Pervert Scam Email Pegasus

Reported
Anonymous
2024-08-05T19:10:24+00:00

Hi there

I received an email at 05:56 today stating that I had had Pegasus spyware installed on my PC and that explicit videos of me would be shared with my contacts unless I paid a virtual currency ransom.

I did find it in my junk folder, but I still wanted to reach out as this email has caused me a great deal of anxiety. I have viewed online forums that state the email is a common scam, and that there are others similar to it in circulation, but I would still appreciate an expert opinion.

Also it was send with my email, and outlook detect it like it was me

For person that face the same problem

You can check the source code of the email and see if fsp fails, that mean that the guy spoofed the email so you are not hacked guys

It look like this

protection.outlook.com: domain of hotmail.com does not designate 95.214.82.181 as permitted sender

Outlook | Web | Outlook.com | Email

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments
Answer accepted by question author
Anonymous
2024-08-06T03:34:45+00:00

Hi NEVARLeVrai,

Thank you for using Microsoft products and posting in the community.

I know you're worried about your email being hacked. Here are some suggestions to help you deal with this situation and keep your device safe:

  1. Do not respond or pay

First and foremost, do not respond to the threatener or make a payment to them. Such emails are usually phishing or blackmail, designed to intimidate you for money.

  1. Confirm the authenticity of the email

Check the sender's address: Double-check the sender's email address to make sure it matches your email address exactly. Sometimes, attackers forge sender information.

Check the header information: If you know how to view the full header information of an email, you can check if the email is really from your domain.

  1. Change your password

Change your Microsoft account password immediately. Make sure you choose a strong password and enable double authentication (2FA) for added security.

Check other accounts: if you use the same password for other websites, it is recommended that you change these as well.

  1. Check device security

Run a security scan: Use a trusted antivirus program to run a full scan of your device. Make sure your antivirus software is up to date.

Check applications: See if there are any unidentified applications or files on your device, especially recently installed ones.

  1. Monitor Account Activity

Check Account Activity: Sign in to your Microsoft account and review recent sign-in activity to make sure there aren't any suspicious sign-ins.

Check other important accounts: Check the activity of your banking, social media, and other important accounts to ensure there is no unauthorized access.

  1. Report an Incident

Contact local law enforcement: If you feel threatened or are concerned about your safety, consider reporting it to your local law enforcement agency.

  1. Understanding Pegasus spyware

How to check for infections: Detecting Pegasus spyware isn't easy, but there are a number of security tools you can try to scan for it.

Keep your device up-to-date: Make sure your operating system and applications are kept up-to-date to prevent known vulnerabilities from being exploited.

I hope these programs can help you.

Best regards

Jay | Microsoft Community Support Specialist

0 comments No comments

118 additional answers

Sort by: Oldest
  1. Anonymous
    2024-12-30T21:22:45+00:00

    Just a precision, OP said "You can check the source code of the email and see if fsp fails, that mean that the guy spoofed the email so you are not hacked guys"

    It may be a typo but i had to search for "spf=fail" in the email source.

    tl;dr: it's 'SPF', not 'FSP'.

    0 comments No comments
  2. Anonymous
    2024-12-31T16:46:35+00:00

    seems like softfail or hardfail is a emailspoof aswell. right?

    so i am ok?

    0 comments No comments
  3. Anonymous
    2024-12-31T23:06:18+00:00

    Received: from DU2PEPF00028D04.eurprd03.prod.outlook.com (2603:10a6:10:c0:cafe::fd) by DBBPR09CA0011.outlook.office365.com (2603:10a6:10:c0::23) with Microsoft SMTP Server (version=TLS1_3, cipher=TLS_AES_256_GCM_SHA384) id 15.20.8293.20 via Frontend Transport; Mon, 30 Dec 2024 23:19:41 +0000 Authentication-Results: spf=softfail (sender IP is 172.120.138.143) smtp.mailfrom=live.com; dkim=none (message not signed) header.d=none;dmarc=fail action=none header.from=live.com;compauth=fail reason=001 Received-SPF: SoftFail (protection.outlook.com: domain of transitioning live.com discourages use of 172.120.138.143 as permitted sender) Received: from subjinske.com (172.120.138.143) by DU2PEPF00028D04.mail.protection.outlook.com (10.167.242.164) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.8314.11 via Frontend Transport; Mon, 30 Dec 2024 23:19:40 +0000 X-IncomingTopHeaderMarker:

    Not so hard for us computer nerds to find out that this is not actual hack, but it is very good, and it looks legit, I believe a lot of not computer peps felt on it....

    You need to stop this Windows Team, prevent another sender from being able to place victims email in sender field!
    Thanks

    0 comments No comments
  4. Anonymous
    2025-01-02T06:44:10+00:00

    This Email Was Bs And had me laughing like okay do it then if your watching me constantly then I’m sure you’ve seen me quite a lot probably in the shower on the throan in the throws of love , but I still felt the need to do some precautionary steps so antivirus across the whole home either way comes built in with my router , but never hurts to check the devices found nothing, But I did find where there has been a massive amount of attempts to access my Microsoft account at least 10-20 times a day from Russia china and several other foreign countries and a few right here in the United States, So as a precaution I changed my passwords and added 2nd layer protection and added authentication and backed up my important OneDrive Files Because at the rate they are trying to access my account it is kind of scary I’ve never seen this much activity to gain control of my personal data so it’s best to be prepared for the inevitable which will never happen hopefully. And I find it highly useful to run my entire network from behind a VPN - Configured Via Router - So Really Who Are These Fools Kidding - I Been Building Computers Since I Was 10 Yrs Old. But Yes This Was a Great Email - Well Worded and Thought out loved the line where they called themselves a god of sorts.

    0 comments No comments