Pages:
Author

Topic: Report Malware and Suspicious Links here so Mods can take Action ! - page 48. (Read 34654 times)

copper member
Activity: 769
Merit: 702
Defend Bitcoin and its PoW: bitcoincleanup.com
Back then there was no restriction about that. Any user could set up an avatar regardless of his rank.
legendary
Activity: 1722
Merit: 5937
Another fake ANN with possible malware. Account was created back in 2012, had no posts and now suddenly awakes and makes this thread.

User Julialacey
ANN [ANN]XUNI UltraNote Infinity - Your Personal Privacy Blockchain Solution
Archive https://archive.fo/eKLtf

Code:
https://mega.nz/folder/BCw3XQpJ#c04gr4erFDLrvc_kRyFlbQ

Real ANN 🔥🔥 $XUNI UltraNote Infinity - Your Personal Privacy Blockchain Solution



By the way, how do they put avatar (looks smaller than the standard one though) on Newbie account, as @Julialacey did?
legendary
Activity: 3500
Merit: 6320
Crypto Swap Exchange
One more:
Malware --> https://bitcointalksearch.org/topic/--5256263
Archive --> http://archive.is/WB4Sz
https://www.virustotal.com/gui/file/fe3df8b2bf3aa3cae5e7fc85d5b44846aa30b6fbcd82782dd399bc181c83c622/detection

Ban this user --> https://bitcointalksearch.org/user/kalymens-47630
user from 2011 just woke up

Original ann --> https://bitcointalksearch.org/topic/ann-coppercoin-copper-hybrid-cryptocoin-pow-pos-2170714

Seems to be a new trend, really old (2011) user accounts being used for this. Probably got them from the hack / database leak a while ago. Other than that I have no clue of where or why these older accounts are popping up with this stuff.

-Dave

legendary
Activity: 3500
Merit: 6320
Crypto Swap Exchange
2 from the same user:
Ban this person -> https://bitcointalksearch.org/user/gosifor2324-28802
Malware 1 --> https://bitcointalksearch.org/topic/--5256105
Archive --> http://archive.is/XF2Rd
Malware 2 --> https://bitcointalksearch.org/topic/m.54632613
Archive --> http://archive.is/p8Dei

I'm exhausted and too tired to think so someone else gets to do the rest of the digging into the original githubs and such.

-Dave
legendary
Activity: 2996
Merit: 3114

The thread is already deleted , nice catch !




Fake Github and plagiarism (copy and paste)

Thread : [ANN] DaggerGpuMiner

User : njpopert  <-------  Please Ban that User

Archive : https://archive.fo/wip/iNMbc

Code:
GITHUB: [url=https://github.com/joonano614/DaggerGpuMiner]https://github.com/joonano614/DaggerGpuMiner[/url]

Releases: [url=https://github.com/joonano614/DaggerGpuMiner/releases]https://github.com/joonano614/DaggerGpuMiner/releases[/url]

Launch parameters:

1) GPU benchmark: DaggerGpuMiner.exe -G -M  

2) GPU mining: DaggerGpuMiner.exe -G -a -p  

3) CPU mining: DaggerGpuMiner.exe -cpu -a -p -t
8  

Different features and optional parameters:

1) "-h" - show help

2) you can list all available devices using parameters "-list-devices -G".
You can check what platform ids and device numbers they have.
3) by default GPU-miner uses all OpenCL devices on the selected platform.
You can specify particular devices using parameter "-opencl-devices 0 1 3".
Use your device numbers instead of "0 1 3".

Also use can use parameter "-d " there is count of used devices.

Workaround on issue with high CPU usage with NVIDIA GPUs.

There is an issue with NVIDIA GPUs leading to very high CPU usage. The reason is improper implementation of OpenCL by NVIDIA. When CPU thread waits for results from GPU, it does not stop, it spins in loop eating CPU resources for nothing.
There was impemented a workaround on this issue: before reading results from GPU current thread sleeps during small calculated time. CPU usage was decreased in 90%. The change made optional, use launch parameter "-nvidia-fix" to enable it. The change can decrease hashrate a bit in some cases. But GPU rigs should gain increase of hashrate. So try it and choose to use or not to use it.


