
­­­­­­­­­­­­­­­­­­
<!DOCTYPE html>
<html>
Return-Path: <>
Delivered-To: info@autozone.com.sa
Received: from depro4.fcomet.com
	by depro4.fcomet.com with LMTP
	id oBMcF4a1hGQJzzsAfHesKA
	(envelope-from <>)
	for <info@autozone.com.sa>; Sat, 10 Jun 2023 19:40:22 +0200
Return-path: <>
Envelope-to: info@autozone.com.sa
Delivery-date: Sat, 10 Jun 2023 19:40:22 +0200
Received: from mailnull by depro4.fcomet.com with local (Exim 4.96)
	id 1q82ZZ-00Gvgt-2U
	for info@autozone.com.sa;
	Sat, 10 Jun 2023 19:40:21 +0200
X-Failed-Recipients: khurram.dhedhi@balubaid.com.sa
Auto-Submitted: auto-replied
From: Mail Delivery System <Mailer-Daemon@depro4.fcomet.com>
To: info@autozone.com.sa
References: <E80048B9E6A0F117FFB746195F0EE800@T2V93PYMPFL>
Content-Type: multipart/report; report-type=delivery-status; boundary=1686418821-eximdsn-1694806692
MIME-Version: 1.0
Subject: Mail delivery failed: returning message to sender
Message-Id: <E1q82ZZ-00Gvgt-2U@depro4.fcomet.com>
Date: Sat, 10 Jun 2023 19:40:21 +0200

--1686418821-eximdsn-1694806692
Content-type: text/plain; charset=us-ascii

This message was created automatically by mail delivery software.

A message that you sent could not be delivered to one or more of its
recipients. This is a permanent error. The following address(es) failed:

  khurram.dhedhi@balubaid.com.sa
    (ultimately generated from info@autozone.com.sa)
    host smtp.antispamcloud.com [149.13.75.71]
    SMTP error from remote mail server after end of data:
    550 Message rejected due to user rules.

--1686418821-eximdsn-1694806692
Content-type: message/delivery-status

Reporting-MTA: dns; depro4.fcomet.com

Action: failed
Final-Recipient: rfc822;info@autozone.com.sa
Status: 5.0.0
Remote-MTA: dns; smtp.antispamcloud.com
Diagnostic-Code: smtp; 550 Message rejected due to user rules.

--1686418821-eximdsn-1694806692
Content-type: message/rfc822

Return-path: <info@autozone.com.sa>
Received: from [119.155.249.234] (port=44772)
	by depro4.fcomet.com with esmtp (Exim 4.96)
	(envelope-from <info@autozone.com.sa>)
	id 1q82Yu-00Gnpq-1n
	for info@autozone.com.sa;
	Sat, 10 Jun 2023 19:39:38 +0200
Message-ID: <E80048B9E6A0F117FFB746195F0EE800@T2V93PYMPFL>
From: <info@autozone.com.sa>
To: <info@autozone.com.sa>
Date: 11 Jun 2023 02:31:58 +0400
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-14"
Content-Transfer-Encoding: 8bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2900.5931
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2900.5931
X-Spam-Status: Yes, score=34.7
X-Spam-Score: 347
X-Spam-Bar: ++++++++++++++++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "depro4.fcomet.com",
 has identified this incoming email as possible spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  Hi there! I regret to inform you about some sad news for you.
    Approximately a month or two ago I have succeeded to gain a total access
   to all your devices utilized for browsing internet. Moving forward, I have
    [...] 
 Content analysis details:   (34.7 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in
                             bl.spamcop.net
             [Blocked - see <https://www.spamcop.net/bl.shtml?119.155.249.234>]
  4.7 RCVD_IN_XBL            RBL: Received via a relay in Spamhaus XBL
                             [119.155.249.234 listed in zen.spamhaus.org]
  3.6 RCVD_IN_PBL            RBL: Received via a relay in Spamhaus PBL
  2.4 DATE_IN_FUTURE_03_06   Date: is 3 to 6 hours after Received: date
  2.0 PYZOR_CHECK            Listed in Pyzor
                             (https://pyzor.readthedocs.io/en/latest/)
  1.5 KAM_DMARC_QUARANTINE   DKIM has Failed or SPF has failed on the
                             message and the domain has a DMARC
                             quarantine policy
  8.5 KAM_CRIM               Extortion Email
 -0.0 T_SCC_BODY_TEXT_LINE   No description available.
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
  2.0 RDNS_NONE              Delivered to internal network by a host with no rDNS
  1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any
                             anti-forgery methods
  0.0 HDR_ORDER_FTSDMCXX_NORDNS Header order similar to spam
                             (FTSDMCXX/boundary variant) + no rDNS
  0.0 PDS_BTC_MSGID          Bitcoin ID with T_MSGID_NOFQDN2
  0.0 BITCOIN_XPRIO          Bitcoin + priority
  0.0 FSL_BULK_SIG           Bulk signature with no Unsubscribe
  0.0 PDS_BTC_ID             FP reduced Bitcoin ID
  0.2 TO_EQ_FM_DIRECT_MX     To == From and direct-to-MX
  3.5 BITCOIN_SPAM_07        BitCoin spam pattern 07
  0.0 HDR_ORDER_FTSDMCXX_DIRECT Header order similar to spam
                             (FTSDMCXX/boundary variant) + direct-to-MX
  0.0 MIMEOLE_DIRECT_TO_MX   MIMEOLE + direct-to-MX
  3.1 DOS_OE_TO_MX           Delivered direct to MX with OE headers
  1.0 BITCOIN_ONAN           BitCoin + [censored]
X-Spam-Flag: YES
Subject:  ***SPAM***  Don't miss your unsettled payment. Complete your debt payment now.

