
­­­­­­­­­­­­­­­­­­
<!DOCTYPE html>
<html>
Return-Path: <>
Delivered-To: info@autozone.com.sa
Received: from depro4.fcomet.com
	by depro4.fcomet.com with LMTP
	id 0KuvAX+6TGPMGTQAfHesKA
	(envelope-from <>)
	for <info@autozone.com.sa>; Mon, 17 Oct 2022 04:14:23 +0200
Return-path: <>
Envelope-to: info@autozone.com.sa
Delivery-date: Mon, 17 Oct 2022 04:14:23 +0200
Received: from mailnull by depro4.fcomet.com with local (Exim 4.95)
	id 1okFe2-00EKU5-9v
	for info@autozone.com.sa;
	Mon, 17 Oct 2022 04:14:22 +0200
X-Failed-Recipients: khurram.dhedhi@balubaid.com.sa
Auto-Submitted: auto-replied
From: Mail Delivery System <Mailer-Daemon@depro4.fcomet.com>
To: info@autozone.com.sa
References: <004901d8e1a4$0581849a$e95f3cb1@yocysw>
Content-Type: multipart/report; report-type=delivery-status; boundary=1665972862-eximdsn-1936824158
MIME-Version: 1.0
Subject: Mail delivery failed: returning message to sender
Message-Id: <E1okFe2-00EKU5-9v@depro4.fcomet.com>
Date: Mon, 17 Oct 2022 04:14:22 +0200

--1665972862-eximdsn-1936824158
Content-type: text/plain; charset=us-ascii

This message was created automatically by mail delivery software.

A message that you sent could not be delivered to one or more of its
recipients. This is a permanent error. The following address(es) failed:

  khurram.dhedhi@balubaid.com.sa
    (ultimately generated from info@autozone.com.sa)
    host smtp.antispamcloud.com [149.13.75.71]
    SMTP error from remote mail server after end of data:
    550 High probability of spam

--1665972862-eximdsn-1936824158
Content-type: message/delivery-status

Reporting-MTA: dns; depro4.fcomet.com

Action: failed
Final-Recipient: rfc822;info@autozone.com.sa
Status: 5.0.0
Remote-MTA: dns; smtp.antispamcloud.com
Diagnostic-Code: smtp; 550 High probability of spam

--1665972862-eximdsn-1936824158
Content-type: message/rfc822

Return-path: <info@autozone.com.sa>
Received: from [186.72.4.83] (port=33397)
	by depro4.fcomet.com with esmtp (Exim 4.95)
	(envelope-from <info@autozone.com.sa>)
	id 1okFdL-00EK7z-VO
	for info@autozone.com.sa;
	Mon, 17 Oct 2022 04:13:40 +0200
Message-ID: <004901d8e1a4$0581849a$e95f3cb1@yocysw>
From: <info@autozone.com.sa>
To: <info@autozone.com.sa>
Date: 16 Oct 2022 14:57:57 -0600
MIME-Version: 1.0
Content-Type: text/plain;
	charset="windows-1250"
Content-Transfer-Encoding: 8bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2800.1106
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1106
X-Spam-Status: Yes, score=36.2
X-Spam-Score: 362
X-Spam-Bar: ++++++++++++++++++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "depro4.fcomet.com",
 has identified this incoming email as possible spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  Hi there! Have you seen lately that an email sent by me to
    you from your own account? Yeah, that merely concludes that I have gained
    a complete access to a device of yours. For the past several months, you
   were under my close observation. Still surprised how could that happen? The
    thing is, your device was infected by a malware from one of adult websites
    that you lately [...] 
 Content analysis details:   (36.2 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in
                             bl.spamcop.net
                 [Blocked - see <https://www.spamcop.net/bl.shtml?186.72.4.83>]
  4.7 RCVD_IN_XBL            RBL: Received via a relay in Spamhaus XBL
                             [186.72.4.83 listed in zen.spamhaus.org]
  3.6 RCVD_IN_PBL            RBL: Received via a relay in Spamhaus PBL
  1.1 DATE_IN_PAST_03_06     Date: is 3 to 6 hours before Received: date
  2.7 RCVD_IN_PSBL           RBL: Received via a relay in PSBL
                             [186.72.4.83 listed in psbl.surriel.com]
  1.3 RCVD_IN_VALIDITY_RPBL  RBL: Relay in Validity RPBL,
                             https://senderscore.org/blocklistlookup/
                             [186.72.4.83 listed in bl.score.senderscore.com]
  2.0 PYZOR_CHECK            Listed in Pyzor
                             (https://pyzor.readthedocs.io/en/latest/)
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
  1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any
                             anti-forgery methods
  8.5 KAM_CRIM               Extortion Email
  1.5 KAM_DMARC_QUARANTINE   DKIM has Failed or SPF has failed on the
                             message and the domain has a DMARC
                             quarantine policy
  0.0 HDR_ORDER_FTSDMCXX_NORDNS Header order similar to spam
                             (FTSDMCXX/boundary variant) + no rDNS
  2.0 RDNS_NONE              Delivered to internal network by a host with no rDNS
  0.5 PDS_BTC_ID             FP reduced Bitcoin ID
  0.0 BITCOIN_XPRIO          Bitcoin + priority
  0.0 FSL_BULK_SIG           Bulk signature with no Unsubscribe
  0.0 PDS_BTC_MSGID          Bitcoin ID with T_MSGID_NOFQDN2
  1.0 BITCOIN_SPAM_07        BitCoin spam pattern 07
  1.0 TO_EQ_FM_DIRECT_MX     To == From and direct-to-MX
  0.0 HDR_ORDER_FTSDMCXX_DIRECT Header order similar to spam
                             (FTSDMCXX/boundary variant) + direct-to-MX
  0.0 MIMEOLE_DIRECT_TO_MX   MIMEOLE + direct-to-MX
  3.1 DOS_OE_TO_MX           Delivered direct to MX with OE headers
  1.0 BITCOIN_ONAN           BitCoin + [censored]
X-Spam-Flag: YES
Subject:  ***SPAM***  Settle your debt in order to avoid additional fees.

Hi there!
Have you seen lately that an email sent by me to you from your own account?
Yeah, that merely concludes that I have gained a complete access to a device of yours.

For the past several months, you were under my close observation.
Still surprised how could that happen? The thing is, your device was infected by a malware from one of adult websites that you lately accessed.
It may seem complicated to you, nevertheless let me try to clear it out to you.

With aid of Trojan Virus, I gained full access to your PC as well as any other device in your possession.
That merely denotes that I am able to see you whenever I like just by turning on the camera and microphone in your PC, while you don't even know about that.
Moreover, I have also obtained your entire contacts list, including your entire correspondence.

Indeed, you wonder, "But my PC is equipped with a valid antivirus, so how could that be possible? 
Why haven't I seen any warning?" To be frank, the reply is very straightforward: malware of mine is based on drivers, 
whose signatures get updated on 4-hourly basis, causing it to become simply untraceable, and as result leaving your antivirus idle.

I got a video showing the way you are jerking off on my left screen, while on the right screen there is a video that you watched during your masturbation session.
Still unclear how bad that could become? One mouse click is enough to send that video to your entire list of social network, as well as e-mail contacts.
In addition, I can as well provide access to your entire e-mail correspondence as well as messengers that are currently in your use.

All you need to do to in order to avoid that from occurring - transfer $1450 (USD) in Bitcoin equivalent to my Bitcoin address 
(if you still don't know how that could be done, just use your browser and key-in: "Buy Bitcoin").

Below is bitcoin address (BTC Wallet) of mine: 19hk5wJPDCSV6KexJPbgz28TdECKLnXgFt

Upon getting evidence of payment from your side, I will instantly proceed with removing those videos, and that is all, you won't ever hear about me anymore.
You are left with 2 days (or 48 hours) to perform that transaction.
After opening this e-mail, I will get a notice, which will automatically start my timer countdown.

Any attempts to complain to authorities won't be of any use to you, because this e-mail is simply untraceable, just like Bitcoin ID of mine.
I was working on this for quite an extended period of time; so do not even think that I can make a mistake. 

In event that, I occasionally discover that you shared this message with anyone else, 
I will straight away proceed with making your video public as stated earlier. 

Good luck.


--1665972862-eximdsn-1936824158--
