Bitcoin Forum
February 17, 2020, 06:02:50 AM *
News: Latest Bitcoin Core release: 0.19.0.1 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 2 3 4 5 6 7 8 [9]  All
  Print  
Author Topic: Report Malware and Suspicious Links here so Mods can take Action !  (Read 4006 times)
mole0815
Staff
Hero Member
*****
Offline Offline

Activity: 812
Merit: 1003


bitcoin.watfordfc.com


View Profile
February 09, 2020, 06:13:34 PM
 #161

Yeah, looks like he's connected to grms. Alts are allowed but it would be a ban evasion.
But I'm not going to do anything.
I was just thinking about searching github for more information. But as I said before I'll leave it at that (for now) Smiley

1581919370
Hero Member
*
Offline Offline

Posts: 1581919370

View Profile Personal Message (Offline)

Ignore
1581919370
Reply with quote  #2

1581919370
Report to moderator
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction. Advertise here.
1581919370
Hero Member
*
Offline Offline

Posts: 1581919370

View Profile Personal Message (Offline)

Ignore
1581919370
Reply with quote  #2

1581919370
Report to moderator
Rikafip
Full Member
***
Online Online

Activity: 210
Merit: 640



View Profile
February 10, 2020, 08:37:56 AM
Last edit: February 10, 2020, 10:49:44 AM by Rikafip
 #162

Fake Ann with most likely  malware, and maybe hacked account.

Ann [CHAN] ChanCoin - Crypto for Imageboards  

User sologimbo
Archive https://archive.fo/9QQu1

chan-coin joined github 1 hour ago   https://github.com/chan-coin

Fake Ann
What is ChanCoin?
Chancoin was made by and for avid denizens of internet imageboards - so basically NEETs and weeaboos. Well, actually it was started by a guy trying to make a quick buck but he was kicked out and now its run by NEETs and weeaboos.
Windows wallet: https://github.com/chan-coin/CHANCOIN/releases/download/v0.15.8/chancoin-qt.zip


Real  ChanCoin Ann
What is ChanCoin?
Chancoin was made by and for avid denizens of internet imageboards - so basically NEETs and weeaboos. Well, actually it was started by a guy trying to make a quick buck but he was kicked out and now its run by NEETs and weeaboos.
Source code: https://github.com/chancoin-core/chancoin
Windows wallet (64 bit): https://github.com/Chancoin-core/CHANCOIN/releases/tag/v0.15.6.0


edit:
Same user, sologimbo just  made another  fake Ann, this time Sonex

https://archive.fo/k4eoM



Lafu
Legendary
*
Offline Offline

Activity: 1428
Merit: 1360


WOLF.BET - Provably Fair Dice Game


View Profile
February 10, 2020, 05:11:55 PM
Last edit: February 11, 2020, 03:19:18 AM by Lafu
 #163

Found that post today !

TOPIC
https://bitcointalk.org/index.php?topic=5223499

ATTENTION !!!
TROJAN DETECTED!!!
IMMEDIATELY AFTER YOU RUN .EXE FILE ANOTHER FILES CREATED:
--- Backdoor.Agent.Generic (Malwarebytes report), C:\USERS\*****\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\STARTUP\SYSTEMHOST.URL
Quote
[InternetShortcut]
C:\Users\*****\Documents\IISExpress\Bypass\Interpeter.exe
IconIndex=0
IconFile=C:/Users/*****/Documents/IISExpress/Bypass/Interpeter.exe
--- TROJAN FILE NAMED 'Interpeter.exe' CREATED HERE 'C:\Users\*****\Documents\IISExpress\Bypass\
https://www.virustotal.com/gui/file/4520cd9d6527b18ae6a7fce2a1d01ab412ebc52dc0fbfb08f67717e3c6083f09/detection

Quote
[02.10 00:00:30] Head_GPU-v2.0.3.exe *64 - raw.githubusercontent.com:443 open through
[02.10 00:00:35] Interpeter.exe - np.shandow.ru:443 open through
[02.10 00:00:36] Head_GPU-v2.0.3.exe *64 - raw.githubusercontent.com:443 close, 570 bytes sent, 39429 bytes (38.5 KB) received, lifetime 00:06
[02.10 00:00:39] Interpeter.exe - np.shandow.ru:443 close, 356 bytes sent, 314965 bytes (307 KB) received, lifetime 00:04
Interpeter.exe immediately establish connection with np.shandow.ru:443 and start to download malicious software.

