JezK
Edit File: 1665435351.M2956P23769.altar19.supremepanel19.com,S=3829,W=3898
Return-Path: <rucef@altar19.supremepanel19.com> Delivered-To: admin@rucef.org Received: from altar19.supremepanel19.com by altar19.supremepanel19.com with LMTP id mHyNOtaGRGPZXAAAW/n7gw (envelope-from <rucef@altar19.supremepanel19.com>) for <admin@rucef.org>; Mon, 10 Oct 2022 20:55:50 +0000 Return-path: <rucef@altar19.supremepanel19.com> Envelope-to: admin@rucef.org Delivery-date: Mon, 10 Oct 2022 20:55:51 +0000 Received: from rucef by altar19.supremepanel19.com with local (Exim 4.95) (envelope-from <rucef@altar19.supremepanel19.com>) id 1ohzoU-0001hR-RK for admin@rucef.org; Mon, 10 Oct 2022 20:55:50 +0000 To: admin@rucef.org Subject: =?us-ascii?Q?Rural_Child_Empowerment_Forum_"Your_Site_Has_Be?= =?us-ascii?Q?en_Hacked"?= X-PHP-Script: rucef.org/index.php for 191.96.168.200 X-PHP-Filename: /home/rucef/public_html/index.php REMOTE_ADDR: 191.96.168.200 Date: Mon, 10 Oct 2022 20:55:50 +0000 From: Rural Child Empowerment Forum <admin@rucef.org> Reply-To: no-reply@topefficiency.nl Message-ID: <G6wVSxAme3pP0o8bGS5bLUmlYiARvgdb179L7l8KFzc@rucef.org> X-Mailer: PHPMailer 6.6.0 (https://github.com/PHPMailer/PHPMailer) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit From: Corazon Llamas <no-reply@topefficiency.nl> Subject: Your Site Has Been Hacked Message Body: PLEASE FORWARD THíS EMAíL TO SOMEONE íN YOUR COMPANY WHO iS ALLOWED TO MAKE iMPORTANT DECiSíONS! We have hacked your website https://rucef.org and extracted your databases. How díd thís happen? Our team has found a vulnerabílíty wíthín your síte that we were able to exploit. After fíndíng the vulnerabílíty we were able to get your database credentials and extract your entire database and move the informatíon to an offshore server. What does this mean? We wíll systematícally go through a series of steps of totally damaging your reputatíon. First your database wíll be leaked or sold to the híghest bídder which they wíll use wíth whatever theír intentíons are. Next íf there are e-mails found they will be e-maíled that theír ínformatíon has been sold or leaked and your site https://rucef.org was at fault thusly damagíng your reputatíon and having angry customers/associates with whatever angry customers/associates do. Lastly any links that you have índexed in the search engines wíll be de-índexed based off of blackhat techniques that we used ín the past to de-index our targets. How do i stop this? We are wíllíng to refraín from destroyíng your síte’s reputation for a small fee. The current fee ís $3000 in bitcoíns (BTC). Please send the bítcoín to the followíng Bitcoin address (Make sure to copy and paste): 3AbbnZCfdMGySnfCQMmHfCp4AEomNVFmdz Once you have paid we will automatícally get ínformed that ít was your payment. Please note that you have to make payment wíthín 5 days after receiving this e-maíl or the database leak, e-mails dispatched, and de-index of your site WíLL start! How do í get Bítcoins? You can easily buy bítcoins vía several websítes or even offline from a Bítcoin-ATM. What if i don’t pay? if you decíde not to pay, we will start the attack at the índicated date and uphold ít untíl you do, there’s no counter measure to thís, you wíll only end up wasting more money tryíng to find a solution. We wíll completely destroy your reputation amongst google and your customers. Thís is not a hoax, do not reply to this emaíl, don’t try to reason or negotíate, we will not read any replíes. Once you have paid we will stop what we were doing and you will never hear from us again! Please note that Bitcoin ís anonymous and no one wíll find out that you have complied. -- This e-mail was sent from a contact form on Rural Child Empowerment Forum (https://rucef.org)