Bitcoin Forum
August 03, 2024, 10:20:16 PM *
News: Latest Bitcoin Core release: 27.1 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 ... 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 [77]
  Print  
Author Topic: Report Malware and Suspicious Links here so Mods can take Action !  (Read 35099 times)
logfiles
Copper Member
Legendary
*
Online Online

Activity: 2058
Merit: 1741


Top Crypto Casino


View Profile WWW
July 03, 2024, 11:48:29 PM
 #1521

Alright let me just explain this if you scroll up I have reported multiple time against these gang, Apart from my reporting, many of their accounts have been banned. They are not actually scamming the people but they show that by exploiting gambling  can earn a lot of money and ask people to download the malware file they given the link of google drive. So those who will download the files will be become victims of hacking.
And if you pay attention to the user that you have mentioned, he has also given the same kind of link of Google's drive. I'm just reporting these phisher's here as soon as they get out of the forum. Hope you get it.
Thanks for your dedication @Crypto Library on the war to clean malware off this forum.

In the past, I have actually seen some chaps try to sell gambling casino scripts, but I wasn't sure what to do about it. I will keep a keen eye on those who share the scripts and the scripts too if I come across such ANNs again.

███████████████████████
████▐██▄█████████████████
████▐██████▄▄▄███████████
████▐████▄█████▄▄████████
████▐█████▀▀▀▀▀███▄██████
████▐███▀████████████████
████▐█████████▄█████▌████
████▐██▌█████▀██████▌████
████▐██████████▀████▌████
█████▀███▄█████▄███▀█████
███████▀█████████▀███████
██████████▀███▀██████████

███████████████████████
.
BC.GAME
▄▄▀▀▀▀▀▀▀▄▄
▄▀▀░▄██▀░▀██▄░▀▀▄
▄▀░▐▀▄░▀░░▀░░▀░▄▀▌░▀▄
▄▀▄█▐░▀▄▀▀▀▀▀▄▀░▌█▄▀▄
▄▀░▀░░█░▄███████▄░█░░▀░▀▄
█░█░▀░█████████████░▀░█░█
█░██░▀█▀▀█▄▄█▀▀█▀░██░█
█░█▀██░█▀▀██▀▀█░██▀█░█
▀▄▀██░░░▀▀▄▌▐▄▀▀░░░██▀▄▀
▀▄▀██░░▄░▀▄█▄▀░▄░░██▀▄▀
▀▄░▀█░▄▄▄░▀░▄▄▄░█▀░▄▀
▀▄▄▀▀███▄███▀▀▄▄▀
██████▄▄▄▄▄▄▄██████
.
..CASINO....SPORTS....RACING..
█░░░░░░█░░░░░░█
▀███▀░░▀███▀░░▀███▀
▀░▀░░░░▀░▀░░░░▀░▀
░░░░░░░░░░░░
▀██████████
░░░░░███░░░░
░░█░░░███▄█░░░
░░██▌░░███░▀░░██▌
░█░██░░███░░░█░██
░█▀▀▀█▌░███░░█▀▀▀█▌
▄█▄░░░██▄███▄█▄░░▄██▄
▄███▄
░░░░▀██▄▀


▄▄████▄▄
▄███▀▀███▄
██████████
▀███▄░▄██▀
▄▄████▄▄░▀█▀▄██▀▄▄████▄▄
▄███▀▀▀████▄▄██▀▄███▀▀███▄
███████▄▄▀▀████▄▄▀▀███████
▀███▄▄███▀░░░▀▀████▄▄▄███▀
▀▀████▀▀████████▀▀████▀▀
Crypto Library
Hero Member
*****
Offline Offline

Activity: 938
Merit: 841


Find your Digital Services at- cryptolibrary.pro


View Profile WWW
July 04, 2024, 03:50:10 AM
 #1522

@Crypto Library
thanks for keeping your eyes open and reporting that things here.
Thanks for your dedication @Crypto Library on the war to clean malware off this forum.

In the past, I have actually seen some chaps try to sell gambling casino scripts, but I wasn't sure what to do about it. I will keep a keen eye on those who share the scripts and the scripts too if I come across such ANNs again.
Thanks you guys for yours appreciations it's gives me more energy.
Two years ago I myself became a victim of phishing and my important data along with the funds of Meta Mask and some purchased games were taken away by hackers.  I know how painful these are.  Hopefully my efforts will at least save someone else from falling for this phishing.  Wink

By the way here is another one-

Account: Gebrossa (need to be ban ASAP)

Hey guys, I found this method today and it worked perfectly with $500 Amazon and 100 EUR Valorant giftcards.

It should work with every giftcard that is available in the store. I am not sure how long it's gonna take them to patch this exploit but it works for now, so enjoy.

Btw. you can use it to make money - just use Paxful to sell these giftcards for BTC (use $200 and $500 giftcards for that, because sellers pay about 80% for those, and only about 50-60% for lower values)

https://drive. google. com/file/d/ 1B6xZyKm1_qZ862jRcsvrTBad5IJB4Xoj/view?usp=sharing

Giftcards I got:

https://i.imgur.com/pxzO2Pp.png

https://i.imgur.com/9psp2pg.png


View Archive



Hey guys, I found this method today and it worked perfectly with $500 Amazon and 100 EUR Valorant giftcards.

It should work with every giftcard that is available in the store. I am not sure how long it's gonna take them to patch this exploit but it works for now, so enjoy.

Btw. you can use it to make money - just use Paxful to sell these giftcards for BTC (use $200 and $500 giftcards for that, because sellers pay about 80% for those, and only about 50-60% for lower values)

https://drive. google. com/file/d/ 1B6xZyKm1_qZ862jRcsvrTBad5IJB4Xoj/view?usp=sharing

Giftcards I got:

https://i.imgur.com/pxzO2Pp.png

https://i.imgur.com/9psp2pg.png


View Archive

I started with $450 and this is my balance now
 
https://i.imgur.com/ujHmBNH.png
 
this method is about doublespendning btc transactions with 1 confirmations
 
some casinos are vulnerable which means that after 1 confirmation they add money to your account but u get your money back due to doublespend, then u can also withdraw money from the casino
 
tried this on Stake.com btw but I heard there are many more of them

Method:

https://drive.g oogle. com/file/ d/1nkP1yUdK8tCh1anGAgm-gHSn6qawG9PF/view?usp=sharing



View Archive

███████████████████████████
███████▄████████████▄██████
████████▄████████▄████████
███▀█████▀▄███▄▀█████▀███
█████▀█▀▄██▀▀▀██▄▀█▀█████
███████▄███████████▄███████
███████████████████████████
███████▀███████████▀███████
████▄██▄▀██▄▄▄██▀▄██▄████
████▄████▄▀███▀▄████▄████
██▄███▀▀█▀██████▀█▀███▄███
██▀█▀████████████████▀█▀███
███████████████████████████
.
.Duelbits.
..........UNLEASH..........
THE ULTIMATE
GAMING EXPERIENCE
DUELBITS
FANTASY
SPORTS
████▄▄█████▄▄
░▄████
███████████▄
▐███
███████████████▄
███
████████████████
███
████████████████▌
███
██████████████████
████████████████▀▀▀
███████████████▌
███████████████▌
████████████████
████████████████
████████████████
████▀▀███████▀▀
.
▬▬
VS
▬▬
████▄▄▄█████▄▄▄
░▄████████████████▄
▐██████████████████▄
████████████████████
████████████████████▌
█████████████████████
███████████████████
███████████████▌
███████████████▌
████████████████
████████████████
████████████████
████▀▀███████▀▀
/// PLAY FOR  FREE  ///
WIN FOR REAL
..PLAY NOW..
Lafu (OP)
Legendary
*
Offline Offline

Activity: 3052
Merit: 3171



View Profile
July 08, 2024, 04:26:01 PM
 #1523

Looks like we have another Fake download wallet for KASHBA v1 from Mediafire !

This time they used a 2 short links for there download.

KASHBA v1 is here!
We are launching the Kaspa fork (no premine/ no dev fee), pre-launch phase. All minted coins will remain valid in the blockchain.
Code:
Windows wallet:
link1 https://shorturl.at/SUs7S
link2 https://shorturl.at/H0Fbv

The first Short Link if you use https://wheregoes.com that checks the short link for you and show you the real source.
https://wheregoes.com/trace/20243665073/
Code:
https://www.mediafire.com/download_repair.php?flag=1&dkey=2owhin6gsczgYzU9zl6AkTiib5BNO0ckq7wf%2Di928uoSSU9KhgkFlWiN0vAF6FXzUPVfj1eXUFKKXGm3X6zS1k%5Fc3qA3ygZe9pM8yP0HXCHnHzy%5FNYtahUNbAaZSZqkHWVFNpuhBsmb49RYUHdx87Co3JI5NYnOstvCqd6MkZisDDw&qkey=vivrhxp7llbxcky&ip=142%2E93%2E176%2E189

The second one will this :
https://wheregoes.com/trace/20243665288/
Code:
https://easyupload.io/p3slxx

