
­­­­­­­­­­­­­­­­­­
<!DOCTYPE html>
<html>
Return-Path: <>
Delivered-To: info@autozone.com.sa
Received: from depro4.fcomet.com
	by depro4.fcomet.com with LMTP
	id 4M11MU0W1WO+3hwAfHesKA
	(envelope-from <>)
	for <info@autozone.com.sa>; Sat, 28 Jan 2023 13:34:21 +0100
Return-path: <>
Envelope-to: info@autozone.com.sa
Delivery-date: Sat, 28 Jan 2023 13:34:21 +0100
Received: from mailnull by depro4.fcomet.com with local (Exim 4.95)
	id 1pLkPU-007wP6-TU
	for info@autozone.com.sa;
	Sat, 28 Jan 2023 13:34:20 +0100
X-Failed-Recipients: khurram.dhedhi@balubaid.com.sa
Auto-Submitted: auto-replied
From: Mail Delivery System <Mailer-Daemon@depro4.fcomet.com>
To: info@autozone.com.sa
References: <63D58670.1000707@autozone.com.sa>
Content-Type: multipart/report; report-type=delivery-status; boundary=1674909260-eximdsn-2147397315
MIME-Version: 1.0
Subject: Mail delivery failed: returning message to sender
Message-Id: <E1pLkPU-007wP6-TU@depro4.fcomet.com>
Date: Sat, 28 Jan 2023 13:34:20 +0100

--1674909260-eximdsn-2147397315
Content-type: text/plain; charset=us-ascii

This message was created automatically by mail delivery software.

A message that you sent could not be delivered to one or more of its
recipients. This is a permanent error. The following address(es) failed:

  khurram.dhedhi@balubaid.com.sa
    (ultimately generated from info@autozone.com.sa)
    host smtp.antispamcloud.com [130.117.54.107]
    SMTP error from remote mail server after end of data:
    550 Message contained spam content (antispamcloud.spam.genbtc17)

--1674909260-eximdsn-2147397315
Content-type: message/delivery-status

Reporting-MTA: dns; depro4.fcomet.com

Action: failed
Final-Recipient: rfc822;info@autozone.com.sa
Status: 5.0.0
Remote-MTA: dns; smtp.antispamcloud.com
Diagnostic-Code: smtp; 550 Message contained spam content (antispamcloud.spam.genbtc17)

--1674909260-eximdsn-2147397315
Content-type: message/rfc822

Return-path: <info@autozone.com.sa>
Received: from [103.62.155.53] (port=30413 helo=[103.62.155.51])
	by depro4.fcomet.com with esmtp (Exim 4.95)
	(envelope-from <info@autozone.com.sa>)
	id 1pLkOm-007w1H-GT
	for info@autozone.com.sa;
	Sat, 28 Jan 2023 13:33:34 +0100
Message-ID: <63D58670.1000707@autozone.com.sa>
Date: Sat, 28 Jan 2023 27:32:48 +0700
From: <info@autozone.com.sa>
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.0; en-US; rv:1.9.2.15) Gecko/20110303 Thunderbird/3.1.9
MIME-Version: 1.0
To: <info@autozone.com.sa>
Content-Type: text/plain; charset=WINDOWS-1250; format=flowed
Content-Transfer-Encoding: 8bit
X-Spam-Status: Yes, score=31.7
X-Spam-Score: 317
X-Spam-Bar: +++++++++++++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "depro4.fcomet.com",
 has identified this incoming email as possible spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  Hello! Have you recently noticed that I have e-mailed you
   from your account? Yes, this simply means that I have total access to your
    device. For the last couple of months, I have been watching you. Still wondering
    how is that possible? Well, you have been infected with malware originating
    from an adult website that you visited. You may not [...] 
 Content analysis details:   (31.7 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.4 INVALID_DATE           Invalid Date: header (not RFC 2822)
  4.7 RCVD_IN_XBL            RBL: Received via a relay in Spamhaus XBL
                             [103.62.155.53 listed in zen.spamhaus.org]
  3.6 RCVD_IN_PBL            RBL: Received via a relay in Spamhaus PBL
  2.4 DATE_IN_FUTURE_03_06   Date: is 3 to 6 hours after Received: date
  1.3 RCVD_IN_VALIDITY_RPBL  RBL: Relay in Validity RPBL,
                             https://senderscore.org/blocklistlookup/
                             [103.62.155.53 listed in bl.score.senderscore.com]
  2.0 PYZOR_CHECK            Listed in Pyzor
                             (https://pyzor.readthedocs.io/en/latest/)
  8.5 KAM_CRIM               Extortion Email
  2.0 RDNS_NONE              Delivered to internal network by a host with no rDNS
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
  1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any
                             anti-forgery methods
  1.5 KAM_DMARC_QUARANTINE   DKIM has Failed or SPF has failed on the
                             message and the domain has a DMARC
                             quarantine policy
  0.0 FSL_BULK_SIG           Bulk signature with no Unsubscribe
  0.0 PDS_BTC_ID             FP reduced Bitcoin ID
  1.9 BITCOIN_EXTORT_01      Extortion spam, pay via BitCoin
  2.4 BITCOIN_SPAM_02        BitCoin spam pattern 02
X-Spam-Flag: YES
Subject:  ***SPAM***  Don't forget to pay the tax within 2 days!

Hello!
Have you recently noticed that I have e-mailed you from your account?
Yes, this simply means that I have total access to your device.

For the last couple of months, I have been watching you.
Still wondering how is that possible? Well, you have been infected with malware originating from an adult website that you visited. You may not be familiar with this, but I will try explaining it to you.

With help of the Trojan Virus, I have complete access to a PC or any other device.
This simply means I can see you at any time I wish to on your screen by simply turning on your camera and microphone, without you even noticing it. In addition, I have also got access to your contacts list and all your correspondence.

You may be asking yourself, "But my PC has an active antivirus, how is this even possible? Why didn't I receive any notification?" Well, the answer is simple: my malware uses drivers, where I update the signatures every four hours, making it undetectable, and hence keeping your antivirus silent.

I have a video of you wanking on the left screen, and on the right screen - the video you were watching while masturbating.
Wondering how bad could this get? With just a single click of my mouse, this video can be sent to all your social networks, and e-mail contacts.
I can also share access to all your e-mail correspondence and messengers that you use.

All you have to do to prevent this from happening is - transfer bitcoins worth $950 (USD) to my Bitcoin address (if you have no idea how to do this, you can open your browser and simply search: "Buy Bitcoin").

My bitcoin address (BTC Wallet) is: 15WXLWo8mH79dJiUiHJ7UMgrpXD33ky9XU

After receiving a confirmation of your payment, I will delete the video right away, and that's it, you will never hear from me again.
You have 2 days (48 hours) to complete this transaction.
Once you open this e-mail, I will receive a notification, and my timer will start ticking.

Any attempt to file a complaint will not result in anything, since this e-mail cannot be traced back, same as my bitcoin id.
I have been working on this for a very long time by now; I do not give any chance for a mistake. 

If, by any chance I find out that you have shared this message with anybody else, I will broadcast your video as mentioned above.


--1674909260-eximdsn-2147397315--
