
| Current Path : /proc/thread-self/root/home/ift/mails/39/ |
Linux ift1.ift-informatik.de 5.4.0-216-generic #236-Ubuntu SMP Fri Apr 11 19:53:21 UTC 2025 x86_64 |
| Current File : //proc/thread-self/root/home/ift/mails/39/1543745296.zrspam.390195_2018_12_02 |
From tobias.jungblut@ift-informatik.de Sun Dec 2 11:08:16 2018
Return-Path: <tobias.jungblut@ift-informatik.de>
X-Original-To: tjungblut@ift-informatik.de
Delivered-To: tjungblut@ift-informatik.de
Received: by ift-informatik.de (Postfix, from userid 5555)
id A21F93D20009A; Sun, 2 Dec 2018 11:08:16 +0100 (CET)
Received: from localhost by h2486555.stratoserver.net
with SpamAssassin (version 3.4.0);
Sun, 02 Dec 2018 11:08:16 +0100
From: "Account Security" <tobias.jungblut@ift-informatik.de>
To: <tobias.jungblut@ift-informatik.de>
Subject: *****SPAM***** Third party accessed to tobias.jungblut@ift-informatik.de.
Date: 2 Dec 2018 12:34:22 +0100
Message-Id: <001901d48a37$05cd23dd$334701a2$@ift-informatik.de>
X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on
h2486555.stratoserver.net
X-Spam-Flag: YES
X-Spam-Level: ***************
X-Spam-Status: Yes, score=15.7 required=5.0 tests=BAYES_00,
CK_HELO_DYNAMIC_SPLIT_IP,DOS_OUTLOOK_TO_MX,HELO_DYNAMIC_IPADDR2,
RCVD_IN_BL_SPAMCOP_NET,RCVD_IN_BRBL_LASTEXT,RCVD_IN_PBL,RCVD_IN_PSBL,
RCVD_IN_RP_RNBL,RDNS_DYNAMIC,TVD_RCVD_IP,URIBL_BLOCKED autolearn=no
autolearn_force=no version=3.4.0
MIME-Version: 1.0
Content-Type: multipart/mixed; boundary="----------=_5C03AF10.7E660B2D"
This is a multi-part message in MIME format.
------------=_5C03AF10.7E660B2D
Content-Type: text/plain; charset=iso-8859-1
Content-Disposition: inline
Content-Transfer-Encoding: 8bit
Spam detection software, running on the system "h2486555.stratoserver.net",
has identified this incoming email as possible spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
@@CONTACT_ADDRESS@@ for details.
Content preview: Hello! I'm is very good programmer, known in darkweb as homerus35.
I hacked this mailbox more than six months ago, through it I infected your
operating system with a virus (trojan) created by me and have been spying
for you a very long time. [...]
Content analysis details: (15.7 points, 5.0 required)
pts rule name description
---- ---------------------- --------------------------------------------------
0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked.
See
http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
for more information.
[URIs: ift-informatik.de]
3.3 RCVD_IN_PBL RBL: Received via a relay in Spamhaus PBL
[90.154.209.165 listed in zen.spamhaus.org]
2.7 RCVD_IN_PSBL RBL: Received via a relay in PSBL
[90.154.209.165 listed in psbl.surriel.com]
0.0 CK_HELO_DYNAMIC_SPLIT_IP Relay HELO'd using suspicious hostname
(Split IP)
0.0 TVD_RCVD_IP No description available.
1.3 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net
[Blocked - see <http://www.spamcop.net/bl.shtml?90.154.209.165>]
1.3 RCVD_IN_RP_RNBL RBL: Relay in RNBL,
https://senderscore.org/blacklistlookup/
[90.154.209.165 listed in bl.score.senderscore.com]
1.4 RCVD_IN_BRBL_LASTEXT RBL: No description available.
[90.154.209.165 listed in bb.barracudacentral.org]
-1.9 BAYES_00 BODY: Bayes spam probability is 0 to 1%
[score: 0.0000]
3.6 HELO_DYNAMIC_IPADDR2 Relay HELO'd using suspicious hostname (IP addr
2)
1.0 RDNS_DYNAMIC Delivered to internal network by host with
dynamic-looking rDNS
2.8 DOS_OUTLOOK_TO_MX Delivered direct to MX with Outlook headers
------------=_5C03AF10.7E660B2D
Content-Type: message/rfc822; x-spam-type=original
Content-Description: original message before SpamAssassin
Content-Disposition: inline
Content-Transfer-Encoding: 8bit
Received: from 90-154-209-165.ip.btc-net.bg (90-154-209-165.ip.btc-net.bg [90.154.209.165])
by ift-informatik.de (Postfix) with ESMTP id 120663D200074
for <tobias.jungblut@ift-informatik.de>; Sun, 2 Dec 2018 11:08:11 +0100 (CET)
From: "Account Security" <tobias.jungblut@ift-informatik.de>
To: <tobias.jungblut@ift-informatik.de>
Subject: Third party accessed to tobias.jungblut@ift-informatik.de.
Date: 2 Dec 2018 12:34:22 +0100
Message-ID: <001901d48a37$05cd23dd$334701a2$@ift-informatik.de>
MIME-Version: 1.0
Content-Type: text/plain;
charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 15.0
Thread-Index: Acpxtxv08y6lvfu7pxtxv08y6lvfu7==
Content-Language: en-us
Hello!
I'm is very good programmer, known in darkweb as homerus35.
I hacked this mailbox more than six months ago,
through it I infected your operating system with a virus (trojan) created by me and have been spying for you a very long time.
I understand it is hard to believe, but you can check it yourself.
I'm sent this e-mail from your account. Try it yourself.
Even if you changed the password after that - it does not matter, my virus intercepted all the caching data on your computer
and automatically saved access for me.
I have access to all your accounts, social networks, email, browsing history.
Accordingly, I have the data of all your contacts, files from your computer, photos and videos.
I was most struck by the intimate content sites that you occasionally visit.
You have a very wild imagination, I tell you!
During your pastime and entertainment there, I took screenshot through the camera of your device, synchronizing with what you are watching.
Oh my god! You are so funny and excited!
I think that you do not want all your contacts to get these files, right?
If you are of the same opinion, then I think that $227 is quite a fair price to destroy the dirt I created.
Send the above amount on my BTC wallet (bitcoin): 1JRCbCH9E3iLhSXPTqtkgfAsJNT2xD74C5
As soon as the above amount is received, I guarantee that the data will be deleted, I do not need it.
Otherwise, these files and history of visiting sites will get all your contacts from your device.
Also, I'll send to everyone your contact access to your email and access logs, I have carefully saved it!
Since reading this letter you have 48 hours!
After your reading this message, I'll receive an automatic notification that you have seen the letter.
I hope I taught you a good lesson.
Do not be so nonchalant, please visit only to proven resources, and don't enter your passwords anywhere!
Good luck!
------------=_5C03AF10.7E660B2D--