Advertisement
Guest User

OBVIOUS SPAM

a guest
Dec 5th, 2018
399
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 8.84 KB | None | 0 0
  1.  
  2.  
  3.  
  4.  
  5.  
  6.  
  7.  
  8. OBVIOUS SPAM
  9.  
  10.  
  11. BODY
  12. Hello,
  13.  
  14. I am a spyware software developer. Your account has been hacked by me in the summer of 2018.
  15.  
  16. I understand that it is hard to believe, but here is my evidence (I sent you this email from your account).
  17.  
  18. The hacking was carried out using a hardware vulnerability through which you went online (Cisco router, vulnerability CVE-2018-0296).
  19.  
  20. I went around the security system in the router, installed an exploit there. When you went online, my exploit downloaded my malicious code (rootkit) to your device. This is driver software, I constantly updated it, so your antivirus is silent all time.
  21.  
  22. Since then I have been following you (I can connect to your device via the VNC protocol). That is, I can see absolutely everything that you do, view and download your files and any data to yourself. I also have access to the camera on your device, and I periodically take photos and videos with you.
  23.  
  24. At the moment, I have harvested a solid dirt... on you... I saved all your email and chats from your messangers. I also saved the entire history of the sites you visit.
  25.  
  26. I note that it is useless to change the passwords. My malware update passwords from your accounts every times.
  27.  
  28. I know what you like hard funs (adult sites). Oh, yes .. I'm know your secret life, which you are hiding from everyone. Oh my God, what are your like... I saw THIS ... Oh, you dirty naughty person ... :)
  29.  
  30. I took photos and videos of your most passionate funs with adult content, and synchronized them in real time with the image of your camera. Believe it turned out very high quality!
  31.  
  32. So, to the business! I'm sure you don't want to show these files and visiting history to all your contacts.
  33.  
  34. Transfer $944 to my Bitcoin cryptocurrency wallet: 1Lmk4eUXcmtVU6YQvaPJ4yihu4fEcKtkby Just copy and paste the wallet number when transferring. If you do not know how to do this - ask Google.
  35.  
  36. My system automatically recognizes the translation. As soon as the specified amount is received, all your data will be destroyed from my server, and the rootkit will be automatically removed from your system. Do not worry, I really will delete everything, since I am 'working' with many people who have fallen into your position. You will only have to inform your provider about the vulnerabilities in the router so that other hackers will not use it.
  37.  
  38. Since opening this letter you have 48 hours. If funds not will be received, after the specified time has elapsed, the disk of your device will be formatted, and from my server will automatically send email and sms to all your contacts with compromising material.
  39.  
  40. I advise you to remain prudent and not engage in nonsense (all files on my server).
  41.  
  42. Good luck!
  43.  
  44.  
  45.  
  46. HEADER
  47.  
  48. Delivered-To: *****
  49. Received: by 2002:ab0:4dcf:0:0:0:0:0 with SMTP id b15csp9583196uah;
  50. Wed, 5 Dec 2018 08:41:54 -0800 (PST)
  51. X-Received: by 2002:a5e:d501:: with SMTP id e1mr10217690iom.291.1544028114870;
  52. Wed, 05 Dec 2018 08:41:54 -0800 (PST)
  53. ARC-Seal: i=2; a=rsa-sha256; t=1544028114; cv=pass;
  54. d=google.com; s=arc-20160816;
  55. b=BfGzqoqk+Rd++6rzh/AwDsAflpZtqcUvocX5Ipa/FDnDyYH8TvVlFdeGD9p+I1Lnh3
  56. 5LSsqZb7vbTV0aghZuHgZcpTEYEtJnmTQrg3EwHLKCAPiVSGw3KyP+vYc4h/2TA/qhJU
  57. 4KYs25kAZX3XJvekkDkzIyTBCwPmJEmfiA9U3PVhBa0cl12N0ZHUaaFDanC1ix3mhHXY
  58. 0ihI5WoUpmf0Zw6qVNVG6Zrs79BrvAMZyE3lUzca/0ouUe8qQSxmDbM4CYwEqC9bSspR
  59. +7CAOdGgYETpiP+EcehuLAMyK2U+D1UyDVw58tWf29uc+AgX7qNgRLL/b/GlHg1mKSzJ
  60. 9CoA==
  61. ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816;
  62. h=content-transfer-encoding:subject:to:mime-version:user-agent:from
  63. :reply-to:date:message-id;
  64. bh=HSLiIEhtjzYkpK2oIuByAsCPNRtLbSpoxS7XuuqWuI4=;
  65. b=bEsiPEUp8N2f8G1DjjjKpEr871nJbvJONPIMTBroQkKfOKoprrwYSCWboUUphBqZ/t
  66. WBP2S/JsXaolUjcRA94lvYqxbgJjeiOJWeHwjLU3Izz7fbjyyp+6ybvXQWDiRRy6ABmd
  67. 5s0nqWNTglspRvCZ73Pdl6+p4mApt7279Iy/a1WdpPBgFYtqvBusVBTE3vlrfc2jUgeK
  68. 4wgbAAeSTidN0G6d1cN0lXoh8hofkOd+MMG1yljx71MiE3KVYuesHvN/662oi7s95JsZ
  69. nntiyFEa8SajqPDkZo/2a2VEsjP1eilSjOujDC6E73LlaLOgADF7m9BCEPP+PE6NHawp
  70. StbQ==
  71. ARC-Authentication-Results: i=2; mx.google.com;
  72. arc=pass (i=1);
  73. spf=softfail (google.com: domain of transitioning aaron511smith@yahoo.jp does not designate 209.85.220.41 as permitted sender) smtp.mailfrom=Aaron511Smith@yahoo.jp
  74. Return-Path: <Aaron511Smith@yahoo.jp>
  75. Received: from mail-sor-f41.google.com (mail-sor-f41.google.com. [209.85.220.41])
  76. by mx.google.com with SMTPS id s5sor8836478iog.44.2018.12.05.08.41.54
  77. for <*****>
  78. (Google Transport Security);
  79. Wed, 05 Dec 2018 08:41:54 -0800 (PST)
  80. Received-SPF: softfail (google.com: domain of transitioning aaron511smith@yahoo.jp does not designate 209.85.220.41 as permitted sender) client-ip=209.85.220.41;
  81. Authentication-Results: mx.google.com;
  82. arc=pass (i=1);
  83. spf=softfail (google.com: domain of transitioning aaron511smith@yahoo.jp does not designate 209.85.220.41 as permitted sender) smtp.mailfrom=Aaron511Smith@yahoo.jp
  84. X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
  85. d=1e100.net; s=20161025;
  86. h=x-original-authentication-results:x-gm-message-state:message-id
  87. :date:reply-to:from:user-agent:mime-version:to:subject
  88. :content-transfer-encoding;
  89. bh=HSLiIEhtjzYkpK2oIuByAsCPNRtLbSpoxS7XuuqWuI4=;
  90. b=cV+z606An9NjjsXy/E8duHYGxb6AXH38w+LDNOBbNJzcIfS7IZFKJBlaEhLcIa+3Dt
  91. q6s3QzJiddG0I19aahfPk5T15zAuSx8bPgDmlD6QEkTSh1hDcAXzeEPkyTATDo3ODyAS
  92. MQMer6E+F3mzTEgKPje+hWPA8pcORKniaBj44GFwpVwc1kfhaP3OAdKJx9/gT4mz11aN
  93. OcYjUhhGCyolhdAsdIg2orbywFnMMcqIPzK4BO0fq52yyPK6iyRBY0aYnI8a21ms81LS
  94. qNjidy8UEuz7QsktmdbLKALv5w+e+KsvUPJDA+H9ca79larsSACWj0Z4Aek3049BTDk0
  95. nkXg==
  96. X-Original-Authentication-Results: gmr-mx.google.com;