Fake Github : https_://github.com/joonano614/DaggerGpuMiner

Real Github : https_://github.com/jonano614/DaggerGpuMiner

Original Post and Github

Original Post from the Dev of that Miner : https://bitcointalksearch.org/topic/m.29131985

User : jonano

Code:
First beta-version of GPU miner is released.
Link to download https://github.com/jonano614/DaggerGpuMiner/releases
Source codes https://github.com/jonano614/DaggerGpuMiner

Launch parameters:
1) GPU benchmark: DaggerGpuMiner.exe -G -M
2) GPU mining: DaggerGpuMiner.exe -G -a -p
3) CPU mining: DaggerGpuMiner.exe -cpu -a -p -t
N     (N - is a number of threads)

Different features and optional parametes:
1) "-h" - show help
2) you can list all available devices using parameters "-list-devices -G"
3) by default GPU mining is performed only on the first OpenCL device.
You can specify several devices using parameter "-opencl-devices 0 1 3".
Use your device numbers instead of "0 1 3".
Also use can use parameter "-d " there is count of used devices.


This text was added on Github in (committed) on 11 Feb 2018
Quote
Workaround on issue with high CPU usage with NVIDIA GPUs.
There is an issue with NVIDIA GPUs leading to very high CPU usage. The reason is improper implementation of OpenCL by NVIDIA. When CPU thread waits for results from GPU, it does not stop, it spins in loop eating CPU resources for nothing.
There was impemented a workaround on this issue: before reading results from GPU current thread sleeps during small calculated time. CPU usage was decreased in 90%. The change made optional, use launch parameter "-nvidia-fix" to enable it. The change can decrease hashrate a bit in some cases. But GPU rigs should gain increase of hashrate. So try it and choose to use or not to use it.


Source : https://github.com/swordlet/DaggerRandomxMiner/tree/b2dbde1ed41e2de68a8ec409e0614e6aadc335a0
copper member
Activity: 2828
Merit: 4065
Top Crypto Casino
@Fredericpol

This bastard is spreading a virus on the forum (and use an alt @Amandasorlik to create a discussion)
I have been careless and visited the link of the image, it downloaded a zip file on my machine, I  then uploaded the file to virustotal and the file is flagged by 9 engines.

https://bitcointalksearch.org/topic/m.54629580
https://web.archive.org/web/20200616122710/https://bitcointalk.org/index.php?topic=5255976.msg54629580 (archive)
https://www.virustotal.com/gui/file/45896fc99e6aa2bbaa7ea55ca1c465a0051fe9dfb93090dd2955b15194bb9db0/detection (scan)
legendary
Activity: 1526
Merit: 1032
#SWGT CERTIK Audited
User: TeamRW

Thread: https://bitcointalksearch.org/topic/--5255956

Download link for all of our 0.5% devfee releases of Phoenix Miner:
https://mega.nz/#F!O7p00KzJ!QY1siRR_AnlomCrEoRKxmg

You can check integrity of files in this archive with QuickSFV, point it to RWTeam.md5.
Or check SHA256 of "RWTeam_PhoenixMiner_5.0e_Windows_0.5%_devfee_edition.zip":
SHA256: ad5e620c5cba229227b22ec77e801af24d3dac79ebf0b8b9437d14faad75ec14

Virustotal for libd.dll which is our patcher that reduce devfee:
https://www.virustotal.com/gui/file/bc09d4b5539231ac659c50e8d4c1f451e5ff83009e4ab11b9d70e418fd6a78e2/detection
Some detects only because we use packer to protect the file.

For compare look at Virustotal report for original PhoenixMiner.exe 5.0e:
https://www.virustotal.com/gui/file/7ac9f6e107e527e1a0d57e4694406be686683b863ec38943705fe56bc13f75f9/detection



To be sure that our patch has been applied successfully when you run the miner , check that miner's logo looks like that:

https://mega.nz/#!ynJwiIIa!t7CxoHMN601uow-dsntGcEWNyIgAAn9EAL37sgleFaQ

If you see default logo, it means the patch was not applied for whatever reason. Be sure you are using our original archive from our download links and you haven't moved/changed .dll files in it. If you still have problems contact us here.




legendary
Activity: 1722
Merit: 5937
Another fake KushCoin ANN with malware

User jojojacb
ANN 🍁 [ANN][KUSH][PoW+PoS Hybrid] KushCoin || No Premine || No IPO 🍁
github https://github.com/KushCoinCore
Archive https://archive.fo/kI8Z4

Code:
https://github.com/KushCoinCore/Wallet/releases/download/Wallet.v1.1/KushCoin.zip

Real ANN 🍁 [ANN][KUSH][PoW+PoS Hybrid] KushCoin || No Premine || No IPO 🍁
legendary
Activity: 2212
Merit: 2061
Join the world-leading crypto sportsbook NOW!
Please delete the following four fake ANNs, and feel free to nuke/ban the newbie accounts responsible for them:

User wimer17 has two year posting gap: [ANN] - Semux - decentralized application platform <-- delete

Original Semux thread and GitHub:
https://bitcointalksearch.org/topic/annsem-semux-official-thread-2159012
https://github.com/semuxproject


Fake Semux thread and GitHub:
https://bitcointalksearch.org/topic/--5255650
https_://github.com/Semux-project
http://archive.md/P1PNG


User timjones100 has two year posting gap  🍁 [ANN][KUSH][PoW+PoS Hybrid] KushCoin || No Premine || No IPO 🍁 <-- delete

Original KUSH thread and GitHub:
https://bitcointalksearch.org/topic/annkushpowpos-hybrid-kushcoin-no-premine-no-ipo-1764573
https://github.com/kushcoin-project


Fake KUSH thread and GitHub:
https://bitcointalksearch.org/topic/--5255649
https_://github.com/KushCoinCore/
http://archive.vn/S73mF


User khairulryan has two year posting gap   ✅[ANN][RTID] Rtidcoin 🔥 EXCHANGE&POOL AVAILABLE!✅ <-- delete

Original Rtidcoin thread and GitHub:
https://bitcointalksearch.org/topic/annrtid-rtidcoin-cpu-mining-only-exchangepool-available-5247613
https://github.com/Rtid-Platform/


Fake Rtidcoin thread and GitHub:
https://bitcointalksearch.org/topic/--5255648
https_://github.com/rtidcoin-core/
http://archive.vn/uYAPZ


User bluepr0 has two year posting gap 🟡[ANN] HOdlcoin - Fair launch: No Premine/Instamine 🟡 <-- delete

Original HOdlcoin thread and GitHub:
https://bitcointalksearch.org/topic/hodlcoin-cpu-solo-mining-guide-1383479
https://github.com/HOdlcoin/


Fake HOdlcoin thread and GitHub:
https://bitcointalksearch.org/topic/--5255647
https_://github.com/H0dlcoin/
http://archive.vn/T0s6D
hero member
Activity: 1358
Merit: 622
Maintain Social Distance, Stay safe.
I know I mentioned it before, and I have been very lazy in doing it myself but:

1) Does everyone posting in this thread think we should be leaving negative feedback / trust too, so people might see it when looking at the malware thread
Firstly I create post against the fake ann then I give negative trust with the reference of my post as the post of the ann usually delete infew hours by moderators.

2) Creating a flag and linking the flag here so we can support it. I think the "Due to various concrete red flags, I believe that anyone dealing with this user has a high risk of losing money." flag is a good tag for the accounts posting this crap.
Usually the account of the post creator got nuked or banned in this case what is the use of flag? Anyway, I will create flag type 1 at the same time of giving negative trust.
hero member
Activity: 994
Merit: 593
aka JAGEND.
SUSPICIOUS ANN (SELF MODERATED):

User : Qglbdev. Created June 4, 2020
[ANN] Q Global | Crowdsale | You can invest now

Gitlab created June 4, 2020.
Gitlab link : https://gitlab.com/Qglbdev
Archive : https://archive.is/Ua0rz


hero member
Activity: 1764
Merit: 570
Twitter\X @AlexKosa1
Fake Semux ann with posible malware inside.
This user recently woke up from a long period of inactivity. user bharathanek profile link https://bitcointalksearch.org/user/bharathanek-1936827

https://bitcointalksearch.org/topic/--5255570
Semux

Fast Smart Contract Platform

Website | Github | Block Explorer | Bitcointalk | Twitter | Discord | Telegram | Reddit

Latest version: Semux v2.1.1

What is Semux

Semux is a decentralized application platform, powered by the Semux BFT consensus engine. It's fast, robust and powerful.


Specifications
  • Name: Semux
  • Symbol: SEM
  • Consensus algorithm: Semux BFT
  • Block time: 30 seconds

Wallets


You can download the Semux wallets from ⏩  

Exchanges


STEX: https://app.stex.com/en/trade/pair/BTC/SEM/1D - best choice
Citex: https://www.citex.co.kr/#/trade/2/77
Tokok: https://www.tokok.com/market?symbol=TOK_BTC
More exchanges are being contacted


Bounties

Bug bounties: 100 ~ 100,000 SEM, please submit bugs to

Roadmap

Sep 7, 2019: Alpha test - completed
Oct 1, 2019: Beta test - completed
Nov 5, 2019: RC test - completed
Jan 20, 2020: First release with Semux BFT consensus - completed
Q3, 2020: Second release with virtual machine
Q3, 2020: Third release with on-chain governance


Team
semux, cryptokat, honeycrypto, orogvany.

