Welcome To Our Shell

Mister Spy & Souheyl Bypass Shell

Current Path : /proc/thread-self/root/home/ift/mails/36/

Linux ift1.ift-informatik.de 5.4.0-216-generic #236-Ubuntu SMP Fri Apr 11 19:53:21 UTC 2025 x86_64
Upload File :
Current File : //proc/thread-self/root/home/ift/mails/36/1539412670.zrspam.364190_2018_10_13

From christian.gabriel@shortnote.de  Sat Oct 13 08:37:50 2018
Return-Path: <christian.gabriel@shortnote.de>
X-Original-To: cgabriel@ift-informatik.de
Delivered-To: cgabriel@ift-informatik.de
Received: by ift-informatik.de (Postfix, from userid 5555)
	id D34C93D200055; Sat, 13 Oct 2018 08:37:50 +0200 (CEST)
Received: from localhost by h2486555.stratoserver.net
	with SpamAssassin (version 3.4.0);
	Sat, 13 Oct 2018 08:37:50 +0200
From: <christian.gabriel@shortnote.de>
To: <christian.gabriel@shortnote.de>
Subject: *****SPAM***** christian.gabriel@shortnote.de was hacked
Date: 13 Oct 2018 05:00:24 -0800
Message-Id: <003401d462f9$02206fa6$d729a7bd$@shortnote.de>
X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on
	h2486555.stratoserver.net
X-Spam-Flag: YES
X-Spam-Level: *****************
X-Spam-Status: Yes, score=17.6 required=5.0 tests=BAYES_00,
	DATE_IN_FUTURE_06_12,DOS_OUTLOOK_TO_MX,FROM_IN_TO_AND_SUBJ,
	FSL_HELO_NON_FQDN_1,HELO_LOCALHOST,PYZOR_CHECK,RCVD_IN_BRBL_LASTEXT,
	RCVD_IN_PBL,RDNS_NONE,TO_IN_SUBJ,URIBL_BLOCKED autolearn=no
	autolearn_force=no version=3.4.0
MIME-Version: 1.0
Content-Type: multipart/mixed; boundary="----------=_5BC192BE.D7A1DE2C"

This is a multi-part message in MIME format.

------------=_5BC192BE.D7A1DE2C
Content-Type: text/plain; charset=iso-8859-1
Content-Disposition: inline
Content-Transfer-Encoding: 8bit

Spam detection software, running on the system "h2486555.stratoserver.net",
has identified this incoming email as possible spam.  The original
message has been attached to this so you can view it or label
similar future email.  If you have any questions, see
@@CONTACT_ADDRESS@@ for details.

Content preview:  Hello christian.gabriel@ My nickname in darknet is ancell37.
   I'll begin by saying that I hacked this mailbox (please look on 'from' in
   your header) more than six months ago, through it I infected your operating
   system with a virus (trojan) created by me and have been monitoring you for
   a long time. [...] 

Content analysis details:   (17.6 points, 5.0 required)

 pts rule name              description
---- ---------------------- --------------------------------------------------
 3.3 RCVD_IN_PBL            RBL: Received via a relay in Spamhaus PBL
                            [27.68.52.18 listed in zen.spamhaus.org]
 3.8 HELO_LOCALHOST         No description available.
 0.0 FSL_HELO_NON_FQDN_1    No description available.
 1.9 DATE_IN_FUTURE_06_12   Date: is 6 to 12 hours after Received: date
 0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was blocked.
                            See
                            http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                             for more information.
                            [URIs: shortnote.de]
-1.9 BAYES_00               BODY: Bayes spam probability is 0 to 1%
                            [score: 0.0000]
 1.4 PYZOR_CHECK            Listed in Pyzor (http://pyzor.sf.net/)
 1.4 RCVD_IN_BRBL_LASTEXT   RBL: No description available.
                            [27.68.52.18 listed in bb.barracudacentral.org]
 0.8 RDNS_NONE              Delivered to internal network by a host with no rDNS
 1.0 FROM_IN_TO_AND_SUBJ    From address is in To and Subject
 2.9 TO_IN_SUBJ             To address is in Subject
 2.8 DOS_OUTLOOK_TO_MX      Delivered direct to MX with Outlook headers



