MOON
Server: Apache/2.2.34 (Unix) mod_ssl/2.2.34 OpenSSL/0.9.8e-fips-rhel5 mod_bwlimited/1.4 FrontPage/5.0.2.2635
System: Linux server.asjudinet.com 2.6.32-042stab141.3 #1 SMP Fri Nov 15 22:45:34 MSK 2019 i686
User: asjudine (504)
PHP: 5.2.17
Disabled: NONE
Upload Files
File: /home/asjudine/mail/asjudinet.com/servi/new/1710949114.H472461P7168.server.asjudinet.com,S=9231
Return-path: <>
Envelope-to: servi@asjudinet.com
Delivery-date: Wed, 20 Mar 2024 10:38:34 -0500
Received: from smtp2.ammonet.com ([3.124.21.251]:54554)
	by server.asjudinet.com with esmtps (TLSv1:DHE-RSA-AES256-SHA:256)
	(Exim 4.87)
	id 1rmy19-0001pQ-Iy
	for servi@asjudinet.com; Wed, 20 Mar 2024 10:38:34 -0500
Received: from cp2.ammonet.com (cp2.ammonet.com [5.133.11.229])
	by smtp2.ammonet.com (Postfix) with ESMTPS id E93B33F3A2
	for <servi@asjudinet.com>; Wed, 20 Mar 2024 15:37:32 +0000 (UTC)
Received: from mailnull by cp2.ammonet.com with local (Exim 4.96.2)
	id 1rmy0S-0003PF-0c
	for servi@asjudinet.com;
	Wed, 20 Mar 2024 16:37:32 +0100
X-Failed-Recipients: ristorante+spam@villabordoni.com
Auto-Submitted: auto-replied
From: Mail Delivery System <Mailer-Daemon@cp2.ammonet.com>
To: servi@asjudinet.com
References: <001901da7b17$03535a66$becd8aa1$@asjudinet.com>
Content-Type: multipart/report; report-type=delivery-status; boundary=1710949052-eximdsn-1551803018
MIME-Version: 1.0
Subject: Mail delivery failed: returning message to sender
Message-Id: <E1rmy0S-0003PF-0c@cp2.ammonet.com>
Date: Wed, 20 Mar 2024 16:37:32 +0100
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - cp2.ammonet.com
X-AntiAbuse: Original Domain - asjudinet.com
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - 
X-Get-Message-Sender-Via: cp2.ammonet.com: sender_ident via received_protocol == local: mailnull/primary_hostname/system user
X-Authenticated-Sender: cp2.ammonet.com: mailnull
X-Source: 
X-Source-Args: 
X-Source-Dir: 
X-Spam-Status: No, score=0.1
X-Spam-Score: 1
X-Spam-Bar: /
X-Ham-Report: Spam detection software, running on the system "server.asjudinet.com",
 has NOT identified this incoming email as spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 
 Content preview:  This message was created automatically by mail delivery software.
    A message that you sent could not be delivered to one or more of its recipients.
    This is a permanent error. The following address(es) failed: [...] 
 
 Content analysis details:   (0.1 points, 5.0 required)
 
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
 -1.9 BAYES_00               BODY: Bayes spam probability is 0 to 1%
                             [score: 0.0000]
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was blocked.
                             See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: villabordoni.com]
  0.0 RCVD_IN_DNSWL_BLOCKED  RBL: ADMINISTRATOR NOTICE: The query to DNSWL
                             was blocked.  See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [3.124.21.251 listed in list.dnswl.org]
 -0.0 T_SCC_BODY_TEXT_LINE   No description available.
  1.5 BITCOIN_SPAM_09        BitCoin spam pattern 09
  0.5 PDS_BTC_ID             FP reduced Bitcoin ID
X-Spam-Flag: NO

--1710949052-eximdsn-1551803018
Content-type: text/plain; charset=us-ascii

This message was created automatically by mail delivery software.

