Return-path: Envelope-to: lojban@lojban.org Delivery-date: Sun, 14 Apr 2024 23:58:29 -0700 Received: from [192.168.123.254] (port=34908 helo=stodi.digitalkingdom.org) by 9b22896a5f05 with esmtps (TLS1.3) tls TLS_AES_256_GCM_SHA384 (Exim 4.96) (envelope-from ) id 1rwGIK-000MyM-0v for lojban@lojban.org; Sun, 14 Apr 2024 23:58:28 -0700 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=digitalkingdom.org; s=202111010720; h=Content-Transfer-Encoding: Content-Type:MIME-Version:Date:Subject:To:From:Message-ID:Sender:Reply-To:Cc: Content-ID:Content-Description:Resent-Date:Resent-From:Resent-Sender: Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=r0jm1ILQAqg8cYtvreUH19QlQPN3JRMEBAG8X+Z0tfA=; b=TRBNGCK3VjPmo9AV2RjbpFl02V EC6TXm77TGkFfjmZclaoeFCGon7ajd5exX92/HYmfj3o4jujNVpFfQS1P+eW19fN4pNZe0C4KSaSC hg1FV7U+zeaFlNwSlfAleknvclxBYHukhn5/yvXCi25XsGJJLNDR+QXftjAnp2YioCLktrl4m6zw3 BpuT+pfruKGrWLbj/07jeMC9bX3YqXe8bDzmezsDAVnjP/jlIU/HslW7Hh4rNBJAu+j8lIVjFxCGd rgNqyxYRSQ3VjAKBmOK/QYs49LhSxyhabNBO6e5BFgh8G0Y1EHZ3Atn8HBDB72OQ/BXfWVo1Stai/ /+ze9rYg==; DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=evolutionlab.org; s=202111010720; h=Content-Transfer-Encoding:Content-Type: MIME-Version:Date:Subject:To:From:Message-ID:Sender:Reply-To:Cc:Content-ID: Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc :Resent-Message-ID:In-Reply-To:References:List-Id:List-Help:List-Unsubscribe: List-Subscribe:List-Post:List-Owner:List-Archive; bh=r0jm1ILQAqg8cYtvreUH19QlQPN3JRMEBAG8X+Z0tfA=; b=B2/Yd7pYKEVJeO6GjYF70vcPkJ vQowGPrIyMc5/x6U3Emv7HYnbQKtWG1Y0GGePx0Gw47cvIdtbVdT4bXp+jV3Njf8asUKuHOffK1pW 7nDBDSXtSVhYp2AvTxluOTZjY0AnfeXdG/kmpVilwKJkLwiKD0edw0xuQN7gUL0IAB3Wiy44CVXTa P/9hoP9ItYzGh4UeVo/pyd2BIYn3rhjXqUJKpufvWewuaTFgjykl64xdEzLcoi580HDcPyOz8gOla 6Hw0ZCAvCoJU0fHJ4k3i2VOpHbHXtHamgna1DcPmA3jKwz7ziQAIf2NX82PAOD3hq9PrEzvaSxl1N fr07GMoQ==; Received: from [89.113.154.4] (port=31763 helo=mercari.com) by stodi.digitalkingdom.org with esmtps (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.96) (envelope-from ) id 1rwGIE-005usi-2B for bugs@teddyb.org; Sun, 14 Apr 2024 23:58:23 -0700 Message-ID: <0489c83dc90d272c0fa1288377b44e4476e9a98e@alnaharegypt.com> From: info1@alnaharegypt.com To: bugs@teddyb.org Subject: Date: Mon, 15 Apr 2024 09:57:53 +0300 MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Spam-Score: 0.7 (/) X-Spam_score: 0.7 X-Spam_score_int: 7 X-Spam_bar: / X-Spam-Report: Spam detection software, running on the system "stodi.digitalkingdom.org", has NOT identified this incoming email as spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see the administrator of that system for details. Content preview: Well, hello there, my perverted friend. I'll get right to the point. We've actually known each other for a while now, at least I've known you. You can call me Big Brother or the All-Seeing Eye. I'm a [...] Content analysis details: (0.7 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- -1.9 BAYES_00 BODY: Bayes spam probability is 0 to 1% [score: 0.0000] 0.0 RCVD_IN_ZEN_BLOCKED_OPENDNS RBL: ADMINISTRATOR NOTICE: The query to zen.spamhaus.org was blocked due to usage of an open resolver. See https://www.spamhaus.org/returnc/pub/ [89.113.154.4 listed in zen.spamhaus.org] -5.0 RCVD_IN_DNSWL_HI RBL: Sender listed at https://www.dnswl.org/, high trust [89.113.154.4 listed in list.dnswl.org] 0.0 SPF_HELO_NONE SPF: HELO does not publish an SPF Record 0.7 SPF_SOFTFAIL SPF: sender does not match SPF record (softfail) 0.8 RDNS_NONE Delivered to internal network by a host with no rDNS 0.5 PDS_BTC_ID FP reduced Bitcoin ID 0.4 BITCOIN_DEADLINE BitCoin with a deadline 1.6 BITCOIN_MALWARE BitCoin + malware bragging 2.6 MALWARE_NORDNS Malware bragging + no rDNS 1.0 BITCOIN_ONAN BitCoin + [censored] X-Spam-Score: 2.4 (++) X-Spam_score: 2.4 X-Spam_score_int: 24 X-Spam_bar: ++ X-Spam-Report: Spam detection software, running on the system "50bab00d4276", has NOT identified this incoming email as spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see @@CONTACT_ADDRESS@@ for details. Content preview: Well, hello there, my perverted friend. I'll get right to the point. We've actually known each other for a while now, at least I've known you. You can call me Big Brother or the All-Seeing Eye. I'm a [...] Content analysis details: (2.4 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 