Thanks @xandry as he was a faster then me for checking the file!
https://bitcointalk.org/index.php?topic=5502371.msg64303882#msg64303882

https://www.virustotal.com/gui/file/e17e318e3a22362b59b7482e4144b7bec3324e9c6c68730005bc6a46cf62f249
Code:
W32.AIDetectMalware
Suspicious.low.ml.score
Trojan-Spy.Node.LxnnyStealer

Account : hojcuv  <--- Please ban or Lock that Account and delete the Thread

Thread 1 : KASHBA v1 is here!
Thread 2 : KASHBA - no premine/no dev fee - Kaspa fork (prelaunch)

Lafu (OP)
Legendary
*
Offline Offline

Activity: 3052
Merit: 3171



View Profile
July 11, 2024, 02:18:01 PM
 #1524

We have again an Fake Ann with a short link that redirects to a Fake Github Account with Malware download for ChuckleChain !

The Short Link if you check with Virustotal directs to that Fake Github Account:
Code:
Redirection chain

https://t.ly/ldtM1
https://github.com/monee103/windows-lifetime-license/releases/download/v1/Setup.zip
Source : https://www.virustotal.com/gui/url/7153203da807502e98a725c0ef1c8e2b457bfdadb6951aaf97b5cf015d512412/details

The Fake Github was just created 1 hour ago !

Fake Github : github.com/monee103/windows-lifetime-license/

Code:
Trojan-Spy.Node.LxnnyStealer
Riskware ( 00584baa1 )
Source : https://www.virustotal.com/gui/file/9972046316f16fd2705d777305b85571b215c17e60521ee20f91649b2063cd38/detection

Account : diqigexo  <--- Please ban or Lock that Account and delete the Thread
The Account was just created 2days ago and only posted that Thread.

ChuckleChain
Wallet download
Code:
Windows wallet: https://t.ly/ldtM1

The User changed his thread after i posted that but you can read all here : https://ninjastic.space/search?author=diqigexo

This post is also a reference for the Github Report !

Lafu (OP)
Legendary
*
Offline Offline

Activity: 3052
Merit: 3171



View Profile
July 15, 2024, 06:00:19 AM
Merited by Crypto Library (1)
 #1525

We have a new Fake Ann Thread with an Malware download Link and Fake Github Account for Mallior !

The Fake Github was created 3 days ago.

Fake Github : github.com/Mallior

The qt-windows wallet file has 28 detections with bad things.
Code:
Trojan/Win32.RL_Generic.C4346791
Trojan.Jalapeno.D81F
Win64:DropperX-gen [Drp]
Gen:Variant.Jalapeno.2079
A Variant Of MSIL/Kryptik.ADGR
Trojan.MSIL.Krypt
Trojan ( 005b3cc11 )
Malware.Obfus/MSIL@AI.100 (RDM.MSIL2:fZp5mqnWJI+uolAWKJSAJg)
Heuristic.HEUR/AGEN.1313073
HEUR:Trojan-Spy.MSIL.Quasar.gen
Trojan.Generic.TRFH449
Trojan.PackedNET.1560
Source : https://www.virustotal.com/gui/file/abdac7b13dbad121ddf16189d33d76dd010c381172461b95c0dc8b55b7966253

Account : Toresfyuit  <--- Please ban or Lock that Account and delete the Thread
This user recently woke up from a long period of inactivity.
Registered since October 01, 2021 ,  Hacked or sold Account

Fake Ann Thread :  [ANN] Mallior - Best Crypto Decision On The Market

Mallior Coin (MLR)

Code:
https://mallior.com]Website
https://github.com/Mallior/Core/releases/tag/v1.0.0

This post is also a reference for the Github Report !

Crypto Library
Hero Member
*****
Offline Offline

Activity: 938
Merit: 841


Find your Digital Services at- cryptolibrary.pro


View Profile WWW
July 16, 2024, 05:47:11 PM
Merited by Lafu (1)
 #1526

I think I got some asshole those should be ban. I have checked their link via the virus total and here I found this -
https://www.virustotal.com/gui/url/a9012d0fab8e5547d6f44da30a83c1f61e859f0b91813a7ad88a0babc8ed0703?nocache=1




Account: Ljax1988 (need to be ban ASAP)

Dear Community,

We are thrilled to announce that Kick .com, your go-to destination for immersive streaming experiences, has officially partnered with the $STAKE Crypto Casino Token! As part of this exciting collaboration, we're hosting an exclusive $STAKE token airdrop, with a total of 120,000,000 tokens available for our dedicated users.

