Current File : /home/mak/mail/cur/1582730437.M94452P11001.cloud.berardocollection.com,S=11787,W=12040:2,
Return-Path: <>
Delivered-To: mak@cloud.berardocollection.com
Received: from cloud.berardocollection.com
	by cloud.berardocollection.com with LMTP
	id mILWBMWMVl75KgAAuY/3dA
	(envelope-from <>)
	for <mak@cloud.berardocollection.com>; Wed, 26 Feb 2020 15:20:37 +0000
Return-path: <>
Envelope-to: rgrs@mak.pt
Delivery-date: Wed, 26 Feb 2020 15:20:37 +0000
Received: from smtp.mei.co.jp ([133.183.100.20]:56892)
	by cloud.berardocollection.com with esmtp (Exim 4.93)
	id 1j6yU4-0003H8-Ei
	for rgrs@mak.pt; Wed, 26 Feb 2020 15:20:37 +0000
Received: from mail-gw.jp.panasonic.com ([157.8.1.157])
 by smtp.mei.co.jp (8.14.4/8.14.4/lvzy14) with ESMTP id 01QFKLX5026567
 for <rgrs@mak.pt>; Thu, 27 Feb 2020 00:20:21 +0900
Received: from epochmail.jp.panasonic.com ([157.8.1.130])
	by mail.jp.panasonic.com (8.14.7/3.7W/kc-maili03) with ESMTP id 01QFKKhT019861
	for <rgrs@mak.pt>; Thu, 27 Feb 2020 00:20:20 +0900
Received: by epochmail.jp.panasonic.com (8.12.11.20060308/3.7W/pml-send3) id 01QFKKKr014633
	for rgrs@mak.pt; Thu, 27 Feb 2020 00:20:20 +0900
Received: from pml-pf1.jp.panasonic.com
	by pml-send3.jp.panasonic.com (8.12.11.20060308/3.7W) with ESMTP id 01QFKKwD014626
	for <rgrs@mak.pt>; Thu, 27 Feb 2020 00:20:20 +0900
Received: by pml-pf1.jp.panasonic.com (Postfix)
	id B04C4C0003; Thu, 27 Feb 2020 00:20:20 +0900 (JST)
Date: Thu, 27 Feb 2020 00:20:20 +0900 (JST)
From: MAILER-DAEMON@jp.panasonic.com (Mail Delivery System)
Subject: Undelivered Mail Returned to Sender
To: rgrs@mak.pt
Auto-Submitted: auto-replied
MIME-Version: 1.0
Content-Type: multipart/report; report-type=delivery-status;
	boundary="AEFFEC0002.1582730420/pml-pf1.jp.panasonic.com"
Message-Id: <20200226152020.B04C4C0003@pml-pf1.jp.panasonic.com>
X-TM-AS-GCONF: 00
X-Spam-Status: No, score=1.7
X-Spam-Score: 17
X-Spam-Bar: +
X-Ham-Report: Spam detection software, running on the system "cloud.berardocollection.com",
 has NOT identified this incoming email as spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  This is the mail system at host pml-pf1.jp.panasonic.com.
   I'm sorry to have to inform you that your message could not be delivered to
    one or more recipients. It's attached below. For further assistance, please
    send mail to postmaster. 
 Content analysis details:   (1.7 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was
                             blocked.  See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: ted.best]
 -2.3 RCVD_IN_DNSWL_MED      RBL: Sender listed at https://www.dnswl.org/,
                             medium trust
                             [133.183.100.20 listed in list.dnswl.org]
  0.0 HTML_MESSAGE           BODY: HTML included in message
  0.0 HTML_EXTRA_CLOSE       BODY: HTML contains far too many close tags
  1.0 KAM_HTMLNOISE          Spam containing useless HTML padding
  1.0 SCC_5_SHORT_WORD_LINES 5 lines with many short words
  0.5 PDS_BTC_ID             FP reduced Bitcoin ID
  1.5 BITCOIN_MALWARE        BitCoin + malware bragging
X-Spam-Flag: NO

This is a MIME-encapsulated message.

--AEFFEC0002.1582730420/pml-pf1.jp.panasonic.com
Content-Description: Notification
Content-Type: text/plain; charset=us-ascii

This is the mail system at host pml-pf1.jp.panasonic.com.

I'm sorry to have to inform you that your message could not
be delivered to one or more recipients. It's attached below.

For further assistance, please send mail to postmaster.

If you do so, please include this problem report. You can
delete your own text from the attached returned message.

