관리-도구
편집 파일: 1726322021.M405364P428809.cp-biz03.syd05.ds.network,S=12389,W=12661
Return-Path: <amministrazione@studiocroci.it> Delivered-To: tony+spam@galaxybeads.com.au Received: from cp-biz03.syd05.ds.network by cp-biz03.syd05.ds.network with LMTP id yHa4F2WV5WYJiwYAW9t3Hw (envelope-from <amministrazione@studiocroci.it>) for <tony+spam@galaxybeads.com.au>; Sat, 14 Sep 2024 23:53:41 +1000 Return-path: <amministrazione@studiocroci.it> Envelope-to: tony@galaxybeads.com.au Delivery-date: Sat, 14 Sep 2024 23:53:41 +1000 Received: from [190.200.209.34] (port=25006 helo=190-200-209-34.anz-00.rai.cantv.net) by cp-biz03.syd05.ds.network with esmtp (Exim 4.96.2) (envelope-from <amministrazione@studiocroci.it>) id 1spTDN-001oUr-1b for tony@galaxybeads.com.au; Sat, 14 Sep 2024 23:53:41 +1000 From: <amministrazione@studiocroci.it> To: "tnbaotram" <tony@galaxybeads.com.au> Date: 14 Sep 2024 04:45:56 -0500 Message-ID: <004b01db068b$01913865$62352897$@studiocroci.it> MIME-Version: 1.0 Content-Type: multipart/alternative; boundary="----=_NextPart_000_0048_01DB068B.018B4EA5" X-Mailer: Microsoft Outlook 16.0 Thread-Index: Acbdv0xnu4hy7uuibdv0xnu4hy7uui== Content-Language: en-us X-Spam-Status: Yes, score=12.4 X-Spam-Score: 124 X-Spam-Bar: ++++++++++++ X-Spam-Report: Spam detection software, running on the system "cp-biz03.syd05.ds.network", has identified this incoming email as possible spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see root\@localhost for details. Content preview: Good åfternoon, my nåive cområde. Unfortunåtely, this letter will divide your life into before ånd åfter. However, the good news is thåt it will teåch you å lot. For exåmple, whåt you cån & [...] Content analysis details: (12.4 points, 8.5 required) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 RCVD_IN_VALIDITY_RPBL_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to Validity was blocked. See https://knowledge.validity.com/hc/en-us/articles/20961730681243 for more information. [190.200.209.34 listed in bl.score.senderscore.com] 1.1 DATE_IN_PAST_03_06 Date: is 3 to 6 hours before Received: date 0.0 FUZZY_WALLET BODY: Obfuscated "Wallet" 0.0 RCVD_IN_VALIDITY_SAFE_BLOCKED RBL: ADMINISTRATOR NOTICE: The query to Validity was blocked. See https://knowledge.validity.com/hc/en-us/articles/20961730681243 for more information. [190.200.209.34 listed in sa-trusted.bondedsender.org] 0.0 HTML_MESSAGE BODY: HTML included in message 1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any anti-forgery methods 0.0 RATWARE_NO_RDNS Suspicious MsgID and MIME boundary + no rDNS 0.0 KAM_DMARC_STATUS Test Rule for DKIM or SPF Failure with Strict Alignment 2.0 RDNS_NONE Delivered to internal network by a host with no rDNS 3.9 HELO_DYNAMIC_IPADDR2 Relay HELO'd using suspicious hostname (IP addr 2) 0.0 PDS_BTC_ID FP reduced Bitcoin ID 0.0 PDS_BAD_THREAD_QP_64 Bad thread header - short QP 3.0 BITCOIN_DEADLINE BitCoin with a deadline 1.4 DOS_OUTLOOK_TO_MX Delivered direct to MX with Outlook headers 0.0 NO_FM_NAME_IP_HOSTN No From name + hostname using IP address X-Spam-Flag: YES Subject: ***SPAM*** =?iso-8859-2?B?UmVhZCB0aGlzIGVt5WlsIG9yIHNvbWV0aGluZyB0ZXJyaWJsZSB3aQ==?= =?iso-8859-2?B?bGwgaGFwcGVuLg==?= This is a multi-part message in MIME format. ------=_NextPart_000_0048_01DB068B.018B4EA5 Content-Type: text/plain; charset="iso-8859-2" Content-Transfer-Encoding: quoted-printable Good åfternoon, my nåive cområde.=20 Unfortunåtely, this letter will divide your life into before = ånd åfter. However, the good news is thåt it will teåch you å lot.=20 For exåmple, whåt you cån ånd cån't do on the = internet, how to treåt your online security properly, ånd how = not to leåve digitål footprints. Most likely, you håve heård åbout Russiån = håcker groups such ås Cozy Beår, Killnet ånd others. Well, we work for them. I håte to såy it, but you håve = got in our mess.=20 In åddition to our håcking åctivities, we åre = ålso running on the lookout for vårious suspicious online = åccounts thåt we would like to måke money on. We guess you åre beginning to reålize how we locåted you. = åll normål people håve their own sexuål preferences. However, whåt you åre trying to find on the internet doesn't = fit into åny, even the loosest morål ståndårds. Now we håve your seårch requests ånd your webcåm = footåge while you åre pleåsuring yourself. We set å timer for public releåse. Nevertheless, don't worry, = there's good news ålso.=20 Money is our only interest. Even åmong us, there åre some = strånge persons, but they bring us so much profit thåt we = ignore their deviåtions.=20 In this cåse, YOU should bring us the profit. For $1290 you = ånd us will forget åbout eåch other forever.=20 You håve 48 hours from the moment you open this emåil to = trånsfer this $1290.=20 We will be notified when you reåd the letter.=20 Here is the åddress of the Bitcoin wållet you should use for = the påyment: 1NZgnstUk3a9sQ1N5DV5k9wnKGqYsVyooN Countdown hås stårted, don't keep us wåiting. Otherwise, åll your friends, colleågues ånd = relåtives will get å copy of your records: seårch = history, webcåm videos ånd even personål messåges. Do not forwård this messåge to ånyone, including the = police. Doing so will result in the åutomåtic posting of = åll informåtion åbout you. We monitor whåt you = åre doing.=20 Do not reply to this messåge. It wås sent from å = disposåble emåil åccount, you cån't reply it, this = emåil åddress is untråceåble.=20 If you håven't used crypto before everything is simple. Just google = it.=20 Thåt's the end of our messåge. ås they såy, we hope = for å fruitful cooperåtion.=20 Otherwise, this will åll end bådly for you.=20 Goodbye, ånd hopefully this is our låst interåction.=20 P. S. Remember for the future, the Internet is not some kind of å = Wild West where you cån do ånything you wånt.=20 There is å wholesome shiver of hungry shårks seårching = for irresponsible persons like you. ------=_NextPart_000_0048_01DB068B.018B4EA5 Content-Type: text/html; charset="iso-8859-2" Content-Transfer-Encoding: quoted-printable <html xmlns:v=3D"urn:schemas-microsoft-com:vml" = xmlns:o=3D"urn:schemas-microsoft-com:office:office" = xmlns:w=3D"urn:schemas-microsoft-com:office:word" = xmlns:m=3D"http://schemas.microsoft.com/office/2004/12/omml" = xmlns=3D"http://www.w3.org/TR/REC-html40"><head><META = HTTP-EQUIV=3D"Content-Type" CONTENT=3D"text/html; = charset=3Dus-ascii"><meta name=3DGenerator content=3D"Microsoft Word 15 = (filtered medium)"><style><!-- /* Font Definitions */ @font-face =09{font-family:"Cambria Math"; =09panose-1:2 4 5 3 5 4 6 3 2 4;} @font-face =09{font-family:Calibri; =09panose-1:2 15 5 2 2 2 4 3 2 4;} /* Style Definitions */ p.MsoNormal, li.MsoNormal, div.MsoNormal =09{margin:0in; =09margin-bottom:.0001pt; =09font-size:11.0pt; =09font-family:"Calibri",sans-serif;} a:link, span.MsoHyperlink =09{mso-style-priority:99; =09color:#0563C1; =09text-decoration:underline;} a:visited, span.MsoHyperlinkFollowed =09{mso-style-priority:99; =09color:#954F72; =09text-decoration:underline;} span.EmailStyle17 =09{mso-style-type:personal-compose; =09font-family:"Calibri",sans-serif; =09color:windowtext;} .MsoChpDefault =09{mso-style-type:export-only; =09font-family:"Calibri",sans-serif;} @page WordSection1 =09{size:8.5in 11.0in; =09margin:1.0in 1.0in 1.0in 1.0in;} div.WordSection1 =09{page:WordSection1;} --></style><!