HEX
Server: LiteSpeed
System: Linux cde2.duelhost.dk 4.18.0-553.34.1.lve.el8.x86_64 #1 SMP Thu Jan 9 16:30:32 UTC 2025 x86_64
User: dtptviut (1121)
PHP: 8.0.30
Disabled: exec,system,passthru,shell_exec,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
Upload Files
File: /home/dtptviut/Maildir/new/1752869902.M880393P2777914.cde2.duelhost.dk,S=5034,W=5139
Return-Path: <>
Delivered-To: dtptviut@julebloggen.dk
Received: from cde2.duelhost.dk
	by cde2.duelhost.dk with LMTP
	id iWZGNA6semg6YyoAnRjtMw
	(envelope-from <>)
	for <dtptviut@julebloggen.dk>; Fri, 18 Jul 2025 22:18:22 +0200
Return-path: <>
Envelope-to: dtptviut@julebloggen.dk
Delivery-date: Fri, 18 Jul 2025 22:18:22 +0200
Received: from mail by cde2.duelhost.dk with local (Exim 4.98.2)
	id 1ucrXC-0000000Bgx1-3acL
	for dtptviut@julebloggen.dk;
	Fri, 18 Jul 2025 22:18:22 +0200
X-Failed-Recipients: morten@lansky.dk
Auto-Submitted: auto-replied
From: Mail Delivery System <Mailer-Daemon@cde2.duelhost.dk>
To: dtptviut@julebloggen.dk
References: <FZ1i8vxIst382a9TiDLmsTAz56Sb6stgIT7AOL2RLg@julebloggen.dk>
Content-Type: multipart/report; report-type=delivery-status; boundary=1752869902-eximdsn-749816337
MIME-Version: 1.0
Subject: Mail delivery failed: returning message to sender
Message-Id: <E1ucrXC-0000000Bgx1-3acL@cde2.duelhost.dk>
Date: Fri, 18 Jul 2025 22:18:22 +0200

--1752869902-eximdsn-749816337
Content-type: text/plain; charset=us-ascii

This message was created automatically by mail delivery software.

A message that you sent could not be delivered to one or more of its
recipients. This is a permanent error. The following address(es) failed:

  morten@lansky.dk
    host smtp.mailchannels.net [54.188.79.198]
    SMTP error from remote mail server after end of data:
    550 5.7.1 [CS] Message blocked. If this is a false positive, please report this to your hosting service provider. See https://console.mailchannels.net/insights/bounce?auid=42lgvtgdxx&sender=dtptviut%40julebloggen.dk&txid=02e4eb674bee8c01

--1752869902-eximdsn-749816337
Content-type: message/delivery-status

Reporting-MTA: dns; cde2.duelhost.dk

Action: failed
Final-Recipient: rfc822;morten@lansky.dk
Status: 5.0.0
Remote-MTA: dns; smtp.mailchannels.net
Diagnostic-Code: smtp; 550 5.7.1 [CS] Message blocked. If this is a false positive, please report this to your hosting service provider. See https://console.mailchannels.net/insights/bounce?auid=42lgvtgdxx&sender=dtptviut%40julebloggen.dk&txid=02e4eb674bee8c01

--1752869902-eximdsn-749816337
Content-type: message/rfc822

Return-path: <dtptviut@julebloggen.dk>
Received: from dtptviut by cde2.duelhost.dk with local (Exim 4.98.2)
	(envelope-from <dtptviut@julebloggen.dk>)
	id 1ucrX9-0000000BgtN-39oi
	for morten@lansky.dk;
	Fri, 18 Jul 2025 22:18:19 +0200
To: morten@lansky.dk
Subject: Contact Form Message from Julebloggen
Date: Fri, 18 Jul 2025 20:18:19 +0000
From: WordPress <morten@lansky.dk>
Message-ID: <FZ1i8vxIst382a9TiDLmsTAz56Sb6stgIT7AOL2RLg@julebloggen.dk>
X-Mailer: EasyWPSMTP/Mailer/mail 2.11.0
MIME-Version: 1.0
Content-Type: text/plain; charset=UTF-8

Name: Katrin Whaley

Email: hacked@julebloggen.dk

Message: We have hacked your website https://julebloggen.dk and extracted your databases.

How did this happen?

Our team has found a vulnerability within your site that we were able to exploit. After finding the vulnerability we were able to get your database credentials and extract your entire database and move the information to an offshore server.

What does this mean?

We will systematically go through a series of steps of totally damaging your reputation. First your database will be leaked or sold to the highest bidder which they will use with whatever their intentions are. Next if there are e-mails found they will be e-mailed that their information has been sold or leaked and your site https://julebloggen.dk was at fault thusly damaging your reputation and having angry customers/associates with whatever angry customers/associates do. Lastly any links that you have indexed in the search engines will be de-indexed based off of blackhat techniques that we used in the past to de-index Our targets.

How do i stop this?

We are willing to refrain from destroying your site\'s reputation for a small fee. The current fee is $5000 in bitcoins (0.043 BTC).

Send the bitcoin to the following Bitcoin address (Make sure to copy and paste):

 bc1qel7v90m26e98a2mlgka5t2087wxk733ssv6u7h 

Once you have paid we will automatically get informed that it was your payment. Please note that you have to make payment within 5 days after receiving this e-mail or the database leak, e-mails dispatched, and de-index of your site WiLL start!

How do i get Bitcoins?

You can easily buy bitcoins via several websites or even offline from a Bitcoin-ATM.

What if i don\'t pay?

We will start the attack at the indicated date and uphold it until you do, there\'s no counter measure to this, you will Only end up wasting more money trying to find a solution. We will completely destroy your reputation amongst google and your customers.

This is not a hoax, do not reply to this email, don\'t try to reason or negotiate, we will not read any replies. Once you have paid we will stop what we were doing and you will never hear from us again!

Please note that Bitcoin is anonymous and no one will find out that you have complied.


--1752869902-eximdsn-749816337--