A message that you sent could not be delivered to one or more of its
recipients. This is a permanent error. The following address(es) failed:

  ristorante+spam@villabordoni.com
    (generated from ristorante@villabordoni.com)
    LMTP error after RCPT TO:<ristorante+spam@villabordoni.com>:
    550 5.1.1 <ristorante+spam@villabordoni.com> User doesn't exist:
    ristorante@villabordoni.com

--1710949052-eximdsn-1551803018
Content-type: message/delivery-status

Reporting-MTA: dns; cp2.ammonet.com

Action: failed
Final-Recipient: rfc822;ristorante@villabordoni.com
Status: 5.0.0

--1710949052-eximdsn-1551803018
Content-type: message/rfc822

Return-path: <servi@asjudinet.com>
Received: from [171.247.26.188] (port=17827)
	by cp2.ammonet.com with esmtp (Exim 4.96.2)
	(envelope-from <servi@asjudinet.com>)
	id 1rmy0T-0003MG-1x
	for ristorante@villabordoni.com;
	Wed, 20 Mar 2024 16:37:32 +0100
From: "yuma yezi" <servi@asjudinet.com>
To: <ristorante@villabordoni.com>
Date: 21 Mar 2024 04:26:49 +0600
Message-ID: <001901da7b17$03535a66$becd8aa1$@asjudinet.com>
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 16.0
Thread-Index: Acy8tegkby8tegkby8tegkby8tegkb==
Content-Language: en-us
X-Spam-Status: Yes, score=37.6
X-Spam-Score: 376
X-Spam-Bar: +++++++++++++++++++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "cp2.ammonet.com",
 has identified this incoming email as possible spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  Good day. Your system has been hacked with a Trojan virus.
    It has penetrated your device through adult portals which you sometimes visit.
    Some spicy videos contain malicious code that activates after [...] 
 Content analysis details:   (37.6 points, 8.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  4.4 RCVD_IN_XBL            RBL: Received via a relay in Spamhaus XBL
                             [171.247.26.188 listed in zen.spamhaus.org]
  3.3 RCVD_IN_PBL            RBL: Received via a relay in Spamhaus PBL
  1.0 BAYES_999              BODY: Bayes spam probability is 99.9 to 100%
                             [score: 1.0000]
  5.0 BAYES_99               BODY: Bayes spam probability is 99 to 100%
                             [score: 1.0000]
  1.3 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in
                             bl.spamcop.net
              [Blocked - see <https://www.spamcop.net/bl.shtml?171.247.26.188>]
  1.9 DATE_IN_FUTURE_06_12   Date: is 6 to 12 hours after Received: date
  1.8 PYZOR_CHECK            Listed in Pyzor
                             (https://pyzor.readthedocs.io/en/latest/)
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
  2.5 BITCOIN_SPAM_03        BitCoin spam pattern 03
  1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any
                             anti-forgery methods
 -0.0 T_SCC_BODY_TEXT_LINE   No description available.
  2.0 RDNS_NONE              Delivered to internal network by a host with no rDNS
  8.5 KAM_CRIM               Extortion Email
  1.5 BITCOIN_SPAM_09        BitCoin spam pattern 09
  0.5 PDS_BTC_ID             FP reduced Bitcoin ID
  0.0 FSL_BULK_SIG           Bulk signature with no Unsubscribe
  2.8 DOS_OUTLOOK_TO_MX      Delivered direct to MX with Outlook headers
X-Spam-Flag: YES
X-Loop-SystemFilter: ok
Subject:  ***SPAM***  Re:

Good day.
Your system has been hacked with a Trojan virus.
It has penetrated your device through adult portals which you sometimes visit.
Some spicy videos contain malicious code that activates after being turned on. Your entire information has already been copied to my servers.

I possess complete control over your device which you use to access the Internet.
I can see your screen, I can use a microphone and a camera in a way that you never notice anything. 

I've already made a screen recording.
A video was edited with a pornographic movie that you were watching at that time and masturbating. 
Your face is perfectly visible and I don&#8217;t think that this kind of content will have a positive impact on your reputation. 

I have an overall access to your list of contacts and the social media profiles. I can send this video from your E-mail or the messengers.

If you don't want to let this happen, then you only need to take one simple step.
Just transfer 1400 USD (US dollars) to Bitcoin wallet: 113adQBZ6eHtUvBTaT8FDVN9prhk7zsG4B

(In a Bitcoin equivalent at the exchange rate for the time of transfer)
You can find the detailed instructions in Google. 

After the payment I will remove the video and the virus from your device and no one will bother you anymore.
If I won&#8217;t receive the payment in due time, all of your data and the videos will become publicly available.

I give you 2 business days.

I shall receive a notification that you have read the letter.
The timer starts immediately.
Any complain somewhere, including the police, is useless. My wallet and an E-mail cannot be tracked.

If I find out that you have shared this message with someone else, the video will become publicly available at once. 
I will destroy your reputation forever and all your data will go public.

Everyone will learn about your passion for the porn sites and more. Changing the passwords will be useless either as all the data is already on my servers.

Don't forget that reputation is very important and be prudent!


--1710949052-eximdsn-1551803018--