dkbit98 (OP)
Legendary
Offline
Activity: 2226
Merit: 7143
|
|
October 16, 2019, 09:02:11 PM Last edit: October 16, 2019, 10:02:25 PM by dkbit98 |
|
Few days ago someone created fake Bitcointalk forum with all our data. It is collecting data Live! Watch out for potential Phishing and Scam attempts. bitinfo.ccA bit more information with images I posted in Scam Acussation section: https://bitcointalk.org/index.php?topic=5193535Stay safe
|
. .HUGE. | | | | | | █▀▀▀▀ █ █ █ █ █ █ █ █ █ █ █ █▄▄▄▄ | ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀ . CASINO & SPORTSBOOK ▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄ | ▀▀▀▀█ █ █ █ █ █ █ █ █ █ █ █ ▄▄▄▄█ | | |
|
|
|
|
|
I HATE TABLES I HATE TABLES I HA(╯°□°)╯︵ ┻━┻ TABLES I HATE TABLES I HATE TABLES
|
|
|
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
|
|
Lafu
Legendary
Offline
Activity: 2968
Merit: 3046
|
|
October 16, 2019, 10:31:36 PM |
|
Maybe its the same people or user that was running the bitcointalk.to webpage? Wasnt there somewhere a post or a thread that the bitcointalk.to site isnt anymore online! I cant find it at the Moment because im on mobile! Thanks for the Information by the way
|
|
|
|
TryNinja
Legendary
Offline
Activity: 2828
Merit: 6983
|
|
October 16, 2019, 10:37:05 PM |
|
Looks like the login and register buttons lead to BitcoinTalk? This shouldn't be such a big issue (at least for now). Just like BitcoinTalk.to which AFAIK only showed ads and his captcha didn't work, so no one could try to login or register.
|
. .HUGE. | | | | | | █▀▀▀▀ █ █ █ █ █ █ █ █ █ █ █ █▄▄▄▄ | ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀ . CASINO & SPORTSBOOK ▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄ | ▀▀▀▀█ █ █ █ █ █ █ █ █ █ █ █ ▄▄▄▄█ | | |
|
|
|
LTU_btc
Legendary
Offline
Activity: 3052
Merit: 1330
Slava Ukraini!
|
|
October 16, 2019, 10:42:02 PM |
|
Maybe its the same people or user that was running the bitcointalk.to webpage? Wasnt there somewhere a post or a thread that the bitcointalk.to site isnt anymore online! I cant find it at the Moment because im on mobile! Thanks for the Information by the way
Yep, you're right. Bitcointalk.to has been offline in recent months. Now I tried to search for it and when I visited their website I saw that this domain is for sale. I doubt that owner of these websites is same, because it just doesn't makes sense. They had perfect domain Bitcointalk.to and now appears with some random name Bitinfo.cc which are not even similar to Bitcointalk name.
|
|
|
|
logfiles
Copper Member
Legendary
Offline
Activity: 1974
Merit: 1653
Top Crypto Casino
|
|
October 16, 2019, 10:48:54 PM |
|
The small positive is that the copycat's domain is totally different from bitcointalk's unlike the old scammy bitcointalk.to It should be a little easy to notice that the domain in quite different.
|
|
|
|
hosseinimr93
Legendary
Online
Activity: 2394
Merit: 5235
|
|
October 16, 2019, 10:59:54 PM |
|
Looks like the login and register buttons lead to BitcoinTalk? This shouldn't be such a big issue (at least for now). Just like BitcoinTalk.to which AFAIK only showed ads and his captcha didn't work, so no one could try to login or register.
If you click on "Login" button, you navigate to real bitcointalk. But if you open one of the threads and then click on "Login" button you will navigate to the fake "login" page. Seems that they are still working on their website.
|
. .BLACKJACK ♠ FUN. | | | ███▄██████ ██████████████▀ ████████████ █████████████████ ████████████████▄▄ ░█████████████▀░▀▀ ██████████████████ ░██████████████ █████████████████▄ ░██████████████▀ ████████████ ███████████████░██ ██████████ | | CRYPTO CASINO & SPORTS BETTING | | │ | | │ | ▄▄███████▄▄ ▄███████████████▄ ███████████████████ █████████████████████ ███████████████████████ █████████████████████████ █████████████████████████ █████████████████████████ ███████████████████████ █████████████████████ ███████████████████ ▀███████████████▀ ███████████████████ | | .
|
|
|
|
Chikito
Legendary
Offline
Activity: 2380
Merit: 2054
|
|
October 16, 2019, 11:22:44 PM Last edit: October 16, 2019, 11:33:01 PM by DroomieChikito |
|
|
. .BLACKJACK ♠ FUN. | | | ███▄██████ ██████████████▀ ████████████ █████████████████ ████████████████▄▄ ░█████████████▀░▀▀ ██████████████████ ░██████████████ █████████████████▄ ░██████████████▀ ████████████ ███████████████░██ ██████████ | | CRYPTO CASINO & SPORTS BETTING | | │ | | │ | ▄▄███████▄▄ ▄███████████████▄ ███████████████████ █████████████████████ ███████████████████████ █████████████████████████ █████████████████████████ █████████████████████████ ███████████████████████ █████████████████████ ███████████████████ ▀███████████████▀ ███████████████████ | | .
|
|
|
|
logfiles
Copper Member
Legendary
Offline
Activity: 1974
Merit: 1653
Top Crypto Casino
|
|
October 16, 2019, 11:27:33 PM |
|
If you click on "Login" button, you navigate to real bitcointalk. But if you open one of the threads and then click on "Login" button you will navigate to the fake "login" page. Seems that they are still working on their website.
I think the idea is to get those people who search for related to what is discussed on Bitcointalk through google. They would then be tricked to click on mirror links of threads similar to those on bitcointalk after which they will be prompted to log in onto the phishing website.
|
|
|
|
Coyster
Legendary
Offline
Activity: 2016
Merit: 1243
Cashback 15%
|
|
October 17, 2019, 01:48:54 AM |
|
I think the idea is to get those people who search for related to what is discussed on Bitcointalk through google. They would then be tricked to click on mirror links of threads similar to those on bitcointalk after which they will be prompted to log in onto the phishing website.
I think this looks well like a very smart and calculative move, I always try to use the forum's search engine and not google, though sometimes it's not really a straightforward process in searching for what you're looking for. I thought if probably you're searching for a thread on Google, you'll just be redirected or taken straight to the thread? Does the user need to login there?
|
. .HUGE. | | | | | | █▀▀▀▀ █ █ █ █ █ █ █ █ █ █ █ █▄▄▄▄ | ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀ . CASINO & SPORTSBOOK ▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄ | ▀▀▀▀█ █ █ █ █ █ █ █ █ █ █ █ ▄▄▄▄█ | | |
|
|
|
TryNinja
Legendary
Offline
Activity: 2828
Merit: 6983
|
|
October 17, 2019, 03:02:30 AM Last edit: October 17, 2019, 05:04:21 AM by TryNinja |
|
I think the idea is to get those people who search for related to what is discussed on Bitcointalk through google. They would then be tricked to click on mirror links of threads similar to those on bitcointalk after which they will be prompted to log in onto the phishing website.
That's indeed the case. This already happened multiple times with the Bitcointalk.TO website, which was a third-party random mirror of the forum. I already clicked on it by mistake multiple times. And I'm not the only one. If you click on "Login" button, you navigate to real bitcointalk. But if you open one of the threads and then click on "Login" button you will navigate to the fake "login" page. Seems that they are still working on their website.
I tried logging in with some random username and password and looks like when you click the "Login" button, the request is sent to the real BitcoinTalk. While this doesn't mean the website isn't stealing our data (at least not stealing through the POST request from the login form), I agree that we sould treat it as a scam. TIP: Add the website to your hosts file to block it and avoid clicking on it by mistake. I totally fell for the cloned site, until I realized I couldn't see your trust ratings. I have added this line to /etc/hosts Now my computer can't access that phishing site anymore. Just do the above but with bitinfo.cc instead of bitcointalk.to.
|
. .HUGE. | | | | | | █▀▀▀▀ █ █ █ █ █ █ █ █ █ █ █ █▄▄▄▄ | ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀ . CASINO & SPORTSBOOK ▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄ | ▀▀▀▀█ █ █ █ █ █ █ █ █ █ █ █ ▄▄▄▄█ | | |
|
|
|
pooya87
Legendary
Offline
Activity: 3444
Merit: 10555
|
|
October 17, 2019, 05:17:42 AM |
|
TIP: Add the website to your hosts file to block it and avoid clicking on it by mistake.
there is also a simple remedy that could cover all other possible fake copy-sites which i find very useful and that is the browser's zoom option for those browsers that store the zoom state per domain not for the whole browser (eg. Chrome and Firefox). for example i have zoomed reddit to 200% so when i visit https://www.reddit.com/r/Bitcoin/ i'll get an easy visual confirmation that i am on a website i have visited before. but if i go somewhere else like https://np.reddit.com/r/Bitcoin/ i'll immediately see a zoomed out (default) size which is a quick indication of different domain.
|
. .BLACKJACK ♠ FUN. | | | ███▄██████ ██████████████▀ ████████████ █████████████████ ████████████████▄▄ ░█████████████▀░▀▀ ██████████████████ ░██████████████ █████████████████▄ ░██████████████▀ ████████████ ███████████████░██ ██████████ | | CRYPTO CASINO & SPORTS BETTING | | │ | | │ | ▄▄███████▄▄ ▄███████████████▄ ███████████████████ █████████████████████ ███████████████████████ █████████████████████████ █████████████████████████ █████████████████████████ ███████████████████████ █████████████████████ ███████████████████ ▀███████████████▀ ███████████████████ | | .
|
|
|
|
PrimeNumber7
Copper Member
Legendary
Offline
Activity: 1624
Merit: 1899
Amazon Prime Member #7
|
|
October 17, 2019, 06:54:33 AM |
|
There are only a small number of people who are collecting enough data to pull this off. I have said before that there should be limits as to how much data/many pages a person can access per time unit. In case the person behind this site is not collecting the data live, but rather is pulling the data on request, it should not be difficult for the administration to compare a random set of page requests via the site referenced in the OP to logs to see the IP address of who is accessing the pages in real time, and take action.
|
|
|
|
DdmrDdmr
Legendary
Offline
Activity: 2310
Merit: 10759
There are lies, damned lies and statistics. MTwain
|
|
October 17, 2019, 08:06:42 AM |
|
<…>
You don’t really need to scrape any data at all to do what the clone site does. I’d say that the cloned site merely inserts Bitcointalk in a frame (or such), and that it’s own sole native development is that of the login screen, used to capture your credential and then redirect you to Bitcointalk. At least, that is the intent when they get it to work properly. They do not need to scrape a single page. I just compared the clone to the original, refreshed them, compared data, and the content was verbatim (even stats). They do not scrape, but simply mask the content in a frame.
|
|
|
|
akamit
|
|
October 17, 2019, 08:31:54 AM |
|
Report phishing sites to Google here > https://safebrowsing.google.com/safebrowsing/report_phish/ and Google will do the rest. Hopefully, the phishing site will not get indexed and rank to any keyword. Moreover, if any visitor accidentally visits the site then Google may show the red warning saying "Phishing Site". I have reported it!
|
|
|
|
hugeblack
Legendary
Offline
Activity: 2506
Merit: 3649
Buy/Sell crypto at BestChange
|
|
October 17, 2019, 08:33:41 AM |
|
Watch out for potential Phishing and Scam attempts.
There are a lot of differences that can be noticed such as the logo of the forum at the top of the page, the pumping button, +Merit, userscripts do not work. Registrar URL: http://www.key-systems.netUpdated Date: 2019-09-10T15:03:43Z Creation Date: 2019-09-10T15:03:26Z Registry Expiry Date: 2020-09-10T15:03:26Z Not much work has been done on this site, so it may seem like an alternative to Bitcointalk.to Generally, you should be careful and Re-check the domain.
|
|
|
|
dkbit98 (OP)
Legendary
Offline
Activity: 2226
Merit: 7143
|
|
October 17, 2019, 08:42:53 AM |
|
Thanks for reporting. I missed this Report phishing sites to Google here > https://safebrowsing.google.com/safebrowsing/report_phish/ and Google will do the rest. Hopefully, the phishing site will not get indexed and rank to any keyword. Moreover, if any visitor accidentally visits the site then Google may show the red warning saying "Phishing Site". I have reported it! Yeah this shitsite is reported as soon as I saw it, but it would help if more people do it. You can also report it to Symantec: https://submit.symantec.com/antifraud/phish.cgiI also reported it to Metamask
|
. .HUGE. | | | | | | █▀▀▀▀ █ █ █ █ █ █ █ █ █ █ █ █▄▄▄▄ | ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀ . CASINO & SPORTSBOOK ▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄ | ▀▀▀▀█ █ █ █ █ █ █ █ █ █ █ █ ▄▄▄▄█ | | |
|
|
|
marlboroza
Legendary
Offline
Activity: 1932
Merit: 2270
|
|
October 17, 2019, 10:41:06 AM |
|
I looked into this yesterday and I find very strange that only Forcepoint showed warning while other engines showed it as clean. I used their scanner and got this result : Login button on main page is linking bitcointalk.org, but inside threads link is for phishing purposes.
|
|
|
|
KingScorpio
|
|
October 17, 2019, 05:04:31 PM |
|
Few days ago someone created fake Bitcointalk forum with all our data. It is collecting data Live! Watch out for potential Phishing and Scam attempts. bitinfo.ccA bit more information with images I posted in Scam Acussation section: https://bitcointalk.org/index.php?topic=5193535Stay safe why is it a fake? it is simply a different bitcoin forum, are here some greedy monopolists upset?
|
|
|
|
actmyname
Copper Member
Legendary
Offline
Activity: 2562
Merit: 2504
Spear the bees
|
|
October 17, 2019, 06:19:25 PM |
|
why is it a fake? it is simply a different bitcoin forum, are here some greedy monopolists upset? Read that part back.
|
|
|
|
TryNinja
Legendary
Offline
Activity: 2828
Merit: 6983
|
|
October 17, 2019, 06:26:11 PM |
|
why is it a fake? it is simply a different bitcoin forum, are here some greedy monopolists upset?
Dude? It's a literal clone of BitcoinTalk. I found your exact post in there: https://bitinfo.cc/topic.php?topic=5193542.msg52790760#msg52790760 < FAKE BITCOINTALKWhat does fake mean to you?
|
. .HUGE. | | | | | | █▀▀▀▀ █ █ █ █ █ █ █ █ █ █ █ █▄▄▄▄ | ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀ . CASINO & SPORTSBOOK ▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄ | ▀▀▀▀█ █ █ █ █ █ █ █ █ █ █ █ ▄▄▄▄█ | | |
|
|
|
|