Hi there!

I regret to inform you about some sad news for you.
Approximately a month or two ago I have succeeded to gain a total access to all your devices utilized for browsing internet.
Moving forward, I have started observing your internet activities on continuous basis.

Go ahead and take a look at the sequence of events provided below for your reference: 
Initially I bought an exclusive access from hackers to a long list of email accounts (in today's world, that is really a common thing, which can arranged via internet).
Evidently, it wasn't hard for me to proceed with logging in your email account (info@autozone.com.sa).

Within the same week, I moved on with installing a Trojan virus in Operating Systems for all devices that you use to login to email.
Frankly speaking, it wasn't a challenging task for me at all (since you were kind enough to click some of the links in your inbox emails before).
Yeah, geniuses are among us.

Because of this Trojan I am able to gain access to entire set of controllers in devices (e.g., your video camera, keyboard, microphone and others).
As result, I effortlessly downloaded all data, as well as photos, web browsing history and other types of data to my servers.
Moreover, I have access to all social networks accounts that you regularly use, including emails, including chat history, messengers, contacts list etc.
My unique virus is incessantly refreshing its signatures (due to control by a driver), and hence remains undetected by any type of antiviruses.

Hence, I guess by now you can already see the reason why I always remained undetected until this very letter...

During the process of compilation of all the materials associated with you,
I also noticed that you are a huge supporter and regular user of websites hosting nasty adult content.
Turns out to be, you really love visiting porn websites, as well as watching exciting videos and enduring unforgettable pleasures.
As a matter of fact, I was not able to withstand the temptation, but to record certain nasty solo action with you in main role,
and later produced a few videos exposing your masturbation and cumming scenes.

If until now you don't believe me, all I need is one-two mouse clicks to make all those videos with everyone you know,
including your friends, colleagues, relatives and others.
Moreover, I am able to upload all that video content online for everyone to see.
I sincerely think, you certainly would not wish such incidents to take place, in view of the lustful things demonstrated in your commonly watched videos,
(you absolutely know what I mean by that) it will cause a huge adversity for you.

There is still a solution to this matter, and here is what you need to do:
You make a transaction of $1490 USD to my account (an equivalent in bitcoins, which recorded depending on the exchange rate at the date of funds transfer),
hence upon receiving the transfer, I will immediately get rid of all those lustful videos without delay.
After that we can make it look like there was nothing happening beforehand.
Additionally, I can confirm that all the Trojan software is going to be disabled and erased from all devices that you use. You have nothing to worry about,
because I keep my word at all times.

That is indeed a beneficial bargain that comes with a relatively reduced price,
taking into consideration that your profile and traffic were under close monitoring during a long time frame.
If you are still unclear regarding how to buy and perform transactions with bitcoins - everything is available online.

Below is my bitcoin wallet for your further reference: 1GS1SRz3QBC1NUeuhu8EWkx37qQXanUxGG

All you have is 48 hours and the countdown begins once this email is opened (in other words 2 days).

The following list includes things you should remember and avoid doing:
> There's no point to try replying my email (since this email and return address were created inside your inbox).
> There's no point in calling police or any other types of security services either. Furthermore, don't you dare sharing this info with any of your friends.
 If I discover that (taking into consideration my skills, it will be really simple, because I control all your systems and continuously monitor them) - 
 your nasty clip will be shared with public straight away. 
> There's no point in looking for me too - it won't result in any success. Transactions with cryptocurrency are completely anonymous and untraceable.
> There's no point in reinstalling your OS on devices or trying to throw them away. That won't solve the issue, 
 since all clips with you as main character are already uploaded on remote servers.

Things that may be concerning you:
> That funds transfer won't be delivered to me.
 Breathe out, I can track down everything right away, so once funds transfer is finished,
 I will know for sure, since I interminably track down all activities done by you (my Trojan virus controls all processes remotely, just as TeamViewer).
> That your videos will be distributed, even though you have completed money transfer to my wallet. 
Trust me, it is worthless for me to still bother you after money transfer is successful. Moreover, if that was ever part of my plan, I would do make it happen way earlier! 

We are going to approach and deal with it in a clear manner!

In conclusion, I'd like to recommend one more thing... after this you need to make certain you don't get involved in similar kind of unpleasant events anymore!
My recommendation - ensure all your passwords are replaced with new ones on a regular basis.


--1686418821-eximdsn-1694806692--
