Bitcoin Forum
December 09, 2016, 01:50:23 PM *
News: To be able to use the next phase of the beta forum software, please ensure that your email address is correct/functional.
 
   Home   Help Search Donate Login Register  
Pages: [1]
  Print  
Author Topic: Planning you withdraw your BTC in mtgox? Make a new wallet first.  (Read 1187 times)
gmaxwell
Staff
Legendary
*
Offline Offline

Activity: 2030



View Profile
June 24, 2011, 07:20:02 PM
 #1


I'm quite concerned that during the last week while mtgox has been down people have been very actively stealing wallets. We've seen many trojans and other wallet collection scams.  Perhaps people took less care to make sure wallets that had little/nothing in them were not stolen.

If someone made a copy of your wallet this week they may be sitting on it hoping that when mtgox comes up you'll withdraw all your BTC and as soon as they see that transaction they'll launch a matching transaction to give all that coin to them. Even if your wallet had nothing in it before, if someone copies your wallet they will also gain access to future payments to the addresses in it as well as 100 future addresses (which are pregenerated and hidden).

If there is _any_ chance that your wallet has been compromised, do not deposit a bunch of coin in it. Instead make a new wallet or cycle out your old keys by hitting getaddress 101 times before using the next address. Make sure to update your backups too.

Stay safe!


1481291423
Hero Member
*
Offline Offline

Posts: 1481291423

View Profile Personal Message (Offline)

Ignore
1481291423
Reply with quote  #2

1481291423
Report to moderator
1481291423
Hero Member
*
Offline Offline

Posts: 1481291423

View Profile Personal Message (Offline)

Ignore
1481291423
Reply with quote  #2

1481291423
Report to moderator
1481291423
Hero Member
*
Offline Offline

Posts: 1481291423

View Profile Personal Message (Offline)

Ignore
1481291423
Reply with quote  #2

1481291423
Report to moderator
"There should not be any signed int. If you've found a signed int somewhere, please tell me (within the next 25 years please) and I'll change it to unsigned int." -- Satoshi
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction. Advertise here.
1481291423
Hero Member
*
Offline Offline

Posts: 1481291423

View Profile Personal Message (Offline)

Ignore
1481291423
Reply with quote  #2

1481291423
Report to moderator
1481291423
Hero Member
*
Offline Offline

Posts: 1481291423

View Profile Personal Message (Offline)

Ignore
1481291423
Reply with quote  #2

1481291423
Report to moderator
1481291423
Hero Member
*
Offline Offline

Posts: 1481291423

View Profile Personal Message (Offline)

Ignore
1481291423
Reply with quote  #2

1481291423
Report to moderator
wareen
Millionaire
Hero Member
*****
Offline Offline

Activity: 742

bitcoin-austria.at


View Profile
June 24, 2011, 07:26:46 PM
 #2

That's actually good thinking - thanks for the advice!
Bunghole
Member
**
Offline Offline

Activity: 64



View Profile
June 24, 2011, 07:38:16 PM
 #3

People need to remember that a wallet file basically contains a password (i.e. the private key) and treat it as such.  If anyone has your password, then they can steal any funds that are at the address(es) associated with that password.

In my mind, private key = password.
Pages: [1]
  Print  
 
Jump to:  

Sponsored by , a Bitcoin-accepting VPN.
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!