Bitcoin Forum
June 22, 2024, 12:52:38 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 [2]  All
  Print  
Author Topic: Coins Stolen from my QT Wallet  (Read 2800 times)
Rawted
Hero Member
*****
Offline Offline

Activity: 742
Merit: 500



View Profile
February 18, 2014, 02:03:50 AM
 #21

BTW, my Malwarebytes   sometimes block outgoing connections originated from Qt Client 0.8.6, for example:
IP-BLOCK   93.115.84.122 (Type: outgoing, Port: 56233, Process: bitcoin-qt.exe)

If anyone knows about this, please share your knowledge.
Thanks!

https://www.projecthoneypot.org/ip_93.115.84.122
faetos
Hero Member
*****
Offline Offline

Activity: 744
Merit: 514

gotta let a coin be a coin


View Profile
February 18, 2014, 02:05:50 AM
 #22

Do you have a Mac? There's a bitcoin stealing trojan out there: http://www.securemac.com/CoinThief-BitCoin-Trojan-Horse-MacOSX.php. I'm sorry to hear about your loss, man.
Crypto_Cumbrian (OP)
Member
**
Offline Offline

Activity: 113
Merit: 10


View Profile
February 18, 2014, 09:15:26 AM
 #23

PC Windows 8

Possible Malware in Maxcoin Clients that I had downloaded.

But still don't understand that if Malware / Keyloggers were the reason. Theses were downloaded after the last time I had used (sent some bitcoins) my QT wallet password.

Is there still a risk even if your wallet is encrypted , I need to think of some better security.

Router is a BT HomeHub 5.

Will be rebuilding PC later today or tomorrow.

At lease KNC are keeping my other coins safe for me ;-) hope they haven't spent them on anything foolish.
Phoenix1969
Legendary
*
Offline Offline

Activity: 938
Merit: 1000


LIR DEV


View Profile
February 18, 2014, 02:37:24 PM
 #24

Paper Wallets are the safest way to go, and they are actually much easier than any video or instructions out there show.


On your loss: Follow your money on the blockchain, and Google every wallet number until it links with a verified account, then present the info to the proper authority, which varies upon geographical location.

also...   http://cseweb.ucsd.edu/~smeiklejohn/
she can help you by using a new btc tracking algorithm she is developing.

Good luck.


                     ▀▀█████████▀████████████████▄
                        ████▄      ▄████████████████
                     ▄██████▀  ▄  ███████████████████
                  ▄█████████▄████▄███████████████████
                ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀████████
                                               ▀▀███▀
    ▄█▀█       ▄▀  ▄▀▀█  ▄▀   █████████████████▄ ██▀         ▄▀█
   ▄█ ▄▀      ▀█▀ █▀ █▀ ▀█▀  ███████████████████ █▀ ▀▀      ▄▀▄▀
  ▄█    ▄███  █     █   █   ████████████████████  ▄█     ▄▀▀██▀ ▄███
███▄▄▄  █▄▄▄ █▄▄ ▄▄▀   █▄▄ ██████████████████▀▀   █▄▄ ▄▄ █▄▄█▄▄▄█▄▄▄
                           ▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
                            ▀▀█████████████▄
                                █████████████▄
                                  █████████████▄
                                    ▀███████▀▀▀▀▀
                                      ▀████▀
                                        ▀█▀
LetItRide
                        ▄███████████▄
                       ██  ██████████▄
                     ▄█████████████  ██▄
            ▄▄▀█▄▄▄▄▄████████████████████▄
        ▄▄█▀   ███████████  █████  ████  █
    ▄██████ ▄▄███████████████████████████▀
 ▄▀▀ ██████████████████████████  ████  █
█  ▄███████████▀▀▀█████████████████████
██████████████    ████████▀▀██████  █▀
██████████████▄▄▄██████████   ▀▀▀▀▀▀▀
███▀ ▀██████████████████████
██    ███████████████████████
██▄▄██████████████████████████
██████████████▀   ██████████
  █████████████   ▄██████▀▀
     ▀▀██████████████▀▀
         ▀▀██████▀▀
[BTC]▄█████████████▀ ▄█
██            ▄█▀
██          ▄██ ▄█
██ ▄█▄    ▄███  ██
██ ▀███▄ ▄███   ██
██  ▀███████    ██
██    █████     ██
██     ███      ██
██      ▀       ██
██              ██
▀████████████████▀
augustocroppo
VIP
Hero Member
*
Offline Offline

Activity: 756
Merit: 503


View Profile
February 18, 2014, 03:19:32 PM
 #25

If I followed it correctly, your coins seem to have gone to 1QB8Ds5KbGYBLQa5RyDQ2sVUeSKWf7qgkZ, which I believe is bitmain's. Looks like your stolen coins are being used to buy antminers.

