At the bottom of the page...
This site is not affiliated with BFGMiner and is not the official page of the software.
The more I thought about it, the more this site troubles me. So I have dug into what it does on a virtual machine.
DO NOT LOAD THIS SITE!
Again, I am using a virtual machine and am going to keep it quaranteened.
Here is the html that provides the lead in for the naive user click - on the "Windows 32 bit", which appears to provide a download of the bfgminer software. NOTE I HAVE INTERJECTED SPACES TO PREVENT ANY ACCIDENTAL CLICKING:
<a href="
http : //7802cb7d . tinylinks.co"><strong>Windows 32 bit</strong></a>........
another similar link follows for the 64 bit windows.
This leads to a page with a
linkbucks reference and an attempt to download "
opendownloadmanager", then an auto download of what appears to be the 3.14 program file for bfgminer from luke.dashjr.org/programs/bitcoin/files. That's a hidden directory, might be some issues there.
Following this
ad.yieldmanager is installed - this is notorious stuff that continually pops up adds on your desktop even after you close the browser.
At some point '
sweetpacks' is installed, another well known browser and search engine hijacker.
HERE IS THE PROBLEM:
Anyone who has downloaded bfgminer from this site and used it has compromised security, and could easily find their bitcoins and/or passwords stolen or reported.
Who are the scammers that own the domain? They are cloaked.
As bitcoin has been now defined as money, bfgminer.org is, I think, engaged in phishing and a higher level of illegal activity than just the malware and hijacking.
Domain ID:D168369843-LROR
Domain Name:BFGMINER.ORG
Created On:06-Apr-2013 16:53:16 UTC
Last Updated On:18-Jul-2013 23:27:13 UTC
Expiration Date:06-Apr-2014 16:53:16 UTC
Sponsoring Registrar:
eNom, Inc. (R39-LROR)
Status:CLIENT TRANSFER PROHIBITED
Registrant ID:d3030885d199b972
Registrant Name:WhoisGuard Protected
Registrant Organization:WhoisGuard, Inc.
Registrant Street1:P.O. Box 0823-03411
Checking enom, here is the reseller:
Namecheap.com
http://namecheap.com8939 S. Sepulveda Blvd. #110 - 732
Westchester , CA
+1.6613102107
+1.5555555555
support@namecheap.comFor additional assistance, please call 1 (425) 274-4500 or
Submit a Ticket in our Guest Help Center.
Therefore, owners of the bfgminer product can have this website taken down by directing their request / demand to
support@namecheap.com.