Bitcoin Forum
May 02, 2024, 04:09:42 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: Hacked or paranoid?  (Read 1486 times)
AnotherQuestion (OP)
Newbie
*
Offline Offline

Activity: 5
Merit: 0


View Profile
April 09, 2015, 05:31:25 PM
 #1

When I log into Cryptsy it shows the padlock on the address bar for https for a few seconds, then the padlock disappears. When the padlock is there if I click on the address bar it says "website does provide identity information" ... "Project investors"... "Certificate by Comodo" etc. When the padlock disappears it says "this website does not provide identity information". The address in the bar is always https cryptsy.com.
1714666182
Hero Member
*
Offline Offline

Posts: 1714666182

View Profile Personal Message (Offline)

Ignore
1714666182
Reply with quote  #2

1714666182
Report to moderator
1714666182
Hero Member
*
Offline Offline

Posts: 1714666182

View Profile Personal Message (Offline)

Ignore
1714666182
Reply with quote  #2

1714666182
Report to moderator
1714666182
Hero Member
*
Offline Offline

Posts: 1714666182

View Profile Personal Message (Offline)

Ignore
1714666182
Reply with quote  #2

1714666182
Report to moderator
Whoever mines the block which ends up containing your transaction will get its fee.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714666182
Hero Member
*
Offline Offline

Posts: 1714666182

View Profile Personal Message (Offline)

Ignore
1714666182
Reply with quote  #2

1714666182
Report to moderator
1714666182
Hero Member
*
Offline Offline

Posts: 1714666182

View Profile Personal Message (Offline)

Ignore
1714666182
Reply with quote  #2

1714666182
Report to moderator
1714666182
Hero Member
*
Offline Offline

Posts: 1714666182

View Profile Personal Message (Offline)

Ignore
1714666182
Reply with quote  #2

1714666182
Report to moderator
coinpr0n
Hero Member
*****
Offline Offline

Activity: 910
Merit: 1000



View Profile
April 09, 2015, 05:58:37 PM
 #2

Padlock doesn't disappear for me, perhaps you just have a misconfiguration. Maybe a browser plugin interfering with something? Have you tried using a different browser to see if you still had the problem?

defcon23
Legendary
*
Offline Offline

Activity: 1120
Merit: 1002


View Profile
April 09, 2015, 06:33:42 PM
 #3

Padlock doesn't disappear for me, perhaps you just have a misconfiguration. Maybe a browser plugin interfering with something? Have you tried using a different browser to see if you still had the problem?
yup.. looks like a browser problem.. at first look..  Cool
dothebeats
Legendary
*
Offline Offline

Activity: 3640
Merit: 1352


Cashback 15%


View Profile
April 09, 2015, 06:35:21 PM
 #4

When I log into Cryptsy it shows the padlock on the address bar for https for a few seconds, then the padlock disappears. When the padlock is there if I click on the address bar it says "website does provide identity information" ... "Project investors"... "Certificate by Comodo" etc. When the padlock disappears it says "this website does not provide identity information". The address in the bar is always https cryptsy.com.

Tried to log in in cryptsy. The padlock that you're stating is still in there. Nothing weird happening compared to what you're talking about. May I know what browser are you using and what plugins do you have in that browser? Maybe it's a browser problem because I can login and access cryptsy smoothly.

.
.HUGE.
▄██████████▄▄
▄█████████████████▄
▄█████████████████████▄
▄███████████████████████▄
▄█████████████████████████▄
███████▌██▌▐██▐██▐████▄███
████▐██▐████▌██▌██▌██▌██
█████▀███▀███▀▐██▐██▐█████

▀█████████████████████████▀

▀███████████████████████▀

▀█████████████████████▀

▀█████████████████▀

▀██████████▀▀
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.
CASINSPORTSBOOK
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
AnotherQuestion (OP)
Newbie
*
Offline Offline

Activity: 5
Merit: 0


View Profile
April 09, 2015, 06:51:26 PM
Last edit: April 09, 2015, 07:02:00 PM by AnotherQuestion
 #5

Padlock doesn't disappear for me, perhaps you just have a misconfiguration. Maybe a browser plugin interfering with something? Have you tried using a different browser to see if you still had the problem?