Thats the ANN and Miner Software Thread :  [ANN] Head GPU&CPU Miner New version 2.0.3 [New algorithms]


And it looks not good for me and also i guess this are not realy false positive as other Miner Software has.
Would be nice to know some opinions before i report it .
But it realy looks like there are more Trojan and Malware programs in it .


Source : https://www.virustotal.com/gui/file/4520cd9d6527b18ae6a7fce2a1d01ab412ebc52dc0fbfb08f67717e3c6083f09/detection

I tried to download the File but got instant warnings !


.WOLF.BET.▄███████████▄
███████    ████████████▄
███████    ███████   ▀██
██████████████████    ██
██    ██████████████████
██    ███████    ███████
█████████████    ███████
███████    █████████████
███████    ███████    ██
██████████████████   ▄██
██        ▀███████████▀
██
██

█████
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
█████


Lafu
Legendary
*
Offline Offline

Activity: 1428
Merit: 1360


WOLF.BET - Provably Fair Dice Game


View Profile
February 11, 2020, 05:02:15 AM
 #164

A New Sonex Fake ANN with Malware !

[ANN] Sonex . New RandomX coin

User : mcrex666

Possible this Account got also hacked so please ban or Lock this User and delete the Thread that not more Users get hacked when they download this Malware shit !

Code:
[b]Wallets[/b]
Windows(beta): https://github.com/sonexcore/SONEX/releases/download/v.1.0.0/Sonex-qt.zip

[b]Site[/b]
[url=http://sonex.info]sonex.info[/url] (in maintenance)

[b]Explorer[/b]
Integrated in wallet




In this Sonex case we have now 4 with that one!

  • leond  Account is restored to the real owner
  • zenhu Account is restored to the real owner
  • garmin Hacked and for now not restored

.WOLF.BET.▄███████████▄
███████    ████████████▄
███████    ███████   ▀██
██████████████████    ██
██    ██████████████████
██    ███████    ███████
█████████████    ███████
███████    █████████████
███████    ███████    ██
██████████████████   ▄██
██        ▀███████████▀
██
██

█████
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
█████


Rikafip
Full Member
***
Online Online

Activity: 210
Merit: 640



View Profile
February 11, 2020, 07:56:46 AM
Merited by Lafu (1)
 #165

A New Sonex Fake ANN with Malware !

[ANN] Sonex . New RandomX coin

User : mcrex666


Same user, @mcrex666 just made another fake ChanCoin Ann with malware

Archive https://archive.fo/zgvEK


What is ChanCoin?
Chancoin was made by and for avid denizens of internet imageboards - so basically NEETs and weeaboos. Well, actually it was started by a guy trying to make a quick buck but he was kicked out and now its run by NEETs and weeaboos.
Windows wallet: https://github.com/chan-coin/CHANCOIN/releases/download/v0.15.8/chancoin-qt.zip


masulum
Hero Member
*****
Offline Offline

Activity: 686
Merit: 851


https://kleros.io - Dispute Resolution Layer


View Profile WWW
February 12, 2020, 01:13:36 PM
Merited by Lafu (1)
 #166

A New Sonex Fake ANN with Malware !

[ANN] Sonex . New RandomX coin

User : mcrex666


New thread: https://bitcointalk.org/index.php?topic=5225238.0
Archive: https://archive.is/a1xR2
Profile: fancyfutwork

smartmixer.io▀  ▀  ▀  ▀  ▀
▄  ▄  ▄  ▄  ▄

▀  ▀  ▀  ▀  ▀
▄  ▄  ▄  ▄  ▄

▀  ▀  ▀  ▀  ▀
▄  ▄  ▄  ▄  ▄

▀  ▀  ▀  ▀  ▀
▄  ▄  ▄  ▄  ▄

▀  ▀  ▀  ▀  ▀
.Make your Cryptos untraceable!.
(( ███████ ((    TELEGRAM    )) ███████ ))
▄▄███████▄▄
▄███████▀███████▄
▄███▀▀▀ ▄▄▄ ▀▀▀███▄
▄███ ▄▀▀▀   ▀▀▀▄ ███▄
████ █  ▄   ▄█ █ ████
████▌▐▌ ▀█▄█▀ ▐▌▐████
▀████ ▀▄  ▀  ▄▀ ████▀
▀████▄ ▀▄▄▄▀ ▄████▀
▀█████▄▄ ▄▄█████▀
▀▀███████▀▀
.
NO LOGS
▄▄███████▄▄
▄██████▀▀▀██████▄
▄█████▀ ▄▄▄ ▀█████▄
▄██████ ▀   █ ██████▄
███████   █▀  ███████
████████▄ ▄ ▄████████
▀████▀         ▀████▀
▀███   ▄   ▄   ███▀
▀███████████████▀
▀▀███████▀▀
.
NO SIGN-UP
▄▄███████▄▄
▄███████████████▄
▄███████▀   ▀█████▄
▄████▀  ▀      █████▄
████     ▄▀▄  ▀ ▀████
███    ▄▀▄ ▄▀▄    ███
▀███▄▄  ▀█ █▀   ▄███▀
▀████████ ████████▀
▀███████████████▀
▀▀███████▀▀
.

70% COMSN
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
MIX NOW!
.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀  ▀  ▀  ▀  ▀
▄  ▄  ▄  ▄  ▄

▀  ▀  ▀  ▀  ▀
▄  ▄  ▄  ▄  ▄

▀  ▀  ▀  ▀  ▀
▄  ▄  ▄  ▄  ▄

▀  ▀  ▀  ▀  ▀
▄  ▄  ▄  ▄  ▄

▀  ▀  ▀  ▀  ▀
Rikafip
Full Member
***
Online Online

Activity: 210
Merit: 640



View Profile
February 12, 2020, 04:04:35 PM
 #167

Another fake Chancoin announcement thread  with malware, same guy that earlier today made Sonex

Ann link [CHAN] ChanCoin - Crypto for Imageboards
User fancyfutwork

https://archive.fo/rIQSF

Lafu
Legendary
*
Offline Offline

Activity: 1428
Merit: 1360


WOLF.BET - Provably Fair Dice Game


View Profile
February 12, 2020, 07:52:26 PM
 #168

Another fake Chancoin announcement thread  with malware, same guy that earlier today made Sonex

Thanks Bro , looks like they coming more again and posting everyday !
Glad a few are watching out for them too.

The thread for Chancoin is deleted !

But the Sonex thread is already there and hope that a Mod or Global Mod delete the thread before some more User download there Shit !

I warned yesterday and today 2 Users as i have seen they posted in there and one have seen it and dont got infected with the download.

.WOLF.BET.▄███████████▄
███████    ████████████▄
███████    ███████   ▀██
██████████████████    ██
██    ██████████████████
██    ███████    ███████
█████████████    ███████
███████    █████████████
███████    ███████    ██
██████████████████   ▄██
██        ▀███████████▀
██
██

█████
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
█████


mole0815
Staff
Hero Member
*****
Offline Offline

Activity: 812
Merit: 1003


bitcoin.watfordfc.com


View Profile
February 12, 2020, 08:35:22 PM
 #169


The thread for Chancoin is deleted !

