ghur
|
|
April 26, 2014, 06:38:42 PM |
|
This is not the right thread, but I would suggest a featurer for future coins to be implemented to prevent this kind of stealing of wallet:
You can't fix user stupidity. If pool operators don't understand basic security, they deserve to get compromised. The amount of trust users of this forum put in software released by 1-day old forum accounts is mind boggling. All wallets should be treated as potential malware, run in isolated environments and given only the bare minimum amount of access to operate. The same goes for users. If you're not running wallets of completely untrusted coins in a secured VM, you're begging for your coins to get stolen. The issue is the users, not the protocol nor the wallet software. Let this be a harsh lesson for many.
|
doge: D8q8dR6tEAcaJ7U65jP6AAkiiL2CFJaHah Automated faucet, pays daily: Qoinpro
|
|
|
ice00
|
|
April 26, 2014, 06:56:08 PM |
|
This is not the right thread, but I would suggest a featurer for future coins to be implemented to prevent this kind of stealing of wallet:
You can't fix user stupidity. If pool operators don't understand basic security, they deserve to get compromised. The amount of trust users of this forum put in software released by 1-day old forum accounts is mind boggling. All wallets should be treated as potential malware, run in isolated environments and given only the bare minimum amount of access to operate. The same goes for users. If you're not running wallets of completely untrusted coins in a secured VM, you're begging for your coins to get stolen. The issue is the users, not the protocol nor the wallet software. Let this be a harsh lesson for many. The suggestion is generic for improving the cryptocurrency. Even if you implement the most secure system there could be some bugs that make an intruder to take access of your system. For example, what happen if an hacker has finded the OpenSSL bug before the comunity find it and soon close? He could have access of 90% of networks machine as it was the most used software. This is just an example.
|
NXT: 1408301140704352478 EMC: Ec2TpuRxcYr4WHMp12vZYck5ch3ymzskbZ
|
|
|
|
thisisit
|
|
April 26, 2014, 07:29:59 PM |
|
DAFUQ!
*lol*
|
any coin that makes me a profit.
|
|
|
Jarod1231
|
|
April 27, 2014, 01:41:29 AM |
|
Not that this really effects me all too much, I ran the wallet on a crappy laptop that I run all new coins on, and already sent any of my coins that were on that computer and worth anything to exchanges so I'm not really going to lose anything, but does the hack have to do with running the windows wallet or does it only effect pools that ran it? I'd like to know if I need to reformat this craptop or not?
|
|
|
|
ratty
|
|
April 27, 2014, 02:05:13 AM |
|
Still, nobody has been able to point to where the malicious code actually was. There is no "wget" in the source code. I'm not denying the existence of it, but how can we spot malware when it doesn't exist?
It is not in plain text, but masked (I just report offset1, but there is even offset2): static char offset1[218] = ...
Thank you! That is EXACTLY what I was looking for. I'll at least look for new char arrays with lots of hex when I try new altcoins, that really stands out if you're looking for it.
|
|
|
|
wuzamarine
Sr. Member
Offline
Activity: 264
Merit: 250
derp
|
|
April 27, 2014, 08:06:55 PM |
|
I haven't lost any coins (yet). Though I did download the wallet. Is there a way to check for foul play? I read this guys story, yeesh http://www.cryptokk.com/
|
|
|
|
ratty
|
|
April 28, 2014, 08:43:23 PM |
|
Why is this thread still here, with links in the OP to malware?
|
|
|
|
djm34
Legendary
Offline
Activity: 1400
Merit: 1050
|
|
April 28, 2014, 08:46:22 PM |
|
I think it is a good thing to keep it, so that people don't forget this can happen
|
djm34 facebook pageBTC: 1NENYmxwZGHsKFmyjTc5WferTn5VTFb7Ze Pledge for neoscrypt ccminer to that address: 16UoC4DmTz2pvhFvcfTQrzkPTrXkWijzXw
|
|
|
ratty
|
|
April 28, 2014, 08:47:33 PM |
|
Can someone at least edit it and wipe out the links? Or if the links are still intact, "Do not run his software outside an isolated machine, and for reasons other than wanting to find out how it works." is not "WARNING: THIS CONTAINS MALWARE!". The noobs should be protected as much as possible.
|
|
|
|
ECF
Newbie
Offline
Activity: 42
Merit: 0
|
|
April 29, 2014, 08:38:15 AM Last edit: April 29, 2014, 04:34:38 PM by ECF |
|
http://www.ecoinfund.com/images/logo.jpgWebsite | Twitter | BitcointalkHi,DafuqCoin Community We have added your coin to ECOINFUND vote list.( http://www.ecoinfund.com/vote) an effective vote will cost 10 ECFC; repeating vote are allowed; the Exchange Market will be open as soon as the voting reach 1000.! ECFC is the fee share program launched by Ecoinfund. Ecoinfund will commit 50% of trade revenue to ECFC program. (highest on market ECFC Details) Here the ways of getting ECFC: 1. buy the ECFC through our ECFC/BTC or ECFC/LTC market. 2. taking part into our GIVEAWAY. Big ECFC GIVEAWAY before 10.MayTweet this green text on your own twitter account then recive 20 ECFC; ecoinfund.com |New Exchange,multi-language support,Earn 20 ECFC(fee shares) by every retweet before 10 May,don't miss the train! Pls post your twitter link and Ecoinfund ID on https://bitcointalk.org/index.php?topic=501030.0 ,you will get 20 ECFC! Happy trading !
