Bitcoin Forum
July 06, 2024, 12:22:38 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Tool For Catch Phishing  (Read 403 times)
Chikito (OP)
Legendary
*
Offline Offline

Activity: 2436
Merit: 2063



View Profile WWW
December 15, 2019, 01:04:54 PM
Merited by hugeblack (3), DdmrDdmr (3), Yaunfitda (2), BitMaxz (1), ABCbits (1), Coin-1 (1), sujonali1819 (1), tbct_mt2 (1), AakZaki (1), Husna QA (1), The Cryptovator (1), BITCOIN4X (1), Heisenberg_Hunter (1)
 #1

Every day we fund the phishing website always burning and try to scam people. I did a lot of catch of them and reported on safe browsing google

What tool to find it?

https://dnstwister.report/



dnstwister is a good tool to find a similar domain and find potential phishing. We can subscribe and alert us when someone makes the same domain.
For example, I put localbitcoins.com on the following box




https://dnstwister.report/search?ed=6c6f63616c626974636f696e732e636f6d

Well, we can see 438 domains similar to localbitcoins.com and 242 domains resolved to an IP address.
Not at all online and Phishing, maybe was reported and when checking it one by one some people still selling similar domain and other one make referal into localbitcoins.



Another one to check phishing site is https://www.phishtank.com/





and sometimes I use https://www.virustotal.com/gui/home/search [insert IP address on box to find relation domain]





Happy hunting and don't forget to report https://safebrowsing.google.com/safebrowsing/report_phish/?hl=en


.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
sujonali1819
Legendary
*
Offline Offline

Activity: 2450
Merit: 1189


Need Campaign Manager?PM on telegram @sujonali1819


View Profile WWW
December 15, 2019, 01:45:41 PM
 #2

Good job man. I have been searching this type tools since long time. And today I have found something which maybe help me. And I have tried the first one. It looks good and cool.

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
.
GreatArkansas
Legendary
*
Offline Offline

Activity: 2366
Merit: 1358


Playgram - The Telegram Casino


View Profile WWW
December 15, 2019, 10:46:24 PM
 #3

Every day we fund the phishing website always burning and try to scam people. I did a lot of catch of them and reported on safe browsing google
(...)
Great,  I'm a little bit surprised coz this kind of website exist, thank to you.
Btw, here's another website where we can report some phishing sites or scam/fake : https://etherscamdb.info/.
It's also about crypto where you can see some list of scam sites like phishing sites.
BUT, the best report we can do is to report on their particular registrar, it is much better to be take down immediately, emailing them will do, just provide the link of suspected scam/phishing website.

▄▄███████▄▄███████
▄███████████████▄▄▄▄▄
▄████████████████████▀░
▄█████████████████████▄░
▄█████████▀▀████████████▄
██████████████▀▀█████████
████████████████████████
██████████████▄▄█████████
▀█████████▄▄████████████▀
▀█████████████████████▀░
▀████████████████████▄░
▀███████████████▀▀▀▀▀
▀▀███████▀▀███████

▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
 
Playgram.io
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀

▄▄▄░░
▀▄







▄▀
▀▀▀░░
▄▄▄███████▄▄▄
▄▄███████████████▄▄
▄███████████████████▄
▄██████████████▀▀█████▄
▄██████████▀▀█████▐████▄
██████▀▀████▄▄▀▀█████████
████▄▄███▄██▀█████▐██████
█████████▀██████████████
▀███████▌▐██████▐██████▀
▀███████▄▄███▄████████▀
▀███████████████████▀
▀▀███████████████▀▀
▀▀▀███████▀▀▀
██████▄▄███████▄▄████████
███▄███████████████▄░░▀█▀
███████████░█████████░░
░█████▀██▄▄░▄▄██▀█████░
█████▄░▄███▄███▄░▄█████
███████████████████████
███████████████████████
██░▄▄▄░██░▄▄▄░██░▄▄▄░██
██░░░░██░░░░██░░░░████
██░░░░██░░░░██░░░░████
██▄▄▄▄▄██▄▄▄▄▄██▄▄▄▄▄████
███████████████████████
███████████████████████
 
