36 Scam Reports

Sextortion Scam

1

The sender, using a spoofed address, threatened to release the targets information and encrypt their data. Copy of the email: _x000D_ Greetings,_x000D_ I am sorry to inform you that your cloud storage was compromised._x000D_ Let’s get the biggest elephant out of the room first._x000D_ I am not a part of shady group that encrypts your data and extorts money leaving you no choice. But I HAVE copied your data._x000D_ The choice is yours._x000D_ _x000D_ Here is what happened, one of the websites where you have an account was breached._x000D_ After that I got access to your password from that breach and with some advanced manipulations and bruteforce extracted your backup data._x000D_ The data set that I have downloaded and parsed contains pictures, documents, contacts and more including some deleted files._x000D_ I dont have much time and dedication NOW to go through all of the files, but with some fast looking I did - I am sure that you dont want some of them to be seen by other people._x000D_ _x000D_ What I can do if you dont follow my instructions is simple._x000D_ I can send from your name to your contacts the most interesting content, its the least I can do. You may care or not, its up to you to decide._x000D_ If you decide that you dont care, I will go through all files, and who knows what more I may find more._x000D_ Maybe you have some confidential business information. Or GREAT nudes and videos. _x000D_ _x000D_ If I spend more time on your case, the amount will be 3 times bigger. Depends on the content._x000D_ So lets make it simple. You pay me $2000 USD, I delete the data, you change your password._x000D_ Business as usual, use Bitcoin to make the transfer._x000D_ 13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp_x000D_ Account is unique and you have some reasonable time to make the payment._x000D_ Take care.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Other Blackmail Scam

1

After that I got access to your password from that breach and with some advanced manipulations and bruteforce extracted your backup data. The data set that I have downloaded and parsed contains pictures, documents, contacts and more including some deleted files._x000D_ You pay me $2000 USD, I delete the data, you change your password.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Other Blackmail Scam

1

After that I got access to your password from that breach and with some advanced manipulations and bruteforce extracted your backup data. The data set that I have downloaded and parsed contains pictures, documents, contacts and more including some deleted files._x000D_ So lets make it simple. You pay me $2000 USD, I delete the data, you change your password.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Other Blackmail Scam

1

After that I got access to your password from that breach and with some advanced manipulations and bruteforce extracted your backup data. You pay me $2000 USD, I delete the data, you change your password.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Other Blackmail Scam

1

I am not a part of shady group that encrypts your data and extorts money leaving you no choice. But I HAVE copied your data.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Other Blackmail Scam

1

cloud storage was compromised scam

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Other Blackmail Scam

1

Compromised cloud storage scam

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Other Blackmail Scam

1

We received the same note reported below. Adding some additional information. This bypassed our External mail transport rule. There was no caution banner at the top of the email. All of the headers appeared from Office365, and were very similar to those that come from sending ourselves mail with one exception. Came from IP 200.119.224.83. We currently do not have SPF/DMARC records which likely would have prevented this. However, it is very interesting that it bypassed the O365 external mail banner.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Other Blackmail Scam

1

Same message text as previous reports. Received 4 copies over several hours on 2021/06/04, relayed via different SMTP hosts in different countries. One message provided a seemingly-gibberish string as the User Agent SMTP header. Google finds no match for it. Possibly used by scammers for tracking?

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Ransomware

1

Received this: _x000D_ Subject: With reference to your cloud storage_x000D_ _x000D_ [CAUTION: This email originated from outside of the organization. Do not click links or open any attachments unless you recognize the sender and know the content is safe.]_x000D_ _x000D_ Greetings,_x000D_ I am sorry to inform you that your cloud storage was compromised._x000D_ Let’s get the biggest elephant out of the room first._x000D_ I am not a part of shady group that encrypts your data and extorts money leaving you no choice. But I HAVE copied your data._x000D_ The choice is yours._x000D_ _x000D_ Here is what happened, one of the websites where you have an account was breached._x000D_ After that I got access to your password from that breach and with some advanced manipulations and bruteforce extracted your backup data._x000D_ The data set that I have downloaded and parsed contains pictures, documents, contacts and more including some deleted files._x000D_ I dont have much time and dedication NOW to go through all of the files, but with some fast looking I did - I am sure that you dont want some of them to be seen by other people._x000D_ _x000D_ What I can do if you dont follow my instructions is simple._x000D_ I can send from your name to your contacts the most interesting content, its the least I can do. You may care or not, its up to you to decide._x000D_ If you decide that you dont care, I will go through all files, and who knows what more I may find more._x000D_ Maybe you have some confidential business information. Or GREAT nudes and videos._x000D_ _x000D_ If I spend more time on your case, the amount will be 3 times bigger. Depends on the content._x000D_ So lets make it simple. You pay me $2000 USD, I delete the data, you change your password._x000D_ Business as usual, use Bitcoin to make the transfer._x000D_ 13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp_x000D_ Account is unique and you have some reasonable time to make the payment._x000D_ Take care.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Sextortion Scam

