Ransomware
Abuser: Hacker
Has my password. Claims to have pictures and videos of me all my data. Wants 888 bitcoins
United Kingdom, 2018-11-24 01:15:21Has my password. Claims to have pictures and videos of me all my data. Wants 888 bitcoins
United Kingdom, 2018-11-24 01:15:21X-Originating-IP: [14.249.124.165] Authentication-Results: mta4185.aol.mail.bf1.yahoo.com from=verizon.net; domainkeys=neutral (no sig); from=verizon.net; dkim=neutral (no sig) Received: from 127.0.0.1 (EHLO static.vnpt.vn) (14.249.124.165) by mta4185.aol.mail.bf1.yahoo.com with SMTP; Fri, 16 Nov 2018 05:19:36 +0000 Message-ID: <002f01d47da6$0396a997$4f6c58b7@nhswyve> From: <[email protected]> To: "[email protected]" <[email protected]> Subject: Security Alert. You account has been hacked. Password must be need changed. (your password:[email protected]) Date: 16 Nov 2018 18:08:30 +0600 MIME-Version: 1.0 Content-Type: text/plain; charset="ibm852" Content-Transfer-Encoding: 8bit X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 6.00.2600.0000 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000 Content-Length: 2808
United States, 2018-11-24 18:16:32Claiming to have "dirt" on me
United Kingdom, 2018-11-25 16:10:19email hacker.
United Kingdom, 2018-11-26 12:45:41BAsic EMail Scam
United States, 2018-11-26 22:36:36Has dirt on me blah blah pay or they will post to contacts
United Kingdom, 2018-11-27 00:47:59wallet being used by a cyber scammer.
United Kingdom, 2018-11-29 22:04:11Received: from [197.243.151.125] (unknown [197.243.151.125])
Japan, 2018-11-30 14:05:45Threatens to send photos and browsing history to my contacts if I don't pay bitcoin.
Canada, 2018-12-06 08:02:50I took photos and videos of your most passionate funs with adult content, and synchronized them in real time with the image of your camera. Believe it turned out very high quality! So, to the business! I'm sure you don't want to show these files and visiting history to all your contacts. Transfer $857 to my Bitcoin cryptocurrency wallet: 1GXazHVQUdJEtpe62UFozFibPa8ToDoUn3 Just copy and paste the wallet number when transferring. If you do not know how to do this - ask Google. My system automatically recognizes the translation. As soon as the specified amount is received, all your data will be destroyed from my server, and the rootkit will be automatically removed from your system. Since opening this letter you have 48 hours. If funds not will be received, after the specified time has elapsed, the disk of your device will be formatted, and from my server will automatically send email and sms to all your contacts with compromising material.
Italy, 2018-12-06 12:52:53I received an email (apparently from my own account) which echoed one of my passwords, not my email password but clearly an unsecured one, stating that it has my information, passwords, search history and so on and so forth. The email is asking for $833 to the bitcoin address. It's obviously bullshit.
United Kingdom, 2018-12-07 02:09:56The hacking was carried out using a hardware vulnerability through which you went online (Cisco router, vulnerability CVE-2018-0296). I went around the security system in the router, installed an exploit there. When you went online, my exploit downloaded my malicious code (rootkit) to your device. This is driver software, I constantly updated it, so your antivirus is silent all time. Since then I have been following you (I can connect to your device via the VNC protocol). That is, I can see absolutely everything that you do, view and download your files and any data to yourself. I also have access to the camera on your device, and I periodically take photos and videos with you. At the moment, I have harvested a solid dirt... on you... I saved all your email and chats from your messangers. I also saved the entire history of the sites you visit. I note that it is useless to change the passwords. My malware update passwords from your accounts every times.
United States, 2018-12-18 19:47:10Demanding money 1GXazHVQUdJEtpe62UFozFibPa8ToDoUn3
United Kingdom, 2018-12-19 10:56:21The hacking was carried out using a hardware vulnerability through which you went online (Cisco router, vulnerability CVE-2018-0296). I went around the security system in the router, installed an exploit there. When you went online, my exploit downloaded my malicious code (rootkit) to your device. This is driver software, I constantly updated it, so your antivirus is silent all time. Since then I have been following you (I can connect to your device via the VNC protocol). That is, I can see absolutely everything that you do, view and download your files and any data to yourself. I also have access to the camera on your device, and I periodically take photos and videos with you. At the moment, I have harvested a solid dirt... on you... I saved all your email and chats from your messangers. I also saved the entire history of the sites you visit. I note that it is useless to change the passwords. My malware update passwords from your accounts every times.
United Kingdom, 2018-12-21 12:46:51Used a LiveJournal password not in any database of compromised passwords.
United States, 2018-12-27 20:07:16