Bitcoin Forum
October 18, 2018, 11:20:04 PM *
News: Make sure you are not using versions of Bitcoin Core other than 0.17.0 [Torrent], 0.16.3, 0.15.2, or 0.14.3. More info.
 
   Home   Help Search Donate Login Register  
Pages: [1]
  Print  
Author Topic: Phishing attempt on your Ether wallet via Slack and other communication channels  (Read 286 times)
spov
Full Member
***
Offline Offline

Activity: 308
Merit: 100



View Profile
October 05, 2017, 09:53:03 AM
 #1

I got this scam message on slack:

Quote
=== MYETHERWALLET UPGRADE REQUIRED ===

*HARD FORK FINAL NOTICE*

This message was shared to all Slack users in the hope of reaching as many Ethereum Wallet holders as possible.
Due to the Hard Fork that will be happening in the following days, all ethereum wallets require to be manually upgraded immediately, otherwise they risk being unprotected and your funds may be lost during the fork process.

Please visit https://www.myetherwallet.com/?upgrade#view-wallet-info to upgrade your wallet to latest security settings.

We decided to implement a number of changes and improvements, including higher levels of anonymous transactions, easier programming and smart contracts, and additional security in the form of masking, which will help protect users against hacking.

We are taking these measures to protect both you and our network from phishing and malicious attacks.

Thank you for your cooperation and understanding!
MyEtherWallet, LLC”.


This is a SCAM. The myetherwallet url which looks valid, links to this website (https://www.xn--myetherwaet-15ba.com/?upgrade#view-wallet-info). The UI of this phishing website is the same as that of myetherwallet.

Original website:
Fake website:

Always check for "MYETHERWALLET LLC [US]" cetificate (marked as 1 in the original screenshot). This certificate detail is missing in the fake website.
Don't click any links you get on channels like slack etc.
Be very careful when uploading/entering your private key/wallet backup on any third party services.


DeepOnion    ▬▬  Anonymous and Untraceable  ▬▬    ENJOY YOUR PRIVACY  •  JOIN DEEPONION
▐▐▐▐▐▐▐▐   ANN  Whitepaper  Facebook  Twitter  Telegram  Discord    ▌▌▌▌▌▌▌▌
Get $ONION  (✔Cryptopia  ✔KuCoin)  |  VoteCentral  Register NOW!  |  Download DeepOnion
1539904804
Hero Member
*
Offline Offline

Posts: 1539904804

View Profile Personal Message (Offline)

Ignore
1539904804
Reply with quote  #2

1539904804
Report to moderator
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction. Advertise here.
erikalui
Legendary
*
Offline Offline

Activity: 1470
Merit: 1000


View Profile WWW
October 05, 2017, 09:54:29 AM
 #2

It has been months now that these messages are being sent from all the slack channels.

ocminer
Legendary
*
Offline Offline

Activity: 2240
Merit: 1218



View Profile WWW
October 05, 2017, 09:55:34 AM
 #3

they also use my.etherwallet.com.de and a few others.. i get about 50+ notifications per day on slack, it's really getting ridiculous

suprnova pools - reliable mining pools - #suprnova on freenet
https://www.suprnova.cc - FOLLOW us @ Twitter ! twitter.com/SuprnovaPools
erv
Full Member
***
Offline Offline

Activity: 266
Merit: 100


View Profile
October 05, 2017, 09:58:26 AM
 #4

they also use my.etherwallet.com.de and a few others.. i get about 50+ notifications per day on slack, it's really getting ridiculous

its like a plague.. even email is flooded with e-mails notifying slack  Undecided

██████████  ✔  PoSToken - First PoS Smart Contract Token - Get Your Free Tokens Now!
█     PoSToken    █  ✔  Free Airdrop ●  No-ICO  ●  100% Annual Interest First Year
██████████  ✔  ANN ●  WebSite  ●  Twitter  ●  Slack  ●  Whitepaper
Highspeed123
Full Member
***
Offline Offline

Activity: 280
Merit: 106


View Profile
October 05, 2017, 10:02:16 AM
 #5

I have been getting this too, for a coin I mined some time ago. Very annoying. Thanks for the heads up.
alex_rada
Full Member
***
Offline Offline

Activity: 204
Merit: 100


This is bat country!


View Profile
October 05, 2017, 10:10:25 AM
 #6

I even tried to contact the developers of Slack and asked them to come up with a solution to allow us to block certain users. I hope they find one soon cause all these messages are making victims on a daily basis.
safariwave
Full Member
***
Offline Offline

Activity: 398
Merit: 114



View Profile
October 05, 2017, 10:12:51 AM
 #7

they also use my.etherwallet.com.de and a few others.. i get about 50+ notifications per day on slack, it's really getting ridiculous

the same for me, it's incredible how Slack is not doing something to block this!


Larrycool
Full Member
***
Offline Offline

Activity: 378
Merit: 101



View Profile
October 05, 2017, 10:54:47 AM
 #8

thank you for the Information
Beachguy
Legendary
*
Offline Offline

Activity: 1020
Merit: 1001

Spectreproject Community Manager


View Profile WWW
October 05, 2017, 12:24:49 PM
 #9

It's been going on for sometime now.
It seems to run in waves......from many a day to just a few on the various channels I'm on.
Saw a note from a crypto media writer that was getting over 60 a day since he is a member of so mant slack groups.

Slack just seems to not care.

For security, your account has been locked. Email acctcomp15@theymos.e4ward.com
safariwave
Full Member
***
Offline Offline

Activity: 398
Merit: 114



View Profile
October 05, 2017, 01:06:21 PM
 #10

It's been going on for sometime now.
It seems to run in waves......from many a day to just a few on the various channels I'm on.
Saw a note from a crypto media writer that was getting over 60 a day since he is a member of so mant slack groups.

Slack just seems to not care.

I got 45 messages today. Incredible. Gmail app is starting to mark them as phishing. I'm not surprised if they will mark Slack messages as spam...

Diced90
Hero Member
*****
Offline Offline

Activity: 714
Merit: 501


dApps Development Automation Platform


View Profile
October 05, 2017, 05:36:58 PM
 #11

after seeing the view-wallet-info string this got me thinking...your wallet only gets cleaned dry if you have some eth to supplement the transaction? Because I dont see the hacker sending in extra fees to move the tokens Roll Eyes


            ▄▄▄▄
        ▄▄████████▄▄
    ▄▄████████████████▄▄
 ▄████████████████████████▄
██████████▀▀███████████████
██████████▄   ▀█████████████
████████████▄   ▀███████████
██████████████▄   ▀█████████
█████████████▀   ▄██████████
███████████▀   ▄████████████
██████████▄  ▄██████████████
███████████████████████████
 ▀████████████████████████▀
    ▀▀████████████████▀▀
        ▀▀████████▀▀
            ▀▀▀

⬢⬢

⬢⬢



       ▄▄▄▄
   ▄▄████████▄▄
▄██████████▀▀▀█▀█▄
██ ▀█████▀     ▀██
██▌   ▀▀▀      ███
███▄           ███
████▀         ████
▀████▄     ▄▄████▀
   ▀▀▄▄▄▄████▀▀
       ▀▀▀▀


██████████████████



       ▄▄▄▄
   ▄▄████████▄▄
▄████████████████▄
██████████▀▀  ▐███
██████▀▀  ▄   ████
███▀   ▄█▀   ▐████
████▄▄█▀     █████
▀█████▌ ▄▄▄ ▐████▀
   ▀▀████████▀▀
       ▀▀▀▀


██████████████████



       ▄▄▄▄
   ▄▄████████▄▄
▄███████▀   ▐████▄
████████  ▄███████
██████      ██████
████████  ████████
████████  ████████
▀███████  ███████▀
   ▀▀████████▀▀
       ▀▀▀▀


██████████████████



       ▄▄▄▄
   ▄▄██▀█▀███▄▄
▄███▀▀▀ ▀ ▀▀█████▄
██████ ████▄ █████
██████ ▀▀▀▀ ▄█████
██████ ▄▄▄▄ ▀█████
██████ ████▀ █████
▀███▄▄▄ ▄ ▄▄█████▀
   ▀▀██▄█▄███▀▀
       ▀▀▀▀


██████████████████
hosseinimr93
Sr. Member
****
Offline Offline

Activity: 532
Merit: 250


dApps Development Automation Platform


View Profile
October 05, 2017, 10:02:16 PM
 #12

I receive a lot of emails from slack every day. It is really disgusting. I marked slack messages as spam. Now I lose real emails too. But I think this way is better.


            ▄▄▄▄
        ▄▄████████▄▄
    ▄▄████████████████▄▄
 ▄████████████████████████▄
██████████▀▀███████████████
██████████▄   ▀█████████████
████████████▄   ▀███████████
██████████████▄   ▀█████████
█████████████▀   ▄██████████
███████████▀   ▄████████████
██████████▄  ▄██████████████
███████████████████████████
 ▀████████████████████████▀
    ▀▀████████████████▀▀
        ▀▀████████▀▀
            ▀▀▀

⬢⬢

⬢⬢



       ▄▄▄▄
   ▄▄████████▄▄
▄██████████▀▀▀█▀█▄
██ ▀█████▀     ▀██
██▌   ▀▀▀      ███
███▄           ███
████▀         ████
▀████▄     ▄▄████▀
   ▀▀▄▄▄▄████▀▀
       ▀▀▀▀


██████████████████



       ▄▄▄▄
   ▄▄████████▄▄
▄████████████████▄
██████████▀▀  ▐███
██████▀▀  ▄   ████
███▀   ▄█▀   ▐████
████▄▄█▀     █████
▀█████▌ ▄▄▄ ▐████▀
   ▀▀████████▀▀
       ▀▀▀▀


██████████████████



       ▄▄▄▄
   ▄▄████████▄▄
▄███████▀   ▐████▄
████████  ▄███████
██████      ██████
████████  ████████
████████  ████████
▀███████  ███████▀
   ▀▀████████▀▀
       ▀▀▀▀


██████████████████



       ▄▄▄▄
   ▄▄██▀█▀███▄▄
▄███▀▀▀ ▀ ▀▀█████▄
██████ ████▄ █████
██████ ▀▀▀▀ ▄█████
██████ ▄▄▄▄ ▀█████
██████ ████▀ █████
▀███▄▄▄ ▄ ▄▄█████▀
   ▀▀██▄█▄███▀▀
       ▀▀▀▀


██████████████████
Slowth
Newbie
*
Offline Offline

Activity: 14
Merit: 0


View Profile
October 06, 2017, 05:00:34 AM
 #13

Well I was one of the noobs that got phished from this. Deleted the app immediately.

1.12 ETH. Guess I should be glad I didn’t have more.  Embarrassed
momopi
Full Member
***
Offline Offline

Activity: 392
Merit: 126


”Decentralized Digital Billboards”


View Profile
October 06, 2017, 05:56:20 AM
 #14

After trying different applications mainly for communications. I would say that Slack is the BEST compare to Telegeram, WeChat, etc. However, this issue is very rampant especially if the project is gaining popularity. I'm also curious, how can someone control "slackbot"? Does is limit the function to channel admin and to slack team itself or ANYONE can control this slack bot?

HertzCoin
Full Member
***
Offline Offline

Activity: 204
Merit: 100



View Profile
October 06, 2017, 07:29:25 AM
 #15

thanks a lot for your warning abt scams
I personally use several wallets registered in my ether wallet
a lot of info is transmitted through my slack group

KAMAGAMES
TelegramTwitterFacebook ●●●●●●BUY KAMAGAMES TOKENS●●●●●● Linked-InRedditMedium
▀▄▀▄▀▄▀▄▀▄▀Join the growing community of players from around the world ▀▄▀▄▀▄▀▄▀▄▀
spov
Full Member
***
Offline Offline

Activity: 308
Merit: 100



View Profile
October 08, 2017, 02:42:20 PM
 #16

thank you for the Information
you are welcome Smiley

DeepOnion    ▬▬  Anonymous and Untraceable  ▬▬    ENJOY YOUR PRIVACY  •  JOIN DEEPONION
▐▐▐▐▐▐▐▐   ANN  Whitepaper  Facebook  Twitter  Telegram  Discord    ▌▌▌▌▌▌▌▌
Get $ONION  (✔Cryptopia  ✔KuCoin)  |  VoteCentral  Register NOW!  |  Download DeepOnion
max2000irc
Hero Member
*****
Offline Offline

Activity: 526
Merit: 501


View Profile
October 09, 2017, 06:04:36 AM
 #17

In the last 2-3 days I have over 300 notifications ...annoying

avp2306
Sr. Member
****
Offline Offline

Activity: 347
Merit: 250



View Profile
October 09, 2017, 06:10:30 AM
 #18

I got this scam message on slack:

Quote
=== MYETHERWALLET UPGRADE REQUIRED ===

*HARD FORK FINAL NOTICE*

This message was shared to all Slack users in the hope of reaching as many Ethereum Wallet holders as possible.
Due to the Hard Fork that will be happening in the following days, all ethereum wallets require to be manually upgraded immediately, otherwise they risk being unprotected and your funds may be lost during the fork process.

Please visit https://www.myetherwallet.com/?upgrade#view-wallet-info to upgrade your wallet to latest security settings.

We decided to implement a number of changes and improvements, including higher levels of anonymous transactions, easier programming and smart contracts, and additional security in the form of masking, which will help protect users against hacking.

We are taking these measures to protect both you and our network from phishing and malicious attacks.

Thank you for your cooperation and understanding!
MyEtherWallet, LLC”.


This is a SCAM. The myetherwallet url which looks valid, links to this website (https://www.xn--myetherwaet-15ba.com/?upgrade#view-wallet-info). The UI of this phishing website is the same as that of myetherwallet.

Original website:
Fake website:

Always check for "MYETHERWALLET LLC [US]" cetificate (marked as 1 in the original screenshot). This certificate detail is missing in the fake website.
Don't click any links you get on channels like slack etc.
Be very careful when uploading/entering your private key/wallet backup on any third party services.



This kind of attack is so popular on SLACK and many people got caught on this phising attempts and also some other of this phising site is searchable on google so we must be carefull and always check the url of the site where we use to go to, And use the official site of MEW since there url is clear and they give fair warning about this kind of modus so people would be more aware that MEW wallet phising is existing.

Pages: [1]
  Print  
 
Jump to:  

Sponsored by , a Bitcoin-accepting VPN.
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!