Ransomware
Abuser: [email protected] (email sender, may be spoofed)
known password ransom email sent by aforementioned email address, bitcoin address provided as ransom payment. ---HEADERS--- Received: from [10.5.5.13] (HELO mx3.mail.rambler.ru) by mail23.rambler.ru (rmaild SMTP 1.2.41) Tue, 08 Jan 2019 14:21:24 +0300 Received: from votau.com (214.64.uzpak.uz [213.230.113.214]) by mx3.mail.rambler.ru (Postfix) Tue, 8 Jan 2019 14:21:24 +0300 (MSK) Received: from 214.64.uzpak.uz (214.64.uzpak.uz [213.230.113.214]) by resmtp1.mail.rambler.ru (resmtp/Rambler) Tue, 8 Jan 2019 14:21:21 +0300 Received: from unknown (HELO mail.naihautsui.co.kr) (Tue, 08 Jan 2019 06:04:43 -0500) by rsmail.alkoholic.net with ASMTP; Tue, 08 Jan 2019 06:04:43 -0500 Received: from unknown (HELO smtp.doneohx.com) (Tue, 08 Jan 2019 05:46:32 -0500) by qnx.mdrost.com with ASMTP; Tue, 08 Jan 2019 05:46:32 -0500 ---/HEADERS---