/home/arranoyd/mail/.spam/cur/1687785304.M805737P155249.nl53.altushost.com,S=9696,W=9891:2,
Return-Path: <darko.orelj@jagma.hr>
Delivered-To: arranoyd+spam@nl53.altushost.com
Received: from nl53.altushost.com
	by nl53.altushost.com with LMTP
	id aBLiL1iPmWRxXgIAmQ2V0w
	(envelope-from <darko.orelj@jagma.hr>)
	for <arranoyd+spam@nl53.altushost.com>; Mon, 26 Jun 2023 15:15:04 +0200
Return-path: <darko.orelj@jagma.hr>
Envelope-to: darko.orelj@jagma.hr
Delivery-date: Mon, 26 Jun 2023 15:15:04 +0200
Received: from [103.146.224.228] (port=53761 helo=103.146.224.228.fastcablenet.com)
	by nl53.altushost.com with esmtp (Exim 4.96)
	(envelope-from <darko.orelj@jagma.hr>)
	id 1qDm3b-000eUD-2G
	for darko.orelj@jagma.hr;
	Mon, 26 Jun 2023 15:15:04 +0200
Message-ID: <14709FC942FB2614709FC942FB261470@D5H8YEQ>
From: <darko.orelj@jagma.hr>
To: <darko.orelj@jagma.hr>
Date: 26 Jun 2023 22:30:22 +0400
MIME-Version: 1.0
Content-Type: multipart/alternative;
	boundary="----=_NextPart_000_001B_01D9A85E.07B6705F"
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2900.2180
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2900.2180
X-Spam-Status: Yes, score=24.1
X-Spam-Score: 241
X-Spam-Bar: ++++++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "nl53.altushost.com",
 has identified this incoming email as possible spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  Pozdrav,ja sam haker i uspje&#353;no sam dobio pristup va&#353;em
    operativnom sustavu.Tako&#273;er imam potpuni pristup va&#353;em ra&#269;unu.Gledam
    vas ve&#263; nekoliko mjeseci.&#268;injenica je da [...] 
 Content analysis details:   (24.1 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was
                             blocked.  See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: ajem.to]
  2.9 HELO_DYNAMIC_SPLIT_IP  Relay HELO'd using suspicious hostname
                             (Split IP)
  2.4 DATE_IN_FUTURE_03_06   Date: is 3 to 6 hours after Received: date
  4.0 SPF_FAIL               SPF: sender does not match SPF record (fail)
 [SPF failed: Please see http://www.openspf.org/Why?s=mfrom;id=darko.orelj%40jagma.hr;ip=103.146.224.228;r=nl53.altushost.com]
  0.0 HTML_EXTRA_CLOSE       BODY: HTML contains far too many close tags
  0.0 HTML_MESSAGE           BODY: HTML included in message
  3.5 BITCOIN_MALF_HTML      Bitcoin + malformed HTML
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
  1.5 KAM_DMARC_QUARANTINE   DKIM has Failed or SPF has failed on the
                             message and the domain has a DMARC
                             quarantine policy
 -0.0 T_SCC_BODY_TEXT_LINE   No description available.
