Bitcoin Forum

Other => Meta => Topic started by: dooglus on June 27, 2013, 07:33:36 PM



Title: PSA: phishing site? phishing != bitcointalk.org
Post by: dooglus on June 27, 2013, 07:33:36 PM
Someone came into the Just-Dice chat a while ago and posted this link (I changed http to hxxp to prevent linkification):

  hxxp://phishing/index.php?topic=238613.180

Notice the dash in the domain name.

It looks like it acts as a proxy to the forums, but probably steals your password as it does so.

Be very careful logging in to pages that look like the forum but aren't...


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: Book on June 27, 2013, 07:34:16 PM
Stuff like this is just sad.


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: AliceWonder on June 27, 2013, 07:41:56 PM
Thank you for posting this.


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: Remember remember the 5th of November on June 27, 2013, 07:45:54 PM
I think you should report this to theymos so he can send a mass PM to all users warning them about this.


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: carlosmi on June 27, 2013, 07:48:29 PM
Thanks


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: CurbsideProphet on June 27, 2013, 08:00:09 PM
Thanks dooglus, reported it to Google safebrowsing.


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: dooglus on June 27, 2013, 08:32:24 PM
I think you should report this to theymos so he can send a mass PM to all users warning them about this.

I told Psy, who told theymos.


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: dooglus on June 27, 2013, 08:33:44 PM
Thanks dooglus, reported it to Google safebrowsing.

How do we do that?  I expect having several reports works better than a single report.


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: Xch4ng3 on June 27, 2013, 08:35:17 PM
https://www.phishtank.com/phish_detail.php?phish_id=1906724

I just added it to Phishtank too. Hopefully this gets more awareness out there.


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: grue on June 27, 2013, 09:42:20 PM
report here:
https://www.google.com/safebrowsing/report_phish/?tpl=mozilla&hl=en-US&url=http%3A%2F%2Fbitcoin-talk.org%2Findex.php


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: Xch4ng3 on June 27, 2013, 09:43:09 PM
report here:
https://www.google.com/safebrowsing/report_phish/?tpl=mozilla&hl=en-US&url=http%3A%2F%2Fbitcoin-talk.org%2Findex.php

Just reported, thanks. If we could get the submission on Phishtank verified that'd be another great step too.


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: grue on June 27, 2013, 10:01:59 PM
also, get yourself a copy of LOIC  (http://sourceforge.net/projects/loic/)and attack this address:
http://bitcoin-talk.org/index.php?action=printpage;topic=85687.0

the address is specifically chosen to generate the most load. the idea is to soak up the site's bandwidth, or get it banned from the real bitcointalk server.


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: Xch4ng3 on June 27, 2013, 10:07:27 PM
also, get yourself a copy of LOIC  (http://sourceforge.net/projects/loic/)and attack this address:
http://bitcoin-talk.org/index.php?action=printpage;topic=85687.0

the address is specifically chosen to generate the most load. the idea is to soak up the site's bandwidth, or get it banned from the real bitcointalk server.

LOIC won't do much damage and it's a skiddy tool, won't help you in the long run. Hire someone to do it for you or you can set up your own means to take down a website.


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: grue on June 27, 2013, 10:47:09 PM
LOIC won't do much damage and it's a skiddy tool, won't help you in the long run. Hire someone to do it for you or you can set up your own means to take down a website.
the site acts as a proxy to bitcointalk.org. if it makes too many requests, it will get banned.

edit:
https://i.imgur.com/99dFhU3.png
http://isup.me/bitcoin-talk.org

working as intended


Title: Re: PSA: phishing site? bitcoin-talk.org != bitcointalk.org
Post by: Xch4ng3 on June 27, 2013, 10:57:16 PM
Site is running Apache/2.2.20 (Ubuntu) for anyone who wanted more information.


Title: Re: PSA: phishing site? phishing != bitcointalk.org
Post by: AliceWonder on June 28, 2013, 12:28:57 AM
Site is running Apache/2.2.20 (Ubuntu) for anyone who wanted more information.

Never trust what the site reports, you can configure that w/o even needing a recompile.


Title: Re: PSA: phishing site? phishing != bitcointalk.org
Post by: r3wt on June 28, 2013, 12:30:05 AM
i went there last night and typed "your a fagget" "cocksucker" in the login area over and over and over


Title: Re: PSA: phishing site? phishing != bitcointalk.org
Post by: legitnick on June 28, 2013, 05:07:13 AM
Thanks for posting this. Its sad that people resort to such measures just for the chance to steal bitcoins...


Title: Re: PSA: phishing site? phishing != bitcointalk.org
Post by: BadBear on June 28, 2013, 06:49:27 AM
I edited the OP to add the red icon for visibility.


Title: Re: PSA: phishing site? phishing != bitcointalk.org
Post by: scintill on June 28, 2013, 07:04:23 AM
I edited the OP to add the red icon for visibility.

Looks like the forum is also automatically censoring bitcoin dash talk.org, which makes this thread confusing.


Title: Re: PSA: phishing site? phishing != bitcointalk.org
Post by: Rippleflip.com on June 28, 2013, 07:20:45 AM
Someone at -something called- coinchat or similar (website chat for bitcoiners), bragged about being a hacker and talked about this kind of technique of scamming. He also mentioned btcjam being leaking and instawallet's hotwallet hacking. Might have been a troll, though, but I doubt it.


Title: Re: PSA: phishing site? phishing != bitcointalk.org
Post by: jackthebeanstalk on June 28, 2013, 07:26:07 AM
i went there last night and typed "your a fagget" "cocksucker" in the login area over and over and over

Best if you have a script and do that a million times :)


Title: Re: PSA: phishing site? phishing != bitcointalk.org
Post by: legitnick on June 28, 2013, 05:12:39 PM
I edited the OP to add the red icon for visibility.

Good thinking, more people that see this the better.


Title: Re: PSA: phishing site? phishing != bitcointalk.org
Post by: threeip on June 28, 2013, 05:20:34 PM
I edited the OP to add the red icon for visibility.

Good thinking, more people that see this the better.

Except for this :(

Looks like the forum is also automatically censoring bitcoin dash talk.org, which makes this thread confusing.