Abuse to Bitcoin address
1A5xFeJ2szAuxzjaHjsof4n5iD8dCq3Vkj

Ransomware

Abuser: [email protected] (email sender, may be spoofed)

known password ransom email sent by aforementioned email address, bitcoin address provided as ransom payment. ---HEADERS--- Received: from [10.5.5.13] (HELO mx3.mail.rambler.ru) by mail23.rambler.ru (rmaild SMTP 1.2.41) Tue, 08 Jan 2019 14:21:24 +0300 Received: from votau.com (214.64.uzpak.uz [213.230.113.214]) by mx3.mail.rambler.ru (Postfix) Tue, 8 Jan 2019 14:21:24 +0300 (MSK) Received: from 214.64.uzpak.uz (214.64.uzpak.uz [213.230.113.214]) by resmtp1.mail.rambler.ru (resmtp/Rambler) Tue, 8 Jan 2019 14:21:21 +0300 Received: from unknown (HELO mail.naihautsui.co.kr) (Tue, 08 Jan 2019 06:04:43 -0500) by rsmail.alkoholic.net with ASMTP; Tue, 08 Jan 2019 06:04:43 -0500 Received: from unknown (HELO smtp.doneohx.com) (Tue, 08 Jan 2019 05:46:32 -0500) by qnx.mdrost.com with ASMTP; Tue, 08 Jan 2019 05:46:32 -0500 ---/HEADERS---

Russia flag Russia, 2019-01-09 11:19:29

Ransomware

Abuser: blackmail

This is obviously the biggest nonsense, paying with Bitcoin is anonymous so the scammer cannot know who the money came from (there is no sender). The story as described in the mail is therefore incorrect and is not based on truths. known password ransom email sent by aforementioned email address, bitcoin address provided as ransom payment.

2019-01-09 13:04:07

Ransomware

Abuser: anonymous

Wants USD 998 with following text: "other choice should be to give me USD 998. We will think of it as a donation. in this instance, i will immediately discard your video footage. You could continue on everyday life like this never happened and you would never hear back again from me." Return-Path: <[email protected]> Received: from mx11.mail.rambler.ru ([10.5.5.21] verified) by mail2002.rambler.ru (RamblerMail 6.1 SMTP 6.1a7) with ESMTP id 62010294 for [email protected]; Sat, 12 Jan 2019 10:31:19 +0300 Received: from xyux.com (unknown [171.61.58.49]) by mx11.mail.rambler.ru (Postfix) with ESMTP id 0ABB35460A8 for <[email protected]>; Sat, 12 Jan 2019 10:31:17 +0300 (MSK) Received: from UNKNOWN (UNKNOWN [171.61.58.49]) by resmtp1.mail.rambler.ru (resmtp/Rambler) with SMTP id VDIqnPqM; Sat, 12 Jan 2019 10:31:15 +0300 Received: from [83.184.190.207] by relay.2yahoo.com with QMQP; Sat, 12 Jan 2019 02:27:37 -0500

Russia flag Russia, 2019-01-12 10:55:25