  0.0 HDR_ORDER_FTSDMCXX_NORDNS Header order similar to spam
                             (FTSDMCXX/boundary variant) + no rDNS
  2.0 RDNS_NONE              Delivered to internal network by a host with no rDNS
  1.0 KAM_HTMLNOISE          Spam containing useless HTML padding
  0.0 PDS_BTC_MSGID          Bitcoin ID with T_MSGID_NOFQDN2
  0.0 BITCOIN_XPRIO          Bitcoin + priority
  0.0 PDS_BTC_ID             FP reduced Bitcoin ID
  0.0 HDR_ORDER_FTSDMCXX_DIRECT Header order similar to spam
                             (FTSDMCXX/boundary variant) + direct-to-MX
  0.7 TO_EQ_FM_DIRECT_MX     To == From and direct-to-MX
  3.0 BITCOIN_SPAM_07        BitCoin spam pattern 07
  0.0 MIMEOLE_DIRECT_TO_MX   MIMEOLE + direct-to-MX
  0.0 TO_EQ_FM_SPF_FAIL      To == From and external SPF failed
  3.1 DOS_OE_TO_MX           Delivered direct to MX with OE headers
  0.0 TO_EQ_FM_DOM_SPF_FAIL  To domain == From domain and external SPF
                             failed
  0.0 NO_FM_NAME_IP_HOSTN    No From name + hostname using IP address
X-Spam-Flag: YES
Subject:  ***SPAM***  =?utf-8?B?VmHFoSByYcSNdW4gamUgaGFraXJhbi4gVmHFoWkgc3UgcG9kYWNpIHVrcmFkZW5pLiBTYXpuYWp0ZSBr?= =?utf-8?B?YWtvIHZyYXRpdGkgcHJpc3R1cC4=?=
X-From-Rewrite: unmodified, forwarded message

This is a multi-part message in MIME format.

------=_NextPart_000_001B_01D9A85E.07B6705F
Content-Type: text/plain;
	charset="windows-1250"
Content-Transfer-Encoding: quoted-printable

Pozdrav,ja sam haker i uspje&#353;no sam dobio pristup va&#353;em =
operativnom sustavu.Tako&#273;er imam potpuni pristup va&#353;em =
ra&#269;unu.Gledam vas ve&#263; nekoliko mjeseci.&#268;injenica je da je =
va&#353;e ra&#269;unalo zara&#382;eno zlonamjernim softverom preko =
stranice za odrasle koju ste posjetili.Ako vam to nije poznato, objasnit =
&#263;u.Trojanski virus daje mi potpuni pristup ra&#269;unalu i kontrolu =
nad njim ili drugim ure&#273;ajem.To zna&#269;i da mogu vidjeti sve na =
va&#353;em zaslonu, uklju&#269;iti kameru i mikrofon, ali vi za to ne =
znate.Tako&#273;er imam pristup svim va&#353;im kontaktima i svoj =
va&#353;oj korespondenciji.Za&#353;to va&#353; antivirus nije otkrio =
zlonamjerni softver?Odgovor: Zlonamjerni softver koji sam upotrijebio =
temelji se na upravlja&#269;kom programu, a&#382;uriram njegove potpise =
svaka 4 sata. Stoga va&#353; antivirusni program ne mo&#382;e otkriti =
njegovu prisutnost.Napravio sam videozapis koji prikazuje kako se =
zadovoljavate u lijevoj polovici zaslona, a desna polovica prikazuje =
videozapis koji ste u tom trenutku gledali.Jednim klikom mi&#353;a mogu =
poslati taj videozapis na sve va&#353;e adrese e-po&#353;te i kontakte =
na va&#353;im dru&#353;tvenim mre&#382;ama.Tako&#273;er mogu objaviti =
svu va&#353;u korespondenciju putem e-po&#353;te i povijest razgovora na =
aplikacijama za razmjenu poruka kojima se koristite.Ako ne &#382;elite =
da se to dogodi, prebacite 1250&#8364; u ekvivalentu Bitcoina na moju =
adresu za Bitcoin (ako ne znate kako to u&#269;initi, samo =
pretra&#382;ite &#8222;kupi bitcoin&#8220; na Googleu).Moja adresa za =
Bitcoin (BTC nov&#269;anik) =
glasi:12rDSbjXgEKuYMtiXKwHQUpf4jkm2vjvtgNakon potvrde uplate, odmah =
&#263;u izbrisati videozapis i to je to. Nikad vam se vi&#353;e =
ne&#263;u obratiti.Dat &#263;u vam 50 sati (vi&#353;e od 2 dana) za =
pla&#263;anje. Dobit &#263;u obavijest kad otvorite ovu e-poruku i =
pokrenut &#263;e se mjera&#269; vremena.Podno&#353;enje pritu&#382;be =
negdje nema smisla jer se ova e-po&#353;ta ne mo&#382;e pratiti, kao ni =
moja adresa za Bitcoin.Nikad ne grije&#353;im.Ako ustanovim da ste =
podijelili ovu poruku s nekim drugim, videozapis &#263;e odmah biti =
distribuiran.Lijep pozdrav!
------=_NextPart_000_001B_01D9A85E.07B6705F
Content-Type: text/html;
	charset="windows-1250"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; =
charset=3Dwindows-1250">
<META content=3D"MSHTML 6.00.2900.2180" name=3DGENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=3D#ffffff>
Pozdrav,</br>
</br>
ja sam haker i uspje&#353;no sam dobio pristup va&#353;em operativnom =
sustavu.</br>
Tako&#273;er imam potpuni pristup va&#353;em ra&#269;unu.</br>
</br>
Gledam vas ve&#263; nekoliko mjeseci.</br>
</br>
&#268;injenica je da je va&#353;e ra&#269;unalo zara&#382;eno =
zlonamjernim softverom preko stranice za odrasle koju ste =
posjetili.</br>
Ako vam to nije poznato, objasnit &#263;u.</br>
Trojanski virus daje mi potpuni pristup ra&#269;unalu i kontrolu nad =
njim ili drugim ure&#273;ajem.</br>
To zna&#269;i da mogu vidjeti sve na va&#353;em zaslonu, uklju&#269;iti =
kameru i mikrofon, ali vi za to ne znate.</br>
Tako&#273;er imam pristup svim va&#353;im kontaktima i svoj va&#353;oj =
korespondenciji.</br>
</br>
Za&#353;to va&#353; antivirus nije otkrio zlonamjerni softver?</br>
Odgovor: Zlonamjerni softver koji sam upotrijebio temelji se na =
upravlja&#269;kom programu, a&#382;uriram njegove potpise svaka 4 sata. =
</br>
Stoga va&#353; antivirusni program ne mo&#382;e otkriti njegovu =
prisutnost.</br>
Napravio sam videozapis koji prikazuje kako se zadovoljavate u lijevoj =
polovici zaslona, </br>
a desna polovica prikazuje videozapis koji ste u tom trenutku =
gledali.</br>
</br>
Jednim klikom mi&#353;a mogu poslati taj videozapis na sve va&#353;e =
adrese e-po&#353;te i kontakte na va&#353;im dru&#353;tvenim =
mre&#382;ama.</br>
Tako&#273;er mogu objaviti svu va&#353;u korespondenciju putem =
e-po&#353;te i povijest razgovora na aplikacijama za razmjenu poruka =
kojima se koristite.</br>
</br>
Ako ne &#382;elite da se to dogodi, prebacite 1250&#8364; u ekvivalentu =
Bitcoina na moju adresu za Bitcoin </br>
(ako ne znate kako to u&#269;initi, samo pretra&#382;ite &#8222;kupi =
bitcoin&#8220; na Googleu).</br>
</br>
Moja adresa za Bitcoin (BTC nov&#269;anik) =
glasi:12rDSbjXgEKuYMtiXKwHQUpf4jkm2vjvtg</br>
</br>
Nakon potvrde uplate, odmah &#263;u izbrisati videozapis i to je to. =
Nikad vam se vi&#353;e ne&#263;u obratiti.</br>
Dat &#263;u vam 50 sati (vi&#353;e od 2 dana) za pla&#263;anje. Dobit =
&#263;u obavijest kad otvorite ovu e-poruku i pokrenut &#263;e se =
mjera&#269; vremena.</br>
Podno&#353;enje pritu&#382;be negdje nema smisla jer se ova e-po&#353;ta =
ne mo&#382;e pratiti, kao ni moja adresa za Bitcoin.</br>
</br>
Nikad ne grije&#353;im.</br>
Ako ustanovim da ste podijelili ovu poruku s nekim drugim, videozapis =
&#263;e odmah biti distribuiran.</br>
</br>
Lijep pozdrav!</BODY></HTML>
------=_NextPart_000_001B_01D9A85E.07B6705F--