Contact bitmain??

What make you think it is Bitmain? There is no evidence which shows Bitmain used this address, except if you know something which is far from Google search reach.

I found an indication the address is controlled by Bitmain:

Where do you get 3500 orders? I only see 1618 transactions in their main wallet and a bunch of them are from before the price dropped.
https://blockchain.info/da/address/1QB8Ds5KbGYBLQa5RyDQ2sVUeSKWf7qgkZ

Considering they had(have?) 400TH online and is supposed to ship out 500TH(rough estimate, I know) I think the odds of them running dry is kinda low - I don't think they would have their entire stock online. Even though around 100 new transactions have popped up during the last 24h...
bkminer
Full Member
***
Offline Offline

Activity: 216
Merit: 100

Don't let the nam-shub in your operating system.


View Profile
February 18, 2014, 03:31:45 PM
 #26

Installed any random altcoin clients lately? Another member reporting that may be the culprit.

Is there a list of alt coin clients that could be the culprit ?

Thanks,
roslinpl
Legendary
*
Offline Offline

Activity: 2212
Merit: 1199


View Profile WWW
February 18, 2014, 10:48:35 PM
 #27

Just booted my PC and sync'd my Wallet, only to find I have been robbed.

Status: 310 confirmations
Date: 16/02/2014 03:43
To: 1JJewUpXpBHNDWVqzkKk7kWa7pQzRGfzpG
Debit: -11.24 BTC
Transaction fee: -0.0006 BTC
Net amount: -11.2406 BTC
Transaction ID: df776f8492caaee7004594f9e8b399342e24ce7febd8b79621ac7ded958b78ba

Anyone know of how this can be traced or should I just accepted I have been robbed and their nothing I can do.

Heeeeelp

C_C

did you get any reply about who was sending your money? Smiley
Baitty
Hero Member
*****
Offline Offline

Activity: 532
Merit: 500

Currently held as collateral by monbux


View Profile
February 18, 2014, 10:50:37 PM
 #28

Let us know all of your alt coin clients you have installed becuase it seems one of them are a trojan.

Currently held as collateral by monbux
Crypto_Cumbrian (OP)
Member
**
Offline Offline

Activity: 113
Merit: 10


View Profile
February 19, 2014, 01:18:23 PM
 #29

The only Altcoin Clinets software that I have installed of Late.

Were CPUminer, Mined and QT wallet for Maxcoin. All of theses were downloaed from either github or via Twitter links on the Maxcoin release day.

No other software had been installed on my PC since I last used My Bitcoin QT wallet passs phrase to send a Transaction.

PC now rebuilt.

No answer to PM sent to Bitmain.

Big Lesson Learned. ;-)
roslinpl
Legendary
*
Offline Offline

Activity: 2212
Merit: 1199


View Profile WWW
February 19, 2014, 01:29:25 PM
 #30

The only Altcoin Clinets software that I have installed of Late.

Were CPUminer, Mined and QT wallet for Maxcoin. All of theses were downloaed from either github or via Twitter links on the Maxcoin release day.

No other software had been installed on my PC since I last used My Bitcoin QT wallet passs phrase to send a Transaction.

PC now rebuilt.

No answer to PM sent to Bitmain.

Big Lesson Learned. ;-)

Oh a Big lesson... Like 11 BTC Cheesy
HUGE lesson Smiley

But don't be sad. Mark K. lost 4000BTC Smiley

I hope Bitmain will reply soon.
abit2slo
Member
**
Offline Offline

Activity: 80
Merit: 10


View Profile
February 19, 2014, 03:21:03 PM
 #31

sorry about this man!you've probably been robbed. Well, at least it is your experience and you've learned something.

Pages: « 1 [2]  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!