Advertisement
wavellan

20190430_PHISHING_SCAM_1

May 1st, 2019
450
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.11 KB | None | 0 0
  1. *!
  2.  
  3. +It seems that, 76, %last two digits your phone-
  4. -You may not know me and you are probably wondering why you are getting this e mail, right?*
  5.  
  6. )actually, I setup a malware on the adult vids (porno) web-site and guess what\
  7. %you visited this site to have fun (you know what I mean).!
  8. =While you were watching videos, your internet browser started out functioning as a RDP (Remote Desktop))
  9. &having a keylogger which gave me accessibility to your screen and web cam.\
  10. )after that, my software program obtained all of your contacts, phone and email.*
  11.  
  12. (What did I do?%
  13.  
  14. )I backuped phone. All photo, video and contacts.-
  15. !I created a double-screen video.#
  16. #1st part shows the video you were watching (you've got a good taste haha . . .)=
  17. -and 2nd part shows the recording of your web cam.)
  18.  
  19. =exactly what should you do?!
  20.  
  21. -Well, in my opinion, 847$ is a fair price for our little secret.+
  22. +You'll make the payment by -Bitcoin= (if you do not know this* search $how to buy bitcoin- in Google).#
  23.  
  24. *Bitcoin@ Address:
  25.  
  26. 19PfETozXdAPmznsUtcLxwg894YKnHvmAs
  27.  
  28. )(It is cAsE sensitive, so copy and paste it)=
  29.  
  30. &Important:
  31. %You have 31 hours in order to make the payment./
  32. #(I've a unique pixel in this e mail, and at this moment I know that you have read through this email message)+
  33. ^If I do not get the ^BitCoins^
  34. -I will certainly send out your video recording to all of your contacts*
  35. (Having said that, if I receive the payment, I'll destroy the video immidiately.\
  36. #If you need evidence, reply with "Yes!/
  37.  
  38. =If I find that you have shared this message with someone else&
  39. $the video will be immediately distributed.\
  40.  
  41. $+*^#/-\
  42.  
  43.  
  44.  
  45. Received: from MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) by
  46. MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) with Microsoft SMTP Server (TLS)
  47. id 15.0.1473.3 via Mailbox Transport; Tue, 30 Apr 2019 23:50:36 -0500
  48. Received: from MBX07C-ORD1.mex08.mlsrvr.com (172.29.9.29) by
  49. MBX05C-ORD1.mex08.mlsrvr.com (172.29.9.23) with Microsoft SMTP Server (TLS)
  50. id 15.0.1473.3; Tue, 30 Apr 2019 23:50:35 -0500
  51. Received: from gate.forward.smtp.iad3b.emailsrvr.com (146.20.86.8) by
  52. MBX07C-ORD1.mex08.mlsrvr.com (172.29.9.29) with Microsoft SMTP Server (TLS)
  53. id 15.0.1473.3 via Frontend Transport; Tue, 30 Apr 2019 23:50:35 -0500
  54. Return-Path: <[email protected]>
  55. X-Spam-Threshold: 95
  56. X-Spam-Score: 100
  57. Precedence: junk
  58. X-Spam-Flag: YES
  59. X-Virus-Scanned: OK
  60. X-Orig-To:
  61. X-Originating-Ip: [64.250.34.25]
  62. Authentication-Results: smtp10.gate.iad3b.rsapps.net; iprev=pass policy.iprev="64.250.34.25"; spf=pass smtp.mailfrom="[email protected]" smtp.helo="mail.tcworks.net"; dkim=none (message not signed) header.d=none; dmarc=none (p=nil; dis=none) header.from=cyberback.com
  63. X-Suspicious-Flag: NO
  64. X-Classification-ID: a859560c-6bcc-11e9-95d2-52540055034d-1-1
  65. Received: from [64.250.34.25] ([64.250.34.25:11211] helo=mail.tcworks.net)
  66. by smtp10.gate.iad3b.rsapps.net (envelope-from <[email protected]>)
  67. (ecelerity 4.2.38.62370 r(:)) with ESMTP
  68. id 09/68-23656-B9529CC5; Wed, 01 May 2019 00:50:35 -0400
  69. Received: from grupoimediccom (unknown [170.78.243.254])
  70. (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits))
  71. (No client certificate requested)
  72. (Authenticated sender: [email protected])
  73. by mail.tcworks.net (Postfix) with ESMTPSA id 44v5Yj2H9zz5pq
  74. for <>; Tue, 30 Apr 2019 23:50:31 -0500 (CDT)
  75. MIME-Version: 1.0
  76. Date: Wed, 1 May 2019 04:50:31 +0000
  77. Reply-To: financialfinessecom
  78. From: financialfinessecom <[email protected]>
  79. To: <>
  80. Subject: 76 $Last+two digits#your\Hacked&phone\ 76
  81. Message-ID: <94250229872585970265@71720177634916>
  82. X-Mailer: murauerfensterat
  83. X-MS-Exchange-Organization-Network-Message-Id: c60ca56d-a85e-474a-e6be-08d6cdf08cd5
  84. X-MS-Exchange-Organization-AVStamp-Mailbox: SMEXzs^g;1496900;0;This mail has
  85. been scanned by Trend Micro ScanMail for Microsoft Exchange;
  86. X-MS-Exchange-Organization-SCL: 5
  87. X-MS-Exchange-Organization-AuthSource: MBX07C-ORD1.mex08.mlsrvr.com
  88. X-MS-Exchange-Organization-AuthAs: Anonymous
  89. Content-type: text/plain;
  90. charset="UTF-8"
  91. Content-transfer-encoding: 7bit
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement