File: /home/vslw/mail/.spam/new/1730960699.M256738P2549689.dal1.hostclusters.com,S=6396,W=6507
Return-Path: <ltqsdum@vslw.org>
Delivered-To: vslw+spam@dal1.hostclusters.com
Received: from dal1.hostclusters.com
by dal1.hostclusters.com with LMTP
id cN7tDjtdLGe55yYAaFRWGw
(envelope-from <ltqsdum@vslw.org>)
for <vslw+spam@dal1.hostclusters.com>; Thu, 07 Nov 2024 00:24:59 -0600
Return-path: <ltqsdum@vslw.org>
Envelope-to: ltqsdum@vslw.org
Delivery-date: Thu, 07 Nov 2024 00:24:59 -0600
Received: from [223.178.84.12] (port=26418)
by dal1.hostclusters.com with esmtp (Exim 4.98)
(envelope-from <ltqsdum@vslw.org>)
id 1t8vx2-0000000Ahfj-2rCw
for ltqsdum@vslw.org;
Thu, 07 Nov 2024 00:24:59 -0600
From: <ltqsdum@vslw.org>
To: <ltqsdum@vslw.org>
Date: 7 Nov 2024 15:49:14 +0400
Message-ID: <004f01db310b$0153fe47$5d881cb9$@vslw.org>
MIME-Version: 1.0
Content-Type: text/plain;
charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Office Outlook 12.0
Thread-Index: Acgamcc83lf4uu8sgamcc83lf4uu8s==
Content-Language: en
x-cr-hashedpuzzle: 2D4= mcc8 3lf4 uu8s gamc c83l f4uu 8sga mcc8 3lf4 uu8s gamc c83l f4uu 8sga mcc8;1;3lf4uu8sgamcc83lf4uu8sgamcc83lf4uu8sgamcc83lf4uu;Sosha1_v1;7;\{92DE9223-89DE-6F38-7438-892374C592DE\};ZQB3AGUAZgmcc83lf4uu8sgamcc83lf4uu8sgamcc83lf4uu;7 Nov 2024 15:49:14 +0400;8sgamcc83lf4uu8s
x-cr-puzzleid: \{92DE9223-89DE-6F38-7438-892374C592DE\}
X-Spam-Status: Yes, score=21.2
X-Spam-Score: 212
X-Spam-Bar: +++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "dal1.hostclusters.com",
has identified this incoming email as possible spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
root\@localhost for details.
Content preview: Hi,<br> <br> I am a hacker, and I have successfully gained
access to your operating system.<br> I also have full access to your account.<br>
<br> I've been watching you for a few months now.<br> <br> [...]
Content analysis details: (21.2 points, 5.0 required)
pts rule name description
---- ---------------------- --------------------------------------------------
1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net
[Blocked - see <https://www.spamcop.net/bl.shtml?223.178.84.12>]
0.0 RCVD_IN_VALIDITY_RPBL_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to
Validity was blocked. See
https://knowledge.validity.com/hc/en-us/articles/20961730681243
for more information.
[223.178.84.12 listed in bl.score.senderscore.com]
0.0 RCVD_IN_VALIDITY_SAFE_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to
Validity was blocked. See
https://knowledge.validity.com/hc/en-us/articles/20961730681243
for more information.
[223.178.84.12 listed in sa-accredit.habeas.com]
0.0 RCVD_IN_VALIDITY_CERTIFIED_BLOCKED RBL: ADMINISTRATOR NOTICE: The
query to Validity was blocked. See
https://knowledge.validity.com/hc/en-us/articles/20961730681243
for more information.
[223.178.84.12 listed in sa-trusted.bondedsender.org]
1.5 SPF_SOFTFAIL SPF: sender does not match SPF record (softfail)
0.0 KAM_DMARC_STATUS Test Rule for DKIM or SPF Failure with Strict
Alignment
2.4 DATE_IN_FUTURE_03_06 Date: is 3 to 6 hours after Received: date
5.0 BTC_HASHBL_BLACK Message contains BTC address found on BTC blacklist
[bc1qejcsp6kekz8z3dlra7aje6j8r53fmhgmpgj3qj]
0.0 GB_HASHBL_BTC Message contains BTC address found on BTCBL
[bc1qejcsp6kekz8z3dlra7aje6j8r53fmhgmpgj3qj]
2.0 RDNS_NONE Delivered to internal network by a host with no rDNS
2.9 BITCOIN_SPAM_07 BitCoin spam pattern 07
2.1 BITCOIN_TOEQFM Bitcoin + To same as From
1.4 DOS_OUTLOOK_TO_MX Delivered direct to MX with Outlook headers
0.5 PDS_BTC_ID FP reduced Bitcoin ID
0.0 TO_EQ_FM_DIRECT_MX To == From and direct-to-MX
2.0 BITCOIN_EXTORT_01 Extortion spam, pay via BitCoin
X-Spam-Flag: YES
Subject: ***SPAM*** Delivery status notification.
Hi,<br>
<br>
I am a hacker, and I have successfully gained access to your operating system.<br>
I also have full access to your account.<br>
<br>
I've been watching you for a few months now.<br>
<br>
The fact is that your computer has been infected with malware through an adult site that you visited.<br>
If you are not familiar with this, I will explain.<br>
Trojan Virus gives me full access and control over a computer or other device.<br>
This means that I can see everything on your screen, turn on the camera and microphone, but you do not know about it.<br>
I also have access to all your contacts and all your correspondence.<br>
<br>
Why did your antivirus not detect malware?<br>
Answer: The malware I used is driver-based, I update its signatures every 4 hours. Hence your antivirus is unable to detect its presence.<br>
I made a video showing how you satisfy yourself in the left half of the screen, and the right half shows the video you were watching at the time.<br>
<br>
With one mouse click, I can send this video to all your emails and contacts on your social networks.<br>
I can also make public all your e-mail correspondence and chat history on the messengers that you use.<br>
<br>
If you don't want this to happen, transfer $1370 in Bitcoin equivalent to my Bitcoin address (if you do not know how to do this, just search "buy bitcoin" on Google).<br>
<br>
My Bitcoin address (BTC Wallet) is: bc1qejcsp6kekz8z3dlra7aje6j8r53fmhgmpgj3qj<br>
<br>
After confirming your payment, I will delete the video immediately, and that's it. You will never hear from me again.<br>
I will give you 50 hours (more than 2 days) to pay. I will get a notice, when you open this email, and the timer will start.<br>
Filing a complaint somewhere does not make sense because this email cannot be tracked like my Bitcoin address.<br>
<br>
I never make any mistakes.<br>
If I find that you have shared this message with someone else, the video will be immediately distributed.<br>
<br>
Best regards!