• Welcome to DNForum.com - Domain Investor Forum, Free Domain Marketplace and a community for 45+ domain pros
    If you are new to domains and looking to buy, sell and learn about domains then you have come to the right place. DNForum is the oldest global domain name community on the internet and continues to grow every day. There are over 45,000 domainers on DNForum doing everything from buying domains, selling domains, using our free in-house built tools, learning about domains and discussing domains. Take a minute and Register.

Threatened by Hackers - any recourse?

Status
Not open for further replies.

Gerry

Dances With Dogs
Legacy Exclusive Member
Joined
Dec 3, 2006
Messages
14,984
Reaction score
1,302
Just got an email trying to extort money if I do not pay $200 I will be subjected to a DDoS attack.

Funny thing is the domain mentioned is parked:

1939-1945.com

If anyone knows what to do with these punks, feel free to forward to proper authorities.



From - Wed Jul 07 13:00:43 2010
X-Account-Key: account4
X-UIDL: 1278520454.182232.p3plgemini04-06.prod.phx.1084770624
X-Mozilla-Status: 0001
X-Mozilla-Status2: 00000000
X-Mozilla-Keys:
Received: (qmail 23697 invoked from network); 7 Jul 2010 16:34:14 -0000
Received: from unknown (HELO m1pismtp01-027.prod.mesa1.secureserver.net) ([10.8.12.30])
(envelope-sender <[email protected]>)
by p3plsmtp04-02.prod.phx3.secureserver.net (qmail-1.03) with SMTP
for <(edited out)>; 7 Jul 2010 16:34:14 -0000
X-IronPort-Anti-Spam-Result: AmADAFdJNEyuJJbmgWdsb2JhbACTIS4BAYtnA2wBARYiIsZsBIN4
Received: from 174.36.150.230-static.reverse.softlayer.com (HELO mail.myserver.com) ([174.36.150.230])
by m1pismtp01-027.prod.mesa1.secureserver.net with ESMTP; 07 Jul 2010 09:34:13 -0700
Received: from sea1-hyperv ([127.0.0.1]) by sea1-hyperv.hrn9.com with MailEnable ESMTP; Wed, 7 Jul 2010 09:08:19 -0700
Date: Wed, 07 Jul 2010 09:08:19 -0700
From: [email protected]
Subject:
To: (edited out)
X-ME-Bayesian: 0.000000
X-Nonspam: None


You are welcomed with a command of hackers ZeleniyHach

We hold a huge network of Distributed Denial Of Service Attack, allowing to suspend any web site. We have been watching 1939-1945.com and were able to find out that you have spent pretty money much for its advancement and we want to to offer you to spend a little more yet. Just as little as 200 bucks as a voluntary donation to our fund will keep your web site away from DDOS attack.

200 bucks is not so much also will help you to avoid greater problems in the future.

FOR DULLS..!!! IF YOU DO NOT OFFER TO US 200 bucks WE WILL KILL YOUR WEB SITE!

Unfortunately, we accept only Webmoney Paymer Cheks, so make sure to get your fat asses out and without assistance find out how to transfer money into it. We give you 48 hours. If after 48 hours we will not get 200 dollars, there is one more 0 will be added to 200 bucks, i.e. 2000 bucks and so on until you come to reason.

Stingy pays twice )

When you are ready, just send the check as your response to this message ([email protected]).
In subject matter of the letter specify the domain with greater letters, it is a lot of you We are the one, respect our work.

Respectfully, Top Manager of ZeleniyHach project.
 
Last edited by a moderator:
"Respectfully" :D
 
Forward to the police / FBI cyber crimes unit?
 
i got one of these today as well. It's parked at domainsponsor - i forwarded it to their support department - they can deal with it.
 
Forward it to fbi.gov

---------- Post added at 01:25 PM ---------- Previous post was at 01:24 PM ----------

You should also forward the email to abuse@ yahoo, and abuse@ godaddy (came from or through one of their servers).
 
I have just received the same e-mail for 1b5.com another parked domain.
 
And the yahoo account is likely hacked.
 
I would send them a paypal request for $200 :laugh:
 
I don't have a yahoo account of any sort.

No, the yahoo account they want the money sent to. Yahoo should know about it.

Also, softlayer.com should receive a copy to abuse@, as they are probably hosting a hacked vps.
 
We got the message an hour and a half ago. We've learned not to engage with any joking.
 
You learned not to engage with any joking, so what exactly do you mean by that - as in you have dealt with them already and....?
 
google the email address it was sent from - [email protected] dingaling is posting in forums and and probably easy to find :D
 
Where is Acro at :cool:
 
Tell them to send you $400 via the same payment and you will not take any legal action, report them to the law enforcement agencies or tell their parents.
 
Well they can feel free to ddos attack both of my balls where they hang, my website is google.com :lol:
 
I also got one of these today. The domain in question is a holding page; so not overly bothered.

Can't find anywhere to report it in the UK - Police e-Crimes unit doesn't seem to cover this kind of thing??? Unless I just haven't found that page yet!

-------------------------------------
Delivered-To: [email protected]
Received: by 10.223.124.74 with SMTP id t10cs543651far;
Wed, 7 Jul 2010 09:11:37 -0700 (PDT)
Received: by 10.114.61.13 with SMTP id j13mr7686018waa.139.1278519095371;
Wed, 07 Jul 2010 09:11:35 -0700 (PDT)
Return-Path: <[email protected]>
Received: from mail.myserver.com (174.36.150.230-static.reverse.softlayer.com [174.36.150.230])
by mx.google.com with ESMTP id u25si14120100wak.47.2010.07.07.09.11.32;
Wed, 07 Jul 2010 09:11:32 -0700 (PDT)
Received-SPF: softfail (google.com: domain of transitioning [email protected] does not designate 174.36.150.230 as permitted sender) client-ip=174.36.150.230;
Authentication-Results: mx.google.com; spf=softfail (google.com: domain of transitioning [email protected] does not designate 174.36.150.230 as permitted sender) [email protected]
Message-Id: <[email protected]>
Received: from sea1-hyperv ([127.0.0.1]) by sea1-hyperv.hrn9.com with MailEnable ESMTP; Wed, 7 Jul 2010 09:10:03 -0700
Date: Wed, 07 Jul 2010 09:10:03 -0700
From: [email protected]
Subject:
To: [email protected]
X-ME-Bayesian: 0.000000
----------------------------------

Hope he sends one to his mum by mistake! He'll get an early bath and no supper :cheesy:
 
Status
Not open for further replies.
Back
Top Bottom