Advertisement
Guest User

Untitled

a guest
Apr 17th, 2019
196
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.40 KB | None | 0 0
  1. Return-Path: <shahnaz@kcsb.com.my>
  2. Delivered-To: shahnaz@kcsb.com.my
  3. Received: from ayu.ip-asia.com
  4. by ayu.ip-asia.com with LMTP id iEGNA3j7tlxIczAA1BaTiw
  5. for <shahnaz@kcsb.com.my>; Wed, 17 Apr 2019 18:10:00 +0800
  6. Return-path: <shahnaz@kcsb.com.my>
  7. Envelope-to: shahnaz@kcsb.com.my
  8. Delivery-date: Wed, 17 Apr 2019 18:10:00 +0800
  9. Received: from [197.23.157.160] (port=31071)
  10. by ayu.ip-asia.com with esmtp (Exim 4.91)
  11. (envelope-from <shahnaz@kcsb.com.my>)
  12. id 1hGhVs-00DK5Q-5O
  13. for shahnaz@kcsb.com.my; Wed, 17 Apr 2019 18:10:00 +0800
  14. From: <shahnaz@kcsb.com.my>
  15. To: "alinaha" <shahnaz@kcsb.com.my>
  16. Subject: The decision to suspend your account. Waiting for payment.
  17. Date: 17 Apr 2019 10:48:14 +0000
  18. Message-ID: <005101d4f50d$01725c69$96c51fab$@kcsb.com.my>
  19. MIME-Version: 1.0
  20. Content-Type: text/plain;
  21. charset="ibm852"
  22. Content-Transfer-Encoding: 8bit
  23. X-Mailer: Microsoft Office Outlook 11
  24. Thread-Index: Acps9h6imn8t5vitps9h6imn8t5vit==
  25. X-MimeOLE: Produced By Microsoft MimeOLE V6.1.7601.17514
  26. X-Spam-Status: No, score=-87.1
  27. X-Spam-Score: -870
  28. X-Spam-Bar: ---------------------------------------------------
  29. X-Ham-Report: Spam detection software, running on the system "ayu.ip-asia.com",
  30. has NOT identified this incoming email as spam. The original
  31. message has been attached to this so you can view it or label
  32. similar future email. If you have any questions, see
  33. root\@localhost for details.
  34.  
  35. Content preview: Hi, stranger! I know the alinaha, this is your password. As
  36. you can see, I logged in with your account. And I wrote you this message
  37. from your account. If you have already changed your password, my malware will
  38. be intercepts it every time.
  39.  
  40. Content analysis details: (-87.1 points, 10.0 required)
  41.  
  42. pts rule name description
  43. ---- ---------------------- --------------------------------------------------
  44. -100 USER_IN_WHITELIST From: address is in the user's white-list
  45. -1.9 BAYES_00 BODY: Bayes spam probability is 0 to 1%
  46. [score: 0.0000]
  47. 1.5 SPF_SOFTFAIL SPF: sender does not match SPF record (softfail)
  48. 2.5 BITCOIN_EXTORT_01 Extortion spam, pay via BitCoin
  49. 2.0 RDNS_NONE Delivered to internal network by a host with no rDNS
  50. 3.5 BITCOIN_SPAM_07 BitCoin spam pattern 07
  51. 0.0 MIMEOLE_DIRECT_TO_MX MIMEOLE + direct-to-MX
  52. 2.5 TO_EQ_FM_DIRECT_MX To == From and direct-to-MX
  53. 2.8 DOS_OUTLOOK_TO_MX Delivered direct to MX with Outlook headers
  54. X-Spam-Flag: NO
  55.  
  56. Hi, stranger!
  57.  
  58. I know the alinaha, this is your password.
  59. As you can see, I logged in with your account. And I wrote you this message from your account.
  60.  
  61. If you have already changed your password, my malware will be intercepts it every time.
  62.  
  63. You may not know me, and you are most likely wondering why you are receiving this email, right?
  64. In fact, I posted a malicious program on adults (pornography) of some websites, and you know that you visited these websites to enjoy
  65. (you know what I mean).
  66.  
  67. While you were watching video clips,
  68. my trojan started working as a RDP (remote desktop) with a keylogger that gave me access to your screen as well as a webcam.
  69.  
  70. Immediately after this, my program gathered all your contacts from messenger, social networks, and also by e-mail.
  71.  
  72. What I've done?
  73. I made a double screen video.
  74. The first part shows the video you watched (you have good taste, yes ... but strange for me and other normal people),
  75. and the second part shows the recording of your webcam.
  76.  
  77. What should you do?
  78.  
  79. Well, I think $778 (USD dollars) is a fair price for our little secret.
  80. You will make a bitcoin payment (if you don't know, look for "how to buy bitcoins" on Google).
  81.  
  82. BTC Address: 1Q2yu5awJd1Z3UJVw2VckeGoLs6TfSHFQR
  83. (This is CASE sensitive, please copy and paste it)
  84.  
  85. Remarks:
  86. You have 2 days (48 hours) to pay. (I have a special code, and at the moment I know that you have read this email).
  87.  
  88. If I don't get bitcoins, I will send your video to all your contacts, including family members, colleagues, etc.
  89. However, if I am paid, I will immediately destroy the video, and my trojan will be destruct someself.
  90.  
  91. If you want to get proof, answer "Yes!" and resend this letter to youself.
  92. And I will definitely send your video to your any 19 contacts.
  93.  
  94. This is a non-negotiable offer, so please do not waste my personal and other people's time by replying to this email.
  95.  
  96. Bye!
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement