Bitcoin Forum
May 25, 2024, 06:36:06 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: {Beware}: Crypto Currency give-away spoof puny-code domains  (Read 162 times)
Baofeng (OP)
Legendary
*
Offline Offline

Activity: 2604
Merit: 1664



View Profile
September 25, 2019, 03:46:51 AM
 #1

https://twitter.com/kyleehmke/status/1175128078655401998



Code:
- xn--mdium-n51b[.]com
- xn--mediu-jl1b[.]com
- xn--stllr-6wa7j[.]org

Again, this is just a friendly and gentle remainder to everyone.

███████████████████████
████████████████████
██████████████████
████████████████████
███▀▀▀█████████████████
███▄▄▄█████████████████
██████████████████████
██████████████████████
███████████████████████
█████████████████████
███████████████████
███████████████
████████████████████████
███████████████████████████
███████████████████████████
███████████████████████████
█████████▀▀██▀██▀▀█████████
█████████████▄█████████████
███████████████████████
████████████████████████
████████████▄█▄█████████
████████▀▀███████████
██████████████████
▀███████████████████▀
▀███████████████▀
█████████████████████████
O F F I C I A L   P A R T N E R S
▬▬▬▬▬▬▬▬▬▬
ASTON VILLA FC
BURNLEY FC
BK8?.
..PLAY NOW..
bitmover
Legendary
*
Offline Offline

Activity: 2310
Merit: 5962


bitcoindata.science


View Profile WWW
September 25, 2019, 12:08:24 PM
 #2

Code:
- xn--mdium-n51b[.]com
- xn--mediu-jl1b[.]com
- xn--stllr-6wa7j[.]org


Those are too obvious domains scam. Who would click on such URL?
This is basic common sense...

For a promisse of a giveaway, a few cents of a token which has no value....

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
whtchocla7e
Full Member
***
Offline Offline

Activity: 392
Merit: 116


Worlds Simplest Cryptocurrency Wallet


View Profile
September 25, 2019, 12:28:19 PM
 #3

Code:
- xn--mdium-n51b[.]com
- xn--mediu-jl1b[.]com
- xn--stllr-6wa7j[.]org


Those are too obvious domains scam. Who would click on such URL?
This is basic common sense...

For a promisse of a giveaway, a few cents of a token which has no value....
A lot of new people haven't noticed the site link. The crooks have coded the links, turned them into shortened links or coded it into images and text. This article is really useful for newbies, we should be more careful when paying attention to website addresses.

Quote
▂▂▂▂▂▂▂▂▂▂▂▂▂▃▅▆█ L E A D █▆▅▃▂▂▂▂▂▂▂▂▂▂▂▂
World's Simplest and Safest Decentralized Cryptocurrency Wallet!
▬▬▬▬▬▬▬ • STORE • SEND • SPEND • SWAP • STAKE • ▬▬▬▬▬▬
o_e_l_e_o
In memoriam
Legendary
*
Offline Offline

Activity: 2268
Merit: 18565


View Profile
September 25, 2019, 02:32:08 PM
Merited by hugeblack (1), bitmover (1), masulum (1)
 #4

Those are too obvious domains scam. Who would click on such URL?
Those are the punycode versions, not the ASCII versions. The subdomain of those URLs listed above would display in your browser's address bar as follows:
Code:
mẹdium
mediuṃ
stėlląr
As you might imagine, people fall for these kind of attacks all the time if their browser is set to not display punycode.

To protect yourself from this kind of attack, in Firefox open a new tab, type about:config, accept the warning, search for "punycode", and change the value of network.IDN_show_punycode to true. This will change the URL in your browser from the examples I've given in this post to instead display as the examples Baofeng has given in his (so from mẹdium to xn--mdium-n51b, for example).

masulum
Legendary
*
Offline Offline

Activity: 2240
Merit: 1593


hmph..


View Profile WWW
September 25, 2019, 05:07:35 PM
 #5

For members who don't understand, what's wrong about medium, medium and stellar in o_e_l_e_o post above, try to copy text to word/notepad etc, and change font size. And you will see the result like image below.




.freebitcoin.       ▄▄▄█▀▀██▄▄▄
   ▄▄██████▄▄█  █▀▀█▄▄
  ███  █▀▀███████▄▄██▀
   ▀▀▀██▄▄█  ████▀▀  ▄██
▄███▄▄  ▀▀▀▀▀▀▀  ▄▄██████
██▀▀█████▄     ▄██▀█ ▀▀██
██▄▄███▀▀██   ███▀ ▄▄  ▀█
███████▄▄███ ███▄▄ ▀▀▄  █
██▀▀████████ █████  █▀▄██
 █▄▄████████ █████   ███
  ▀████  ███ ████▄▄███▀
     ▀▀████   ████▀▀
BITCOIN
DICE
EVENT
BETTING
WIN A LAMBO !

.
            ▄▄▄▄▄▄▄▄▄▄███████████▄▄▄▄▄
▄▄▄▄▄██████████████████████████████████▄▄▄▄
▀██████████████████████████████████████████████▄▄▄
▄▄████▄█████▄████████████████████████████▄█████▄████▄▄
▀████████▀▀▀████████████████████████████████▀▀▀██████████▄
  ▀▀▀████▄▄▄███████████████████████████████▄▄▄██████████
       ▀█████▀  ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀  ▀█████▀▀▀▀▀▀▀▀▀▀
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.PLAY NOW.
hugeblack
Legendary
*
Offline Offline

Activity: 2520
Merit: 3691


View Profile WWW
September 26, 2019, 03:50:40 PM
 #6

To @OP, I think this topic[1] has covered all the information about Punycode so it is better to quote it or add the link in the topic.

Also, "SSL certificate is valid" Doesn't mean you are safe, check out[2]
Secondly, we're in 2019, don't expect anyone to give you money for free, especially Crypto Currency give-away. Cheesy Cheesy Cheesy Old school scam


[1] What is Punycode and how to protect yourself from Homograph Phishing attacks?
[2] https://bitcointalk.org/index.php?topic=5184169.msg52506958#msg52506958
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!