Return-Path: <>
Delivered-To: mf2lfas89ljs@n3plcpnl0143.prod.ams3.secureserver.net
Received: from n3plcpnl0143.prod.ams3.secureserver.net
	by n3plcpnl0143.prod.ams3.secureserver.net with LMTP
	id mB1lK5in1GPR8AwAT/a0/Q
	(envelope-from <>)
	for <mf2lfas89ljs@n3plcpnl0143.prod.ams3.secureserver.net>; Fri, 27 Jan 2023 21:42:00 -0700
Return-path: <>
Envelope-to: mf2lfas89ljs@n3plcpnl0143.prod.ams3.secureserver.net
Delivery-date: Fri, 27 Jan 2023 21:42:00 -0700
Received: from mailnull by n3plcpnl0143.prod.ams3.secureserver.net with local (Exim 4.95)
	id 1pLd2O-003Zte-LZ
	for mf2lfas89ljs@n3plcpnl0143.prod.ams3.secureserver.net;
	Fri, 27 Jan 2023 21:42:00 -0700
X-Failed-Recipients: essebi.sottofondi@hotmail.com
Auto-Submitted: auto-replied
From: Mail Delivery System <Mailer-Daemon@n3plcpnl0143.prod.ams3.secureserver.net>
To: mf2lfas89ljs@n3plcpnl0143.prod.ams3.secureserver.net
References: <2fdb8cd2dda5402c9de01252a2608ea5@essebisottofondi.it>
Content-Type: multipart/report; report-type=delivery-status; boundary=1674880920-eximdsn-1060221185
MIME-Version: 1.0
Subject: Mail delivery failed: returning message to sender
Message-Id: <E1pLd2O-003Zte-LZ@n3plcpnl0143.prod.ams3.secureserver.net>
Date: Fri, 27 Jan 2023 21:42:00 -0700

--1674880920-eximdsn-1060221185
Content-type: text/plain; charset=us-ascii

This message was created automatically by mail delivery software.

A message that you sent could not be delivered to one or more of its
recipients. This is a permanent error. The following address(es) failed:

  essebi.sottofondi@hotmail.com
    host sxb1nlsmtpcp-v01.prod.sxb1.secureserver.net [92.204.64.10]
    SMTP error from remote mail server after end of data:
    552 5.2.0 Ld2OpGZSBni9A :: CPANEL :: Message rejected for spam or virus content ::
    Please include this entire message when contacting support ::
    v=2.4 cv=FsLDvUnq c=1 sm=1 tr=0 ts=63d4a798 p=HglATEqT5HoA:10 p=MI2TAEwRjPUA:10 a=Iy8Z3qscOJgaTS4MpTCs/w==:117 a=9+rZDBEiDlHhcck0kWbJtElFXBc=:19 a=gQX1269ULFhLm4Thdby34LUHVW0=:19 a=DWNmvu6Kn7Qv_q8R:21 a=IkcTkHD0fZMA:10 a=XAQIKP4gLaUA:10 a=RvmDmJFTN0MA:10 a=lAZwEcxAPfQA:10 a=31E3P7IjAAAA:8 a=ZCKPfknIAAAA:8 a=Mbk3emdQeNavXdSjmvMA:9 a=QEXdDO2ut3YA:10 a=28iUY8TnNIAA:10 a=qyetXpyhNEV9hYmfPbiU:22 a=W1hioIOS51GtnxcXbZ4V:22 a=XSwqG_ukOO5L6ZPMZEG-:22 a=IfSbD5-B830PxvZ7RRTK:22 ::
    100.00

--1674880920-eximdsn-1060221185
Content-type: message/delivery-status

Reporting-MTA: dns; n3plcpnl0143.prod.ams3.secureserver.net

Action: failed
Final-Recipient: rfc822;essebi.sottofondi@hotmail.com
Status: 5.0.0
Remote-MTA: dns; sxb1nlsmtpcp-v01.prod.sxb1.secureserver.net
Diagnostic-Code: smtp; 552 5.2.0 Ld2OpGZSBni9A :: CPANEL :: Message rejected for spam or virus content :: Please include this entire message when contacting support :: v=2.4 cv=FsLDvUnq c=1 sm=1 tr=0 ts=63d4a798 p=HglATEqT5HoA:10 p=MI2TAEwRjPUA:10 a=Iy8Z3qscOJgaTS4MpTCs/w==:117 a=9+rZDBEiDlHhcck0kWbJtElFXBc=:19 a=gQX1269ULFhLm4Thdby34LUHVW0=:19 a=DWNmvu6Kn7Qv_q8R:21 a=IkcTkHD0fZMA:10 a=XAQIKP4gLaUA:10 a=RvmDmJFTN0MA:10 a=lAZwEcxAPfQA:10 a=31E3P7IjAAAA:8 a=ZCKPfknIAAAA:8 a=Mbk3emdQeNavXdSjmvMA:9 a=QEXdDO2ut3YA:10 a=28iUY8TnNIAA:10 a=qyetXpyhNEV9hYmfPbiU:22 a=W1hioIOS51GtnxcXbZ4V:22 a=XSwqG_ukOO5L6ZPMZEG-:22 a=IfSbD5-B830PxvZ7RRTK:22 :: 100.00

