Author

Topic: Suspicious e-mail calling for Bitcoin mining. (Read 923 times)

legendary
Activity: 3248
Merit: 1070
October 04, 2015, 05:39:52 AM
#18
this was a scam since he claimed to mine 50 btc daily(1600 monthly), he need something like 6 peta for that, which is around 2% of the network

no way he has that much power
legendary
Activity: 3500
Merit: 2246
🌀 Cosmic Casino
"1 BTC DAILY" ?  I'd say this is too good to be true.

Malware? More than likely.
legendary
Activity: 3542
Merit: 1352
Lol, who would generate 1 bitcoins per day by using their laptop/desktop without the need of specialized mining rigs? Just wow, I smell malware that could probably get your bitcoins from you. :v
legendary
Activity: 994
Merit: 1000
Don't install any type of software without proper virus check as their is lot more chance of being infected by a malware. And also mining 1 BTC per day with a personal laptop or computer is impossible with the difficulty level as of today in bitcoin mining. Don't be fooled by this type of email, don't get bother by this scam. Be safe brother, just forget this.
legendary
Activity: 1806
Merit: 1024
If it sounds too good to be true, it probably is.

1 btc daily from mining with no additional power usage? They must've found a perpetuum mobile...

No, they "mine" using their malware. Cheesy

Maybe this even is some kind of advanced malware ponzi scheme. The deal is "install our malware and get 20% of the total extracted wealth from any person you convince to install it as well - for any 2nd level referrals you get another 10%".

The sad thing is that scams and hacks still work exceptionally well in the Bitcoin community, because their is a constant influx of new users, who have yet to learn that due diligence and security are an absolute priority when using Bitcoin.

ya.ya.yo!
legendary
Activity: 1946
Merit: 1007
If it sounds too good to be true, it probably is.

1 btc daily from mining with no additional power usage? They must've found a perpetuum mobile...
hero member
Activity: 784
Merit: 501

1 BTC daily,

It's possible, but not with mining.
Very much possible. At the current difficulty, you need 121 Ths.
hero member
Activity: 798
Merit: 1000
Move On !!!!!!
The file that is available for download has some interesting metadata.

File description: Jolanta6
Product name: Phocaceous8
Language: Bulgarian (Bulgaria)
Original filename: Qaplus.exe

EDIT: More metadata

TRANSLATION   0x0402 0x04b0
INTERNALNAME   Qaplus
FILEVERSION   1.00
COMPANYNAME   Astonsoft Ltd.
COMMENTS   Oxyuriasis
PRODUCTNAME   Phocaceous8
PRODUCTVERSION   1.00
FILEDESCRIPTION   Jolanta6
ORIGINALFILENAME   Qaplus.exe

So how did you get to the file? Have you entered the site? Or you used some other way to scan the file?

Downloaded the file and ran it sandboxed. It's a nasty piece of work.
Runs a process disguised as scvhost.exe.
Also copies itself to several places in your user profile.
It corrupts the Computer Management shortcut in the Start Menu too.
Nasty piece of shit.

Yes, I can only imagine! Thanks for checking. I urge everybody to stay away from this e-mail and that they report these motherf***ers if they get an email. I just did!
legendary
Activity: 1008
Merit: 1000
The file that is available for download has some interesting metadata.

File description: Jolanta6
Product name: Phocaceous8
Language: Bulgarian (Bulgaria)
Original filename: Qaplus.exe

EDIT: More metadata

TRANSLATION   0x0402 0x04b0
INTERNALNAME   Qaplus
FILEVERSION   1.00
COMPANYNAME   Astonsoft Ltd.
COMMENTS   Oxyuriasis
PRODUCTNAME   Phocaceous8
PRODUCTVERSION   1.00
FILEDESCRIPTION   Jolanta6
ORIGINALFILENAME   Qaplus.exe

So how did you get to the file? Have you entered the site? Or you used some other way to scan the file?

Downloaded the file and ran it sandboxed. It's a nasty piece of work.
Runs a process disguised as scvhost.exe.
Also copies itself to several places in your user profile.
It corrupts the Computer Management shortcut in the Start Menu too.
Nasty piece of shit.
hero member
Activity: 798
Merit: 1000
Move On !!!!!!
The file that is available for download has some interesting metadata.

