
­­­­­­­­­­­­­­­­­­
<!DOCTYPE html>
<html>
Return-Path: <>
Delivered-To: info@autozone.com.sa
Received: from depro4.fcomet.com
	by depro4.fcomet.com with LMTP
	id oBAHJX77SmNzqg8AfHesKA
	(envelope-from <>)
	for <info@autozone.com.sa>; Sat, 15 Oct 2022 20:27:10 +0200
Return-path: <>
Envelope-to: info@autozone.com.sa
Delivery-date: Sat, 15 Oct 2022 20:27:10 +0200
Received: from mailnull by depro4.fcomet.com with local (Exim 4.95)
	id 1ojlsL-004JFc-SA
	for info@autozone.com.sa;
	Sat, 15 Oct 2022 20:27:09 +0200
X-Failed-Recipients: khurram.dhedhi@balubaid.com.sa
Auto-Submitted: auto-replied
From: Mail Delivery System <Mailer-Daemon@depro4.fcomet.com>
To: info@autozone.com.sa
References: <004b01d8e10e$029e238b$8d524a89$@autozone.com.sa>
Content-Type: multipart/report; report-type=delivery-status; boundary=1665858429-eximdsn-1722709791
MIME-Version: 1.0
Subject: Mail delivery failed: returning message to sender
Message-Id: <E1ojlsL-004JFc-SA@depro4.fcomet.com>
Date: Sat, 15 Oct 2022 20:27:09 +0200

--1665858429-eximdsn-1722709791
Content-type: text/plain; charset=us-ascii

This message was created automatically by mail delivery software.

A message that you sent could not be delivered to one or more of its
recipients. This is a permanent error. The following address(es) failed:

  khurram.dhedhi@balubaid.com.sa
    (ultimately generated from info@autozone.com.sa)
    host smtp.antispamcloud.com [130.117.53.189]
    SMTP error from remote mail server after end of data:
    550 This message has been reported as spam by other users.

--1665858429-eximdsn-1722709791
Content-type: message/delivery-status

Reporting-MTA: dns; depro4.fcomet.com

Action: failed
Final-Recipient: rfc822;info@autozone.com.sa
Status: 5.0.0
Remote-MTA: dns; smtp.antispamcloud.com
Diagnostic-Code: smtp; 550 This message has been reported as spam by other users.

--1665858429-eximdsn-1722709791
Content-type: message/rfc822

Return-path: <info@autozone.com.sa>
Received: from [58.236.213.151] (port=25808)
	by depro4.fcomet.com with esmtp (Exim 4.95)
	(envelope-from <info@autozone.com.sa>)
	id 1ojlrh-004Itj-07
	for info@autozone.com.sa;
	Sat, 15 Oct 2022 20:26:26 +0200
From: <info@autozone.com.sa>
To: <info@autozone.com.sa>
Date: 16 Oct 2022 10:58:41 +0800
Message-ID: <004b01d8e10e$029e238b$8d524a89$@autozone.com.sa>
MIME-Version: 1.0
Content-Type: text/plain;
	charset="windows-1250"
Content-Transfer-Encoding: 8bit
X-Mailer: Microsoft Office Outlook 12.0
Thread-Index: Ac50w44ewh7umty950w44ewh7umty9==
Content-Language: en
x-cr-hashedpuzzle: 2D4= u92h rhl6 k3b0 pgu9 2hrh l6k3 b0pg u92h rhl6 k3b0 pgu9 2hrh l6k3 b0pg u92h;1;rhl6k3b0pgu92hrhl6k3b0pgu92hrhl6k3b0pgu92hrhl6k3;Sosha1_v1;7;\{61DADAAA-2261-AA52-1690-667734E08125\};ZQB3AGUAZgu92hrhl6k3b0pgu92hrhl6k3b0pgu92hrhl6k3;16 Oct 2022 10:58:41 +0800;y12vfprojt06oiy1
x-cr-puzzleid: \{61DADAAA-2261-AA52-1690-667734E08125\}
X-Spam-Status: Yes, score=33.5
X-Spam-Score: 335
X-Spam-Bar: +++++++++++++++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "depro4.fcomet.com",
 has identified this incoming email as possible spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  Hi there! Have you seen lately that an email sent by me to
    you from your own account? Yeah, that merely concludes that I have gained
    a complete access to a device of yours. For the past several months, you
   were under my close observation. Still surprised how could that happen? The
    thing is, your device was infected by a malware from one of adult websites
    that you lately [...] 
 Content analysis details:   (33.5 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in
                             bl.spamcop.net
              [Blocked - see <https://www.spamcop.net/bl.shtml?58.236.213.151>]
  4.7 RCVD_IN_XBL            RBL: Received via a relay in Spamhaus XBL
                             [58.236.213.151 listed in zen.spamhaus.org]
  3.6 RCVD_IN_PBL            RBL: Received via a relay in Spamhaus PBL
  0.0 DATE_IN_FUTURE_06_12   Date: is 6 to 12 hours after Received: date
  2.7 RCVD_IN_PSBL           RBL: Received via a relay in PSBL
                             [58.236.213.151 listed in psbl.surriel.com]
  1.3 RCVD_IN_VALIDITY_RPBL  RBL: Relay in Validity RPBL,
                             https://senderscore.org/blocklistlookup/
                            [58.236.213.151 listed in bl.score.senderscore.com]
  2.0 PYZOR_CHECK            Listed in Pyzor
                             (https://pyzor.readthedocs.io/en/latest/)
  1.5 KAM_DMARC_QUARANTINE   DKIM has Failed or SPF has failed on the
                             message and the domain has a DMARC
                             quarantine policy
  1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any
                             anti-forgery methods
  2.0 RDNS_NONE              Delivered to internal network by a host with no rDNS
  8.5 KAM_CRIM               Extortion Email
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
  0.5 PDS_BTC_ID             FP reduced Bitcoin ID
  0.0 FSL_BULK_SIG           Bulk signature with no Unsubscribe
  1.0 TO_EQ_FM_DIRECT_MX     To == From and direct-to-MX
  1.0 BITCOIN_SPAM_07        BitCoin spam pattern 07
  1.4 DOS_OUTLOOK_TO_MX      Delivered direct to MX with Outlook headers
  1.0 BITCOIN_ONAN           BitCoin + [censored]
X-Spam-Flag: YES
Subject:  ***SPAM***  Settle your debt in order to avoid additional fees.

Hi there!
Have you seen lately that an email sent by me to you from your own account?
Yeah, that merely concludes that I have gained a complete access to a device of yours.

For the past several months, you were under my close observation.
Still surprised how could that happen? The thing is, your device was infected by a malware from one of adult websites that you lately accessed.
It may seem complicated to you, nevertheless let me try to clear it out to you.

With aid of Trojan Virus, I gained full access to your PC as well as any other device in your possession.
That merely denotes that I am able to see you whenever I like just by turning on the camera and microphone in your PC, while you don't even know about that.
Moreover, I have also obtained your entire contacts list, including your entire correspondence.

Indeed, you wonder, "But my PC is equipped with a valid antivirus, so how could that be possible? 
Why haven't I seen any warning?" To be frank, the reply is very straightforward: malware of mine is based on drivers, 
whose signatures get updated on 4-hourly basis, causing it to become simply untraceable, and as result leaving your antivirus idle.

I got a video showing the way you are jerking off on my left screen, while on the right screen there is a video that you watched during your masturbation session.
Still unclear how bad that could become? One mouse click is enough to send that video to your entire list of social network, as well as e-mail contacts.
In addition, I can as well provide access to your entire e-mail correspondence as well as messengers that are currently in your use.

All you need to do to in order to avoid that from occurring - transfer $1450 (USD) in Bitcoin equivalent to my Bitcoin address 
(if you still don't know how that could be done, just use your browser and key-in: "Buy Bitcoin").

Below is bitcoin address (BTC Wallet) of mine: 19hk5wJPDCSV6KexJPbgz28TdECKLnXgFt

Upon getting evidence of payment from your side, I will instantly proceed with removing those videos, and that is all, you won't ever hear about me anymore.
You are left with 2 days (or 48 hours) to perform that transaction.
After opening this e-mail, I will get a notice, which will automatically start my timer countdown.

Any attempts to complain to authorities won't be of any use to you, because this e-mail is simply untraceable, just like Bitcoin ID of mine.
I was working on this for quite an extended period of time; so do not even think that I can make a mistake. 

In event that, I occasionally discover that you shared this message with anyone else, 
I will straight away proceed with making your video public as stated earlier. 

Good luck.


--1665858429-eximdsn-1722709791--
