Blackmail scam
Abuser: trojan started working as a RDP (remote desktop) with a keylogger
Return-Path: <[email protected]> Received: from ds12.friendhosting.net ([217.12.204.223]) by mx-ha.web.de (mxweb012 [212.227.15.17]) with ESMTPS (Nemesis) id 1MEErZ-1heykz3pxd-00ABOG for <*@web.de>; Sun, 14 Jul 2019 00:51:49 +0200 Received: from [202.21.32.137] (helo=mail.gdzputina.co) by ds12.friendhosting.net with esmtpa (Exim 4.92) (envelope-from <[email protected]>) id 1hmQry-000BdU-L9 for *@web.de; Sun, 14 Jul 2019 01:51:55 +0300
Germany, 2019-07-14 02:13:20