Bitcoin Forum
June 28, 2024, 04:00:09 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: Blockchain.info PHISHING ATTACK  (Read 726 times)
Yovas (OP)
Newbie
*
Offline Offline

Activity: 12
Merit: 0


View Profile
September 25, 2017, 11:47:48 PM
 #1

Hi guys.
I just wanted to let the public know that there's currently a phishing attack going on targeting blockchain.info.
I just got an email supposedly from blockchain.info stating that my wallet was credited with 0.54798743 BTC. So I quickly noticed that email address was not under blockchain.info domain. However, the email template layout was very similar to that of blockchain.info.
Also, when I clicked on the link, to check my wallet, the site I was redirected, had the same layout as blockchian.info.
Check it out.https://i.imgur.com/zHGg7xw.png

If you look carefully, even though it looks very legit, their domain is https://blockchfain.info
There's that one letter 'F' that is hard to notice. Also, they seem to have all the other pages hosted by the actual blockchain.info.

Just keep an eye out for that and be careful before logging in if you get a similar email to this.
Also, another easy flag to identifying the REAL blockchain should be their SSL certificate. The real blockchain SLL certificate looks like the following
https://i.imgur.com/hDQHBfZ.png


Good luck Smiley
Crypto-in-tha-blood
Full Member
***
Offline Offline

Activity: 140
Merit: 100


View Profile
September 26, 2017, 12:14:39 AM
 #2

Hi guys.
I just wanted to let the public know that there's currently a phishing attack going on targeting blockchain.info.
I just got an email supposedly from blockchain.info stating that my wallet was credited with 0.54798743 BTC. So I quickly noticed that email address was not under blockchain.info domain. However, the email template layout was very similar to that of blockchain.info.
Also, when I clicked on the link, to check my wallet, the site I was redirected, had the same layout as blockchian.info.
Check it out.

If you look carefully, even though it looks very legit, their domain is https://blockchfain.info
There's that one letter 'F' that is hard to notice. Also, they seem to have all the other pages hosted by the actual blockchain.info.

Just keep an eye out for that and be careful before logging in if you get a similar email to this.
Also, another easy flag to identifying the REAL blockchain should be their SSL certificate. The real blockchain SLL certificate looks like the following



Good luck Smiley

I got this one today too.  For the same amount.  I deleted it, because I don't just get credited BTC for no reason.

I also got one from myetherwallet about a credit to my wallet.
BCMB
Member
**
Offline Offline

Activity: 84
Merit: 10


View Profile WWW
September 26, 2017, 12:37:12 AM
 #3

Hi guys.
I just wanted to let the public know that there's currently a phishing attack going on targeting blockchain.info.
I just got an email supposedly from blockchain.info stating that my wallet was credited with 0.54798743 BTC. So I quickly noticed that email address was not under blockchain.info domain. However, the email template layout was very similar to that of blockchain.info.
Also, when I clicked on the link, to check my wallet, the site I was redirected, had the same layout as blockchian.info.
Check it out.

If you look carefully, even though it looks very legit, their domain is https://blockchfain.info
There's that one letter 'F' that is hard to notice. Also, they seem to have all the other pages hosted by the actual blockchain.info.

Just keep an eye out for that and be careful before logging in if you get a similar email to this.
Also, another easy flag to identifying the REAL blockchain should be their SSL certificate. The real blockchain SLL certificate looks like the following



Good luck Smiley

Nice catch, with one as well done as this I can't help but feel there are going to be some unfortunate people that get tricked. Really sucks because most people that fall for it will probably not realize what happened and assume its an issue with Bitcoin.

jokerlu
Full Member
***
Offline Offline

Activity: 518
Merit: 102


View Profile
September 26, 2017, 12:41:21 AM
 #4

phishing will always be a means of attack to take advantage of the system.
The One
Legendary
*
Offline Offline

Activity: 924
Merit: 1000



View Profile
September 26, 2017, 12:58:30 AM
 #5

No one should click on any email links at all. Always type in the address yourself.

..C..
.....................
........What is C?.........
..............
...........ICO            Dec 1st – Dec 30th............
       ............Open            Dec 1st- Dec 30th............
...................ANN thread      Bounty....................

criz2fer
Full Member
***
Offline Offline

Activity: 672
Merit: 127


View Profile
September 26, 2017, 01:39:27 AM
 #6

This is too alarming. Just like myetherwallet, there are lot of fake site that are out there today. Becarefull on every site that you are entering to secure mostly of your assets.

Snaic
Full Member
***
Offline Offline

Activity: 658
Merit: 102



View Profile
September 26, 2017, 02:07:42 AM
 #7

Scammers will always invent different ways to attack our savings in digital wallets. Therefore, before you enter the sites that store wallets, you really need to always make sure of its original name. Such warnings are very useful, because they help to recognize fraud and not succumb to their tricks.

claudiotiego
Full Member
***
Offline Offline

Activity: 630
Merit: 154


Corl - Growth Capital on the Blockchain


View Profile WWW
September 26, 2017, 02:16:28 AM
 #8

This days we are seeing a lot of phishing sites and most of them trying to fake web wallets sites. We need to pay attention when we going to fill our passwords and private keys. It's recommended to bookmark the wallets sites and only access them through these links.

Ucy
Sr. Member
****
Offline Offline

Activity: 2576
Merit: 402


View Profile
September 26, 2017, 02:29:06 AM
 #9

Got similar emails from Coinbase but never bothered clicking further because I know have never given out my coinbase address nor expecting Bitcoin from coinbase. I easily assumed it was phishing attacks and moved on.

Guess having 2FA enabled saves a lots of people from being successfully attacked.
pekingcoepo
Full Member
***
Offline Offline

Activity: 448
Merit: 100



View Profile
September 26, 2017, 04:35:19 AM
 #10

Hi guys.
I just wanted to let the public know that there's currently a phishing attack going on targeting blockchain.info.
I just got an email supposedly from blockchain.info stating that my wallet was credited with 0.54798743 BTC. So I quickly noticed that email address was not under blockchain.info domain. However, the email template layout was very similar to that of blockchain.info.
Also, when I clicked on the link, to check my wallet, the site I was redirected, had the same layout as blockchian.info.
Check it out.

If you look carefully, even though it looks very legit, their domain is https://blockchfain.info
There's that one letter 'F' that is hard to notice. Also, they seem to have all the other pages hosted by the actual blockchain.info.

Just keep an eye out for that and be careful before logging in if you get a similar email to this.
Also, another easy flag to identifying the REAL blockchain should be their SSL certificate. The real blockchain SLL certificate looks like the following



Good luck Smiley

Info is very helpful for all of us, now we must be more careful in opening a web address let alone our wallets let alone addressed to our email because Blockchain.info rarely send email to us. We recommend that our address bookmarks be completely valid so we avoid phishing activity.
salihno71
Sr. Member
****
Offline Offline

Activity: 420
Merit: 250


View Profile
September 26, 2017, 07:47:46 AM
 #11

Same here. Lucky for me, i do not have an account on blockchain.info so i was suspicious right away what is this all about. It looks legit but you can notice additional letter f in the url. Also got the similar mails from coinbase.
Kolokoy
Member
**
Offline Offline

Activity: 196
Merit: 50

OMNI TOKEN PLATFORM FOR PAYMENTS


View Profile WWW
October 26, 2017, 12:26:33 PM
 #12

These phishing attacks were everywhere since Mozilla Firefox came from the wild. I used to create such a kind when friendster.com was kicking in the late 2000s.
But now antivirus are too intelligent to warn each page opened as if that a phishing then notifications will pop out. Use good antivirus if you can't think better AV I suggest Avast Free version.
Otherwise, if you do manual check then you must check the site before doing anything messy.

paolo099
Full Member
***
Offline Offline

Activity: 224
Merit: 101


View Profile
October 26, 2017, 12:48:03 PM
 #13

i can tell you one quick method to screw with them (i know a lot of mail-link-clicker even from bank where they do not own an account....):
if you clicked the link and you are entering your credential, do yourself a favour, do a mistake in the account and password.. yes, a couple of wrong letter/numbers.
Many times the website will log you in regardless, at that point, they've registered your credential but it will not work, so keep your eyes wide open, if by magic you are getting logged into a phishing site with inexistent credential you are safe (better be safe than sorry anyway).
akamit
Hero Member
*****
Offline Offline

Activity: 1498
Merit: 596


View Profile
October 26, 2017, 12:56:31 PM
 #14

Thanks for the news.
It will really help blockchain users to become more alert during login.
I am also using blockchain, but I have never received such mails in my inbox. But I will be more careful from now on.
salihno71
Sr. Member
****
Offline Offline

Activity: 420
Merit: 250


View Profile
October 26, 2017, 01:20:54 PM
 #15

Whenever you receive a mail that you have received a payment you did not expect, that's already a huge red flag screaming scammers. Thank you for the heads-up.
Svelto
Sr. Member
****
Offline Offline

Activity: 686
Merit: 257


View Profile
October 26, 2017, 02:32:50 PM
 #16

Thank you for the information. This type of phishing emails really catch people off handed. Being excited, many will click on the link to check the wallet.

Better be safe and never click on link from email. Always use bookmark.
mycryptobiz
Newbie
*
Offline Offline

Activity: 15
Merit: 0


View Profile WWW
October 26, 2017, 02:40:29 PM
 #17

Hi guys.
I just wanted to let the public know that there's currently a phishing attack going on targeting blockchain.info.
I just got an email supposedly from blockchain.info stating that my wallet was credited with 0.54798743 BTC. So I quickly noticed that email address was not under blockchain.info domain. However, the email template layout was very similar to that of blockchain.info.
Also, when I clicked on the link, to check my wallet, the site I was redirected, had the same layout as blockchian.info.
Check it out.https://i.imgur.com/zHGg7xw.png

If you look carefully, even though it looks very legit, their domain is https://blockchfain.info
There's that one letter 'F' that is hard to notice. Also, they seem to have all the other pages hosted by the actual blockchain.info.

Just keep an eye out for that and be careful before logging in if you get a similar email to this.
Also, another easy flag to identifying the REAL blockchain should be their SSL certificate. The real blockchain SLL certificate looks like the following
https://i.imgur.com/hDQHBfZ.png


Good luck Smiley
Glad that you give this info to alert others in this forum,Yes but this kind of phising attacks are going over the internet over many many days.
Their are basically 3 types of phishing attacks in bitcoin.
1.They will invite you by email and want to steal your bitcoin by some Sammy links just as you mentioned.
2.they try to be in your computer and and access your wallet .even if you have 2fa enabled they will make popups in your computer and ask you to turn off the 2fa.
Never ever turn off 2fa i repeat never turn off 2fa.
LFC_Bitcoin
Legendary
*
Offline Offline

Activity: 3584
Merit: 9833


#1 VIP Crypto Casino


View Profile
October 26, 2017, 02:45:14 PM
 #18

Always check for https and be very slow and cautious when anyone emails you about money. Type the site in yourself and check the site for notice.

These kind of phishing attempts will always exist, it’s just like you get emails from somebody in Africa telling you you’ve won money.

Nobody should ever fall for this shit - Like you said just keep your head screwed on people, be vigilant.

█████████████████████████
███████████▄█████████████
██████▀░▀█▀░▀█▀░▀████████
███████▄███▄███▄█████████
████▀██▀██▀░▀████▀░▀█████
███████████░███▀██▄██████
████▀██▀██░░░█░░░████████
███████████░███▄█▀░▀█████
████▀██▀██▄░▄███▄░░░▄████
███████▀███▀███▀██▄██████
██████▄░▄█▄░▄█▄░▄████████
███████████▀█████████████
█████████████████████████
 
.Bitcasino.io.
 
.BTC  ✦  Where winners play  BTC.
.
..
.
    ..





████
████
░░▄████▄████████████▄███▄▄
░███████▄██▄▄▄▄▄▄█████████▄
███████████████████████████
▀████████████████████████▀
░░▀▀████████████████████
██████████████████▄█████████
██
▐███████▀███████▀██▄██████
███████▄██▄█▀████▀████████
░░██████▀▀▀▄▄▄████▀▀████
██▐██████████▀███▀█████████████    ████
███
████████████
███████████████    ████
█████▀████████████████▀
███████▀▀▀█████████▀▀
..
....
 
 ..✦ Play now... 
.
..
mistanama
Sr. Member
****
Offline Offline

Activity: 327
Merit: 250


View Profile
October 26, 2017, 03:10:11 PM
 #19

During this time the hackers and evil spirits were spreading. Due to the high cost of Altcoins and especially the Bitcoins. So we are careful because hackers will do everything to steal our hard-earned money. Always check the spelling of the wallet site we are going to. Just like I've seen recently.

BIockchain.info B (I) ockchain.info An out-of-print letter is a (Ii). Many have been victimized because of the overwhelming majority of the Big letters i in the Small Letters L
Kprawn
Legendary
*
Offline Offline

Activity: 1904
Merit: 1074


View Profile
October 26, 2017, 03:27:21 PM
 #20

Rule #1 in Bitcoin - DO NOT click on links in emails. Rule #2 --> type your own URLs to the sites you use regularly. It is that

simple... if you follow these two rules, you will not get Phished. A lot of people are just too lazy to type and they click on BS

links like that. Also, DO NOT click on AUTO COMPLETED links.... some hackers have exploited that too... type the WHOLE link.

THE FIRST DECENTRALIZED & PLAYER-OWNED CASINO
.EARNBET..EARN BITCOIN: DIVIDENDS
FOR-LIFETIME & MUCH MORE.
. BET WITH: BTCETHEOSLTCBCHWAXXRPBNB
.JOIN US: GITLABTWITTERTELEGRAM
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!