1

EXTORTION BY BLACKMAIL SENT IN AN EMAIL:  Greetings,_x000D_ I am sorry to inform you that your cloud storage was compromised._x000D_ Let’s get the biggest elephant out of the room first._x000D_ I am not a part of shady group that encrypts your data and extorts money leaving you no choice. But I HAVE copied your data._x000D_ The choice is yours._x000D_ _x000D_ Here is what happened, one of the websites where you have an account was breached._x000D_ After that I got access to your password from that breach and with some advanced manipulations and bruteforce extracted your backup data._x000D_ The data set that I have downloaded and parsed contains pictures, documents, contacts and more including some deleted files._x000D_ I dont have much time and dedication NOW to go through all of the files, but with some fast looking I did - I am sure that you dont want some of them to be seen by other people._x000D_ _x000D_ What I can do if you dont follow my instructions is simple._x000D_ I can send from your name to your contacts the most interesting content, its the least I can do. You may care or not, its up to you to decide._x000D_ If you decide that you dont care, I will go through all files, and who knows what more I may find more._x000D_ Maybe you have some confidential business information. Or GREAT nudes and videos._x000D_ _x000D_ If I spend more time on your case, the amount will be 3 times bigger. Depends on the content._x000D_ So lets make it simple. You pay me $2000 USD, I delete the data, you change your password._x000D_ Business as usual, use Bitcoin to make the transfer._x000D_ 13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp_x000D_ Account is unique and you have some reasonable time to make the payment._x000D_ Take care.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Ransomware

1

Received: from ([103.142.224.15]) for <fake [at] my.com> with MailEnable Catch-All Filter; Thu, 3 Jun 2021 18:37:28 -0700 Received: from [103.142.224.15] ([103.142.224.15]) by mailserver.ph.com with_x000D_ MailEnable ESMTP; Thu, 3 Jun 2021 18:37:26 -0700_x000D_ Message-ID: <1EAE515295E1AD9626D9DA1D69251EAE@0QOOQHA>_x000D_ From: <fake [at] my.com>_x000D_ To: <fake [at] my.com>_x000D_ Subject: =?UTF-8?B?V2l0aCByZWZlcmVuY2UgdG8geW91ciBjbG91ZCBzdG9yYWdl?=_x000D_ Date: 4 Jun 2021 14:14:22 +0600_x000D_ MIME-Version: 1.0_x000D_ Content-Type: multipart/alternative;_x000D_ boundary=----=_NextPart_000_002F_01D7591C.073191D9_x000D_ X-Priority: 3_x000D_ X-MSMail-Priority: Normal_x000D_ X-Mailer: Microsoft Outlook Express 6.00.2900.5931_x000D_ X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2900.5931_x000D_ Return-Path: <fake [at] my.com>

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Ransomware

1

cloud storage was compromised.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Other Blackmail Scam

1

Claims to have hacked cloud account. Threats to release files if $2,000 payment not received. No cloud data associated with this email so total BS.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Ransomware

1

Greetings, I am sorry to inform you that your cloud storage was compromised._x000D_ Let&#8217;s get the biggest elephant out of the room first._x000D_ I am not a part of shady group that encrypts your data and extorts money leaving you no choice. But I HAVE copied your data._x000D_ The choice is yours._x000D_ _x000D_ Here is what happened, one of the websites where you have an account was breached._x000D_ After that I got access to your password from that breach and with some advanced manipulations and bruteforce extracted your backup data._x000D_ The data set that I have downloaded and parsed contains pictures, documents, contacts and more including some deleted files._x000D_ I dont have much time and dedication NOW to go through all of the files, but with some fast looking I did - I am sure that you dont want some of them to be seen by other people._x000D_ _x000D_ What I can do if you dont follow my instructions is simple._x000D_ I can send from your name to your contacts the most interesting content, its the least I can do. You may care or not, its up to you to decide._x000D_ If you decide that you dont care, I will go through all files, and who knows what more I may find more._x000D_ Maybe you have some confidential business information. Or GREAT nudes and videos._x000D_ _x000D_ If I spend more time on your case, the amount will be 3 times bigger. Depends on the content._x000D_ So lets make it simple. You pay me $2000 USD, I delete the data, you change your password._x000D_ Business as usual, use Bitcoin to make the transfer._x000D_ 13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp_x000D_ Account is unique and you have some reasonable time to make the payment._x000D_ Take care.

0
1
Reported Address
Reported Address
Bitcoin logo
13gdUqbxkC2TQPmaHLuMsTatATz6jHCwkp

Reports by Category

Backed By
TRM logoSolana logoCircle logoOpensea logoAave logoBinance logoCivic logoHedera logoRasomwhe.re logo
Backed By
TRM logoSolana logoCircle logoOpensea logoAave logoBinance logoCivic logoHedera logoRasomwhe.re logo