Phishing Scam 2024.11.13 - Bitcoin Ransomware Scam Email

Date and Time First Identified

  • November 13, 2024 at approximately 5pm

Phishing Method

  • Social engineering email with recipient name showing as Bradley Wright but with email pwatambwa@zimstat.co.zw
  • The email exhibits suspicious sending behavior: the sender uses fear tactics in the form of a Bitcoin extortion attempt.
  • The email threatens to release images and personal information that will ruin the reputation of the recipient.
  • The email gives a timeline of two days to send a payment and threatens consequences if law enforcement is contacted.

User Response

  • Mark the message as spam or junk
  • Block the sender (so you don’t get another message like this) 
  • Do not reply to the message. 
  • Forward the message to phishing@dartmouth.edu
  • This is most likely a scam. However, if you feel like your safety is at risk, you can contact the Dartmouth Department of Safety and Security at 603-646-4000.

Sample Unformatted Email

Subject: High level of danger

Hi.

This is the last warning.

I hacked your operating system.

All personal data from your devices has been copied to my servers. I have access to your messengers, social networks, emails, chat history and contact list.

My virus constantly updates signatures (it is driver-based) so it remains invisible to antivirus software.

While collecting information about you, I found out that you are a big fan of adult websites.

*Sentence redacted*

I've already made a screen capture.

*Sentence redacted*

Your face is perfectly visible.I do not think this kind of content will have a positive impact on your reputation.

I can send this video to everyone who knows you.

I also have no problem with making all of your personal information public on the Internet.

I think you know what I mean. It would be a real disaster for you. I could ruin your life forever.

I think you really do not want that to happen.

Let's solve it this way: you transfer me 1300 dollars (USD) (in Bitcoin equivalent at the exchange rate at the moment of funds transfer), and I will immediately remove all this dirt from my servers. After that we will forget about each other.

Bitcoin wallet for payment:
*Link redacted*

(If you do not know how to transfer money and what Bitcoin is. Use Google.)

I give you 2 working days to transfer the money. The timer started automatically as soon as you opened the email. I will receive a notification about the opening of this email.

Do not try to complain anywhere, as there is no way to track the wallet, the mail from where the letter came, and is not tracked and created automatically, so there is no point in writing to me.

Do not try to contact the police and other security services, otherwise your data will be published.

Changing passwords in social networks, mail, device will not help you, because all the data is already downloaded to a cluster of my servers.

Good luck and do not do anything stupid. Think about your future.