PLAY NOW

on Telegram
Chikito (OP)
Legendary
*
Offline Offline

Activity: 2436
Merit: 2063



View Profile WWW
December 16, 2019, 12:08:22 AM
Merited by hugeblack (2)
 #4

Good job man. I have been searching this type tools for long time. And today I have found something which maybe help me. And I have tried the first one. It looks good and cool.
Np, when you have good knowledge, you can run code by looking for suspicious TLS certificate issuances

https://github.com/x0rz/phishing_catcher

Phishing catcher using Certstream.
CertStream is getting data from the Certificate Transparency Log (CTL) to monitor for suspicious keywords.
https://blog.0day.rocks/catching-phishing-using-certstream-97177f0d499a

Tool for monitoring similar web are goods for exchange and wallet developer to avoid phishing.

report some phishing sites or scam/fake : https://etherscamdb.info/.
What do when we report it?, I see website like:
Code:
https://siawallet.io/
http://ethcharity.net/
Those are Still active. We have to report it to https://safebrowsing.google.com/safebrowsing/report_phish/?hl=en first then https://etherscamdb.info before someone confuse to clicking the link on table.

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
tbct_mt2
Hero Member
*****
Offline Offline

Activity: 2366
Merit: 837



View Profile WWW
December 16, 2019, 01:18:01 AM
 #5

Welcome to my collection, DroomieChikito. You did a great guide.
Chikito (OP)
Legendary
*
Offline Offline

Activity: 2436
Merit: 2063



View Profile WWW
January 10, 2020, 05:12:30 AM
Merited by Husna QA (1)
 #6

Guide to using phishing_catcher on Linux/ubuntu terminal

Requirement:

- Python2 or Python3

Code:
git clone https://github.com/x0rz/phishing_catcher.git

Code:
cd phishing_catcher

Code:
pip install -r requirements.txt

Running catcher
Code:
./catch_phishing.py




I got a lot Suspicious link. Let's try your self, dwyor

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
FeiYun2112
Newbie
*
Offline Offline

Activity: 11
Merit: 0


View Profile
January 10, 2020, 12:09:29 PM
 #7

The way newbie users get alerted about phishing web site also important. If software browser like Firefox or anti virus software alert users when they visit phishing web site, then it will save a lot of users from scam.
nakamura12
Hero Member
*****
Offline Offline

Activity: 2324
Merit: 672


View Profile
January 10, 2020, 04:47:00 PM
 #8

The way newbie users get alerted about phishing web site also important. If software browser like Firefox or anti virus software alert users when they visit phishing web site, then it will save a lot of users from scam.
That would be good but some alerts from anti virus software is not accurate all the time. Sometimes the alerts are not what the software says. I suggest you use the provided tips and tools to use catching phishing sites to avoid getting phished without you knowing that your info are already taken.

Signature and avatar for rent: NAKAMURA12
BitMaxz
Legendary
*
Offline Offline

Activity: 3304
Merit: 3038


BTC price road to $80k


View Profile WWW
January 10, 2020, 07:18:16 PM
 #9

This tool dnstwister.report is interesting it can also find the Punycode domains which are available and not yet registered to any domain provider.

I don't think if it is good to put this tool here because they can use that tool to make a fake/phishing website(it means it also helps scammers to find Punycode domain)

Take a look at this one as a sample that I found from that tool

Code:
https://xn--bitcointal-2wb.org

If you enter that domain to chrome and firefox browser the result will be bitcointalķ.org no difference to the original website (orig:bitcointalk.org) the only thing you will notice is the letter k if you check the URL carefully. And the Punycode domain is very cheap to register to any domain provider.

I don't think if it's fine to post this tool here what do you think?

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
Chikito (OP)
Legendary
*
Offline Offline

Activity: 2436
Merit: 2063



View Profile WWW
January 11, 2020, 04:58:44 AM
 #10

I don't think if it's fine to post this tool here what do you think?
I am good.
No problem to me when remove this tool purpose to avoid scammer using it. I am posted because of helping phishing hunter to find and reporting malicious site.

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
GreatArkansas
Legendary
*
Offline Offline

Activity: 2366
Merit: 1358


Playgram - The Telegram Casino


View Profile WWW
January 11, 2020, 08:06:09 AM
 #11

(....)
Happy hunting and don't forget to report https://safebrowsing.google.com/safebrowsing/report_phish/?hl=en
Additional sites for reporting some phishing websites or scam website is this: https://cryptoscamdb.org/report (new) or this: https://etherscamdb.info/report (old)
These websites has also list of some identified phishing or scams about cryptocurrency websites.
I also using these websites after reporting it to the google's safebrowsing website.