--[if gte mso 9]><xml> <o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" /> </xml><![endif]--><!--[if gte mso 9]><xml> <o:shapelayout v:ext=3D"edit"> <o:idmap v:ext=3D"edit" data=3D"1" /> </o:shapelayout></xml><![endif]--></head><body lang=3DEN-US = link=3D"#0563C1" vlink=3D"#954F72"><div class=3DWordSection1><p = class=3DMsoNormal>Good åfternoon, my nåive cområde. <br> <br> Unfortunåtely, this letter will divide your life into before = ånd åfter.<br> However, the good news is thåt it will teåch you å lot. = <br> For exåmple, whåt you cån ånd cån't do on the = internet, how to treåt your online security properly, ånd how = not to leåve digitål footprints.<br> <br> Most likely, you håve heård åbout Russiån = håcker groups such ås Cozy Beår, Killnet ånd = others.<br> Well, we work for them. I håte to såy it, but you håve = got in our mess. <br> In åddition to our håcking åctivities, we åre = ålso running on the lookout for vårious suspicious online = åccounts thåt we would like to måke money on.<br> We guess you åre beginning to reålize how we locåted you. = <br> <br> åll normål people håve their own sexuål = preferences.<br> However, whåt you åre trying to find on the internet doesn't = fit into åny, even the loosest morål ståndårds.<br> <br> Now we håve your seårch requests ånd your webcåm = footåge while you åre pleåsuring yourself.<br> We set å timer for public releåse. Nevertheless, don't worry, = there's good news ålso. <br> Money is our only interest. Even åmong us, there åre some = strånge persons, but they bring us so much profit thåt we = ignore their deviåtions. <br> <br> In this cåse, YOU should bring us the profit. For $1290 you = ånd us will forget åbout eåch other forever. <br> You håve 48 hours from the moment you open this emåil to = trånsfer this $1290. <br> We will be notified when you reåd the letter. <br> <br> Here is the åddress of the Bitcoin wållet you should use for = the påyment: 1NZgnstUk3a9sQ1N5DV5k9wnKGqYsVyooN<br> <br> Countdown hås stårted, don't keep us wåiting.<br> Otherwise, åll your friends, colleågues ånd = relåtives will get å copy of your records: seårch = history, webcåm videos ånd even personål = messåges.<br> <br> Do not forwård this messåge to ånyone, including the = police. Doing so will result in the åutomåtic posting of = åll informåtion åbout you. We monitor whåt you = åre doing. <br> Do not reply to this messåge. It wås sent from å = disposåble emåil åccount, you cån't reply it, this = emåil åddress is untråceåble. <br> <br> If you håven't used crypto before everything is simple. Just google = it. <br> <br> Thåt's the end of our messåge. ås they såy, we hope = for å fruitful cooperåtion. <br> Otherwise, this will åll end bådly for you. <br> Goodbye, ånd hopefully this is our låst interåction. <br> <br> P. S. Remember for the future, the Internet is not some kind of å = Wild West where you cån do ånything you wånt. <br> There is å wholesome shiver of hungry shårks seårching = for irresponsible persons like you.=20 <o:p></o:p></p></div></body></html> ------=_NextPart_000_0048_01DB068B.018B4EA5--