sexual blackmail phish

Return-path:

Envelope-to: dave@doctor.nl2k.ab.ca

Delivery-date: Sat, 02 Sep 2023 07:56:06 -0600

Received: from doctor by doctor.nl2k.ab.ca with local (Exim 4.96 (FreeBSD))

(envelope-from )

id 1qcQzn-00079D-2K

for dave@doctor.nl2k.ab.ca;

Sat, 02 Sep 2023 07:49:03 -0600

Resent-From: The Doctor

Resent-Date: Sat, 2 Sep 2023 07:49:03 -0600

Resent-Message-ID:

Resent-To: Dave Yadallee

Received: from mail.courteurasian.org ([86.57.239.206]:56848 helo=post.ghu.by)

by doctor.nl2k.ab.ca with esmtps (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

(Exim 4.96 (FreeBSD))

(envelope-from )

id 1qcPIp-0005tQ-2u

for doctor@doctor.nl2k.ab.ca;

Sat, 02 Sep 2023 06:00:48 -0600

Received: from mail.courteurasian.org (unknown [101.91.148.7])

(using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits))

(No client certificate requested)

by post.ghu.by (Postfix) with ESMTPSA id DC87FAA436

for ; Sat, 2 Sep 2023 14:58:21 +0300 (+03)

From: doctor@doctor.nl2k.ab.ca

To: doctor@doctor.nl2k.ab.ca

Subject: You have an outstanding payment. #348151

Date: 2 Sep 2023 19:58:04 +0800

Message-ID: <20230902195802.46179C5C2D90CAC1@doctor.nl2k.ab.ca>

MIME-Version: 1.0

Content-Type: text/plain;

charset="utf-8"

Content-Transfer-Encoding: quoted-printable

X-Spam_score: 6.0

X-Spam_score_int: 60

X-Spam_bar: ++++++

X-Spam_report: Spam detection software, running on the system "doctor.nl2k.ab.ca",

has identified this incoming email as possible spam. The original

message has been attached to this so you can view it or label

similar future email. If you have any questions, see

@@CONTACT_ADDRESS@@ for details.



Content preview: Hello there! Unfortunately, there are some bad news for you.

Around several months ago I have obtained access to your devices that you

were using to browse internet. Subsequently, I have proceeded with tracking

do [...]



Content analysis details: (6.0 points, 5.0 required)



pts rule name description

---- ---------------------- --------------------------------------------------

1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in bl.spamcop.net

[Blocked - see ]

-0.0 SPF_PASS SPF: sender matches SPF record

-0.0 SPF_HELO_PASS SPF: HELO matches SPF record

-0.0 T_RP_MATCHES_RCVD Envelope sender domain matches handover relay

domain

0.0 HEADER_FROM_DIFFERENT_DOMAINS From and EnvelopeFrom 2nd level mail

domains are different

1.5 NIX_SPAM RBL: Listed in NIX_SPAM DNSBL (thanks to heise.de)

[101.91.148.7 listed in ix.dnsbl.manitu.net]

0.0 GB_HASHBL_BTC Message contains BTC address found on BTCBL

[bc1qje8je64ecgwh3aa37tjx3pdktfhp6wj5jh6heh]

-0.0 T_SCC_BODY_TEXT_LINE No description available.

0.3 PDS_BTC_ID FP reduced Bitcoin ID

3.0 BITCOIN_YOUR_INFO BitCoin with your personal info

Subject: {SPAM?} You have an outstanding payment. #348151



Hello there!







Unfortunately, there are some bad news for you.

Around several months ago I have obtained access to your devices that you w=

ere using to browse internet.

Subsequently, I have proceeded with tracking down internet activities of yo=

urs.







Below, is the sequence of past events:

In the past, I have bought access from hackers to numerous email accounts (=

today, that is a very straightforward task that can be done online).

Clearly, I have effortlessly logged in to email account of yours doctor@do=

ctor.nl2k.ab.ca.







A week after that, I have managed to install Trojan virus to Operating Syst=

ems of all your devices that are used for email access.

Actually, that was quite simple (because you were clicking the links in inb=

ox emails).

All smart things are quite straightforward. (>_<)







The software of mine allows me to access to all controllers in your devices=

, such as video camera, microphone and keyboard.

