Pages:
Author

Topic: Guide and advice for new Users before you Download anything from the Forum ! (Read 973 times)

legendary
Activity: 3136
Merit: 3213
I just want to make an friendly reminder for all the New Users but also for the longer Users that havnt readed this Thread.
The reason for that is that i have seen lately more and more new Users that just downloading the Malware things from the Fake Anns that was posted.
Please check everytime the download Links before you downloading something from the Forum or the the posted Links in here.
legendary
Activity: 3136
Merit: 3213
Friendly bumping this to remember Newbies and other longtime Users to watch out what you click and download !
Specialy for Users that want to update there Mining software or try to download a diffrent one that they are using.
We got a case last week and baaam funds got stolen from Malware and Hacker , so please watch out and what are you doing with Links.
 
full member
Activity: 1148
Merit: 116
Pump for new Users and other Users and a reminder for watch out what you download from the Forum.

Also if you see or find threads like :

[ANN] Sonex . New RandomX coin  or  [CHAN] ChanCoin - Crypto for Imageboards

please report them or let me know and dont download anything in this threads, the last weeks there was many of this 2 and Users that downloaded there Wallets got hacked.
Also it's best for newbies to stay away from any new mining softwares, this was how my PC got affected with malware and hashrate stealing trojans, I download the mining software in mining section on this forum, after detecting what went wrong I had to do a factory reset to get rid of the malware and trojans
full member
Activity: 1148
Merit: 116
Well this is new, never for once think that this is possible but all the same I want to say a big thank you to @Lafu for creating this topic, it's 💯 possible to steal people's key and details this way, the question I would like to ask is if this is also unsafe for Android smartphones users?
legendary
Activity: 3136
Merit: 3213
Friendly reminder and bump and that all the new Users get aware of how they can look into things and posted links on the Forum!

Are you talking about this forum or any forum in general?
Firstly its for this Forum , dont know how other Forums handle stuff and all.
But in general you always should be doing a research specialy for Links and Software you dont know before you download and install it.
full member
Activity: 1750
Merit: 186
Are you talking about this forum or any forum in general?


legendary
Activity: 3136
Merit: 3213
I just want to give some reminder to check first the Links before you download anything !

Also i quoted a short part of my Post from my other thread to show the new users and all other users what happend the last year on the Forum with Suspicious Links .

You can find the full post here because the whole post would be to long

Its now over a Year when i started this Thread , i think its time for a bit statistic what we all achieved with that.
For now since this Thread was started there are 772 Accounts got banned for posting Suspicious Links with Malware and dangerous Software !

Over 220 Fake Github Accounts and Links got detected and deleted

We found 16 Fake Bitbucket Accounts that was used for Malware links and wallets

Also 69 Fake download links from Bitbucket got detected and deleted

Over 1000 threads and posts with Malware and suspicious Links got deleted

4 - 6 Accounts got recovered after they got hacked and are back to the real owners

Keep your eyes open and just click the report to moderator button if you see something Suspicious !
legendary
Activity: 3136
Merit: 3213
Little Bump for the new and also old Users and a reminder for watch out what you downloading !
Lately we got some more Fake Miner Software ANNs in the mining board.
Maybe do some research first before you click the download button , helps a lot sometimes to keep you safe!
legendary
Activity: 3136
Merit: 3213
I have done some research on the Bitbucket Links and posted an update on my other thread Report Malware and Suspicious Links here so Mods can take Action !
So i just want post the Information here too as maybe new Users getting aware of this .
Bitbucket download links mostly or always have Malware and bad software in it .

