* content looks like wetransfer mail
* sent from a known hotmail user (likely hacked account)

the download link goes to "http://cdfhs.org/view/index.htm"; and the login-forms for several services are more then questionable

URI_GOOGLE_PROXY Accessing a blacklisted URI or obscuring source of phish via Google proxy?

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to