I have managed to download all your personal data, as well as web browsing =

history and photos to my servers.

I can access all messengers of yours, as well as emails, social networks, c=

ontacts list and even chat history.

My virus unceasingly refreshes its signatures (since it is driver-based), a=

nd hereby stays invisible for your antivirus.







So, by now you should already understand the reason why I remained unnotice=

d until this very moment...







While collecting your information, I have found out that you are also a hug=

e fan of websites for adults.

You truly enjoy checking out porn websites and watching dirty videos, while=

having a lot of kinky fun.

I have recorded several kinky scenes of yours and montaged some videos, whe=

re you reach orgasms while passionately masturbating.







If you still doubt my serious intentions, it only takes couple mouse clicks=

to share your videos with your friends, relatives and even colleagues.

It is also not a problem for me to allow those vids for access of public as=

well.

I truly believe, you would not want this to occur, understanding how specia=

l are the videos you love watching, (you are clearly aware of that) all tha=

t stuff can result in a real disaster for you.







Let's resolve it like this:

All you need is $888 USD transfer to my account (bitcoin equivalent based o=

n exchange rate during your transfer), and after the transaction is success=

ful, I will proceed to delete all that kinky stuff=20

without delay.

Afterwards, we can pretend that we have never met before. In addition, I as=

sure you that all the harmful software will be deleted from all your device=

s. Be sure, I keep my promises.







That is quite a fair deal with a low price, bearing in mind that I have spe=

nt a lot of effort to go through your profile and traffic for a long period=

=2E

If you are unaware how to buy and send bitcoins - it can be easily fixed by=

searching all related information online.







Below is bitcoin wallet of mine:

bc1qje8je64ecgwh3aa37tjx3pdktfhp6wj5jh6heh





You are given not more than 48 hours after you have opened this email (2 da=

ys to be precise).







Below is the list of actions that you should not attempt doing:

> Do not attempt to reply my email (it's useless, it's sent from your email=

).

> Do not attempt to call police or any other security services. Moreover, d=

on't even think to share this with friends of yours. Once I find that out (=

make no doubt about it, I can do that=20

effortlessly, bearing in mind that I have full control over all your system=

s) - the video of yours will become available to public immediately.

> Do not attempt to search for me - there is completely no point in that. A=

ll cryptocurrency transactions remain anonymous at all times.

> Do not attempt reinstalling the OS on devices of yours or get rid of them=

=2E It is meaningless too, because all your videos are already available at=

remote servers.







Below is the list of things you don't need to be concerned about:

> That I will not receive the money you transferred.

- Don't you worry, I can still track it, after the transaction is successfu=

lly completed, because I still monitor all your activities (trojan virus of=

mine includes a remote-control option, just like=20

TeamViewer).

> That I still will make your videos available to public after your money t=

ransfer is complete.

- Believe me, it is meaningless for me to keep on making your life complica=

ted. If I indeed wanted to make it happen, it would happen long time ago!







Everything will be carried out based on fairness!







Before I forget...moving forward try not to get involved in this kind of si=

tuations anymore!

An advice from me - regularly change all the passwords to your accounts.

Trackbacks

Trackback specific URI for this entry

This link is not meant to be clicked. It contains the trackback URI for this entry. You can use this URI to send ping- & trackbacks from your own blog to this entry. To copy the link, right click and select "Copy Shortcut" in Internet Explorer or "Copy Link Location" in Mozilla.

No Trackbacks

Comments

Display comments as Linear | Threaded

No comments

Add Comment

Enclosing asterisks marks text as bold (*word*), underscore are made via _word_.
Standard emoticons like :-) and ;-) are converted to images.

To prevent automated Bots from commentspamming, please enter the string you see in the image below in the appropriate input box. Your comment will only be submitted if the strings match. Please ensure that your browser supports and accepts cookies, or your comment cannot be verified correctly.
CAPTCHA

Enclosing asterisks marks text as bold (*word*), underscore are made via _word_.
Standard emoticons like :-) and ;-) are converted to images.

To prevent automated Bots from commentspamming, please enter the string you see in the image below in the appropriate input box. Your comment will only be submitted if the strings match. Please ensure that your browser supports and accepts cookies, or your comment cannot be verified correctly.
CAPTCHA