We're looking for talents to join our team. Please contact [email protected]
legendary
Activity: 1722
Merit: 5937
Are that really that many hacked & recovered accounts doing this. They are usually accounts that have been inactive for a long period of time with only a few posts.
I think most of them are farmed / abandoned.
Since I am active on this topic (few months maybe) , I can remember of 3 or 4 cases when real owners reported hacked account that was used for malware spreading. So yeah, those cases are rare.


If you create a flag for them it needs 3 DT to activate it and not many doing that .
Isn't that the case only for Type 3 flag ( I am not sure about Type 2) while Type 1 that would be most appropriate here here needs only 1 DT support?
legendary
Activity: 2996
Merit: 3114
~~~~~~

I tagg them instantly because its shown on there trust and others see it faster .
If you create a flag for them it needs 3 DT to activate it and not many doing that .
Most of the Accounts that creating this Fake ANNs are sold or hacked Accounts and we got that already that we have tagged an Account after posting,
and it was recovered from the recover team and he posted in here so it was possible to remove the tagg ,
legendary
Activity: 3500
Merit: 6320
Crypto Swap Exchange
1) Does everyone posting in this thread think we should be leaving negative feedback / trust too, so people might see it when looking at the malware thread
In 99.99% of the cases I leave negative feedback immediately. Only time when i wait a bit if in those rare cases when it is not clear whether ANN is fake or not.


2) Creating a flag and linking the flag here so we can support it. I think the "Due to various concrete red flags, I believe that anyone dealing with this user has a high risk of losing money." flag is a good tag for the accounts posting this crap.
That's also not a bad idea, but there might be a problem is if account used has been hacked, and then owner gets his account back. There were few cases like that. From what I know, flags can't be deleted, right? (true, that could  be sorted by removing flag support)

Yeah, flags cannot be deleted but if everyone removes their support it just shows there are inactive flags on their trust page.
Since you have to tag a post to a flag and I have been using the post about it in this thread as the tagged post it's also simple to do a quick edit and say account was stolen and now recovered.

Are that really that many hacked & recovered accounts doing this. They are usually accounts that have been inactive for a long period of time with only a few posts.
I think most of them are farmed / abandoned.

-Dave
legendary
Activity: 1722
Merit: 5937
1) Does everyone posting in this thread think we should be leaving negative feedback / trust too, so people might see it when looking at the malware thread
In 99.99% of the cases I leave negative feedback immediately. Only time when i wait a bit if in those rare cases when it is not clear whether ANN is fake or not.


2) Creating a flag and linking the flag here so we can support it. I think the "Due to various concrete red flags, I believe that anyone dealing with this user has a high risk of losing money." flag is a good tag for the accounts posting this crap.
That's also not a bad idea, but there might be a problem is if account used has been hacked, and then owner gets his account back. There were few cases like that. From what I know, flags can't be deleted, right? (true, that could  be sorted by removing flag support)
legendary
Activity: 3500
Merit: 6320
Crypto Swap Exchange
I know I mentioned it before, and I have been very lazy in doing it myself but:

1) Does everyone posting in this thread think we should be leaving negative feedback / trust too, so people might see it when looking at the malware thread

and

2) Creating a flag and linking the flag here so we can support it. I think the "Due to various concrete red flags, I believe that anyone dealing with this user has a high risk of losing money." flag is a good tag for the accounts posting this crap.

Might save someone from doing something stupid.
Just a thought.

-Dave
legendary
Activity: 1722
Merit: 5937
Fake ANN with malware, with the standard M.O. Recently awoken account copies ANN of another project and uses his very recently created github account to spread malware.

User Blucoba
ANN 🟦[ANN] Ħ [HODL] No Staking, 750% APR For HOdlers PoW 750% APR
github https://github.com/H0dlcoin
Archive https://archive.fo/pgq03

Code:
https://github.com/H0dlcoin/HOdlcoin/releases/download/v6.0.0/hodlcoin-6.0.0.zip

Real ANN [ANN] Ħ [HODL] No Staking, 1% Standard Interest per Day, 750% APR For HOdlers
legendary
Activity: 3500
Merit: 6320
Crypto Swap Exchange
Another Semux malware fake ANN:

Malware --> https://bitcointalksearch.org/topic/--5255449

Ban this user --> https://bitcointalksearch.org/user/tibone18-1919795

This user recently woke up from a long period of inactivity.

Original Semux --> https://bitcointalksearch.org/topic/annsem-semux-official-thread-2159012

-Dave
Pages:
Jump to: