From message1c6c5f8dbef75@mail.f-rs.com Wed Jan 06 18:50:49 2021 Return-path: Envelope-to: bsdly@bsdly.net Delivery-date: Wed, 06 Jan 2021 18:50:49 +0100 Received: from vps.artisan.gr.jp ([49.212.62.85]) by skapet.bsdly.net with esmtp (Exim 4.94) (envelope-from ) id 1kxCxL-000B8T-9p for bsdly@bsdly.net; Wed, 06 Jan 2021 18:50:49 +0100 Received: from localhost.localdomain (unknown [111.67.193.158]) by vps.artisan.gr.jp (Postfix) with ESMTP id 9A98F196E48 for ; Thu, 7 Jan 2021 02:27:08 +0900 (JST) Date: Wed, 6 Jan 2021 17:27:11 +0000 To: bsdly@bsdly.net From: John Jackson Subject: You may want to read this Message-ID: X-Mailer: PHPMailer 6.0.7 (https://github.com/PHPMailer/PHPMailer) MIME-Version: 1.0 Content-Type: multipart/alternative; boundary="b1_Cf21jcr2JFYvmDgrfdICuU5QYNqMHcjpcOOeoPU7g" Content-Transfer-Encoding: 8bit X-Spam_score: 5.0 X-Spam_score_int: 50 X-Spam_bar: +++++ X-Spam_report: Spam detection software, running on the system "skapet.bsdly.net", has identified this incoming email as possible spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see @@CONTACT_ADDRESS@@ for details. Content preview: Hello! I`m well aware that you watch very often PRONOGRAPHIC movies! The smart phone that you own got hacked so I was able to record with your camera and the microphone in slient mode, without you knowing wh [...] Content analysis details: (5.0 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- 5.0 BAYES_50 BODY: Bayes spam probability is 40 to 60% [score: 0.5000] 0.0 FROM_LOCAL_HEX From: localpart has long hexadecimal sequence 0.0 SPF_HELO_NONE SPF: HELO does not publish an SPF Record 0.0 SPF_NONE SPF: sender does not publish an SPF Record 0.0 HTML_MESSAGE BODY: HTML included in message Content analysis details: (5.0 points, 5.0 required, s/c no) X-Spam-Flag: YES X-New-Subject: *****SPAM***** You may want to read this Status: RO Content-Length: 4255 Lines: 42 This is a multi-part message in MIME format. --b1_Cf21jcr2JFYvmDgrfdICuU5QYNqMHcjpcOOeoPU7g Content-Type: text/plain; charset=us-ascii Hello! I`m well aware that you watch very often PRONOGRAPHIC movies! The smart phone that you own got hacked so I was able to record with your camera and the microphone in slient mode, without you knowing while you pleasure yourself! Well, here is the deal... if you don`t pay me 800$ equivalent value in BIT C0lN the video with you(doing you know what) will be sent to all your contacts. My malicious application that was installed also had another function, to extract all your contacts from emails, phone book list, social media friends and so on. Did I got the passwords? Neah, any smart-phone have like a virus detection tool build-in which means every app installed is scanned for malicious activities, so extracting passwords? Bad, that can be detected! Extracting contacts and using camera in background? Normal activity! Ok! So in order to buy some coins search on Google this "Buy BIT C0lN instantly" and use the next address to send the coins: Address: 1 7 2 4 D L U M u A v o X K 4 c p 6 p 3 5 Q t f 7 v z c z m g y R 7 Amount: 0.027 Very important! My address which is Case Sensitive contains spaces so you have to remove manually all spaces and the result it has to be a string of 34 characters and it will start with "1" as well with end with "7". Use that string with no spaces to send the coins! I gave you a few days! So, to remove my sneaky hidden app reset your device to factory settings. Go on Google and search for "Reset Factory Settings [your model phone]". Also maybe you think that I got your passwords, go ahead change them too! To avoid getting infected next time, your browser and your OS must to be updated regularry! Also maybe you will take in consideration to stop watching this type of content... it makes your brain a mess. After you sent the coins if you still get those messages simply ignore them. Those servers that I got are programmed to send this message multiple times. --b1_Cf21jcr2JFYvmDgrfdICuU5QYNqMHcjpcOOeoPU7g Content-Type: text/html; charset=us-ascii

Hello!

I`m well aware that you watch very often PRONOGRAPHIC movies!

The smart phone that you own got hacked so I was able to record with your camera and the microphone in slient mode, without you knowing while you pleasure yourself! Well, here is the deal... if you don`t pay me 800$ equivalent value in BIT C0lN the video with you(doing you know what) will be sent to all your contacts.

My malicious application that was installed also had another function, to extract all your contacts from emails, phone book list, social media friends and so on. Did I got the passwords? Neah, any smart-phone have like a virus detection tool build-in which means every app installed is scanned for malicious activities, so extracting passwords? Bad, that can be detected! Extracting contacts and using camera in background? Normal activity!

Ok! So in order to buy some coins search on Google this "Buy BIT C0lN instantly" and use the next address to send the coins:

Address: 1 7 2 4 D L U M u A v o X K 4 c p 6 p 3 5 Q t f 7 v z c z m g y R 7

Amount: 0.027

Very important! My address which is Case Sensitive contains spaces so you have to remove manually all spaces and the result it has to be a string of 34 characters and it will start with "1" as well with end with "7". Use that string with no spaces to send the coins! I gave you a few days!

So, to remove my sneaky hidden app reset your device to factory settings. Go on Google and search for "Reset Factory Settings [your model phone]". Also maybe you think that I got your passwords, go ahead change them too! To avoid getting infected next time, your browser and your OS must to be updated regularry!

Also maybe you will take in consideration to stop watching this type of content... it makes your brain a mess.

After you sent the coins if you still get those messages simply ignore them. Those servers that I got are programmed to send this message multiple times.

--b1_Cf21jcr2JFYvmDgrfdICuU5QYNqMHcjpcOOeoPU7g--