Return-Path: <info@oshvl.com>
Delivered-To: info@tictactocsaintcanut.com
Received: from cl-t211-187cl.majeunesse.ca
	by cl-t211-187cl.majeunesse.ca with LMTP
	id 8LVDB6mrCGNGHAAAV5eKQw
	(envelope-from <info@oshvl.com>)
	for <info@tictactocsaintcanut.com>; Fri, 26 Aug 2022 07:16:57 -0400
Return-path: <info@oshvl.com>
Envelope-to: info@tictactocsaintcanut.com
Delivery-date: Fri, 26 Aug 2022 07:16:57 -0400
Received: from server.oshvl.com ([192.163.203.63]:48946)
	by cl-t211-187cl.majeunesse.ca with esmtps  (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
	(Exim 4.95)
	(envelope-from <info@oshvl.com>)
	id 1oRXKd-0001qH-G2
	for info@tictactocsaintcanut.com;
	Fri, 26 Aug 2022 07:16:57 -0400
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=oshvl.com;
	s=default; h=Content-Transfer-Encoding:Content-Type:MIME-Version:Message-ID:
	Date:Subject:To:From:Reply-To:Sender:Cc:Content-ID:Content-Description:
	Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:
	In-Reply-To:References:List-Id:List-Help:List-Unsubscribe:List-Subscribe:
	List-Post:List-Owner:List-Archive;
	bh=Hu7TMtQF0NTSCpIf3/6btWRUTwlqgjgsjUlK2hhoAMc=; b=tDVa+fuB0w+OSYvEB6OvqeMNhj
	yGQVYMBb/XHnh3oUEgUd4S2IZx33NG4lyluq2OnIA8OJz4nscAt8TNP+y4jpIdZc3wXm0viOni4e7
	SJePMOIFwOTDjKm1s7H0t/KYc/mHxRzcJIj3XnEY4rQYOHKrk7XNboQgiySmhX3CuHe+e8CV0slGS
	o75D0QVyjACAI+c3VQIYc/+ogJ93aj1YInhK8aXnELQC6wn/aHXTShMN7urTGNDQH/+naVv8kAfYe
	YBSl9j90Zy+IWeOAgeCd5ueZG0d2GxE3yRmzfXAlFHeH932Y75SQ1f0x0PHNxtkO/k9VglcNIYjdO
	MmIDn1dg==;
Received: from [43.157.12.254] (port=53826 helo=oshvl.com)
	by server.oshvl.com with esmtpsa  (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
	(Exim 4.95)
	(envelope-from <info@oshvl.com>)
	id 1oRXJv-0003rw-8j
	for info@tictactocsaintcanut.com;
	Fri, 26 Aug 2022 05:16:14 -0600
Reply-To: info@tictactocsaintcanut.com
From: info@tictactocsaintcanut.com
To: info@tictactocsaintcanut.com
Date: 26 Aug 2022 13:16:12 +0200
Message-ID: <20220826131611.EA11F30EFE0BD2F6@tictactocsaintcanut.com>
MIME-Version: 1.0
Content-Type: text/plain;
	charset="utf-8"
Content-Transfer-Encoding: quoted-printable
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - server.oshvl.com
X-AntiAbuse: Original Domain - tictactocsaintcanut.com
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - oshvl.com
X-Get-Message-Sender-Via: server.oshvl.com: authenticated_id: info@oshvl.com
X-Authenticated-Sender: server.oshvl.com: info@oshvl.com
X-Source: 
X-Source-Args: 
X-Source-Dir: 
X-Spam-Status: Yes, score=11.6
X-Spam-Score: 116
X-Spam-Bar: +++++++++++
X-Spam-Report: Spam detection software, running on the system "cl-t211-187cl.majeunesse.ca",
 has identified this incoming email as possible spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 Content preview:  Hi. How are you? I know, it’s unpleasant to start the conversation
    with bad news, but I have no choice. Few months ago, I have gained access
    to your devices that used by you for internet browsing. Afterwards, I coul
    [...] 
 Content analysis details:   (11.6 points, 5.0 required)
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was
                             blocked.  See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: oshvl.com]
 -0.0 SPF_PASS               SPF: sender matches SPF record
 -0.0 SPF_HELO_PASS          SPF: HELO matches SPF record
  0.2 HEADER_FROM_DIFFERENT_DOMAINS From and EnvelopeFrom 2nd level
                             mail domains are different
 -0.1 DKIM_VALID_EF          Message has a valid DKIM or DK signature from
                             envelope-from domain
  0.1 DKIM_SIGNED            Message has a DKIM or DK signature, not necessarily
                             valid
 -0.1 DKIM_VALID             Message has at least one valid DKIM or DK signature
  2.0 PYZOR_CHECK            Listed in Pyzor
                             (https://pyzor.readthedocs.io/en/latest/)
 -0.0 T_SCC_BODY_TEXT_LINE   No description available.
  8.5 KAM_CRIM               Extortion Email
  0.5 KAM_NUMSUBJECT         Subject ends in numbers excluding current years
  0.5 PDS_BTC_ID             FP reduced Bitcoin ID
  0.0 FSL_BULK_SIG           Bulk signature with no Unsubscribe
  0.0 BITCOIN_EXTORT_01      Extortion spam, pay via BitCoin
X-Spam-Flag: YES
Subject:  ***SPAM***  Bill for Payment #1012830


Hi. How are you?