Don't miss out on this fantastic opportunity to be part of the future of crypto gaming and streaming. Join us now and claim your share of $STAKE tokens!


➡️ - Complete the tasks

➡️ - Take your $STAKE Airdrop 

 

Visit :  👉  http://joinstake . v ip/  👈  to participate


View Archive

And this monkey_nr account is being used as positive feedback to attract people. I think this is also need to be banned

Thanks is fasttt  Grin Grin Grin Grin



View Archive

███████████████████████████
███████▄████████████▄██████
████████▄████████▄████████
███▀█████▀▄███▄▀█████▀███
█████▀█▀▄██▀▀▀██▄▀█▀█████
███████▄███████████▄███████
███████████████████████████
███████▀███████████▀███████
████▄██▄▀██▄▄▄██▀▄██▄████
████▄████▄▀███▀▄████▄████
██▄███▀▀█▀██████▀█▀███▄███
██▀█▀████████████████▀█▀███
███████████████████████████
.
.Duelbits.
..........UNLEASH..........
THE ULTIMATE
GAMING EXPERIENCE
DUELBITS
FANTASY
SPORTS
████▄▄█████▄▄
░▄████
███████████▄
▐███
███████████████▄
███
████████████████
███
████████████████▌
███
██████████████████
████████████████▀▀▀
███████████████▌
███████████████▌
████████████████
████████████████
████████████████
████▀▀███████▀▀
.
▬▬
VS
▬▬
████▄▄▄█████▄▄▄
░▄████████████████▄
▐██████████████████▄
████████████████████
████████████████████▌
█████████████████████
███████████████████
███████████████▌
███████████████▌
████████████████
████████████████
████████████████
████▀▀███████▀▀
/// PLAY FOR  FREE  ///
WIN FOR REAL
..PLAY NOW..
Lafu (OP)
Legendary
*
Offline Offline

Activity: 3052
Merit: 3171



View Profile
July 16, 2024, 06:02:50 PM
 #1527

I think I got some asshole those should be ban. I have checked their link via the virus total and here I found this -
https://www.virustotal.com/gui/url/a9012d0fab8e5547d6f44da30a83c1f61e859f0b91813a7ad88a0babc8ed0703?nocache=1

Account: Ljax1988 (need to be ban ASAP)
Visit :  👉  http_://joinstake . v ip/  👈  to participate[/size]
View Archive
About that User that posted that link for and about joinstake it looks like that it is an phishing Link and attempt for that.
But you forgot something important and that is that when you click on that Link you get directed to a Webpage that has an other adress.
Code:
https://kcki.online/
And i guess everybody can see there that its not a serious Webpage as every link you click there it directly ask you to connect your wallet.
Even you want to look at the Terms and Con.

About the other User i dont know if there is enough evidence to ban him but you can be right.

Lafu (OP)
Legendary
*
Offline Offline

Activity: 3052
Merit: 3171



View Profile
July 30, 2024, 08:52:38 AM
 #1528

We have a new Fake Ann with an Fake Website that have a Malware download Wallet file from a Fake Github Account for Friemon Coin !

The Fake Github Account was created 4 days ago and the Malware files was uploaded 9 hours ago.

Fake Github : github.com/Friemon

The sandbox CAPE Sandbox flags this file as: RAT MALWARE
Code:
Drops script at startup location
Suspicious DNS Query for IP Lookup Service APIs
Startup Folder File Write
Usage Of Web Request Commands And Cmdlets - ScriptBlock
RegAsm.EXE Initiating Network Connection To Public IP
Potentially Suspicious CMD Shell Output Redirect
ET MALWARE EXE Download Request To Wordpress Folder Likely Malicious
INDICATOR-SHELLCODE x86 NOOP
Source : https://www.virustotal.com/gui/file/54138d80e63cbb98ae02c2a806cd8b38824766332c8692c881afdd065514bf85/behavior

Account : uadrenopl  <--- Please ban or Lock that Account and delete the Thread
This user recently woke up from a long period of inactivity.
Registered since October 02, 2021 , Hacked or sold Account

Fake Ann Thread : ANN] Friemon Coin (FRMN) - The Friendliest Meme Coin!

Friemon Coin is an innovative memecoin designed to bring fun and utility to the cryptocurrency world. Focused on community engagement and real-world applications, it aims to revolutionize digital transactions with a friendly twist.
Code:
Website: [url=https://friemon.com]friemon.com[/url]

On top of that the Fake Website is hosted from UK in Manchester

This post is also a reference for the Github Report !

Pages: « 1 ... 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 [77]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!