                   The mail system

<sasaki.kazuhiko@jp.panasonic.com>: unknown user:
    "sasaki.kazuhiko@jp.panasonic.com"

--AEFFEC0002.1582730420/pml-pf1.jp.panasonic.com
Content-Description: Delivery report
Content-Type: message/delivery-status

Reporting-MTA: dns; pml-pf1.jp.panasonic.com
X-Postfix-Queue-ID: AEFFEC0002
X-Postfix-Sender: rfc822; rgrs@mak.pt
Arrival-Date: Thu, 27 Feb 2020 00:20:20 +0900 (JST)

Final-Recipient: rfc822; sasaki.kazuhiko@jp.panasonic.com
Original-Recipient: rfc822;sasaki.kazuhiko@jp.panasonic.com
Action: failed
Status: 5.1.1
Diagnostic-Code: X-Postfix; unknown user: "sasaki.kazuhiko@jp.panasonic.com"

--AEFFEC0002.1582730420/pml-pf1.jp.panasonic.com
Content-Description: Undelivered Message
Content-Type: message/rfc822

Received: from mail.jp.panasonic.com
	by pml-pf1.jp.panasonic.com with ESMTP id AEFFEC0002
	for <sasaki.kazuhiko@jp.panasonic.com>;
	Thu, 27 Feb 2020 00:20:20 +0900 (JST)
Received: from kc-ml-ptd20.localdomain ([157.8.1.139])
	by mail.jp.panasonic.com (8.14.7/3.7W/kc-maili02) with ESMTP id 01QFKKC0027801
	for <sasaki.kazuhiko@jp.panasonic.com>; Thu, 27 Feb 2020 00:20:20 +0900
Received: from static.masmovil.com (static.masmovil.com [139.47.121.54] (may be forged))
 by smtp.mei.co.jp (8.14.4/8.14.4/lvzy12) with ESMTP id 01QFKIWd011584
 for <sasaki.kazuhiko@jp.panasonic.com>; Thu, 27 Feb 2020 00:20:18 +0900
Message-ID: <002d01d5ecc0$0549ef94$a7f866a7@khioea>
From: <rgrs@mak.pt>
To: <sasaki.kazuhiko@jp.panasonic.com>
Subject: Check the confidentiality of your information (according to our security service, your account has been hacked).
Date: 26 Feb 2020 16:03:13 +0000
MIME-Version: 1.0
Content-Type: multipart/alternative;
	boundary="----=_NextPart_000_002A_01D5ECC0.05495175"
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2800.1265
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1265
X-TM-AS-GCONF: 00

This is a multi-part message in MIME format.

------=_NextPart_000_002A_01D5ECC0.05495175
Content-Type: text/plain;
	charset="ibm852"
Content-Transfer-Encoding: quoted-printable