File description: Jolanta6
Product name: Phocaceous8
Language: Bulgarian (Bulgaria)
Original filename: Qaplus.exe

EDIT: More metadata

TRANSLATION   0x0402 0x04b0
INTERNALNAME   Qaplus
FILEVERSION   1.00
COMPANYNAME   Astonsoft Ltd.
COMMENTS   Oxyuriasis
PRODUCTNAME   Phocaceous8
PRODUCTVERSION   1.00
FILEDESCRIPTION   Jolanta6
ORIGINALFILENAME   Qaplus.exe

So how did you get to the file? Have you entered the site? Or you used some other way to scan the file?
sr. member
Activity: 406
Merit: 250

1 BTC daily,

It's possible, but not with mining.
legendary
Activity: 1008
Merit: 1000
If you have run the file, look for %AppData%\b.exe, I believe it tries to copy itself there.
legendary
Activity: 2282
Merit: 1023
Definitely a scam. There is no way for a normal computer to mine 1 BTC for it's whole life time at this point of time.
legendary
Activity: 1008
Merit: 1000
The file that is available for download has some interesting metadata.

File description: Jolanta6
Product name: Phocaceous8
Language: Bulgarian (Bulgaria)
Original filename: Qaplus.exe

EDIT: More metadata

TRANSLATION   0x0402 0x04b0
INTERNALNAME   Qaplus
FILEVERSION   1.00
COMPANYNAME   Astonsoft Ltd.
COMMENTS   Oxyuriasis
PRODUCTNAME   Phocaceous8
PRODUCTVERSION   1.00
FILEDESCRIPTION   Jolanta6
ORIGINALFILENAME   Qaplus.exe
legendary
Activity: 2674
Merit: 3000
Terminated.
I haven't visited the site myself, but apparently it might be clean. The test shows only 2/63. However, I think that these emails have been going out for some time now and I think that you should just block the sender. Virustotal is showing the following:"Analysis date:   2015-09-03 10:38:25 UTC ( 1 month ago )". It is thus very likely that the emails have been going out for a while.
hero member
Activity: 636
Merit: 500
Yes, I get the same e-mail. I deleted it immediately.
1 BTC daily, I don't even need to open up the site. Smiley
hero member
Activity: 784
Merit: 501
Beware of malware.
hero member
Activity: 798
Merit: 1000
Move On !!!!!!
Did anybody get suspicious email from x-miners?
Email is under:


Hello,

Are you a BTC miner? no?

I bet my 1600 monthly BTC that you're gonna become a miner, TODAY Smiley

WHY?
Because you can mine 1 BTC DAILY from your own computer, WITH NO special rigs needed.

HOW?
You can check my site and decide for yourself if you want in or not.

NOTE!
There are no hidden costs, no additional power usage, no additional hardware needed, just your DESKTOP/LAPTOP.


x - b i t c o i n s . com

Regards,
X Miner


-----BEGIN PGP PUBLIC KEY BLOCK-----
Version: 2.6.2: m8W8MoKN0Y6SvwtmYCkfnndQ2CiA1nZelMcY1NBRBxAWUU9JmjOzxSfploQcBGgNijB9X2Roqiba2aJ fjoFH6LWiZDkrar4iBvioo0DE8EE1Ee7OsClpd8x3CIkC0eLrATGOK9jJDNA8SxMa0Yq3XNXpm7Scct tDdZiNZrns4NqMb3N2S4WFHJVTGDWJXfc05kEVBRdwvu9xoMp6GbCeKnYhRKQEQSvM30xuIBQ3WPrbs H8ZJA4jOSrvt80aQlMJca4KCKEpqVqJspy1PsbubtQurGv8S7IU8CuBdYQuK733mrV2KXmLg36yzrwi p52oxnPBcwWMuPFH7qAIdNjkGgI5x5eN061okHPm4BYphuWfKmNOZWYw3xsrsw4isWxCucPoEDDMYqR yDudth2Pap7rItlRM8efsgUHLoancr5BUpEewwTwMRNkaZ1NX6SfdDMORN2U5XlQdQUzdDWQlA1lpTY dPHjSaWxSApDvdObgvVGzptfAT
-----END PGP PUBLIC KEY BLOCK-----
Jump to: