Bitcoin Forum
September 26, 2025, 04:34:11 PM *
News: Latest Bitcoin Core release: 29.0 [Torrent]
 
  Home Help Search Login Register More  
  Show Posts
Pages: [1]
1  Bitcoin / Electrum / Re: Electrum connecting to a "risky destination" on: February 29, 2024, 07:38:05 PM
The original creator of ElectrumX forked it off in preference of BCH. The server you mentioned was one that supported BCH not BTC.
*BUT* that was years and years ago. No idea what has happened since. The domain might have dropped and someone re-registered it to serve malware.

So long as you did not connect and it's no longer in the list of servers, it's not a large concern.
I was still running Electrum 4.2 (woops), which I downloaded in 2022. I think your explanation may be correct, that the domain used to be legitimate, was still included in Electrum 4.2's server list, and is now flagged as malicious by antivirus programs. I didn't connect to the URL, and my wallet is watch-only, so I don't think any harm was done. But if malware added the network to my server list, then I may still have something on my computer that I need to clean up.

To answer promise's questions: I downloaded Electrum 4.2.2 from electrum.org in June, 2022. I verified the keys to the best of my ability. I wasn't using Tor or the dark web at the time.
2  Bitcoin / Electrum / Re: Electrum connecting to a "risky destination" on: February 29, 2024, 06:11:26 PM
How are you sure that you installed a legitimate copy? Did you verify it?
If you verified it with the GPG tool and the public key provided from the Electrum download page then you are safe.
I'm pretty sure I did all that, but it's been so long I can't be 100% sure. It turns out I'm running an old version of Electrum, though, so I'll update and check again.

Quote
About the antivirus, if it's just a server then you can change it on the Electrum tools>network and uncheck the "select server automatically" and choose other server that you know safe.
In my old version, when I went to Tools>Network, the electrumx dot info URL showed up under "Other known servers." After updating to the current version, however, it's no longer there. So either malware added the URL to my servers list, or it was at one time a legitimate network.
3  Bitcoin / Electrum / Electrum connecting to a "risky destination" on: February 29, 2024, 03:45:54 PM
I've been running Electrum for a long time, but this is the first time I've had my antivirus block it for trying to connect to a "risky destination."

The URL it tried to connect to begins with electrumx and ends with dot info. According to my research, this URL is associated with malware.

Electrum has never given me trouble before, so I'm pretty sure I installed a legitimate copy. The malware probably originated elsewhere and infected my Electrum. Any idea what malware it is and what I should do about it?

(P.S. My wallet is watch-only, so there's no great risk at the moment.)
Pages: [1]
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!