▄▄███████▄▄███████
▄███████████████▄▄▄▄▄
▄████████████████████▀░
▄█████████████████████▄░
▄█████████▀▀████████████▄
██████████████▀▀█████████
████████████████████████
██████████████▄▄█████████
▀█████████▄▄████████████▀
▀█████████████████████▀░
▀████████████████████▄░
▀███████████████▀▀▀▀▀
▀▀███████▀▀███████

▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
 
Playgram.io
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀

▄▄▄░░
▀▄







▄▀
▀▀▀░░
▄▄▄███████▄▄▄
▄▄███████████████▄▄
▄███████████████████▄
▄██████████████▀▀█████▄
▄██████████▀▀█████▐████▄
██████▀▀████▄▄▀▀█████████
████▄▄███▄██▀█████▐██████
█████████▀██████████████
▀███████▌▐██████▐██████▀
▀███████▄▄███▄████████▀
▀███████████████████▀
▀▀███████████████▀▀
▀▀▀███████▀▀▀
██████▄▄███████▄▄████████
███▄███████████████▄░░▀█▀
███████████░█████████░░
░█████▀██▄▄░▄▄██▀█████░
█████▄░▄███▄███▄░▄█████
███████████████████████
███████████████████████
██░▄▄▄░██░▄▄▄░██░▄▄▄░██
██░░░░██░░░░██░░░░████
██░░░░██░░░░██░░░░████
██▄▄▄▄▄██▄▄▄▄▄██▄▄▄▄▄████
███████████████████████
███████████████████████
 
PLAY NOW

on Telegram
Chikito (OP)
Legendary
*
Offline Offline

Activity: 2436
Merit: 2063



View Profile WWW
March 26, 2020, 05:22:59 AM
 #12

I am suggesting for owner website to subscribe dnstwister, when someone already made similarly will notify by email

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
DdmrDdmr
Legendary
*
Offline Offline

Activity: 2366
Merit: 10871


There are lies, damned lies and statistics. MTwain


View Profile WWW
March 26, 2020, 09:40:19 AM
 #13

I’ve been looking for this site on and off for a couple of days recently. I’d thought I’d find it quickly, remembering the existence of this thread, but looking over my merited posts is rather futile to find posts. I’ve now resorted to bookmarking it, as it is a nice tool that goes a long way to show just how easy it is to make a type mismatch and end up on some spooky site.
UserU
Hero Member
*****
Offline Offline

Activity: 2086
Merit: 532


FREE passive income eBook @ tinyurl.com/PIA10


View Profile WWW
March 26, 2020, 12:20:54 PM
 #14

I’ve been looking for this site on and off for a couple of days recently. I’d thought I’d find it quickly, remembering the existence of this thread, but looking over my merited posts is rather futile to find posts. I’ve now resorted to bookmarking it, as it is a nice tool that goes a long way to show just how easy it is to make a type mismatch and end up on some spooky site.


True dat. If we're lucky, Chrome might give us a heads up but it's pretty much a cat-and-mouse game between the good and bad hackers.

.
.500 CASINO.██

  ▄

.
THE HOTTEST CRYPTO
CASINO & SPORTSBOOK
         ▄▄▄███████████
 ▄▄▄████████████████

▐████████████████████
 ██████████████████
 ▐██████████████████
 ▐█████████████████
  ██████████████████
  ██████▀█████▀█████
  ▐████████████████
  ▐██████████████
   █████████████████
   ▐██████████████████
    ▀██████▀▀▀▀▀▀   ▀▀▀█

▄▄▄██████████▄▄▄
████████▀██▀▀██▄▄
 █
█████████████████▄
 █
████████████████████
  █
██▄████▄███████▄███
  █
████████████████████
  █
███▀████▀███████▀███
 █
████████████████████
 █
█████████████████▀
█████████▄██▄▄██▀▀
 ▀▀▀██████████▀▀▀

ORIGINALS

SLOTS

LIVE GAMES

SPORTSBOOK



.
██..PLAY NOW..
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!