MOON
Server: Apache
System: Linux 54-179-220-51.cprapid.com 3.10.0-1160.144.1.el7.tuxcare.els4.x86_64 #1 SMP Tue Apr 7 08:40:40 UTC 2026 x86_64
User: thehunarfound (1001)
PHP: 7.4.29
Disabled: NONE
Upload Files
File: /home/thehunarfound/mail/.spam/new/1706045794.M44133P9093.54-179-220-51.cprapid.com,S=5457,W=5566
Return-Path: <yvon.tanguy@geolink.com>
Delivered-To: thehunarfound+spam@54-179-220-51.cprapid.com
Received: from 54-179-220-51.cprapid.com
	by 54-179-220-51.cprapid.com with LMTP
	id wNOHAmIxsGWFIwAAZmiI5A
	(envelope-from <yvon.tanguy@geolink.com>)
	for <thehunarfound+spam@54-179-220-51.cprapid.com>; Tue, 23 Jan 2024 21:36:34 +0000
Return-path: <yvon.tanguy@geolink.com>
Envelope-to: support@thehunarfoundation.org
Delivery-date: Tue, 23 Jan 2024 21:36:34 +0000
Received: from [91.227.246.197] (port=50963)
	by 54-179-220-51.cprapid.com with esmtp (Exim 4.96.2)
	(envelope-from <yvon.tanguy@geolink.com>)
	id 1rSORb-00064p-1p
	for support@thehunarfoundation.org;
	Tue, 23 Jan 2024 21:36:34 +0000
MIME-Version: 1.0
To: <support@thehunarfoundation.org>
From: "alvin bronson" <yvon.tanguy@geolink.com>
Date: Wed, 24 Jan 2024 02:58:30 +0200
Importance: normal
X-Priority: 3
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset="iso-8859-1"
X-Spam-Status: Yes, score=29.2
X-Spam-Score: 292
X-Spam-Bar: +++++++++++++++++++++++++++++
X-Spam-Report: Spam detection software, running on the system "54-179-220-51.cprapid.com",
 has identified this incoming email as possible spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  Hello! I am a hacker who has access to your operating system.
    I also have full access to your accounts. I've been watching you for a few
    months now. The fact is that you were infected with malware through an adult
    site that you visited. 
 Content analysis details:   (29.2 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 RCVD_IN_ZEN_BLOCKED_OPENDNS RBL: ADMINISTRATOR NOTICE: The query
                              to zen.spamhaus.org was blocked due to
                             usage of an open resolver. See
                             https://www.spamhaus.org/returnc/pub/
                             [91.227.246.197 listed in zen.spamhaus.org]
  1.2 RCVD_IN_BL_SPAMCOP_NET RBL: Received via a relay in
                             bl.spamcop.net
              [Blocked - see <https://www.spamcop.net/bl.shtml?91.227.246.197>]
  1.3 RCVD_IN_VALIDITY_RPBL  RBL: Relay in Validity RPBL,
                             https://senderscore.org/blocklistlookup/
                            [91.227.246.197 listed in bl.score.senderscore.com]
  2.4 DATE_IN_FUTURE_03_06   Date: is 3 to 6 hours after Received: date
  2.0 PYZOR_CHECK            Listed in Pyzor
                             (https://pyzor.readthedocs.io/en/latest/)
  1.0 BITCOIN_SPAM_03        BitCoin spam pattern 03
 -0.0 T_SCC_BODY_TEXT_LINE   No description available.
  0.0 KAM_DMARC_STATUS       Test Rule for DKIM or SPF Failure with Strict
                             Alignment
  1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any
                             anti-forgery methods
  2.0 RDNS_NONE              Delivered to internal network by a host with no rDNS
  3.0 KAM_DMARC_REJECT       DKIM has Failed or SPF has failed on the
                             message and the domain has a DMARC reject
                             policy
  8.5 KAM_CRIM               Extortion Email
  1.6 FSL_BULK_SIG           Bulk signature with no Unsubscribe
  2.2 BITCOIN_EXTORT_01      Extortion spam, pay via BitCoin
  0.3 PDS_BTC_ID             FP reduced Bitcoin ID
  1.7 BITCOIN_XPRIO          Bitcoin + priority
  1.0 XPRIO_SHORT_SUBJ       Has X Priority header + short subject
X-Spam-Flag: YES
Subject:  ***SPAM***  Fw:

Hello!

I am a hacker who has access to your operating system.
I also have full access to your accounts.

I've been watching you for a few months now.
The fact is that you were infected with malware through an adult site that you visited.

If you are not familiar with this, I will explain.
Trojan Virus gives me full access and control over a computer or other device.
This means that I can see everything on your screen, turn on the camera and microphone, but you do not know about it.

I also have an access to all your contacts and all your correspondence.

Why your antivirus did not detect malware?
Answer: My malware uses the driver, I update its signatures every 4 hours so that your antivirus is silent.

I made a video showing how you satisfy yourself in the left half of the screen, and in the right half you see the video that you watched.
With one click of the mouse, I can send this video to all your emails and contacts on social networks.
I can also post access to all your e-mail correspondence and messengers that you use.

If you want to prevent this,
transfer the amount of $ 1200 (USD) to my bitcoin address (if you do not know how to do this, search in Google: "Buy Bitcoin").

My bitcoin address (BTC Wallet) is: 11DrzZHSKsPDEsuuGMBEJwug9bZuMfR3D

After receiving the payment, I will delete the video and you will never hear me again.
I give you 50 hours (more than 2 days) to pay.
I have a notification of you reading this letter, and the timer will start right after you open it.

Filing a complaint somewhere does not make sense because this email cannot be tracked like my bitcoin address.
I do not make any mistakes.

If I find that you have shared this message with someone else, the video will be immediately distributed.

Best regards!