--1674880920-eximdsn-1060221185
Content-type: message/rfc822

Return-path: <mf2lfas89ljs@n3plcpnl0143.prod.ams3.secureserver.net>
Received: from mf2lfas89ljs by n3plcpnl0143.prod.ams3.secureserver.net with local (Exim 4.95)
	(envelope-from <mf2lfas89ljs@n3plcpnl0143.prod.ams3.secureserver.net>)
	id 1pLd2I-003Zrh-K7
	for essebi.sottofondi@hotmail.com;
	Fri, 27 Jan 2023 21:42:00 -0700
To: essebi.sottofondi@hotmail.com
Subject: Essebisottofondi "This e-mail was sent from a contact form on Essebisottofondi"
X-PHP-Script: essebisottofondi.it/index.php for 212.102.57.6
X-PHP-Filename: /home/mf2lfas89ljs/public_html/index.php REMOTE_ADDR: 212.102.57.6
Date: Sat, 28 Jan 2023 04:41:54 +0000
From: Essebisottofondi <wordpress@wp.bdmonster.com>
Reply-To: hacker@suchytt.com
Message-ID: <2fdb8cd2dda5402c9de01252a2608ea5@essebisottofondi.it>
X-Mailer: PHPMailer 5.2.27 (https://github.com/PHPMailer/PHPMailer)
MIME-Version: 1.0
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: 8bit

From: Mamie <hacker@suchytt.com>
Subject: This e-mail was sent from a contact form on Essebisottofondi

Message Body:
Name: Mamie
Email: hacker@suchytt.com
Comment: Your Site Has Been Hacked

PLEASE FORWARD THIS EMAIL TO SOMEONE IN YOUR COMPANY WHO IS ALLOWED TO MAKE IMPORTANT DECISIONS!

We have hacked your website http://essebisottofondi.it and extracted your databases.

How did this happen?

Our team has found a vulnerability within your site that we were able to exploit. After finding the vulnerability we were able to get your database credentials and extract your entire database and move the information to an offshore server.

What does this mean?

We will systematically go through a series of steps of totally damaging your reputation. First your database will be leaked or sold to the highest bidder which they will use with whatever their intentions are. Next if there are e-mails found they will be e-mailed that their information has been sold or leaked and your http://essebisottofondi.it was at fault thusly damaging your reputation and having angry customers/associates with whatever angry customers/associates do. Lastly any links that you have indexed in the search engines will be de-indexed based off of blackhat techniques that we used in the past to de-index our targets.

How do I stop this?

We are willing to refrain from destroying your site’s reputation for a small fee. The current fee is $3000 in bitcoins (0.14 BTC).

The amount(approximately): $3000 (0.14 BTC)
The Address Part 1: bc1qj9u7gmjk5kznnnjgs
The Address Part 2: fvs35fftmtfh7n6wk6jt2

So, you have to manually copy + paste Part1 and Part2 in one string made of 42 characters with no space between the parts that start with "b" and end with "2" is the actually address where you should send the money to.

 Once you have paid we will automatically get informed that it was your payment. Please note that you have to make payment within 72 hours after receiving this message or the database leak, e-mails dispatched, and de-index of your site WILL start!

How do I get Bitcoins?

You can easily buy bitcoins via several websites or even offline from a Bitcoin-ATM. 

What if I don’t pay?

If you decide not to pay, we will start the attack at the indicated date and uphold it until you do, there’s no counter measure to this, you will only end up wasting more money trying to find a solution. We will completely destroy your reputation amongst google and your customers.

This is not a hoax, do not reply to this email, don’t try to reason or negotiate, we will not read any replies. Once you have paid we will stop what we were doing and you will never hear from us again!

Please note that Bitcoin is anonymous and no one will find out that you have complied.

-- 
This e-mail was sent from a contact form on Essebisottofondi (http://essebisottofondi.it)


--1674880920-eximdsn-1060221185--
