IP Lookup Details:
IP Information - 116.80.14.214
Host name: offtak.co.jp
Country: Japan
Country Code: JP
Region: 40
City: Tokyo
Latitude: 35.685
Longitude: 139.7514
CIDR: 116.0.0.0/8
NetName: APNIC-116
NetHandle: NET-116-0-0-0-1
Parent: ()
NetType: Allocated to APNIC
OriginAS:
Organization: Asia Pacific Network Information Centre (APNIC)
RegDate: 2007-01-17
Updated: 2010-07-30
Comment: This IP address range is not registered in the ARIN database.
Comment: For details, refer to the APNIC Whois Database via
Comment: WHOIS.APNIC.NET or http://wq.apnic.net/apnic-bin/whois.pl
Comment: ** IMPORTANT NOTE: APNIC is the Regional Internet Registry
Comment: for the Asia Pacific region. APNIC does not operate networks
Comment: using this IP address range and is not able to investigate
Comment: spam or abuse reports relating to these addresses. For more
Comment: help, refer to http://www.apnic.net/apnic-info/whois_search2/abuse-and-spamming
Ref: https://rdap.arin.net/registry/ip/116.0.0.0
ResourceLink: http://wq.apnic.net/whois-search/static/search.html
ResourceLink: whois.apnic.net
OrgName: Asia Pacific Network Information Centre
OrgId: APNIC
Address: PO Box 3646
City: South Brisbane
StateProv: QLD
PostalCode: 4101
Country: AU
RegDate:
Updated: 2012-01-24
Ref: https://rdap.arin.net/registry/entity/APNIC
ReferralServer: whois://whois.apnic.net
ResourceLink: http://wq.apnic.net/whois-search/static/search.html
OrgAbuseHandle: AWC12-ARIN
OrgAbuseName: APNIC Whois Contact
OrgAbusePhone: +61 7 3858 3188
OrgAbuseEmail: search-apnic-not-arin@apnic.net
OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
OrgTechHandle: AWC12-ARIN
OrgTechName: APNIC Whois Contact
OrgTechPhone: +61 7 3858 3188
OrgTechEmail: search-apnic-not-arin@apnic.net
OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
Phishing email. DO SOMETHING! From Received: from offtak.co.jp ([116.80.14.214]:38788) admin@offtak.co.jp Whois WHOIS search results [ JPRS database provides information on network administration. Its use is ] [ restricted to network administration purposes. For further information, ] [ use 'whois -h whois.jprs.jp help'. To suppress Japanese output, add'/e' ] [ at the end of command, e.g. 'whois -h whois.jprs.jp xxx/e'. ] Domain Information: [ãƒ‰ãƒ¡ã‚¤ãƒ³æƒ…å ±] a. [ドメインå] OFFTAK.CO.JP e. [ãã—ãã‚ã„] ゆã†ã’ã‚“ãŒã„ã—ゃãŠãµãƒã™ãŸã‹ã¯ã— f. [組織å] 有é™ä¼šç¤¾ã‚ªãƒ•ã‚£ã‚¹é«˜æ©‹ g. [Organization] office takahashi k. [組織種別] 有é™ä¼šç¤¾ l. [Organization Type] Limited Company m. [登録担当者] KF1582JP n. [技術連絡担当者] KF1583JP p. [ãƒãƒ¼ãƒ サーãƒ] ns3.sphere.ad.jp p. [ãƒãƒ¼ãƒ サーãƒ] ns4.sphere.ad.jp s. [ç½²åéµ] [状態] Connected (2023/07/31) [登録年月日] 2000/07/27 [接続年月日] 2000/08/08 [最終更新] 2022/08/01 01:02:19 (JST) From: ®MyUPS-Quantum_View <admin@offtak.co.jp> Sent: December 21, 2022 3:25 PM To: rob@hbns.ca Subject: MyUPS Shipment Notification 1ZY5484856551641702 Dear rob@hbns.ca, We are unable to complete the delivery process. Your package is on hold. Global Shipping & Logistics Services | UPS - Canada Missed Delivery 12/21/2022 8:24:58 PM Track Your Package › ®UPS Private Package 1ZGW54848565516417022 You will be prompted to accept Terms and Conditions to change delivery. 2022 United Parcel Service of Canada, Inc. UPS, the UPS brandmark, and the color brown are trademarks of United Parcel Service of Canada, Inc. All rights reserved. Please do not reply to this email. Manage Delivery Alerts | Privacy Notice | Service Terms | Opt Out Header info: Return-Path: <admin@offtak.co.jp> Delivered-To: rob@hbns.ca Received: from vshare12.ezp.net by vshare12.ezp.net with LMTP id QOrxKc1ro2NMnAUAHY5Arg (envelope-from <admin@offtak.co.jp>) for <rob@hbns.ca>; Wed, 21 Dec 2022 12:25:49 -0800 Return-path: <admin@offtak.co.jp> Envelope-to: rob@hbns.ca Delivery-date: Wed, 21 Dec 2022 12:25:49 -0800 Received: from offtak.co.jp ([116.80.14.214]:38788) by vshare12.ezp.net with esmtps (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.95) (envelope-from <admin@offtak.co.jp>) id 1p85er-001XmF-IH for rob@hbns.ca; Wed, 21 Dec 2022 12:25:49 -0800 Received: (qmail 20197 invoked by VF by uid 0); 22 Dec 2022 05:25:02 +0900 Received: from unknown (HELO WIN-2OQOF74PG2V) (admin@offtak.co.jp@13.208.43.233) by dc105.etius.jp (116.80.14.214) with ESMTPA; 22 Dec 2022 05:25:02 +0900 MIME-Version: 1.0 From: =?utf-8?Q?=C2=AEMyUPS=2DQuantum=5FView?= <admin@offtak.co.jp> To: rob@hbns.ca Date: 21 Dec 2022 20:25:01 +0000 Subject: MyUPS Shipment Notification 1ZY5484856551641702 Content-Type: multipart/alternative; boundary=--boundary_8757_aee83d39-3702-4e72-aaa0-7befe60f0e25 X-Spam-Status: No, score=4.0 X-Spam-Score: 40 X-Spam-Bar: ++++ X-Ham-Report: Spam detection software, running on the system "vshare12.ezp.net", has NOT identified this incoming email as spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see root@localhost for details. Content preview: <P> <TABLE id=WrapperTable class="mktoContainer container responsive-table" style="BORDER-COLLAPSE: collapse; PADDING-BOTTOM: 20px; MARGIN: 20px auto; BORDER-SPACING: 0; BACKGROUND-COLOR: rgb(255,255, [...] Content analysis details: (4.0 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- -0.0 SPF_PASS SPF: sender matches SPF record -0.0 SPF_HELO_PASS SPF: HELO matches SPF record 1.5 MPART_ALT_DIFF_COUNT BODY: HTML and text parts are different 0.0 HTML_MESSAGE BODY: HTML included in message 0.0 MIME_BASE64_TEXT RAW: Message text disguised using base64 encoding 2.0 PYZOR_CHECK Listed in Pyzor (https://pyzor.readthedocs.io/en/latest/) 0.0 KAM_SHORT Use of a URL Shortener for very short URL 0.0 KAM_DMARC_STATUS Test Rule for DKIM or SPF Failure with Strict Alignment 0.5 KAM_NUMSUBJECT Subject ends in numbers excluding current years X-Spam-Flag: NO