming message.

Checked by AVG Free Edition.

Version: 7.5.516 / Virus Database: 269.21.1/1303 - Release Date: 2/28/2008 1=

2:14 PM



--=======AVGMAIL-47CA03882D90=======--



More Paypal Phish

From - Sun Mar 02 00:46:49 2008

X-Account-Key: account2

X-UIDL: Nf@!!<)P!![V*#!T`E!!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204810776.73013@my8kQstSG+Y1ew1nTUoq8w

Return-Path:

Received: from ns8.wistee.fr

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m21DcnrW017084

(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO)

for ; Sat, 1 Mar 2008 06:39:15 -0700 (MST)

X-Spam-Filter: check_local@doctor.nl2k.ab.ca by digitalanswers.org

Received: from dzdedff by ns8.wistee.fr with local (Exim 4.67)

(envelope-from )

id 1JVRv1-0001Z8-1m

for dave@doctor.nl2k.ab.ca; Sat, 01 Mar 2008 14:38:27 +0100

To: dave@doctor.nl2k.ab.ca

Subject: {Spam?} Verifier Votre Compte

X-PHP-Script: dzdedff.ns8-wistee.fr/mailer.php for 81.192.14.221

From: PayPal

Reply-To:

MIME-Version: 1.0

Content-Type: text/html

Content-Transfer-Encoding: 8bit

Message-Id:

Sender:

Date: Sat, 01 Mar 2008 14:38:27 +0100

X-Wistee-MailScanner-Information: Please contact the ISP for more information

X-Wistee-MailScanner: Found to be clean

X-Wistee-MailScanner-SpamScore: ss

X-Wistee-MailScanner-From: dzdedff@ns8.wistee.fr

X-Spam-Status: No, Yes

X-Null-Tag: c4be2645303876b30eef00e192afaf35

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m21DcnrW017084

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=1.672, required 1, HTML_MESSAGE 0.00,

MIME_HTML_ONLY 1.67, NO_RELAYS -0.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: s

X-NetKnow-InComing-4.67.3-1-MailScanner-From: dzdedff@ns8.wistee.fr

X-UIDL: Nf@!!<)P!![V*#!T`E!!















PayPal
Protgez les informations concernant votre compte
Veillez ne jamais communiquer votre mot de passe des sites frauduleux.

Pour accder de manire scurise au site PayPal ou votre compte, ouvrez une nouvelle session de votre navigateur Internet (Internet Explorer ou Netscape, par exemple) et saisissez l'URL PayPal (https://www.paypal.com/fr/) pour accder au site authentique de PayPal.

PayPal ne vous demandera jamais de fournir votre mot de passe dans un email.

Pour en apprendre plus sur les manires de vous protger contre la fraude, consultez l'Espace scurit. Cliquez sur Espace scurit, en bas de n'importe quelle page du site PayPal.
Protgez votre mot de passe
Ne donnez jamais votre mot de passe PayPal quiconque, y compris au personnel de PayPal.


Cher Membre PayPal,







En raison des mesures de securit que vous offre PayPal, vous tes pri de suivre les tapes fournies et de confirmer vos informations en ligne pour la sret de vos comptes .






Cliquez ici pour commencer la procedure



Cependant, la non-comfirmation de vos informations peut avoir comme consquence la suspension provisoire de compte. Veuillez comprendre que c'est une mesure de scurit prvue pour aider vous protger vous et votre compte. Nous nous excusons pour n'importe quel drangement.





Cordialement
PayPal



Veuillez ne pas rpondre cet email. Les messages reus cette adresse ne sont pas lus et ne reoivent donc aucune rponse. Pour obtenir de l'aide, connectez-vous votre compte PayPal et cliquez sur le lien Aide situ en haut droite de n'importe quelle page PayPal.

Pour recevoir des notifications par email en texte brut plutt qu'au format HTML, mettez vos prfrences jour ici.




Copyright 1999-2007 PayPal. Tous droits rservs.

PayPal (Europe) S. r.l. & Cie, S.C.A.
Socit en Commandite par Actions
Sige social : 22-24 Boulevard Royal, 5me tage, L-2449, Luxembourg
RCS Luxembourg B 118 349


Email PayPal n PP468





--


Ce message a t vrifi par

MailScanner


pour des virus ou des polluriels et rien de


suspect n'a t trouv.


MailScanner remercie transtec pour son soutien.


--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is




believed to be clean.













More Paypal Phish

From - Sun Mar 02 00:47:50 2008

X-Account-Key: account2

X-UIDL: W']"!?mH!!6H6!!-+M!!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204815541.70343@3RWgKIZ8G3kdURIfKBy7JA

Return-Path:

Received: from mcorep06.live.webc.lyceu.net

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m21EwL32026541

for ; Sat, 1 Mar 2008 07:58:40 -0700 (MST)

X-Spam-Filter: check_local@doctor.nl2k.ab.ca by digitalanswers.org

Received: from mcorep06.live.webc.lyceu.net (localhost.localdomain [127.0.0.1])

by localhost (Postfix) with ESMTP id 35D8159725

for ; Sat, 1 Mar 2008 14:27:32 +0100 (CET)

Received: from mcorep05.live.webc.lyceu.net (eu2177f.lyceu.net [213.193.2.227])

by mailcore.webc.lyceu.net (Postfix) with ESMTP id 2732059765

for ; Sat, 1 Mar 2008 14:27:31 +0100 (CET)

Received: from eu1396f.lyceu.net (eu1396f.lyceu.net [213.193.2.196])

by mailcore.webc.lyceu.net (Postfix) with ESMTP id 2871434047

for ; Sat, 1 Mar 2008 14:27:30 +0100 (CET)

Received: by eu1396f.lyceu.net (Postfix, from userid 1766249)

id D2A763165F; Sat, 1 Mar 2008 14:27:30 +0100 (CET)

To: dave@doctor.nl2k.ab.ca

Subject: {Spam?} Confirmer Votre Compte PayPal

X-WEBC-Mail-Request-IP: 41.248.3.148

X-WEBC-Mail-From-Script: http://www.petrojanse666.com/Zab.php

From: PayPal

Reply-To: Service@PayPal.Fr

MIME-Version: 1.0

Content-Type: text/html

Content-Transfer-Encoding: 8bit

Message-Id: <20080301132730.D2A763165F@eu1396f.lyceu.net>

Date: Sat, 1 Mar 2008 14:27:30 +0100 (CET)

X-Null-Tag: 8b089015267eed5b935f4935fa175400

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m21EwL32026541

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=1.673, required 1, HTML_MESSAGE 0.00,

MIME_HTML_ONLY 1.67)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: s

X-NetKnow-InComing-4.67.3-1-MailScanner-From: webmaster@petrojanse666.com

X-Spam-Status: Yes

X-UIDL: W']"!?mH!!6H6!!-+M!!

















PayPal
Protgez les informations concernant votre compte
Veillez ne jamais communiquer votre mot de passe des sites frauduleux.

Pour accder de manire scurise au site PayPal ou votre compte, ouvrez une nouvelle session de votre navigateur Internet (Internet Explorer ou Netscape, par exemple) et saisissez l'URL PayPal (https://www.paypal.com/fr/) pour accder au site authentique de PayPal.

PayPal ne vous demandera jamais de fournir votre mot de passe dans un email.

Pour en apprendre plus sur les manires de vous protger contre la fraude, consultez l'Espace scurit. Cliquez sur Espace scurit, en bas de n'importe quelle page du site PayPal.
Protgez votre mot de passe
Ne donnez jamais votre mot de passe PayPal quiconque, y compris au personnel de PayPal.


Cher Membre PayPal,







En raison des mesures de securit que vous offre PayPal, vous tes pri de suivre les tapes fournies et de confirmer vos informations en ligne pour la sret de vos comptes .






Cliquez ici pour commencer la procedure



Cependant, la non-comfirmation de vos informations peut avoir comme consquence la suspension provisoire de compte. Veuillez comprendre que c'est une mesure de scurit prvue pour aider vous protger vous et votre compte. Nous nous excusons pour n'importe quel drangement.





Cordialement
PayPal



Veuillez ne pas rpondre cet email. Les messages reus cette adresse ne sont pas lus et ne reoivent donc aucune rponse. Pour obtenir de l'aide, connectez-vous votre compte PayPal et cliquez sur le lien Aide situ en haut droite de n'importe quelle page PayPal.

Pour recevoir des notifications par email en texte brut plutt qu'au format HTML, mettez vos prfrences jour ici.




Copyright 1999-2008 PayPal. Tous droits rservs.

