Author

Topic: Phishing Uniswap and bestchnage.com (idex) (Read 393 times)

legendary
Activity: 2506
Merit: 1113
There's no need to be upset
June 24, 2020, 11:11:07 AM
#10
thanks a lot for the information.
a good practice too is to bookmark exchange URLs to avoid phishing websites and never click on email links or search links for exchanges.

some nasty scammers could even push phishing links on google paid search results in the past.
copper member
Activity: 1204
Merit: 737
✅ Need Campaign Manager? TG > @TalkStar675
Thank you for paying attention to this. Unfortunately, such a problem does exist. Every day we are forced to deal with phishing sites and send complaints. Fraudsters often try to fake our website address or copy our design.
I don’t know actually that your platform have regular email notification system for registrant users or not. If yes then can easily notify them through a simple email. Usually scammer's always target popular websites and this time they have targeted your one "BestChange" and "IDEX". Thanks for the quick response and informing all about your self domains. 

I will try to contact IDEX authority soon and hope they will also notify their current users about this phishing attempt.  
legendary
Activity: 1122
Merit: 2039
Buy/Sell crypto at BestChange
Thank you for paying attention to this. Unfortunately, such a problem does exist. Every day we are forced to deal with phishing sites and send complaints. Fraudsters often try to fake our website address or copy our design.

So we ask our users to be careful and always check the site address. We have only three addresses:

https://www.bestchange.com/
https://www.bestchange.ru/
https://www.bestchange.net/
hero member
Activity: 2338
Merit: 757

You know what? Seriously, This is terrifying.

Edit: I have checked all the active URLs. Fortunetly, all of them don't represent a copy of the official BestChange website. However, they can be used at any time to deceive users.
I have also subscribed to dnstwister to receive notification if someone will create a new one.
Thank you DroomieChikito for the great suggestion. +2
legendary
Activity: 2366
Merit: 2054
i want to ask if there is a way to check if there are similar domains.
The fake link of bestchange website is completely missleading as i checked it many times to see the error in the last letters [bestchnage].
I hope nobody did fall into those fake links.

You have to checking dnstwister;

for example https://dnstwister.report/search?ed=626573746368616e67652e636f6d



If you subscribed, It will notify by email when someone made a new one. It's good to warn people and fast reporting to avoid scams.
hero member
Activity: 2338
Merit: 757
Nice catch OP. Thank you so much for sharing the information with us. This would help a lot keeping safe the use of those great services such as BestChange and UniSwap.
It surprised me how you came accross those scammy domains, and i want to ask if there is a way to check if there are similar domains.
The fake link of bestchange website is completely missleading as i checked it many times to see the error in the last letters [bestchnage].
I hope nobody did fall into those fake links.
I have already report the fake links using https://safebrowsing.google.com/safebrowsing/report_general/ and i invite others to do so.
copper member
Activity: 2142
Merit: 1305
Limited in number. Limitless in potential.
Punycode really looks like the domain url of the website of idex except when you copy/click it in the url bar, newbies can be easily be fooled foe sure if they didn't mind double checking the url.

Btw, revealing registrar information doesn't help or do about this, you can easily recognize if it's a phishing website or not.
copper member
Activity: 1204
Merit: 737
✅ Need Campaign Manager? TG > @TalkStar675

Code:
http://bestchnage.com/
when clicking that't link will directing to fake
Code:
https://xn--dex-market-j8a.com/unlock
Just an cheap attempt to mislead people where actually they are using similar looking domain. Yeah i have already checked this phishing link and its took me to another scam website which one is using the name of IDEX. This guys are trying to steal fund from wallets and getting private key or wallet credentials is their main intention. 

Note: I will suggest everyone to keep enough distance from these phishing sites.   
hero member
Activity: 1694
Merit: 719
Top Crypto Casino
Scammers have not stopped trying to trap people with phishing websites. This website is created using the names of two well-known websites. By doing this people can easily believe them and they may fall into the trap of these scams. In fact the newbie doesn’t try to verify much. They go in whenever they see a slight advantage in something.

Quote
Domain:bestchnage.com
Registrar:NameCheap, Inc.
Registered On:2020-06-16
Expires On:2021-06-16
Updated On:2020-06-16
Status:clientTransferProhibited
Name Servers:dns1.registrar-servers.com
dns2.registrar-servers.com
legendary
Activity: 2366
Merit: 2054
Found this, don't entering private key and seed on site.

1. Archived: https://web.archive.org/web/20200621071351/https://uniswap10x.exchange/swap
Code:
https://uniswap10x.exchange




2.
Code:
http://bestchnage.com/
when clicking that't link will directing to fake
Code:
https://xn--dex-market-j8a.com/unlock



https://www.virustotal.com/gui/url/32e1525c4811708a82bb2b94a4aa5af6d664288a2af3aba324793f5d28ab5f5e/detection



Be careful!
Jump to: