I usually target and interact with those scammers who do their ‘trade’ via the 419 email.
I have one on the go at the moment. When I look at the original message, the IP address is 2a02:598:64:8a00:0:0:1000:5d5 which pings in Prague, Czech Republic.
But when I do an email header analysis, the IP changes to 105.112.203.63 which pings in Lagos, Nigeria.
Is there a way to look further into this