https_://bitbucket.org/HaLass/  <--- Active
Code:
https://bitbucket.org/HaLass/americom
https://bitbucket.org/HaLass/natis
https://bitbucket.org/HaLass/pvpcoin
Code:
https://bitbucket.org/severokproject/severok
https_://bitbucket.org/taonacoin/  <--- Active
Code:
https://bitbucket.org/taonacoin/taonaproject
https_://bitbucket.org/walleters/  <--- Active
Code:
https://bitbucket.org/walleters/walleters/downloads/qnodecoin-qt-windows.zip
https://bitbucket.org/walleters/walleters/downloads/Reex-v1.4.2.2-win64.zip
https://bitbucket.org/walleters/walleters/downloads/GalacticBits-Windows-V0.1.0.zip
https://bitbucket.org/walleters/walleters/downloads/blastx-v1.1.0-win64.zip
https://bitbucket.org/walleters/walleters/downloads/electrum-vault-4.0.0a0-setup.zip
https://bitbucket.org/walleters/walleters/downloads/Pawcoin-qt-w64.zip
https://bitbucket.org/walleters/walleters/downloads/billiecoincore-3.2.0.0-win64.zip
https://bitbucket.org/walleters/walleters/downloads/Win.wallet.Harlot.zip
https://bitbucket.org/walleters/walleters/downloads/paymastercoin-x86_64-linux-gnu.tar.gz
https://bitbucket.org/walleters/walleters/downloads/paymastercoin-x64-windows.zip
https://bitbucket.org/walleters/walleters/downloads/ChomaCoin-wallet-1.0.zip
https://bitbucket.org/walleters/walleters/downloads/longcoin0.7d-win64.zip
https://bitbucket.org/walleters/walleters/downloads/Altmarkets-Qt-v1.3.4.0.dmg
https://bitbucket.org/walleters/walleters/downloads/Altmarkets-Qt-v1.3.4.0-win64.zip
https://bitbucket.org/walleters/walleters/downloads/natiscoin-qt-windows.zip
https://bitbucket.org/walleters/walleters/downloads/natiscoin-qt-linux.zip
https://bitbucket.org/walleters/walleters/downloads/MCN_win64.zip
https://bitbucket.org/walleters/walleters/downloads/MCN_win32.zip
https://bitbucket.org/walleters/walleters/downloads/pyrk-0.12.3-win64.zip
https://bitbucket.org/walleters/walleters/downloads/BigdataCash-qtWin.zip
https://bitbucket.org/walleters/walleters/downloads/ZenProtocolWallet-Setup-1.0.1.zip
https://bitbucket.org/walleters/walleters/downloads/morelo-electronic-wallet-1.0.2-win.zip
https_://bitbucket.org/walleters/cryptokill/  <--- Active
Code:
https://bitbucket.org/walleters/cryptokill/downloads/xmrig-5.11.1-msvc-win64.zip
https://bitbucket.org/walleters/cryptokill/downloads/xmrig-5.11.1-msvc-cuda10_1-win64.zip
https://bitbucket.org/walleters/cryptokill/downloads/xmrig-5.11.1-gcc-win64.zip
https://bitbucket.org/walleters/cryptokill/downloads/Waves.Exchange.zip
https://bitbucket.org/walleters/cryptokill/downloads/t-rex-0.15.6-win-cuda10.0.zip
https://bitbucket.org/walleters/cryptokill/downloads/t-rex-0.15.6-win-cuda9.2.zip
https://bitbucket.org/walleters/cryptokill/downloads/t-rex-0.15.6-win-cuda9.1.zip
https://bitbucket.org/walleters/cryptokill/downloads/rhminer.2.3.Windows.CPU.zip
https://bitbucket.org/walleters/cryptokill/downloads/RevenueBOT_.zip
https://bitbucket.org/walleters/cryptokill/downloads/PhoenixMiner_4.9c_Windows.zip
https://bitbucket.org/walleters/cryptokill/downloads/nhm_windows_3.0.1.0.zip
https://bitbucket.org/walleters/cryptokill/downloads/nhm_windows_3.0.0.9.zip
https://bitbucket.org/walleters/cryptokill/downloads/NBMiner_30.2_Win.zip
https://bitbucket.org/walleters/cryptokill/downloads/MultiMiner-4.3.1.zip
https://bitbucket.org/walleters/cryptokill/downloads/Metatrader.zip
https://bitbucket.org/walleters/cryptokill/downloads/gminer_2_09_windows64.zip
https://bitbucket.org/walleters/cryptokill/downloads/ethminer-0.19.0-alpha.0-cuda10.0-windows-amd64.zip
https://bitbucket.org/walleters/cryptokill/downloads/damominer_v2.5.8_windows.zip
https://bitbucket.org/walleters/cryptokill/downloads/bfgminer-3.1.1-win64_zip.zip
https://bitbucket.org/walleters/cryptokill/downloads/NBMiner_27.7_Linux.tgz
https://bitbucket.org/walleters/cryptokill/downloads/billiecoincore-3.2.0.0-osx.dmg
https://bitbucket.org/walleters/cryptokill/downloads/damominer_v2.4.3_linux.tar.gz
https://bitbucket.org/walleters/cryptokill/downloads/escudonavacense-qt-linux.tar.gz
https://bitbucket.org/walleters/cryptokill/downloads/escudonavacense-qt.dmg
https_://bitbucket.org/cryptcorona/  <--- Active
Code:
https://bitbucket.org/cryptcorona/
https://bitbucket.org/cryptcorona/mediacoin/
https://bitbucket.org/cryptcorona/mindminer-6.65/
https://bitbucket.org/cryptcorona/moon-bot-pro/
https://bitbucket.org/cryptcorona/t-rex/
https://bitbucket.org/cryptcorona/stratum-bot-v0.3.7/
https://bitbucket.org/cryptcorona/phoenix-miner/
https://bitbucket.org/cryptcorona/rpc-miner/
https://bitbucket.org/cryptcorona/diablominer/
https://bitbucket.org/cryptcorona/nicehash-miner/
https://bitbucket.org/cryptcorona/display-driver-uninstaller-ddu/
https://bitbucket.org/cryptcorona/amd-memory-tweak-xl/
https://bitbucket.org/cryptcorona/nheqminer/
https://bitbucket.org/cryptcorona/multiminer/
https://bitbucket.org/cryptcorona/easyminer/
https://bitbucket.org/cryptcorona/ethminer/
https://bitbucket.org/cryptcorona/awesome/
https://bitbucket.org/cryptcorona/claymores/