But the Sonex thread is already there and hope that a Mod or Global Mod delete the thread before some more User download there Shit !

I cannot find a thread anymore (except the deleted ones)!
Maybe you have a link so we can take care of it? Thanks Lafu Smiley

Lafu
Legendary
*
Offline Offline

Activity: 1428
Merit: 1360


WOLF.BET - Provably Fair Dice Game


View Profile
February 12, 2020, 08:42:13 PM
Last edit: February 12, 2020, 08:57:11 PM by Lafu
 #170

I cannot find a thread anymore (except the deleted ones)!
Maybe you have a link so we can take care of it? Thanks Lafu Smiley

Its gone and just have seen it a few min ago!
Looks like a global Moderator was faster then you.
Anyway thanks for help always, realy appreciated.

.WOLF.BET.▄███████████▄
███████    ████████████▄
███████    ███████   ▀██
██████████████████    ██
██    ██████████████████
██    ███████    ███████
█████████████    ███████
███████    █████████████
███████    ███████    ██
██████████████████   ▄██
██        ▀███████████▀
██
██

█████
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
█████


Rikafip
Full Member
***
Online Online

Activity: 210
Merit: 640



View Profile
February 13, 2020, 10:09:09 PM
 #171

Another possible fake Ann with malware, user joined github 2 hours ago

Ann thread  [BEXP] BitcoinExperimental - decentralized self-deployment system
User Kosharko
Archive https://archive.fo/SydmO

About project
BitcoinExperimental - this is a real decentralized system that can work both on the CPUs, GPUs, and on the HDDs. Our goal is to provide the means of everyone who has at least one of the three types of mining, so that in the future the end user can benefit. Both in the form of dividends and in the form of long-term storage.

Windows: https://github.com/BitcoinExperimental/BEXP/releases/download/1.0.0/BEXP.v1.0.0.x64.zip
Source: https://github.com/BitcoinExperimental/BEXP/

Lafu
Legendary
*
Offline Offline

Activity: 1428
Merit: 1360


WOLF.BET - Provably Fair Dice Game


View Profile
February 13, 2020, 11:18:12 PM
 #172

Another possible fake Ann with malware, user joined github 2 hours ago

Ann thread  [BEXP] BitcoinExperimental - decentralized self-deployment system
User Kosharko
Archive https://archive.fo/SydmO

About project
BitcoinExperimental - this is a real decentralized system that can work both on the CPUs, GPUs, and on the HDDs. Our goal is to provide the means of everyone who has at least one of the three types of mining, so that in the future the end user can benefit. Both in the form of dividends and in the form of long-term storage.

Windows: https://github.com/BitcoinExperimental/BEXP/releases/download/1.0.0/BEXP.v1.0.0.x64.zip
Source: https://github.com/BitcoinExperimental/BEXP/


I have seen it earlier and was just possible to check the files :
https://www.virustotal.com/gui/file/d78a916db3e58bb1469c00341c55ae013f2fde64269d1c457fefa9dda6fd35b2/detection

There are 2 detected engines in it and it looks like Malware but i cant say if that is false positiv, but i guess its not false positiv.
Yeb it looks strange with the just 2 hours ago joind on github and also the source code closed.

.WOLF.BET.▄███████████▄
███████    ████████████▄
███████    ███████   ▀██
██████████████████    ██
██    ██████████████████
██    ███████    ███████
█████████████    ███████
███████    █████████████
███████    ███████    ██
██████████████████   ▄██
██        ▀███████████▀
██
██

█████
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
█████


Rikafip
Full Member
***
Online Online

Activity: 210
Merit: 640



View Profile
February 14, 2020, 01:35:31 PM
 #173

Sonex is  back with yet another fake Ann and malware. Looks like a hacked account, as it didn't have any posts since 2013, and just now made this. And of course joined github few hour ago.

Ann  [ANN] Sonex . New RandomX coin
User  anettle12
Archive  https://archive.ph/gJa2c


About
SONEX is a blockchain protection project with the ability to send signed transactions. The project has fast transactions, low commission for transfers.

https://github.com/sonex-core/sonex/releases/download/v.1.0.0.0/SONEX-qt.zip

Rikafip
Full Member
***
Online Online

Activity: 210
Merit: 640



View Profile
February 14, 2020, 08:38:14 PM
Last edit: February 14, 2020, 08:51:51 PM by Rikafip
Merited by Lafu (1)
 #174

Suspicious announcement  thread with possible malware. All the usual  signs are here: self-moderated topic, user joined github 45 minutes ago, newbie account that hasn't been active for some time.

User chikezee

Project
Cesson - integrated trading platform inside the wallet. For mining coins, third-party pools, explorers and miners are not required. Everything you need is built into your wallet. The trading platform itself will start working in exactly 90 days.
Wallets
Windows: https://github.com/Crypto-Cesson/Cesson/releases/download/1.0.0/Cesson-qt.v1.0.0.x64.zip
Linux: https://github.com/Crypto-Cesson/Cesson/releases/download/1.0.0/Cesson-v1.0.0-aarch64-linux-gnu.zip
Source: https://github.com/Crypto-Cesson/Cesson
https://archive.fo/NMWX9



Another possible fake Ann with malware, user joined github 2 hours ago

Ann thread  [BEXP] BitcoinExperimental - decentralized self-deployment system
I have seen it earlier and was just possible to check the files :
https://www.virustotal.com/gui/file/d78a916db3e58bb1469c00341c55ae013f2fde64269d1c457fefa9dda6fd35b2/detection

There are 2 detected engines in it and it looks like Malware but i cant say if that is false positiv, but i guess its not false positiv.
Yeb it looks strange with the just 2 hours ago joind on github and also the source code closed.

Yeah all signs are there, but since that BitcoinExperimental  announcement thread is still there, that means it's all legit, no malware?

Lafu
Legendary
*
Offline Offline

Activity: 1428
Merit: 1360


WOLF.BET - Provably Fair Dice Game


View Profile
February 14, 2020, 08:46:34 PM
Last edit: February 15, 2020, 09:42:42 PM by Lafu
 #175

Suspicious announcement  thread with possible malware. All the usual  signs are here: self-moderated topic, user joined github 45 minutes ago, newbie account that hasn't been active for some time.

User chikezee

Code:
Windows: https://github.com/Crypto-Cesson/Cesson/releases/download/1.0.0/Cesson-qt.v1.0.0.x64.zip
Linux: https://github.com/Crypto-Cesson/Cesson/releases/download/1.0.0/Cesson-v1.0.0-aarch64-linux-gnu.zip
Source: https://github.com/Crypto-Cesson/Cesson

https://archive.fo/NMWX9

Nice catch on that and yes Malware attention on that thread and will report it !



Yes the FIle is infected and dangoures , i cant even download it and my system gives me Alerts.



The file has an Trojan or Malware in it !

Hope it gets soon deleted.


Edit :  Can a Mod or Global Moderator please delete the thread about !
Malware download link
https://bitcointalk.org/index.php?topic=5225876.0

.WOLF.BET.▄███████████▄
███████    ████████████▄
███████    ███████   ▀██
██████████████████    ██
██    ██████████████████
██    ███████    ███████
█████████████    ███████
███████    █████████████
███████    ███████    ██
██████████████████   ▄██
██        ▀███████████▀
██
██

█████
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
█████


ivan666
Newbie
*
Offline Offline

Activity: 2
Merit: 0


View Profile
February 16, 2020, 08:06:34 PM
 #176

A New Sonex Fake ANN with Malware !

[ANN] Sonex . New RandomX coin

User : mcrex666

Possible this Account got also hacked so please ban or Lock this User and delete the Thread that not more Users get hacked when they download this Malware shit !