I know, it=E2=80=99s unpleasant to start the conversation with bad news, bu=
t I have no choice.
Few months ago, I have gained access to your devices that used by you for i=
nternet browsing.
Afterwards, I could track down all your internet activities.

Here is the history of how it could become possible:
At first, I purchased from hackers the access to multiple email accounts (n=
owadays, it is a really simple thing to do online).
As result, I could easily log in to your email account info@tictactocsaintc=
anut.com.

One week later, I installed Trojan virus in Operating Systems of all device=
s of yours, which you use to open email.
Frankly speaking, it was rather straightforward (since you were opening the=
 links from your inbox emails).
Everything ingenious is quite simple. (o_0)!

My software enables me with access to all controllers inside devices of you=
rs, like microphone, keyboard and video camera.
I could easily download to my servers all your private info, including the =
history of web browsing and photos.
I can effortlessly gain access to all your messengers, social networks acco=
unts, emails, contact list as well as chat history.
Virus of mine constantly keeps refreshing its signatures (because it is dri=
ver-based), and as result remains unnoticed by your antivirus.

Hence, you can already guess why I stayed undetected all this while.

As I was gathering information about you, I couldn=E2=80=99t help but notic=
e that you are also a true fan of adult-content websites.
You actually love visiting porn sites and browsing through kinky videos, wh=
ile pleasuring yourself.
I could make a few dirty records with you in the main focus and montaged se=
veral videos showing the way you reach orgasm while masturbating with joy.
=

If you are still uncertain regarding the seriousness of my intentions,
it only requires several mouse clicks for me to forward your videos to all =
your relatives, as well as friends and colleagues.
I can also make those vids become accessible by public.
I honestly think that you do not really want that to happen, considering th=
e peculiarity of videos you like to watch,
(you obviously know what I mean) all that kinky content can become a reason=
 of serious troubles for you.

However, we can still resolve this situation in the following manner:
Everything you are required to do is a single transfer of $1000 USD to my a=
ccount (or amount equivalent to bitcoin depending on exchange rate at the m=
oment of transfer),
and once the transaction is complete, I will straight away remove all the d=
irty content exposing you.
After that, you can even forget that you have come across me. Moreover, I s=
wear that all the harmful software will be removed from all devices of your=
s as well.
Make no doubt that I will fulfill my part.

This is really a great deal that comes at a reasonable price, given that I =
have used quite a lot of energy to check your profile as well as traffic ov=
er an extended period of time.
If you have no idea about bitcoin purchase process =E2=80=93 it can be stra=
ightforwardly done by getting all the necessary information online.

Here is my bitcoin wallet provided below: bc1q6x4kev9pefay37uctaq9ggqmxrg7a=
6txn2tanf

You should complete the abovementioned transfer within 48 hours (2 days) af=
ter opening this email.

The following list contains actions you should avoid attempting:
#Do not try calling police as well as other security forces. In addition, a=
bstain from sharing this story with your friends.
After I find out (be sure, I can easily do that, given that I keep complete=
 control of all your devices) =E2=80=93 your kinky video will end up being =
available to public right away.
#Do not try searching for me =E2=80=93 there is absolutely no reason to do =
that. Moreover, all transactions in cryptocurrency are always anonymous.
#Do not try reinstalling the OS on your devices or throwing them away. It i=
s pointless as well, since all your videos have already been uploaded to re=
mote servers.

The following list contains things you should not be worried about:
#That your money won=E2=80=99t reach my account.
=E2=80=93 Rest assured, the transactions can be tracked, hence once the tra=
nsaction is complete,
I will know about it, because I continuously observe all your activities (m=
y trojan virus allows me to control remotely your devices, same as TeamView=
er).
#That I still will share your kinky videos to public after you complete mon=
ey transfer.
=E2=80=93 Trust me, it=E2=80=99s pointless for me to continue troubling you=
r life. If I really wanted, I would make it happen already!

Let=E2=80=99s make this deal in a fair manner!

Owh, one more thing=E2=80=A6in future it is best that you don=E2=80=99t inv=
olve yourself in similar situations any longer!
One last advice from me =E2=80=93 recurrently change all your passwords fro=
m all accounts.=20