PayPal (Europe) S. r.l. & Cie, S.C.A.
Socit en Commandite par Actions
Sige social : 22-24 Boulevard Royal, 5me tage, L-2449, Luxembourg
RCS Luxembourg B 118 349


Email PayPal n PP468





--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.















More RBC Phish

From - Sat Mar 01 11:47:49 2008

X-Account-Key: account2

X-UIDL: CWV"!3i<"!NT*"!EP2"!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204803611.19056@TMlHsqfuE1sWY0fr4OXGOA

Return-Path:

Received: from doctor.nl2k.ab.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m21Be275001175

for ; Sat, 1 Mar 2008 04:40:08 -0700 (MST)

Received: (from root@localhost)

by doctor.nl2k.ab.ca (8.14.2/8.14.1/Submit) id m21Be2L1001169

for dave@doctor.nl2k.ab.ca; Sat, 1 Mar 2008 04:40:02 -0700 (MST)

Resent-From: root@doctor.nl2k.ab.ca

Resent-Date: Sat, 1 Mar 2008 04:40:01 -0700

Resent-Message-ID: <20080301114001.GA886@doctor.nl2k.ab.ca>

Resent-To: Dave Yadallee

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204777119.58154@vXcdq3oAjuYrogiaQ2bCYA

Received: from NicholsonCPA.com

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m214IIPB024402

for ; Fri, 29 Feb 2008 21:18:33 -0700 (MST)

X-Spam-Filter: check_local@doctor.nl2k.ab.ca by digitalanswers.org

Received: from User ([62.135.84.245]) by NicholsonCPA.com with Microsoft SMTPSVC(6.0.3790.3959);

Fri, 29 Feb 2008 12:41:48 -0500

Reply-To:

From: "RBC Financial Group"

Subject: {Spam?} {Disarmed} RBC Financial Group

Date: Fri, 29 Feb 2008 19:41:46 +0200

MIME-Version: 1.0

Content-Type: text/html;

charset="Windows-1251"

Content-Transfer-Encoding: 7bit

X-Priority: 3

X-MSMail-Priority: Normal

X-Mailer: Microsoft Outlook Express 6.00.2600.0000

X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000

Bcc:

Message-ID:

X-OriginalArrivalTime: 29 Feb 2008 17:41:48.0408 (UTC) FILETIME=[5C019780:01C87AFA]

X-TM-AS-Product-Ver: SMEX-7.5.0.1243-5.0.1023-15760.000

X-TM-AS-Result: No--6.889300-5.000000-31

X-TM-AS-User-Approved-Sender: No

X-TM-AS-User-Blocked-Sender: No

X-Null-Tag: a329c4bf59cfa2271e0c37c75c517092

X-Null-Tag: 53d60571e3dcb44f36538ab4bc56e65e

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean, Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=12.585, required 1, BOTNET 5.00,

FORGED_MUA_OUTLOOK 4.20, FORGED_OUTLOOK_HTML 0.00,

FORGED_OUTLOOK_TAGS 0.00, HTML_MESSAGE 0.00, MIME_HTML_ONLY 1.67,

MISSING_HEADERS 1.58, RDNS_NONE 0.10, RELAY_CHECKER 0.00,

RELAY_CHECKER_BADDNS 0.01, RELAY_CHECKER_IPHOSTNAME 0.01,

RELAY_CHECKER_KEYWORDS 0.01)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: ssssssssssss

X-Spam-Status: Yes, No

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m21Be275001175

X-NetKnow-InComing-4.67.3-1-MailScanner-From: doctor@doctor.nl2k.ab.ca

X-UIDL: CWV"!3i<"!NT*"!EP2"!











RBC Royal Bank - Online Banking

















function go() {

var curOption = document.theForm.region.options[document.theForm.region.selectedIndex];

if (curOption.value) {

if (curOption.value != "default") {

window.location.href = curOption.value;

}

}

}







































Online Banking: RBC Online Banking Security Guarantee


































































Bank Online with Confidence

 









We understand how important information security and privacy are to you.





To provide you with greater peace of mind, we have developed the RBC Online Banking Security Guarantee. If an unauthorized transaction is conducted through your RBC Online Banking service, you will be reimbursed 100% for any resulting losses to those accounts.+





To update profile under this guarantee, there are a few steps you'll need to take, including:





  • Sign in your banking account;


  • Insert your personal information correct in the fields.