URIBL_BLOCKED ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [URIs: digitalkingdom.org] -5.0 RCVD_IN_DNSWL_HI RBL: Sender listed at https://www.dnswl.org/, high trust [89.113.154.4 listed in list.dnswl.org] 0.0 RCVD_IN_ZEN_BLOCKED_OPENDNS RBL: ADMINISTRATOR NOTICE: The query to zen.spamhaus.org was blocked due to usage of an open resolver. See https://www.spamhaus.org/returnc/pub/ [89.113.154.4 listed in zen.spamhaus.org] 0.8 BAYES_50 BODY: Bayes spam probability is 40 to 60% [score: 0.5000] 0.0 URIBL_DBL_BLOCKED_OPENDNS ADMINISTRATOR NOTICE: The query to dbl.spamhaus.org was blocked due to usage of an open resolver. See https://www.spamhaus.org/returnc/pub/ [URIs: digitalkingdom.org] 0.0 URIBL_ZEN_BLOCKED_OPENDNS ADMINISTRATOR NOTICE: The query to zen.spamhaus.org was blocked due to usage of an open resolver. See https://www.spamhaus.org/returnc/pub/ [URIs: evolutionlab.org] 0.0 SPF_HELO_NONE SPF: HELO does not publish an SPF Record 0.7 SPF_SOFTFAIL SPF: sender does not match SPF record (softfail) -0.1 DKIM_VALID Message has at least one valid DKIM or DK signature 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid 0.8 RDNS_NONE Delivered to internal network by a host with no rDNS 0.5 PDS_BTC_ID FP reduced Bitcoin ID 3.0 BITCOIN_DEADLINE BitCoin with a deadline 0.7 MALWARE_NORDNS Malware bragging + no rDNS 1.0 BITCOIN_ONAN BitCoin + [censored] Well, hello there, my perverted friend. I'll get right to the point. We've actually known each other for a while now, at least I've known you. You can call me Big Brother or the All-Seeing Eye. I'm a hacker who a few months ago gained access to your device, including your browser history and webcam. And I recorded some videos of you jerking off to highly controversial "adult" videos. I doubt very much you'd want your family, coworkers, and your entire contact list to see footage of you pleasuring yourself, especially given the specifics of your favorite genre. I'll also put these videos on porn sites, and they'll go viral, so much so that it will be physically impossible to remove them from everywhere. How did I do that? Because of your disregard for Internet security, I was able to easily install a Trojan horse on your device. which accessed all the data on your device and allowed me to control it remotely. Once I infected one device, I had no problem accessing all the other devices. My spyware is embedded in the drivers and updates its signature every few hours, so no antivirus or firewall can even detect it. So now I'm just gonna give you a condition. A small sum in exchange for your former quiet life. Transfer 1200 USD to my bitcoin wallet: 3E5kH22Z5ozUhfqg3emYDQ9oDy1frgq3mr As soon as I receive confirmation of the transfer, I will delete all the videos that compromise you, remotely erase the virus on your devices and you will never hear from me again. Agree, it's a very small price to pay for not destroying your reputation in the eyes of others who, judging by your correspondence in messengers, has an opinion of you as a decent human being. You can think of me as a kind of mentor who wants you to start appreciating what you have. You have 48 hours - I'll be notified as soon as you open this letter, and from then on it's a countdown. If you've never dealt with cryptocurrency before, it's super easy - type "crypto exchange" into a search engine, and the next thing to do. Here's what you shouldn't do: Don't reply to my email. It was sent from a disposable e-mail account. Don't call law enforcement. Remember, I have access to all of your devices, and as soon as I notice such activity, it will automatically lead to the release of all of your data. Do not attempt to reinstall your system or factory reset your device. First of all, I already have the video and all your data, and secondly, as I already said, I have remote access to all your devices and as soon as I notice such an attempt, it will lead to irreversible consequences. Remember that crypto-addresses are anonymous, so you won't be able to figure me out from my wallet. Anyway, let's make this a win-win situation. I always keep my word, unless I'm being tricked. Advice for the future: take more seriously your security on the Internet. Also regularly change passwords and set up multi-factor authorization on all your accounts.