_Hello!&#205; am a hacker who has access to yo&#252;r operat&#237;ng =
system.&#205; also have full access to yo&#252;r =
acco&#252;&#328;t.&#205;'ve been watch&#237;ng yo&#252; for a few months =
now.The fact &#237;s that yo&#252; were &#237;nfected w&#237;th malware =
thro&#252;gh an ad&#252;lt s&#237;te that yo&#252; =
v&#237;s&#237;ted.&#205;f yo&#252; are not fam&#237;l&#237;ar w&#237;th =
th&#237;s, &#205; w&#237;ll expla&#237;n.Trojan V&#237;r&#252;s =
g&#237;ves me f&#252;ll access and control over a comp&#252;ter or other =
dev&#237;ce.Th&#237;s means that &#205; can see everyth&#237;ng on =
yo&#252;r screen, t&#252;rn on the camera and m&#237;crophone, b&#252;t =
yo&#252; do not know abo&#252;t &#237;t.&#205; also have access to all =
yo&#252;r contacts and all yo&#252;r correspondence.Why yo&#252;r =
ant&#237;v&#237;r&#252;s d&#237;d not detect malware?Answer: My malware =
&#252;ses the dr&#237;ver, &#205; &#252;pdate &#237;ts =
s&#237;gnat&#252;res every 4 ho&#252;rs so that yo&#252;r =
ant&#237;v&#237;r&#252;s &#237;s s&#237;lent.&#205; made a v&#237;deo =
show&#237;ng how yo&#252; sat&#237;sfy yo&#252;rself &#237;n the left =
half of the screen, and &#237;n the r&#237;ght half yo&#252; see the =
v&#237;deo that yo&#252; watched. W&#237;th one cl&#237;ck of the =
mo&#252;se,&#205; can send th&#237;s v&#237;deo to all yo&#252;r =
ema&#237;ls and contacts on soc&#237;al networks. &#205; can also post =
access to all yo&#252;r e-ma&#237;l correspondence and messengers that =
yo&#252; &#252;se.&#205;f yo&#252; want to prevent th&#237;s, transfer =
the amo&#252;nt of $950(USD) to my b&#237;tco&#237;n address (&#237;f =
yo&#252; do not know how to do th&#237;s, wr&#237;te to Google: =
'B&#252;y B&#237;tco&#237;n').My b&#237;tco&#237;n address (B&#356;C =
Wallet) &#237;s: 18Jro9LNFqBQarcc63WYGf3w7PdDAiwXpkAfter =
rece&#237;v&#237;ng the payment, &#205; w&#237;ll delete the v&#237;deo =
and yo&#252; w&#237;ll never hear me aga&#237;n.&#205; g&#237;ve =
yo&#252; 48 ho&#252;rs to pay.&#205; have a not&#237;ce read&#237;ng =
th&#237;s letter, and the t&#237;mer w&#237;ll work when yo&#252; see =
th&#237;s letter.F&#237;l&#237;ng a compla&#237;nt somewhere does not =
make sense beca&#252;se th&#237;s ema&#237;l cannot be tracked l&#237;ke =
my b&#237;tco&#237;n address.&#205; do not make any =
m&#237;stakes.&#205;f &#205; f&#237;nd that yo&#252; have shared =
th&#237;s message w&#237;th someone else, the v&#237;deo w&#237;ll be =
&#237;mmed&#237;ately d&#237;str&#237;b&#252;ted.Best regards!
------=_NextPart_000_002A_01D5ECC0.05495175
Content-Type: text/html;
	charset="ibm852"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; charset=3Dibm852">
<META content=3D"MSHTML 6.00.2800.1265" name=3DGENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=3D#ffffff>
_Hello!</br>
</br>
&#205; am a hacker who has access to yo&#252;r operat&#237;ng =
system.</br>
&#205; also have full access to yo&#252;r acco&#252;&#328;t.</br>
</br>
&#205;'ve been watch&#237;ng yo&#252; for a few months now.</br>
The fact &#237;s that yo&#252; were &#237;nfected w&#237;th malware =
thro&#252;gh an ad&#252;lt s&#237;te that yo&#252; =
v&#237;s&#237;ted.</br>
</br>
&#205;f yo&#252; are not fam&#237;l&#237;ar w&#237;th th&#237;s, &#205; =
w&#237;ll expla&#237;n.</br>
Trojan V&#237;r&#252;s g&#237;ves me f&#252;ll access and control over a =
comp&#252;ter or other dev&#237;ce.</br>
Th&#237;s means that &#205; can see everyth&#237;ng on yo&#252;r screen, =
t&#252;rn on the camera and m&#237;crophone, b&#252;t yo&#252; do not =
know abo&#252;t &#237;t.</br>
</br>
&#205; also have access to all yo&#252;r contacts and all yo&#252;r =
correspondence.</br>
</br>
Why yo&#252;r ant&#237;v&#237;r&#252;s d&#237;d not detect malware?</br>
Answer: My malware &#252;ses the dr&#237;ver, &#205; &#252;pdate =
&#237;ts s&#237;gnat&#252;res every 4 ho&#252;rs so that yo&#252;r =
ant&#237;v&#237;r&#252;s &#237;s s&#237;lent.</br>
</br>
&#205; made a v&#237;deo show&#237;ng how yo&#252; sat&#237;sfy =
yo&#252;rself &#237;n the left half of the screen, and &#237;n the =
r&#237;ght half yo&#252; see the v&#237;deo that yo&#252; watched. =
W&#237;th one cl&#237;ck of the mo&#252;se,</br>
&#205; can send th&#237;s v&#237;deo to all yo&#252;r ema&#237;ls and =
contacts on soc&#237;al networks. &#205; can also post access to all =
yo&#252;r e-ma&#237;l correspondence and messengers that yo&#252; =
&#252;se.</br>
</br>
&#205;f yo&#252; want to prevent th&#237;s, transfer the amo&#252;nt of =
$950(USD) to my b&#237;tco&#237;n address (&#237;f yo&#252; do not know =
how to do th&#237;s, wr&#237;te to Google: 'B&#252;y =
B&#237;tco&#237;n').</br>
</br>
My b&#237;tco&#237;n address (B&#356;C Wallet) &#237;s: =
18Jro9LNFqBQarcc63WYGf3w7PdDAiwXpk</br>
</br>
After rece&#237;v&#237;ng the payment, &#205; w&#237;ll delete the =
v&#237;deo and yo&#252; w&#237;ll never hear me aga&#237;n.</br>
&#205; g&#237;ve yo&#252; 48 ho&#252;rs to pay.</br>
&#205; have a not&#237;ce read&#237;ng th&#237;s letter, and the =
t&#237;mer w&#237;ll work when yo&#252; see th&#237;s letter.</br>
F&#237;l&#237;ng a compla&#237;nt somewhere does not make sense =
beca&#252;se th&#237;s ema&#237;l cannot be tracked l&#237;ke my =
b&#237;tco&#237;n address.</br>
&#205; do not make any m&#237;stakes.</br>
</br>
&#205;f &#205; f&#237;nd that yo&#252; have shared th&#237;s message =
w&#237;th someone else, the v&#237;deo w&#237;ll be =
&#237;mmed&#237;ately d&#237;str&#237;b&#252;ted.</br>
</br>
Best regards!</BODY></HTML>
------=_NextPart_000_002A_01D5ECC0.05495175--



--AEFFEC0002.1582730420/pml-pf1.jp.panasonic.com--