It happens on several browsers. Here is an image.

http://i60.tinypic.com/2pr7884.jpg
Or
https://i.imgur.com/iXSMTXb.jpg

I should add I live in a country where government surveillance is famously intrusive and the government makes no effort to hide the fact that it monitors my electronic communications. The internet connection I use is not secure at all.
defcon23
Legendary
*
Offline Offline

Activity: 1120
Merit: 1002


View Profile
April 09, 2015, 06:54:03 PM
 #6

Padlock doesn't disappear for me, perhaps you just have a misconfiguration. Maybe a browser plugin interfering with something? Have you tried using a different browser to see if you still had the problem?

It happens on several browsers. Here is an image.



I should add I live in a country where government surveillance is famously intrusive and the government makes no effort to hide the fact that it monitors my electronic communications. The internet connection I use is not secure at all.
you should upload your pictures here: https://imgur.com instead of what you're using yet..  Wink
Cheers!  Grin
guitarplinker
Legendary
*
Offline Offline

Activity: 1694
Merit: 1024



View Profile WWW
April 09, 2015, 07:14:15 PM
 #7

I should add I live in a country where government surveillance is famously intrusive and the government makes no effort to hide the fact that it monitors my electronic communications. The internet connection I use is not secure at all.

If you feel that your internet browsing is being watched, you could invest in a VPN. Most only cost a few dollars per month, but allow for secure browsing.
Amph
Legendary
*
Offline Offline

Activity: 3206
Merit: 1069



View Profile
April 09, 2015, 07:43:59 PM
 #8

Padlock doesn't disappear for me, perhaps you just have a misconfiguration. Maybe a browser plugin interfering with something? Have you tried using a different browser to see if you still had the problem?

It happens on several browsers. Here is an image.

snip

I should add I live in a country where government surveillance is famously intrusive and the government makes no effort to hide the fact that it monitors my electronic communications. The internet connection I use is not secure at all.

are you sure you are not infected in some way? you should do a scan with multiple antivirus/anti-rootkit/anti-malware

usually there are insecure link, when this appear, you could have some insecure connection going on
shorena
Copper Member
Legendary
*
Offline Offline

Activity: 1498
Merit: 1499


No I dont escrow anymore.


View Profile WWW
April 09, 2015, 08:00:08 PM
 #9

sha1 fingerprint for cryptsy.com cert should be:

Code:
‎50 d2 75 62 0a 0e 98 17 13 bb 6a 00 fa 95 d2 cc 6d 5f 1e 1c

In case of a MITM it would be different.

You could also try to install HTTPS everywhere[1] and enable SSL Observatory[2] in order to let the plugin check whether the SSL cert is valid or not.


[1] https://chrome.google.com/webstore/detail/https-everywhere/gcbommkclmclpchllfjekcdonpmejbdp
[2] https://www.eff.org/observatory

Im not really here, its just your imagination.
AnotherQuestion (OP)
Newbie
*
Offline Offline

Activity: 5
Merit: 0


View Profile
April 09, 2015, 08:03:30 PM
 #10


are you sure you are not infected in some way? you should do a scan with multiple antivirus/anti-rootkit/anti-malware

usually there are insecure link, when this appear, you could have some insecure connection going on

Nothing shows up on antivirus, Comodo, McAfee, have tried others. Even immediately after reinstalling the operating system Malware bytes warns that its anti root kit driver cannot load. There is quite a bit of other evidence of a problem with my internet connection, I am just asking opinions about the risk with Cryptsy specifically. I use an SMS protected email and phone SMS to log into cryptsy but once I logged in and it went straight to the logged in area before I even entered the SMS. I have a screen grab of the message it showed on another device and will upload that when I can. Is it possible Cryptsy's SMS service was down briefly and it bypassed the SMS authentication because of reasons on the Cryptsy side?
AnotherQuestion (OP)
Newbie
*
Offline Offline

Activity: 5
Merit: 0


View Profile
April 09, 2015, 08:24:36 PM
 #11

sha1 fingerprint for cryptsy.com cert should be:

Code:
‎50 d2 75 62 0a 0e 98 17 13 bb 6a 00 fa 95 d2 cc 6d 5f 1e 1c

In case of a MITM it would be different.

You could also try to install HTTPS everywhere[1] and enable SSL Observatory[2] in order to let the plugin check whether the SSL cert is valid or not.


[1] https://chrome.google.com/webstore/detail/https-everywhere/gcbommkclmclpchllfjekcdonpmejbdp
[2] https://www.eff.org/observatory

Google has a very bad reputation for me,  as bad as Baidu etc for spying, but your comment did turn out to be helpful. Thanks.
notlist3d
Legendary
*
Offline Offline

Activity: 1456
Merit: 1000



View Profile
April 09, 2015, 09:53:24 PM
 #12

sha1 fingerprint for cryptsy.com cert should be:

Code:
‎50 d2 75 62 0a 0e 98 17 13 bb 6a 00 fa 95 d2 cc 6d 5f 1e 1c

In case of a MITM it would be different.

You could also try to install HTTPS everywhere[1] and enable SSL Observatory[2] in order to let the plugin check whether the SSL cert is valid or not.


[1] https://chrome.google.com/webstore/detail/https-everywhere/gcbommkclmclpchllfjekcdonpmejbdp
[2] https://www.eff.org/observatory

This would be my biggest worry if you are using wifi not your's and they are stripping ssl out. 

Are you using your own wifi or was this done somewhere elese?  Just as a good rule no one should trust AP that are like "Free Wifi" "Free Internet", etc.   It is sad but a rogue ap is getting cheaper and cheaper.
coinpr0n
Hero Member
*****
Offline Offline

Activity: 910
Merit: 1000



View Profile
April 09, 2015, 09:57:27 PM
 #13

Padlock doesn't disappear for me, perhaps you just have a misconfiguration. Maybe a browser plugin interfering with something? Have you tried using a different browser to see if you still had the problem?

It happens on several browsers. Here is an image.


Or


I should add I live in a country where government surveillance is famously intrusive and the government makes no effort to hide the fact that it monitors my electronic communications. The internet connection I use is not secure at all.

Aren't those web browsers you're using exactly the same? I meant try a totally different browser to test.

randy8777
Legendary
*
Offline Offline

Activity: 896
Merit: 1000


View Profile
April 09, 2015, 10:52:31 PM
 #14


are you sure you are not infected in some way? you should do a scan with multiple antivirus/anti-rootkit/anti-malware

usually there are insecure link, when this appear, you could have some insecure connection going on

Nothing shows up on antivirus, Comodo, McAfee, have tried others. Even immediately after reinstalling the operating system Malware bytes warns that its anti root kit driver cannot load. There is quite a bit of other evidence of a problem with my internet connection, I am just asking opinions about the risk with Cryptsy specifically. I use an SMS protected email and phone SMS to log into cryptsy but once I logged in and it went straight to the logged in area before I even entered the SMS. I have a screen grab of the message it showed on another device and will upload that when I can. Is it possible Cryptsy's SMS service was down briefly and it bypassed the SMS authentication because of reasons on the Cryptsy side?

try scanning your system with hitman pro. while others may not find anything, hitman pro will if your system contains a virus.
AnotherQuestion (OP)
Newbie
*
Offline Offline

Activity: 5
Merit: 0


View Profile
April 10, 2015, 12:54:49 AM
 #15

sha1 fingerprint for cryptsy.com cert should be:

Code:
‎50 d2 75 62 0a 0e 98 17 13 bb 6a 00 fa 95 d2 cc 6d 5f 1e 1c

In case of a MITM it would be different.

You could also try to install HTTPS everywhere[1] and enable SSL Observatory[2] in order to let the plugin check whether the SSL cert is valid or not.


[1] https://chrome.google.com/webstore/detail/https-everywhere/gcbommkclmclpchllfjekcdonpmejbdp
[2] https://www.eff.org/observatory

This would be my biggest worry if you are using wifi not your's and they are stripping ssl out. 

Are you using your own wifi or was this done somewhere elese?  Just as a good rule no one should trust AP that are like "Free Wifi" "Free Internet", etc.   It is sad but a rogue ap is getting cheaper and cheaper.

My modem in a rural area. I may be often the only person within many miles using internet. I already know my connection is not trustable.

Regarding web browsers, yes those screenshots are the same. The first image post did not show up so I copied it twice from two sites but the same issue has been on a few browsers both on android and Windows but AFAIK only at Cryptsy.
notlist3d
Legendary
*
Offline Offline

Activity: 1456
Merit: 1000



View Profile
April 10, 2015, 02:26:17 AM
 #16

sha1 fingerprint for cryptsy.com cert should be:

Code:
‎50 d2 75 62 0a 0e 98 17 13 bb 6a 00 fa 95 d2 cc 6d 5f 1e 1c

In case of a MITM it would be different.

You could also try to install HTTPS everywhere[1] and enable SSL Observatory[2] in order to let the plugin check whether the SSL cert is valid or not.


[1] https://chrome.google.com/webstore/detail/https-everywhere/gcbommkclmclpchllfjekcdonpmejbdp
[2] https://www.eff.org/observatory

This would be my biggest worry if you are using wifi not your's and they are stripping ssl out. 

Are you using your own wifi or was this done somewhere elese?  Just as a good rule no one should trust AP that are like "Free Wifi" "Free Internet", etc.   It is sad but a rogue ap is getting cheaper and cheaper.

My modem in a rural area. I may be often the only person within many miles using internet. I already know my connection is not trustable.

Regarding web browsers, yes those screenshots are the same. The first image post did not show up so I copied it twice from two sites but the same issue has been on a few browsers both on android and Windows but AFAIK only at Cryptsy.

Why would it be not trustable if you are living in a rural area miles away from others?   It sounds like a good thing to me.

Also I have no idea if you are or not but even living in a rural area I would encrypt your wifi (don't do WEP or any broken systems).
Amph
Legendary
*
Offline Offline

Activity: 3206
Merit: 1069



View Profile
April 10, 2015, 05:59:38 AM
 #17


are you sure you are not infected in some way? you should do a scan with multiple antivirus/anti-rootkit/anti-malware

usually there are insecure link, when this appear, you could have some insecure connection going on

Nothing shows up on antivirus, Comodo, McAfee, have tried others. Even immediately after reinstalling the operating system Malware bytes warns that its anti root kit driver cannot load. There is quite a bit of other evidence of a problem with my internet connection, I am just asking opinions about the risk with Cryptsy specifically. I use an SMS protected email and phone SMS to log into cryptsy but once I logged in and it went straight to the logged in area before I even entered the SMS. I have a screen grab of the message it showed on another device and will upload that when I can. Is it possible Cryptsy's SMS service was down briefly and it bypassed the SMS authentication because of reasons on the Cryptsy side?

try scanning your system with hitman pro. while others may not find anything, hitman pro will if your system contains a virus.

hitmanpro isn't that good lately, in my case is detecting ccminer as a malicious, which ius obviously wrong

malwarebyte is the best, for malware and for virus too
Kprawn
Legendary
*
Offline Offline

Activity: 1904
Merit: 1073


View Profile
April 10, 2015, 07:02:34 AM
 #18

What happens if you use the Tor browser? ....or you can boot up with a Linux OS to test if the OS is compromised. {Ubuntu}

I ussually use a Virtual machine - http://en.wikipedia.org/wiki/Virtual_machine to test things, when I run into funny things with my OS.

Hope this was helpfull.  Wink

THE FIRST DECENTRALIZED & PLAYER-OWNED CASINO
.EARNBET..EARN BITCOIN: DIVIDENDS
FOR-LIFETIME & MUCH MORE.
. BET WITH: BTCETHEOSLTCBCHWAXXRPBNB
.JOIN US: GITLABTWITTERTELEGRAM
notlist3d
Legendary
*
Offline Offline

Activity: 1456
Merit: 1000



View Profile
April 10, 2015, 07:39:21 AM
 #19

What happens if you use the Tor browser? ....or you can boot up with a Linux OS to test if the OS is compromised. {Ubuntu}

I ussually use a Virtual machine - http://en.wikipedia.org/wiki/Virtual_machine to test things, when I run into funny things with my OS.

Hope this was helpfull.  Wink

Tor is not the greatest as far as security.  You are better off buying a better one if you are going to run though a VPN.  I would go with a professional company.

As far as the virtual machine telling you, chances are not.  You would look for items such as HTTPS being stripped into HTTP version of site.  And web site certificates not being real.
BillyBobZorton
Legendary
*
Offline Offline

Activity: 1204
Merit: 1028


View Profile
April 10, 2015, 01:55:59 PM
 #20

Do you use https everywhere? (the plugin called "HTTPS Everywhere").
I think in certain browser it did that, but I use Firefox and it doesn't do it for me.
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!