OwlCyberSecurity - MANAGER
Edit File: 1719179878.M410578P3297213.premium128.web-hosting.com,S=8732,W=8905
Return-Path: <daily@stockmarketlegacy.com> Delivered-To: faouzi.berroua+spam@gourayafroid.com Received: from premium128.web-hosting.com by premium128.web-hosting.com with LMTP id 4BZ0F2aaeGa9TzIAAvhI2g (envelope-from <daily@stockmarketlegacy.com>) for <faouzi.berroua+spam@gourayafroid.com>; Sun, 23 Jun 2024 17:57:58 -0400 Return-path: <daily@stockmarketlegacy.com> Envelope-to: faouzi.berroua@gourayafroid.com Delivery-date: Sun, 23 Jun 2024 17:57:58 -0400 Received: from [186.114.246.144] (port=17999) by premium128.web-hosting.com with esmtp (Exim 4.96.2) (envelope-from <daily@stockmarketlegacy.com>) id 1sLVDU-00DqsI-0h for faouzi.berroua@gourayafroid.com; Sun, 23 Jun 2024 17:57:58 -0400 MIME-Version: 1.0 From: "stanton hean" <daily@stockmarketlegacy.com> To: <faouzi.berroua@gourayafroid.com> Date: 23 Jun 2024 10:39:46 -0600 Message-ID: <HHIL5E0623.1056EQ2MQ946@prop.stockmarketlegacy.com> Content-type: multipart/alternative; boundary="23_451a2vld_ADB3_aomg06" X-Spam-Status: Yes, score=23.7 X-Spam-Score: 237 X-Spam-Bar: +++++++++++++++++++++++ X-Spam-Report: Spam detection software, running on the system "premium128.web-hosting.com", has identified this incoming email as possible spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see root\@localhost for details. Content preview: Good day! Here is the last warning. Your system has been cracked. We have copied the entire information from your device to our servers. Besides, we have recorded the video from your camera with you w [...] Content analysis details: (23.7 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- 0.2 KAM_BLANKSUBJECT Message has a blank Subject 3.6 RCVD_IN_PBL RBL: Received via a relay in Spamhaus PBL [186.114.246.144 listed in zen.spamhaus.org] 4.7 RCVD_IN_XBL RBL: Received via a relay in Spamhaus XBL 1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net [Blocked - see <https://www.spamcop.net/bl.shtml?186.114.246.144>] 1.3 RCVD_IN_VALIDITY_RPBL RBL: Relay in Validity RPBL, https://senderscore.org/blocklistlookup/ [186.114.246.144 listed in bl.score.senderscore.com] 0.0 RCVD_IN_VALIDITY_CERTIFIED_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to Validity was blocked. See https://knowledge.validity.com/hc/en-us/articles/20961730681243 for more information. [186.114.246.144 listed in sa-trusted.bondedsender.org] 1.1 DATE_IN_PAST_03_06 Date: is 3 to 6 hours before Received: date 0.0 HTML_MESSAGE BODY: HTML included in message 0.0 KAM_DMARC_STATUS Test Rule for DKIM or SPF Failure with Strict Alignment 2.0 RDNS_NONE Delivered to internal network by a host with no rDNS 8.5 KAM_CRIM Extortion Email 1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any anti-forgery methods 0.0 PDS_BTC_ID FP reduced Bitcoin ID 0.0 BITCOIN_EXTORT_01 Extortion spam, pay via BitCoin X-Spam-Flag: YES Subject: ***SPAM*** This is a multi-part message in MIME format. --23_451a2vld_ADB3_aomg06 Content-type: text/plain; charset="iso-8859-1" Content-transfer-encoding: quoted-printable Good day! Here is the last warning. Your system has been cracked. We have copied the entire information from = your device to our servers. Besides, we have recorded the video from = your camera with you watching a porn movie. My virus has infected your device via an adult website that you recently = visited. I can share details in case if you don’t know how it works. A = Trojan virus grants me entire access and control over your device. As a = result, I can see your screen, activate the camera and the microphone = and you won’t even know about it. I have captured a video from your screen and the camera and have made a = video where one part of a screen demonstrates you masturbating, and = another part shows a porn video that you were watching at that time. I can see the entire list of your contacts in the phone and the social = networks. I can send this video to all the contacts in your phone, the E-mail and = the social networks in a single click. Moreover, I can send the data of = your E-mail and your messengers to anybody. This would ruin your reputation once and for all. In case if you wish to prevent such consequences, do the following- Transfer 1300 USD (American dollars) to my Bitcoin- wallet. (If you do not know how to do this, write in a search string in Google: = «Buy bitcoin"). My Bitcoin Wallet (BTC Wallet): 18qTeVDY4LwxjcwtGD76JuDj5fbhVRrpy Immediately after crediting of payment I shall erase your video and = shall not bother you anymore. You have 50 hours (a little more than 2 days) to make the payment. I receive an automatic notification of reading of this letter. The timer = will also automatically launch right after you read this E-mail. Don’t try to complain anywhere- my BTC –wallet cannot be = traced and an E-mail that sent you the letter is created = automatically-any response would be senseless. Should you try to share this E-mail with somebody, the system will = automatically send a request to the servers and they will start sending = the entire information to social networks. The change of passwords of social networks, an E-mail and the device = would be senseless either as the whole data has already been downloaded = to cluster of my servers. I wish you luck and don’t do something stupid. Consider your = reputation. --23_451a2vld_ADB3_aomg06 Content-type: text/html; charset="iso-8859-1" Content-transfer-encoding: quoted-printable <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <meta Http-Equiv=3Dcontent-type content=3D"text/html; = charset=3Diso-8859-1"> </head> <body> <p>Good day!</p> <p>Here is the last warning.</p> <p>Your system has been cracked. We have copied the entire information = from your device to our servers. Besides, we have recorded the video = from your camera with you watching a porn movie.</p> <p>My virus has infected your device via an adult website that you = recently visited.</p> <p>I can share details in case if you don’t know how it works. A = Trojan virus grants me entire access and control over your device. As a = result, I can see your screen, activate the camera and the microphone = and you won’t even know about it.</p> <p>I have captured a video from your screen and the camera and have made = a video where one part of a screen demonstrates you masturbating, and = another part shows a porn video that you were watching at that time.</p> <p>I can see the entire list of your contacts in the phone and the = social networks.</p> <p>I can send this video to all the contacts in your phone, the E-mail = and the social networks in a single click. Moreover, I can send the data = of your E-mail and your messengers to anybody.</p> <p>This would ruin your reputation once and for all.</p> <p>In case if you wish to prevent such consequences, do the = following-</p> <p>Transfer 1300 USD (American dollars) to my Bitcoin- wallet.</p> <p>(If you do not know how to do this, write in a search string in = Google: «Buy bitcoin").</p> <p>My Bitcoin Wallet (BTC Wallet): 18qTeVDY4LwxjcwtGD76JuDj5fbhVRrpy</p> <p>Immediately after crediting of payment I shall erase your video and = shall not bother you anymore.</p> <p>You have 50 hours (a little more than 2 days) to make the = payment.</p> <p>I receive an automatic notification of reading of this letter. The = timer will also automatically launch right after you read this = E-mail.</p> <p>Don’t try to complain anywhere- my BTC –wallet cannot be = traced and an E-mail that sent you the letter is created = automatically-any response would be senseless.</p> <p>Should you try to share this E-mail with somebody, the system will = automatically send a request to the servers and they will start sending = the entire information to social networks.</p> <p>The change of passwords of social networks, an E-mail and the device = would be senseless either as the whole data has already been downloaded = to cluster of my servers.</p> <p>I wish you luck and don’t do something stupid. Consider your = reputation.</p> </body></html> --23_451a2vld_ADB3_aomg06--