  97. spf=softfail (google.com: domain of transitioning aaron511smith@yahoo.jp does not designate 202.62.17.56 as permitted sender) smtp.mailfrom=Aaron511Smith@yahoo.jp
  98. X-Gm-Message-State: AA+aEWZZhu+KZr8cB35nulUf/W1XgoLVfw8f7eqKbwrdNr38mM1t090F Jda4lZv5ncyCwD4Uf2Dze7es/+1ai4xufP+QzQ==
  99. X-Google-Smtp-Source: AFSGD/UyRFvYtMnQb9yfqST9vl5j9UKtliManrZwJuNfO0lJxvwDsChhFSxE6Lv6wqM2h/76AntgAZTVa+b1lx0XyTS1v0JqtAw=
  100. X-Received: by 2002:a6b:4f10:: with SMTP id d16mr10478846iob.38.1544028114424;
  101. Wed, 05 Dec 2018 08:41:54 -0800 (PST)
  102. ARC-Seal: i=1; a=rsa-sha256; t=1544028114; cv=none;
  103. d=google.com; s=arc-20160816;
  104. b=XyLAF4HZBhKezEyX1VEflaIM0PndG7wXrE3oh8VQZaBhzWpvUrL2ifgRMG+VPuG3w7
  105. u5FBynKy7GfyxcJX39bAKxDlIY0+vFo5fw+/6L6pn7oT4zxpMOIDMZiGz4UQPU5R01XN
  106. KTL+bgh73bzRiADqZCz2Qe3XmkKoG9pMxJkOa/9LCSMoHJ8jqhw17SwMT4Lh8OxEKHwR
  107. KaeW5BT2OeeVakj9y1QzDP4rde2cEcF0hRlbXrztFMwSLaywYIbL2xnuR1YQw6Bg1A/s
  108. M7/XKuBOnxwf8Vneo5XgPn9Mt46+9x7wywaO1L54ydEGtD5T6Zl+DXFK/6RrivRFlp/X
  109. u9XQ==
  110. ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816;
  111. h=content-transfer-encoding:subject:to:mime-version:user-agent:from
  112. :reply-to:date:message-id;
  113. bh=HSLiIEhtjzYkpK2oIuByAsCPNRtLbSpoxS7XuuqWuI4=;
  114. b=oWFo/YQMxuvFVsg0aZfzR19htbPv9M6p0+u7j8pY3LXBOSV0Kp+96fTplzjVXd1YoU
  115. mGDe3isN1nVYEquMnWy7Ibo/zg220Y2Zofu1Zi7NkmGV3MFha1H0j4viUBVf0UHp/nnC
  116. bCHPV6ATcT8JQIue05hgoEbnFu9nOQoJNjF3qao0Zax0SXZwaMh75koKcyIut/CHAO0Y
  117. xYDGyBF/zMFwWALeL5oZLQLgCbRoTnPtqeeA6+KE+eW0sqJj43rJQyLqJwByL5qiiJzF
  118. qHCAGyhZ17d78JmQYTCmjwNdwc4oX78vcj+djwoxDD8NO+mmyFDlcPqJm2116mc7Ugno
  119. syEw==
  120. ARC-Authentication-Results: i=1; gmr-mx.google.com;
  121. spf=softfail (google.com: domain of transitioning aaron511smith@yahoo.jp does not designate 202.62.17.56 as permitted sender) smtp.mailfrom=Aaron511Smith@yahoo.jp
  122. Return-Path: <Aaron511Smith@yahoo.jp>
  123. Received: from yahoo.jp ([202.62.17.56])
  124. by gmr-mx.google.com with SMTP id h66si1000421itb.1.2018.12.05.08.41.50
  125. for <*****>;
  126. Wed, 05 Dec 2018 08:41:54 -0800 (PST)
  127. Received-SPF: softfail (google.com: domain of transitioning aaron511smith@yahoo.jp does not designate 202.62.17.56 as permitted sender) client-ip=202.62.17.56;
  128. Received: from smtp18.yenddx.com [162.60.100.125] by mx03.listsystemsf.net with LOCAL; Wed, 05 Dec 2018 11:22:37 -0500
  129. Received: from [90.108.142.56] by group21.345mail.com with SMTP; Wed, 05 Dec 2018 11:19:21 -0500
  130. Received: from rsmail.alkoholic.net ([56.224.138.22]) by mmx09.tilkbans.com with NNFMP; Wed, 05 Dec 2018 11:16:37 -0500
  131. Message-ID: <3E5C1AC8.3D53CB85@yahoo.jp>
  132. Date: Wed, 05 Dec 2018 11:16:37 -0500
  133. Reply-To: ***** <Aaron511Smith@yahoo.jp>
  134. From: *****
  135. User-Agent: Mozilla/5.0 (Macintosh; U; Intel Mac OS X; en-US; rv:1.8.1.14) Gecko/20080421 Thunderbird/2.0.0.14
  136. X-Accept-Language: en-us
  137. MIME-Version: 1.0
  138. To: <*****>
  139. Subject: *****
  140. Content-Type: text/html; charset="us-ascii"
  141. Content-Transfer-Encoding: base64
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement