PDA

View Full Version : Phising site



Baktwerel
01-22-2010, 06:03 PM
I have seen a thread popping up about Haiti having a link in it supposedly leading to another forum thread -starts suspicious already, huh? Kind of spoiled the fun in the title already XD-.

Any how I usually move the cursor over the links to check wether they lead to the same place as they are supposted to (busted a phising site that way once). However I was careless and clicked the link as it seemed to be a legit one. It wasn't.

This is what I saw:

http://i149.photobucket.com/albums/s63/Kuvee/wth.png

It might be my timezone (it's quite late and I am getting tired) or I was just careless in general...But what I saw (GM Straega???! What the heck??!) scared me so much that I took a screenshoot and left the site and reported it asap without realizing what it was. And changed my password too as suggested by a staff member.

I did not enter any information of mine, thus I should be safe (I may be stupid, but not THAT stupid.) And the majority of you guys are probably more cautious about links. However those who are not, should take this thread as a warning. Phising sites like this are around. Yes, you know it, but I bet there are many of you guys who don't and would fall for it.

Anyhow an experienced/smart forum user would definately notice that it's fishy as it is quite obvious -no idea why I freaked out actually... I still blame the time XD and my stupidity-.

So be careful with those links for this might be obvious, however there might be similar phising sites which would install keyloggers and such to your computers or simply steal your password without your input. Just be more careful as you are right now and ignore tha fact that I almost lost my account -which I did not as you see-.

Also I know it is true, but please don't call me all sort of things (no flaming in general too), focus on the warning instead.

Thank you for reading. Feel free to discuss the topic and share your phishing site encounters, tips to avoiding them and other things in connection.

This happened like an hour ago? However I though I should share it.

coles1
01-22-2010, 06:05 PM
I made a thread about phishing sites like this a few weeks ago, back when this guy was making random spam threads with links looking like the same exact thing you posted. I thought he was gone, but wow.. I guess he's back.

EDIT: To help avoid this, before you click a link, hover you mouse over the link and look at the bottom left corner of your browser page. Make sure it's www.outspark.com/forums(insert whatever here), and not like www.0utspark.com/forums(insert whatever here), like the guy that I mentioned did.

Baktwerel
01-22-2010, 06:09 PM
I made a thread about phishing sites like this a few weeks ago, back when this guy was making random spam threads with links looking like the same exact thing you posted. I thought he was gone, but wow.. I guess he's back.

The same you say? I suppose it is time to get IP Blocking punishments for cases like this and other crimes (I suggested them for art theft too as it is a serious crime too, even though OS is not mainy concerned about artists).

Anyone feels like starting a petition if needed?

edit: thank you for the tips :) I appreciate your support.

coles1
01-22-2010, 06:10 PM
Actually not sure if it's the exact same guy. I'll look around for the one thread and see if it's the same phishing site. I think Phibes took care of the other one though. I hope he didn't miss too much of Cheaters..

EDIT: Link was removed. Ehhh, just keep your eye out for these kind of threads though.

Baktwerel
01-22-2010, 06:15 PM
Actually not sure if it's the exact same guy. I'll look around for the one thread and see if it's the same phishing site. I think Phibes took care of the other one though. I hope he didn't miss too much of Cheaters..

EDIT: Link was removed. Ehhh, just keep your eye out for these kind of threads though.

I did and I will even more x_x this pretty much scared me although I avoided the danger itself. Still I feel really stupid for even clicking it... and for not realizing what it was -although I did know it's not okay-.

Tommy2k7_uk
01-22-2010, 06:21 PM
The same you say? I suppose it is time to get IP Blocking punishments for cases like this and other crimes (I suggested them for art theft too as it is a serious crime too, even though OS is not mainy concerned about artists).

Anyone feels like starting a petition if needed?

edit: thank you for the tips :) I appreciate your support.

ip blocking wont do anything just change the ip and your back so if they keept blocking there ip every time they changed it it would not stop

Baktwerel
01-22-2010, 06:28 PM
ip blocking wont do anything just change the ip and your back so if they keept blocking there ip every time they changed it it would not stop

Stupid proxys XD Can't they get blocked? Or apparently we -and other MMORPGs and whatnot- are doomed to get phising links like this? Some people really need to get a life ._.

kevinyou40
01-22-2010, 07:58 PM
ip blocking wont do anything just change the ip and your back so if they keept blocking there ip every time they changed it it would not stop

yes i have tryed telling people this many times. if a cell phone is used, your ip address is random.

kasteroid
01-23-2010, 01:10 AM
Yes, this is exactly what happened to me. I posted it on Website Issues section.

joecracker
01-23-2010, 11:52 AM
its Russian site i bet, look at the ad its in Russian i believe lol (i dont know, could be anything, was just guessing that is all)

that should been your first clue

rematch
01-23-2010, 12:24 PM
Happenned to me.
Yes, I fell.

GM_Nekopon
01-23-2010, 12:26 PM
its Russian site i bet, look at the ad its in Russian i believe lol (i dont know, could be anything, was just guessing that is all)

that should been your first clue

No, that's according to her IP. She's not from the States...

Celtic_Princess
01-23-2010, 12:26 PM
Unfortunately, there are people out there with nothing better to do with their time than duplicate a wep page and try to scam other people. Always check a link before you click it, and be wary if it asks you for any personal information.

If you see a link like this, please immediately report it and/or message a CL or staff member who can remove it and the user that posted it.

Just remember, if something looks wrong, it probably is. Always double check before you put in your info.

rematch
01-23-2010, 12:28 PM
Unfortunately, there are people out there with nothing better to do with their time than duplicate a wep page and try to scam other people. Always check a link before you click it, and be wary if it asks you for any personal information.

If you see a link like this, please immediately report it and/or message a CL or staff member who can remove it and the user that posted it.

Just remember, if something looks wrong, it probably is. Always double check before you put in your info.

What about if we get trapped?
If we fall?

GM_Nekopon
01-23-2010, 12:31 PM
There's not much we can do from there if they already stole the account. I mean, we can't tell if it's you or them or what changed the password. There's so many things that could happen. Please, please, always be careful.

However, please send a ticket to CSR anyway as everyone gets different situations. Some being about to be saved while others might not.

rematch
01-23-2010, 12:32 PM
SO theres still a chance for me to get everything back?

Asheer
01-23-2010, 01:36 PM
its Russian site i bet, look at the ad its in Russian i believe lol (i dont know, could be anything, was just guessing that is all)

that should been your first clue

No, that's not Russian add on but more like coming from Balkan based country (Hungary, Romania, Turkey or ex Yugoslavia countries).

Andromeda
01-23-2010, 01:52 PM
Ad is different for the users location and that language is definitely Hungarian.

Russian looks completely different and is more far more complex than Hungarian.

Studying other languages can be quite good :)

Ian
01-23-2010, 02:11 PM
yes i have tryed telling people this many times. if a cell phone is used, your ip address is random.

In theory, it may be true, but I don't think it's easy to get a large number of useable ip addresses at your disposal, even with proxies.

mikerex123
01-23-2010, 05:40 PM
happend to me today.....
account was rexkiller123

GSL2007
01-24-2010, 02:26 AM
This phising site is epic fail, few of the telltale sign are the webpage which show that you are logged in as an GM and have 100million sparkcash, must be created by some kid:rolleyes:

Asheer
01-24-2010, 03:22 AM
This phising site is epic fail, few of the telltale sign are the webpage which show that you are logged in as an GM and have 100million sparkcash, must be created by some kid:rolleyes:

True, but there is a catch.

hackers based thier phishing attack on assumptions that people don't pay attention on site details.
They just see site veeery similar to legitimate site of firm XYZ and automaticly granted her thier full trust.

In my country there was recently similar phishing attack by using fake site of one of the biggest banks but they were detect pretty quick and turned down.

However as much as this might sounds crazy i think it's time for staff to inform authorites because attack using phishing sites are violation of the law and MUST BE reported to law enforcers (at least that is in my country but not sure about USA).

And recent attack might in the end effect by auto block access to forums by browsers security soft if Outspark site will be reported as potential dangerous.:eek:

Baktwerel
01-24-2010, 08:57 AM
its Russian site i bet, look at the ad its in Russian i believe lol (i dont know, could be anything, was just guessing that is all)

that should been your first clue

It's Hungarian ( Bingo for Asheer and Andromeda :P ) and no, the site is English and others found it too (and will find it probably). It has nothing to do with my country or any other European/Asian country. As Nekopon said it the ads are determined after the users IP, thus I have Hungarian ads.

The only real clue we have is that this phishing site has been around since awhile (perhaps at different names such as 0utspark.com as someone said once). So we just have to be careful and spread the words to those who don't know about this site/wouldn't see it's a fake copy with a hidden trap.