|
|
|
|
icecube45
Legendary
Offline
Activity: 1218
Merit: 1000
|
|
April 29, 2014, 01:38:12 PM |
|
Website | Twitter | BitcointalkHi,Everyone We have added your coin to ECOINFUND vote list.( http://www.ecoinfund.com/vote) Each 1 valid vote requires 10 ECFC, allow repeat voting.Every new altcoin vote over 1,000 votes will list on the market next day! Free vote see below:
Big ECFC GIVEAWAY before 10.May Tweet this green text on your own twitter account then recive 20 ECFC(ECFC Details);
ecoinfund.com |New Exchange,multi-language support,Earn 20 ECFC(fee shares) by every retweet before 10 May,don't miss the train! Pls post your twitter link and Ecoinfund ID on https://bitcointalk.org/index.php?topic=501030.0 ,you will get 20 ECFC! ECFC is the fee share program launched by Ecoinfund. Ecoinfund will commit 50% of trade revenue to ECFC program. (highest on market) Happy trading ! Do you even read?
|
|
|
|
Amph
Legendary
Offline
Activity: 3248
Merit: 1070
|
|
April 29, 2014, 01:40:08 PM Last edit: April 29, 2014, 02:23:50 PM by Amph |
|
Not that this really effects me all too much, I ran the wallet on a crappy laptop that I run all new coins on, and already sent any of my coins that were on that computer and worth anything to exchanges so I'm not really going to lose anything, but does the hack have to do with running the windows wallet or does it only effect pools that ran it? I'd like to know if I need to reformat this craptop or not?
i think the wallet ask you to run it as admin privileges, which no wallet need ever
|
|
|
|
escrowguy
Member
Offline
Activity: 99
Merit: 10
|
|
April 29, 2014, 09:14:10 PM |
|
Website | Twitter | BitcointalkHi,DafuqCoin Community We have added your coin to ECOINFUND vote list.( http://www.ecoinfund.com/vote) an effective vote will cost 10 ECFC; repeating vote are allowed; the Exchange Market will be open as soon as the voting reach 1000.! ECFC is the fee share program launched by Ecoinfund. Ecoinfund will commit 50% of trade revenue to ECFC program. (highest on market ECFC Details) Here the ways of getting ECFC: 1. buy the ECFC through our ECFC/BTC or ECFC/LTC market. 2. taking part into our GIVEAWAY. Big ECFC GIVEAWAY before 10.MayTweet this green text on your own twitter account then recive 20 ECFC; ecoinfund.com |New Exchange,multi-language support,Earn 20 ECFC(fee shares) by every retweet before 10 May,don't miss the train! Pls post your twitter link and Ecoinfund ID on https://bitcointalk.org/index.php?topic=501030.0 ,you will get 20 ECFC! Happy trading !
|
|
|
|
icecube45
Legendary
Offline
Activity: 1218
Merit: 1000
|
|
April 29, 2014, 10:58:45 PM |
|
Website | Twitter | BitcointalkHi,DafuqCoin Community We have added your coin to ECOINFUND vote list.( http://www.ecoinfund.com/vote) an effective vote will cost 10 ECFC; repeating vote are allowed; the Exchange Market will be open as soon as the voting reach 1000.! ECFC is the fee share program launched by Ecoinfund. Ecoinfund will commit 50% of trade revenue to ECFC program. (highest on market ECFC Details) Here the ways of getting ECFC: 1. buy the ECFC through our ECFC/BTC or ECFC/LTC market. 2. taking part into our GIVEAWAY. Big ECFC GIVEAWAY before 10.MayTweet this green text on your own twitter account then recive 20 ECFC; ecoinfund.com |New Exchange,multi-language support,Earn 20 ECFC(fee shares) by every retweet before 10 May,don't miss the train! Pls post your twitter link and Ecoinfund ID on https://bitcointalk.org/index.php?topic=501030.0 ,you will get 20 ECFC! Happy trading ! I kind of want to see if they add it.. They might deserve it.. They've been massively spamming coins about adding them at a cost. Even dead ones, like this
|
|
|
|
DanielVG
Sr. Member
Offline
Activity: 266
Merit: 250
I want free lunch, i'm gonna go with this guy.
|
|
April 30, 2014, 01:29:33 AM |
|
This would be hilarious. We should all vote for dafuqcoin on ecoinfund
|
|
|
|
r0ach
Legendary
Offline
Activity: 1260
Merit: 1000
|
|
May 04, 2014, 05:42:23 AM |
|
Very interesting, will mine
|
|
|
|
anyone4u
|
|
May 05, 2014, 05:53:48 PM |
|
This would be hilarious. We should all vote for dafuqcoin on ecoinfund
If this was done and was added, you would only be giving this criminal developer more $ to steal than what he has already stealing/stollen.
|
|
|
|
|