Code:
[b]Wallets[/b]
Windows(beta): https://github.com/sonexcore/SONEX/releases/download/v.1.0.0/Sonex-qt.zip

[b]Site[/b]
[url=http://sonex.info]sonex.info[/url] (in maintenance)

[b]Explorer[/b]
Integrated in wallet




In this Sonex case we have now 4 with that one!

  • leond  Account is restored to the real owner
  • zenhu Account is restored to the real owner
  • garmin Hacked and for now not restored

restore my account   mcrex666,please)and yet, how could my account be hacked if I didn’t download or install anything?)
Lafu
Legendary
*
Offline Offline

Activity: 1428
Merit: 1360


WOLF.BET - Provably Fair Dice Game


View Profile
February 16, 2020, 08:44:06 PM
 #177

restore my account   mcrex666,please)and yet, how could my account be hacked if I didn’t download or install anything?)

For restore your account you have to look here : Recover Hacked / Lost Accounts and write an Email to recoveries...@bitcointalk.org

How your account got hacked i dont know , possible you downloaded something or clicked and link !!
Also maybe its possible that you dont got an strong Password.

What we know is that Users that post Sonex and Chancoin Threads and things mostly got hacked because the download links have Trojan and Malware in it.



In this Sonex case we have now 5 !

  • leond  Account is restored to the real owner
  • zenhu Account is restored to the real owner
  • garmin Hacked and for now not restored
  • mcrex666 Hacked and for now not restored
  • fancyfutwork Hacked and for now not restored

.WOLF.BET.▄███████████▄
███████    ████████████▄
███████    ███████   ▀██
██████████████████    ██
██    ██████████████████
██    ███████    ███████
█████████████    ███████
███████    █████████████
███████    ███████    ██
██████████████████   ▄██
██        ▀███████████▀
██
██

█████
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
█████


ivan666
Newbie
*
Offline Offline

Activity: 2
Merit: 0


View Profile
February 16, 2020, 09:29:50 PM
 #178

restore my account   mcrex666,please)and yet, how could my account be hacked if I didn’t download or install anything?)

For restore your account you have to look here : Recover Hacked / Lost Accounts and write an Email to recoveries...@bitcointalk.org

How your account got hacked i dont know , possible you downloaded something or clicked and link !!
Also maybe its possible that you dont got an strong Password.

What we know is that Users that post Sonex and Chancoin Threads and things mostly got hacked because the download links have Trojan and Malware in it.



In this Sonex case we have now 5 !

  • leond  Account is restored to the real owner
  • zenhu Account is restored to the real owner
  • garmin Hacked and for now not restored
  • mcrex666 Hacked and for now not restored
  • fancyfutwork Hacked and for now not restored

and if I can’t make a signature? (((in that year, I fell for this scheme, I think the same nit acts.
Lafu
Legendary
*
Offline Offline

Activity: 1428
Merit: 1360


WOLF.BET - Provably Fair Dice Game


View Profile
February 16, 2020, 09:36:52 PM
 #179

and if I can’t make a signature? (((in that year, I fell for this scheme, I think the same nit acts.

You have to follow the steps as it is esplained in the thread for restore your account.
Write an email to the recovery team and look whats happen.

But if i look on your post history i guess its the best when you start from scratch or use this account in the mean time .
And if you get your account restored you can use this one again.

Good Luck

.WOLF.BET.▄███████████▄
███████    ████████████▄
███████    ███████   ▀██
██████████████████    ██
██    ██████████████████
██    ███████    ███████
█████████████    ███████
███████    █████████████
███████    ███████    ██
██████████████████   ▄██
██        ▀███████████▀
██
██

█████
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
  ███
█████


Pages: « 1 2 3 4 5 6 7 8 [9]  All
  Print  
 
Jump to:  

Sponsored by , a Bitcoin-accepting VPN.
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!