------------=_5BC192BE.D7A1DE2C
Content-Type: message/rfc822; x-spam-type=original
Content-Description: original message before SpamAssassin
Content-Disposition: inline
Content-Transfer-Encoding: 8bit

Received: from localhost (unknown [27.68.52.18])
	by ift-informatik.de (Postfix) with ESMTP id 759CA3D200005
	for <christian.gabriel@shortnote.de>; Sat, 13 Oct 2018 08:37:48 +0200 (CEST)
From: <christian.gabriel@shortnote.de>
To: <christian.gabriel@shortnote.de>
Subject: christian.gabriel@shortnote.de was hacked
Date: 13 Oct 2018 05:00:24 -0800
Message-ID: <003401d462f9$02206fa6$d729a7bd$@shortnote.de>
MIME-Version: 1.0
Content-Type: text/plain;
	charset="cp-850"
Content-Transfer-Encoding: 8bit
X-Mailer: Microsoft Office Outlook 12.0
Thread-Index: Acl45cwx6vo2ib27l45cwx6vo2ib27==
Content-Language: en
x-cr-hashedpuzzle: 2D4= vkbv wcbv kbvw cbvk bvwc qnsn 7ry7 1in7 pcqn sn7r y71i n7pc qnsn 7ry7 1igu;1;1o82x3um2rm3gu1o82x3um2rm3gu1o82x3um2rm3gu1o82x3;Sosha1_v1;7;\{63EC0714-7088-FF63-EC07-147088FF63EC\};ZQB3AGUAZgm3gu1o82x3um2rm3gu1o82x3um2rm3gu1o82x3;13 Oct 2018 05:00:24 -0800;3h831cd88502m33h
x-cr-puzzleid: \{63EC0714-7088-FF63-EC07-147088FF63EC\}

Hello christian.gabriel@

My nickname in darknet is ancell37.
I'll begin by saying that I hacked this mailbox (please look on 'from' in your header) more than six months ago,
through it I infected your operating system with a virus (trojan) created by me and have been monitoring you for a long time.

Even if you changed the password after that - it does not matter, my virus intercepted all the caching data on your computer
and automatically saved access for me.

I have access to all your accounts, social networks, email, browsing history.
Accordingly, I have the data of all your contacts, files from your computer, photos and videos.

I was most struck by the intimate content sites that you occasionally visit.
You have a very wild imagination, I tell you!

During your pastime and entertainment there, I took screenshot through the camera of your device, synchronizing with what you are watching.
Oh my god! You are so funny and excited!

I think that you do not want all your contacts to get these files, right?
If you are of the same opinion, then I think that $500 is quite a fair price to destroy the dirt I created.

Send the above amount on my bitcoin wallet: 1MN7A7QqQaAVoxV4zdjdrnEHXmjhzcQ4Bq
As soon as the above amount is received, I guarantee that the data will be deleted, I do not need it.

Otherwise, these files and history of visiting sites will get all your contacts from your device.
Also, I'll send to everyone your contact access to your email and access logs, I have carefully saved it!

Since reading this letter you have 48 hours!
After your reading this message, I'll receive an automatic notification that you have seen the letter.

I hope I taught you a good lesson.
Do not be so nonchalant, please visit only to proven resources, and don't enter your passwords anywhere!
Good luck!


------------=_5BC192BE.D7A1DE2C--


bypass 1.0, Devloped By El Moujahidin (the source has been moved and devloped)
Email: contact@elmoujehidin.net bypass 1.0, Devloped By El Moujahidin (the source has been moved and devloped) Email: contact@elmoujehidin.net