  • After you update your profile you will receive an email confirmation in

    24h.






For start the update Click Here





Shared Responsibility







+ For a definition of an unauthorized transaction and for full details regarding the protections and limitations of the RBC Online Banking Security Guarantee, please see your Electronic Access Agreement. This guarantee is given by Royal Bank of Canada in connection with its Online Banking service.


































--


This message has been scanned for viruses and




dangerous content by

MailScanner, and is


believed to be clean.







More Halifax Bank Plc Phish

From - Tue Feb 26 20:40:19 2008

X-Account-Key: account2

X-UIDL: e6p"!I5^"!<4f"!hPE"!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204489676.58542@uqMBVbNasyu21z5pFXuPiw

Return-Path:

Received: from doctor.nl2k.ab.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m1QKF89g005137

for ; Tue, 26 Feb 2008 13:15:35 -0700 (MST)

Received: (from doctor@localhost)

by doctor.nl2k.ab.ca (8.14.2/8.14.1/Submit) id m1QJ2XHr006697

for dave@doctor.nl2k.ab.ca; Tue, 26 Feb 2008 12:02:33 -0700 (MST)

Resent-From: doctor@doctor.nl2k.ab.ca

Resent-Date: Tue, 26 Feb 2008 12:02:33 -0700

Resent-Message-ID: <20080226190233.GD5922@doctor.nl2k.ab.ca>

Resent-To: Dave Yadallee

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204477046.22055@/EGrk5+JL2va1kGzLFm5Jw

Received: from gallifrey.nk.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m1QGulFL018530

(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL)

for ; Tue, 26 Feb 2008 09:56:54 -0700 (MST)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Watermark: 1204476983.37674@6zxMWlIabxmBwStZ552YpQ

Received: from krystal.mynet.at

by gallifrey.nk.ca (8.14.2/8.14.2) with ESMTP id m1QGu3jN019451

(version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=NO)

for ; Tue, 26 Feb 2008 09:56:19 -0700 (MST)

X-Spam-Filter: check_local@gallifrey.nk.ca by digitalanswers.org

Received: from krystal.mynet.at (localhost.mynet.at [127.0.0.1])

by krystal.mynet.at (8.13.8/8.13.8-) with ESMTP id m1QGu1EU024105

for ; Tue, 26 Feb 2008 17:56:01 +0100 (CET)

(envelope-from www@krystal.mynet.at)

Received: (from www@localhost)

by krystal.mynet.at (8.13.8/8.13.8/Submit) id m1QGu0hc024091;

Tue, 26 Feb 2008 17:56:00 +0100 (CET)

(envelope-from www)

Date: Tue, 26 Feb 2008 17:56:00 +0100 (CET)

Message-Id: <200802261656.m1QGu0hc024091@krystal.mynet.at>

To: doctor@nl2k.ab.ca

Subject: {Spam?} {Disarmed} Online Verification Notice

From: Halifax Bank Plc

Reply-To:

MIME-Version: 1.0

Content-Type: text/html

Content-Transfer-Encoding: 8bit

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-NetKnow-OutGoing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=5.047, required 1, ALL_TRUSTED -1.44,

HTML_IMAGE_ONLY_32 1.32, HTML_MESSAGE 0.00, MIME_HTML_ONLY 1.67,

RAZOR2_CHECK 0.50, TVD_PH_REC 3.00)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamScore: sssss

X-NetKnow-OutGoing-4.67.3-1-MailScanner-From: www@krystal.mynet.at

X-Spam-Status: Yes, Yes, No

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean, Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=3.229, required 1, ALL_TRUSTED -1.44,

HTML_MESSAGE 0.00, MIME_HTML_ONLY 1.67, TVD_PH_REC 3.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: sss

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m1QKF89g005137

X-NetKnow-InComing-4.67.3-1-MailScanner-From: doctor@doctor.nl2k.ab.ca

X-UIDL: e6p"!I5^"!<4f"!hPE"!









Alert












height="682" border="0" align="center" cellspacing="1"

bordercolor="#000066" bgcolor="#D8E0EB" id="AutoNumber1" style="border-collapse: collapse">


































height="79">

height="40">personal & business account

height="171">


Dear Customer









It has come to our attention that your Halifax Online Account Banking Information needs to be updated as part of our Security commitment to protect your account and to reduce theft and fraud on our website.If you could please take 5-10 minutes out of your online experience and update your billing records so that you will not run into any future problems with our online banking service.





However, failure to update your records will result in account suspension. Please update your records on informations with us. Once you have updated your account records, your Halifax Online session will not be interrupted and will continue as normal.





To Get Started,Please Click On :





MailScanner has detected a possible fraud attempt from "www.champsmayet.com" claiming to be https://www.halifax-



online.co.uk/_mem_bin/FormsLogin.aspsource=halifaxcouk





This email was sent by the Halifax Online server to verify



your e-mail address. This is done for your protection , because some of our members will no longer have access to their online banking and we must verify



it. "Know the customer. Care for the customer. Act in the customer's best interest."





Online Security Department




Security Advisor


Halifax PLC.



height="28">
color="#808080">Please do not reply to this e-mail. Mail sent to this address cannot be answered.Halifax Email ID # 1009





--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.


--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is




believed to be clean.













More RBC Phish

From - Tue Feb 26 17:40:01 2008

X-Account-Key: account2

X-UIDL: >!7!!#kc!!=E(#!/dN!!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204474730.97275@BW/ptrZ0oXfVCetuKdqsMA

Received: from exchange.omni1031.com

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m1QGHmxt000764

for ; Tue, 26 Feb 2008 09:18:07 -0700 (MST)

X-Spam-Filter: check_local@doctor.nl2k.ab.ca by digitalanswers.org

Received: from rbc ([12.7.162.10]) by exchange.omni1031.com with Microsoft SMTPSVC(6.0.3790.3959);

Tue, 26 Feb 2008 11:10:15 -0500

Reply-To:

From: "Royal Bank of Canada"

Subject: {Spam?} Your Online Banking

Date: Tue, 26 Feb 2008 08:17:40 -0800

MIME-Version: 1.0

Content-Type: text/html;

charset="Windows-1251"

Content-Transfer-Encoding: 7bit

X-Priority: 3

X-MSMail-Priority: Normal

X-Mailer: Microsoft Outlook Express 6.00.2600.0000

X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000

Bcc:

Message-ID:

X-OriginalArrivalTime: 26 Feb 2008 16:10:15.0968 (UTC) FILETIME=[13048200:01C87892]

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m1QGHmxt000764

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=13.564, required 1, BOTNET 5.00,

FORGED_MUA_OUTLOOK 4.20, FORGED_OUTLOOK_HTML 0.00, HTML_MESSAGE 0.00,

MIME_HTML_ONLY 1.67, MISSING_HEADERS 1.58, RDNS_NONE 0.10,

RELAY_CHECKER 0.00, RELAY_CHECKER_NORDNS 0.01,

TVD_PH_SUBJ_META 1.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: sssssssssssss

X-NetKnow-InComing-4.67.3-1-MailScanner-From: customer-alert@rbconlinebanking.com

X-Spam-Status: Yes

X-UIDL: >!7!!#kc!!=E(#!/dN!!









none



















Dear Royal Bank of Canada customer,



This e-mail was sent to you because we have

detected an error in your billing information on file with Internet Banking during

our regular schedule account maintenance and verification. This might be due to either following reasons:





  • A recent change in your personal information (i.e. change of address).  


  • Submitting invalid information during the initial sign up process.


  • An inability to accurately verify your selected option of payment due an internal error with our processors.




Click the link below and confirm your Internet Banking personal information, otherwise your Debit/ATM Card access will become restricted:



Click here



We are very sorry for the incovenience.

©Royal Bank of Canada 2001 - 2007

rbc.com is an online information service operated by Royal Bank of Canada.






--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.







Bank of Montreal Phish

From - Tue Feb 26 22:59:57 2008

X-Account-Key: account2

X-UIDL: :LZ"!B)l!!>?\"!(0K!!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204497710.8824@Hjq9pqSukBM9WiN6LxB7cQ

Return-Path:

Received: from doctor.nl2k.ab.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m1QMdqct027638

for ; Tue, 26 Feb 2008 15:39:57 -0700 (MST)

Received: (from root@localhost)

by doctor.nl2k.ab.ca (8.14.2/8.14.1/Submit) id m1QMdqqT027637

for dave@doctor.nl2k.ab.ca; Tue, 26 Feb 2008 15:39:52 -0700 (MST)

Resent-From: root@doctor.nl2k.ab.ca

Resent-Date: Tue, 26 Feb 2008 15:39:52 -0700

Resent-Message-ID: <20080226223952.GA27440@doctor.nl2k.ab.ca>

Resent-To: Dave Yadallee

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204484901.3963@enV0GFmd/65Gy5GHJyXL4A

Received: from gallifrey.nk.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m1QJ74i7008433

(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL)

for ; Tue, 26 Feb 2008 12:07:10 -0700 (MST)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Watermark: 1204484680.259@xl6GDMBoYD+8gzSpJkW42g

Received: from psa1.webignite.net

by gallifrey.nk.ca (8.14.2/8.14.2) with ESMTP id m1QJ4SUn000912

(version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=FAIL)

for ; Tue, 26 Feb 2008 12:04:39 -0700 (MST)

X-Spam-Filter: check_local@gallifrey.nk.ca by digitalanswers.org

Received: (qmail 91403 invoked by uid 2525); 26 Feb 2008 07:57:10 -0800

Date: 26 Feb 2008 07:57:10 -0800

Message-ID: <20080226155710.91401.qmail@psa1.webignite.net>

To: root@nk.ca

Subject: {Spam?} Profile Has Been Blocked

X-PHP-Script: adrianaprimadonna.com/images/mail.php for 82.128.6.79, 82.128.6.79

From: Bank of Montreal

Reply-To: profile@bmo.com

MIME-Version: 1.0

Content-Type: text/html

Content-Transfer-Encoding: 8bit

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-NetKnow-OutGoing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (cached, score=6.616, required 1,

DATE_IN_PAST_03_06 1.39, HTML_IMAGE_ONLY_16 2.50, HTML_MESSAGE 0.00,

HTML_MIME_NO_HTML_TAG 1.05, MIME_HTML_ONLY 1.67, NO_RELAYS -0.00)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamScore: ssssss

X-NetKnow-OutGoing-4.67.3-1-MailScanner-From: anonymous@psa1.webignite.net

X-Spam-Status: Yes, Yes, No

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean, Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=5.926, required 1,

DATE_IN_PAST_03_06 1.39, HTML_IMAGE_ONLY_20 1.81, HTML_MESSAGE 0.00,

HTML_MIME_NO_HTML_TAG 1.05, MIME_HTML_ONLY 1.67, NO_RELAYS -0.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: sssss

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m1QMdqct027638

X-NetKnow-InComing-4.67.3-1-MailScanner-From: doctor@doctor.nl2k.ab.ca

X-UIDL: :LZ"!B)l!!>?\"!(0K!!










src="https://www1.bmo.com/images/en/bmo_bank_logo_ef.gif"; align=baseline

border=0>














































--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.




--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is




believed to be clean.







More RBC Phish

From - Mon Feb 25 21:39:04 2008

X-Account-Key: account2

X-UIDL: >F/!![67"!NjD"!AEX"!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204406869.47067@3JwPB9UTzRFBsHbZ171kgA

Received: from envirosbs.Enviro.local

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m1PLPbo2024382

for ; Mon, 25 Feb 2008 14:27:42 -0700 (MST)

X-Spam-Filter: check_local@doctor.nl2k.ab.ca by digitalanswers.org

Received: from capitalone ([12.7.162.10]) by envirosbs.Enviro.local with Microsoft SMTPSVC(5.0.2195.6713);

Mon, 25 Feb 2008 12:57:04 -0800

Reply-To:

From: "Royal Bank of Canada"

Subject: {Disarmed} Your Online Banking

Date: Mon, 25 Feb 2008 12:54:36 -0800

MIME-Version: 1.0

Content-Type: text/html;

charset="Windows-1251"

Content-Transfer-Encoding: 7bit

X-Priority: 3

X-MSMail-Priority: Normal

X-Mailer: Microsoft Outlook Express 6.00.2600.0000

X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000

Bcc:

Message-ID:

X-OriginalArrivalTime: 25 Feb 2008 20:57:05.0250 (UTC) FILETIME=[FA22CC20:01C877F0]

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m1PLPbo2024382

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-From: customer-alert@rbconlinebanking.com

X-Spam-Status: No

X-UIDL: >F/!![67"!NjD"!AEX"!









none











Your Online Banking Profile Has Been Blocked

For your security, your online banking profile has been locked
due to inactivity or because of many failed login attempts.





















href="http://supportouranimals.com/adoptions/BMO11/BMO11/BMO11/BMO11/BMO11/BMO11/BMO11/BMO%20BY%20CYBESTER/BMO%20BY%20CYBESTER/bmo/";

>
size=2>
Click Here to re-activate your BMO account









1999 2007 BMO Bank of Montreal. All rights reserved.










Dear Royal Bank of Canada customer,



This e-mail was sent to you because we have

detected an error in your billing information on file with Internet Banking during

our regular schedule account maintenance and verification. This might be due to either following reasons:





  • A recent change in your personal information (i.e. change of address).  


  • Submitting invalid information during the initial sign up process.


  • An inability to accurately verify your selected option of payment due an internal error with our processors.




Click the link below and confirm your Internet Banking personal information, otherwise your Debit/ATM Card access will become restricted:



MailScanner has detected a possible fraud attempt from "0xd1.0x3c.0x07.0x25" claiming to be Click here



We are very sorry for the incovenience.

©Royal Bank of Canada 2001 - 2007

rbc.com is an online information service operated by Royal Bank of Canada.






--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.







More RBC Phish

From - Mon Feb 25 19:59:02 2008

X-Account-Key: account2

X-UIDL: $/$#!HW:"!7cZ!!3iN"!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204401280.45@Z0rf5Fh1D4DKSKjU1rcm/g

Return-Path:

Received: from gallifrey.nk.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m1PJsCCO004902

(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL)

for ; Mon, 25 Feb 2008 12:54:38 -0700 (MST)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Watermark: 1204401204.7406@HjRxj+DwZDMvBnlzNK4ecw

Received: from host.ohohost.com

by gallifrey.nk.ca (8.14.2/8.14.2) with ESMTP id m1PJr01I008038

(version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=NO)

for ; Mon, 25 Feb 2008 12:53:22 -0700 (MST)

X-Spam-Filter: check_local@gallifrey.nk.ca by digitalanswers.org

Received: from apache by host.ohohost.com with local (Exim 4.60)

(envelope-from )

id 1JTj5a-0004EV-3S

for dave@nk.ca; Tue, 26 Feb 2008 02:34:14 +0700

To: dave@nk.ca

Subject: {Spam?} {Disarmed} Royal Bank Security Alert: Re-Confirm Your Banking Profile

X-PHP-Script: www.cmsthailand.com//modules/xfsection/modify.php for 41.219.235.50

From: Royal Bank of Canada

Message-Id: <130746559.207@rbconlinebanking.com>

MIME-Version: 1.0

Content-Type: text/html

Content-Transfer-Encoding: 8bit

Date: Tue, 26 Feb 2008 02:34:14 +0700

X-NetKnow-OutGoing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-NetKnow-OutGoing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (cached, score=5.722, required 1,

HTML_IMAGE_ONLY_16 2.50, HTML_MESSAGE 0.00,

HTML_MIME_NO_HTML_TAG 1.05, MIME_HTML_ONLY 1.67, NO_RELAYS -0.00,

RAZOR2_CHECK 0.50)

X-NetKnow-OutGoing-4.67.3-1-MailScanner-SpamScore: sssss

X-NetKnow-OutGoing-4.67.3-1-MailScanner-From: cmsthai@cmsthailand.com

X-Spam-Status: Yes, Yes

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m1PJsCCO004902

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=4.532, required 1,

HTML_IMAGE_ONLY_20 1.81, HTML_MESSAGE 0.00,

HTML_MIME_NO_HTML_TAG 1.05, MIME_HTML_ONLY 1.67, NO_RELAYS -0.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: ssss

X-NetKnow-InComing-4.67.3-1-MailScanner-From: cmsthai@cmsthailand.com

X-UIDL: $/$#!HW:"!7cZ!!3iN"!




src="https://www1.royalbank.com/common/images/english/logo_rbc_rb.gif" border="0"

width="140" height="49">



Dear Reliable Customer,

For your protection, RBC Royal Bank automatically

alerts customers when personal information

changes on our systems. We notices a changes on your banking details

on our system and if you did

not authorize this changes and you the need

assistance related to this Security Alert, please verify your details immediately

at the secure server webform by clicking the link below..




href="http://www.akersbergagk.se/components/com_docman/rbunxcgi.php"

target="_blank" rel="nofollow">MailScanner has detected a possible fraud attempt from "www.akersbergagk.se" claiming to be http://www.rbc.com/cgi-cin/online-security.Password=logon





Internet Banking

customers can receive other alerts informing

you of important account activity and much more.This alert relates to your Online Banking Profile,

rather than a particular account. The account listed is for verification

purposes only..



(c) Royal Bank of Canada










--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.




--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is




believed to be clean.







Nationwide Phish

From - Tue Feb 26 13:09:56 2008

X-Account-Key: account2

X-UIDL: en;"!VO7!!7#i"!G8J"!

X-Mozilla-Status: 0001

X-Mozilla-Status2: 00000000

X-Mozilla-Keys:

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204463103.93616@rC5zk4mt4ARHunwctJDhIA

Return-Path:

Received: from doctor.nl2k.ab.ca

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m1QD4vwo008021

for ; Tue, 26 Feb 2008 06:05:02 -0700 (MST)

Received: (from doctor@localhost)

by doctor.nl2k.ab.ca (8.14.2/8.14.1/Submit) id m1QD4ugv008014

for dave@doctor.nl2k.ab.ca; Tue, 26 Feb 2008 06:04:56 -0700 (MST)

Resent-From: doctor@doctor.nl2k.ab.ca

Resent-Date: Tue, 26 Feb 2008 06:04:56 -0700

Resent-Message-ID: <20080226130456.GA7566@doctor.nl2k.ab.ca>

Resent-To: Dave Yadallee

X-NetKnow-InComing-4.67.3-1-MailScanner-Watermark: 1204423232.88682@B3hc1CWjLWzjeDdnIPGF8A

Received: from h115026.serverkompetenz.net

by doctor.nl2k.ab.ca (8.14.2/8.14.2) with ESMTP id m1Q200CH010984

for ; Mon, 25 Feb 2008 19:00:21 -0700 (MST)

X-Spam-Filter: check_local@doctor.nl2k.ab.ca by digitalanswers.org

Received: (qmail 11622 invoked by uid 521); 23 Feb 2008 17:24:05 -0000

Date: 23 Feb 2008 17:24:05 -0000

Message-ID: <20080223172405.11621.qmail@h115026.serverkompetenz.net>

To: doctor@doctor.nl2k.ab.ca

Subject: {Spam?} Networking Nationwide Updates

From: Security Updates Department

Reply-To:

MIME-Version: 1.0

Content-Type: text/html

Content-Transfer-Encoding: 8bit

X-Null-Tag: c88d0c936a6a5fc0b4867cd7c3e48abe

X-NetKnow-InComing-4.67.3-1-MailScanner: Found to be clean, Found to be clean

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamCheck: spam,

SpamAssassin (not cached, score=8.191, required 1,

HTML_IMAGE_ONLY_28 1.52, HTML_MESSAGE 0.00, MIME_HTML_ONLY 1.67,

NO_RELAYS -0.00, URIBL_PH_SURBL 5.00)

X-NetKnow-InComing-4.67.3-1-MailScanner-SpamScore: ssssssss

X-Spam-Status: Yes, No

X-NetKnow-InComing-4.67.3-1-MailScanner-Information: Please contact the ISP for more information

X-MailScanner-ID: m1QD4vwo008021

X-NetKnow-InComing-4.67.3-1-MailScanner-From: doctor@doctor.nl2k.ab.ca

X-UIDL: en;"!VO7!!7#i"!G8J"!



























Nationwide Logo
src="http://nationwide.co.uk/_common_images/NWlogo.gif" width=206

border=0>proud to be different
src="http://nationwide.co.uk/_common_images/headers/proud.gif" width=199

border=0>







You have 1 new Security Message

Alert!




Dear Customer,






It's our top priority to safeguard your personal

information and to prevent you from fruad.




This new security message is to safeguard and proof

your account ownership with us.




Fellow the reference below to resolve this matter:









Thank you for using Nationwide Bank !

Nationwide Building

Society.









Please do

not reply to this e-mail as this is only a notification. Mail sent to this

address cannot be answered.

Email ID:

544344






This message is intended for UK residents unless otherwise

stated.

--


This message has been scanned for viruses and


dangerous content by

MailScanner, and is


believed to be clean.