Dont download anything from this Accounts or Links
There are more Bitbucket Accounts and you can read them in my other thread.
Feel free to post in here or in the other thread if you find some new or other bitbucket download links that i dont have listed.
Stay safe
legendary
Activity: 3136
Merit: 3213
Will Pump this thread for some other new joined Users and that they aware of it and hopefuly read the first post or get remembered .

The whole Fake ANN and Malware problem is going now over nine months if not nearly a year already. And we still fighting this ones and we keep on it.
On this way i would be say a big thank you to all that reporting and looking for some kind of threads and posts and posting in my other thread.
I really appreciate that much !

Thanks to all reporters
legendary
Activity: 3136
Merit: 3213
Pump for new Users and other Users and a reminder for watch out what you download from the Forum.

Also if you see or find threads like :

[ANN] Sonex . New RandomX coin  or  [CHAN] ChanCoin - Crypto for Imageboards

please report them or let me know and dont download anything in this threads, the last weeks there was many of this 2 and Users that downloaded there Wallets got hacked.
legendary
Activity: 3136
Merit: 3213
Found something interesting today about Bitbucket !!!!!
There you can read about what is going with Bitbucket.
Sounds like that they have the biggest malware cocktail on the planet.

Quote
Attack abusing Bitbucket serves potent malware cocktail to more than 500k users

An ongoing attack has so far delivered a cocktail of malicious wares to more than 500,000 users by abusing Bitbucket,
the source code management system operated by Atlassian, researchers reported on Wednesday.
Quote
The cocktail of malware includes:

Predator: Predator is an information stealer that steals credentials from browsers, uses the camera to take pictures, takes screenshots, and steals cryptocurrency wallets.
   
Azorult: Azorult is an information stealer that steals passwords, email credentials, cookies, browser history, IDs, cryptocurrencies, and has backdoor capabilities.
   
Evasive Monero Miner: The Evasive Monero Miner is the dropper for a multi-stage XMRig Miner that uses advanced evasion techniques to mine Monero and stay under the radar.
   
STOP Ransomware: The STOP Ransomware is used to ransom the file system and is based on an open source ransomware platform. It also has downloader capabilities that it uses to infect the system with additional malware.
   
Vidar: Vidar is an information stealer that steals Web browser cookies and history, digital wallets, two-factor authentication data, and takes screenshots.
   
Amadey bot: Amadey bot is a simple trojan bot primarily used for collecting reconnaissance information on a target machine.
   
IntelRapid: IntelRapid is a cryptocurrency stealer that steals different types of cryptocurrency wallets.

You can read the whole article and source i has used here:
https://arstechnica.com/information-technology/2020/02/attackers-are-abusing-bitbucket-to-deliver-a-potent-cocktail-of-malware/
legendary
Activity: 3136
Merit: 3213
legendary
Activity: 3136
Merit: 3213
Just an short update here!

As the fake github links with Malware and suspicious Links was reduced i have seen in the last week they changed there style of posting !

The Last Week i have seen more and more Ann's and Fake Ann's have now there download link from mega.nz !

I just can advice again for new users:

" Check the download links and if you downloaded the File check it first with Virustotal or any other Antivirus software before you unpack the File or start the *.exe "
legendary
Activity: 2758
Merit: 6830
Please, don't count on this. This is a bad behavior to think the URL is legit because the statusbar shows it so (and thus, a terrible suggestion).

Here is a simple workaround to bypass this "security" measure:

Code:

Result: you hover the link and it shows realwebsite.com in the statusbar. Click it and you will end up on phishingwebsite.com
I didn't know that hovering the arrow to the hyperlink would show the real url/site just like what is shown in the image I provide. Does the code you provide would really bypass this security measure I suggest?. I'd like to know more about this bypass since the security measure can be bypass which is a bad sign. Any reference that I can check if you don't mind.
This code literally makes it show whatever you want in the statusbar. Just try yourself. Or google "fake link hover statusbar" or similar.

This is in no way a security measure. You just took it like that. It's like saying that having a "100% legit" bolded text in a website makes it legit.
hero member
Activity: 2268
Merit: 669
Bitcoin Casino Est. 2013
Please, don't count on this. This is a bad behavior to think the URL is legit because the statusbar shows it so (and thus, a terrible suggestion).

Here is a simple workaround to bypass this "security" measure:

Code:

Result: you hover the link and it shows realwebsite.com in the statusbar. Click it and you will end up on phishingwebsite.com
I didn't know that hovering the arrow to the hyperlink would show the real url/site just like what is shown in the image I provide. Does the code you provide would really bypass this security measure I suggest?. I'd like to know more about this bypass since the security measure can be bypass which is a bad sign. Any reference that I can check if you don't mind.
legendary
Activity: 3136
Merit: 3213
Updated the list i have done here https://bitcointalksearch.org/topic/m.52277784 with newest Fake Github and Source links !

The newest is again from bitbucket but its a new or diffrent bitbucket link as the normal was !

Fake Source : https_://bitbucket.org/cryptoperfeckt

So if you see or find this Link or any other links please report it.
legendary
Activity: 2758
Merit: 6830
There is also another way to know what link is hidden between the URL Bbcodes and it's very easy. When you are using computer and using a firefox browser for example. Let's just say I use firefox or chrome browsers and you saw a link that you think that there is a link behind it, just simply point the arrow at the link and see if there is a link that will be shown at the bottom just like this image.
Image Source: http://www.hyperlinkcode.com/images/hand-pointer-status-bar.gif
When using mobile device same procedure won't do/help you but there's still a way to avoid opening a hidden link. First, you have to tap the link until a pop-up will appear and select "COPY LINK" then paste it somewhere else like a Notepad for example.

Take Note: The mobile procedure in knowing the real url/link behind a hyperlink could also work in PC by copying the link and paste it in Notepad.
Please, don't count on this. This is a bad behavior to think the URL is legit because the statusbar shows it so (and thus, a terrible suggestion).

Here is a simple workaround to bypass this "security" measure:

Code:

Result: you hover the link and it shows realwebsite.com in the statusbar. Click it and you will end up on phishingwebsite.com
hero member
Activity: 2268
Merit: 669
Bitcoin Casino Est. 2013
There is also another way to know what link is hidden between the URL Bbcodes and it's very easy. When you are using computer and using a firefox browser for example. Let's just say I use firefox or chrome browsers and you saw a link that you think that there is a link behind it, just simply point the arrow at the link and see if there is a link that will be shown at the bottom just like this image.
Image Source: http://www.hyperlinkcode.com/images/hand-pointer-status-bar.gif

When using mobile device same procedure won't do/help you but there's still a way to avoid opening a hidden link. First, you have to tap the link until a pop-up will appear and select "COPY LINK" then paste it somewhere else like a Notepad for example.

Take Note: The mobile procedure in knowing the real url/link behind a hyperlink could also work in PC by copying the link and paste it in Notepad.
newbie
Activity: 1
Merit: 0
Quote
Use the quote button to look behind the Links that you can see on the ANNs
This... or hover over the link before you click on it. You will see, on the bottom of your browser, the original link where you will be redirected. You should make this an habit.
If you are using a smartphone and can't hover links, just click the link and keep holding untill a menu window pops up, select "copy URL link", paste it anywhere and compare it with the link on OP.

@op, thank you for the tips.
Pages:
Jump to: