Computer security researchers discovered a new variant of email scam, which titled with “Frauders known your old passwords. Access data must be changed.“. Thousands of people around the world have received this email scam. Our team continue to receive reports of fraudulent messages. Here below is an example of the latest variation of this email scam.
While terrifying at first, it is classic Bitcoin Blackmail Scam. Blackmail Email Scam is old extortion scheme – which try to guilt people into paying off someone claiming to have secretly recorded video or compromising information. It is based on the fact that:
- the scam has been sent to countless people like any other widespread email spam
- the fraudulent message have the “spam” style grammar
- computer security professionals has determined that these emails attempts to force users into paying the requested ransom and that no actual video (screenshoots) exists
There are variations in the wording of the email body, but all of these messages are basically the same. The scammers constantly switch up the body of scam emails in order to bypass spam filters. Recent version demands $756 ransom payment (Bitcoin Wallet Address is: 1EVe67RXBA28s14cnnsVv1WkxhtoXMjCTy).
Subject: Frauders known your old passwords. Access data must be changed. Hello! I'm a programmer who cracked your email account and device about half year ago. You entered a password on one of the insecure site you visited, and I catched it. Of course you can will change your password, or already made it. But it doesn't matter, my rat software update it every time. Please don't try to contact me or find me, it is impossible, since I sent you an email from your email account. Through your e-mail, I uploaded malicious code to your Operation System. I saved all of your contacts with friends, colleagues, relatives and a complete history of visits to the Internet resources. Also I installed a rat software on your device and long tome spying for you. You are not my only victim, I usually lock devices and ask for a ransom. But I was struck by the sites of intimate content that you very often visit. I am in shock of your reach fantasies! Wow! I've never seen anything like this! I did not even know that SUCH content could be so exciting! So, when you had fun on intime sites (you know what I mean!) I made screenshot with using my program from your camera of yours device. After that, I jointed them to the content of the currently viewed site. Will be funny when I send these photos to your contacts! And if your relatives see it? BUT I'm sure you don't want it. I definitely would not want to ... I will not do this if you pay me a little amount. I think $756 is a nice price for it! I accept only Bitcoins. My BTC wallet: 1EVe67RXBA28s14cnnsVv1WkxhtoXMjCTy If you have difficulty with this - Ask Google "how to make a payment on a bitcoin wallet". It's easy. After receiving the above amount, all your data will be immediately removed automatically. My virus will also will be destroy itself from your operating system. My Trojan have auto alert, after this email is looked, I will be know it! You have 2 days (48 hours) for make a payment. If this does not happen - all your contacts will get crazy shots with your dirty life! And so that you do not obstruct me, your device will be locked (also after 48 hours) Do not take this frivolously! This is the last warning! Various security services or antiviruses won't help you for sure (I have already collected all your data). Here are the recommendations of a professional: Antiviruses do not help against modern malicious code. Just do not enter your passwords on unsafe sites! I hope you will be prudent. Bye.
There is one thing that it does to make itself appear real. It uses your own e-mail address as the “From” address, but do not be fooled. This phishing scam uses so-called “email spoofing”. Email spoofing is the creation of email messages with a forged sender address. Email spoofing has been around for a long time! Scammers use it in phishing attacks to force users into thinking they have received mail message from a friend or trusted person.
What to do when you receive the “Frauders known your old passwords. Access data must be changed.” EMAIL SCAM
We advice to someone who gets this fraudulence message:
- Do not panic.
- Scammers will try to rush you, pressure you to make a decision to pay him. We recommend you do not pay a ransom, because your payment will only increase attacks against you.
- If there’s a link in the scam email, do not click it, otherwise you could unwittingly install malware or ransomware on your computer.
- Report the email spam to the FTC at https://www.ftc.gov/
- Scan your computer for malware.
- Install an anti-phishing software.
- If you receive an email that is similar but not the same as the example above, make sure you remove any personal info in this message, then post it as comment on this article. It will help our team monitor the latest scams.
How to scan your computer for malware
There are not many good free anti-malware programs with high detection ratio. The effectiveness of malicious software removal tools depends on various factors, mostly on how often their virus/malware signatures DB are updated in order to effectively detect modern malicious software, adware, browser hijackers and other PUPs. We suggest to use several programs, not just one. These programs which listed below will help you remove all components of malware from your disk and Windows registry.
You can scan your computer for malware with a help of Zemana Free. We recommend this malicious software removal utility because it can easily delete keyloggers, worms, trojans, PUPs, adware software and other malicious software with all their components such as folders, files and registry entries.
Download Zemana Anti Malware from the link below.
164108 downloads
Author: Zemana Ltd
Category: Security tools
Update: July 16, 2019
When the download is complete, close all windows on your computer. Further, open the install file called Zemana.AntiMalware.Setup. If the “User Account Control” prompt pops up as shown on the image below, click the “Yes” button.
It will open the “Setup wizard” that will allow you install Zemana on the PC system. Follow the prompts and do not make any changes to default settings.
Once installation is finished successfully, Zemana Free will automatically start and you can see its main window as on the image below.
Next, click the “Scan” button . Zemana utility will start scanning the whole machine to find out malicious software. This process can take some time, so please be patient. While the Zemana tool is scanning, you can see count of objects it has identified as being infected by malware.
Once the system scan is finished, Zemana Free will show a scan report. Next, you need to click “Next” button.
The Zemana Free will delete malware and other security threats. Once the clean up is finished, you may be prompted to reboot your PC.
How to protect yourself from phishing web-sites
It’s also critical to protect your web browsers from phishing and malicious webpages by using an adblocker program such as AdGuard. Security experts says that it’ll greatly reduce the risk of malware, and potentially save lots of money. Additionally, the AdGuard can also protect your privacy by blocking almost all trackers.
Visit the following page to download AdGuard. Save it on your MS Windows desktop.
26656 downloads
Version: 6.4
Author: © Adguard
Category: Security tools
Update: November 15, 2018
After downloading it, run the downloaded file. You will see the “Setup Wizard” screen as shown in the following example.
Follow the prompts. When the setup is complete, you will see a window as shown in the figure below.
You can press “Skip” to close the installation program and use the default settings, or click “Get Started” button to see an quick tutorial that will assist you get to know AdGuard better.
In most cases, the default settings are enough and you don’t need to change anything. Each time, when you run your personal computer, AdGuard will start automatically and stop undesired advertisements, block phishing, harmful or misleading web-sites. For an overview of all the features of the program, or to change its settings you can simply double-click on the AdGuard icon, that is located on your desktop.
Hello,
Today I received a very similar threat to the example above, but to sent to my company email address (not my personal Gmail address). I will be changing the company email password first thing tomorrow morning.
The message I received is worded differently, but the threat is the same, asking for $741 to be sent to a Bitcoin address (BTC Wallet) as: 13nsNBfoVwXDHY4puRD1AHjARbomKhseEL
It also claims to have compromising info, all my contacts etc, and says I have 50 hours to pay.
I don’t want to use my company email again until I have a new password, however I have screenshots of the entire message – if that is more helpful let me know if I can attach them.
Thank you for the excellent advice, I immediately downloaded Zemana AntiMalware and did a scan, prior to that I ran a full Kaspersky scan as well. No threats were detected by either scan.
I will also email the FTC as advised above and attach the screenshots there.
Thank you again for posting this very useful advice.