Skip to content
  • BlogM
  • Corona blog
  • Categories
  • Pages
  • Let’s Talk

MERHORSE

Dark secrets people like to know about

  • BlogM
  • Corona blog
  • Categories
    • E-Books
    • Education
    • Healthcare
    • Politics
    • Secrets
    • Sex
    • Technology
    • Travel
    • Weight Loss
  • Pages
    • Bitcoin Academy – Learn for free make money online
    • Do schools kill creativity? | Sir Ken Robinson
    • Features all mythology-related videos on Merhorse
    • Merhorse Secrets Reveiled For You
    • Contact
  • Let’s Talk
    • About
  • Toggle search form

EtherScan Ads Phishing Scam | CoinCodeCap

Posted on May 14, 2022 By admin No Comments on EtherScan Ads Phishing Scam | CoinCodeCap


Key Takeaways

  • EtherScan has received reports of phishing popups via a 3rd party integration, and so they have advised its users not to confirm any transactions that pop up on its website.
Etherscan Ads Phishing Scam

How did the Attack Occur?

It was caused by a malicious HTML5 banner Ad Script, which was served by CoinZilla, a popular crypto ad network that is used by a lot of crypto sites. Here is the link to the malicious code used in the scam: https://gist.github.com/ivigamberdiev/9705621088359bd1a7cceca53608875f. The attacker wanted to get tokens approvals or perform swaps through DEXes to their address. We would like to credit Igor Igamberdiev for this information.

A single campaign containing a piece of malicious code has managed to pass CoinZilla’s automated security checks. It ran for less than an hour before the CoinZilla team stopped it and locked the account. Users who use CoinGecko and DEXTools also have seen the same Ad. Below is the screenshot of the same phishing Ad.

Example Of The Phishing Ad
The Phishing Ad

In the screenshot below, we can see where the ad above links to an iframe that loads the malicious Attack. We would like to credit Jon_HQ for this information. If someone has interacted with the signature request, revoke access with http://revoke.cash. Users can also use ad blockers like uBlock Origin, AdLock, and AdBlock Plus.

 Ad Links To An Iframe That Loads The Malicious Attack
Ad links to an iframe that loads the Malicious Attack

According to Doyler NFT, after we sign the message, it will then ask for spender approval for either ETH, BSC, CRO, or FTM. It will only ask for these approvals if the amount in our wallet is greater than the threshold amounts. Below is the same screenshot for the thresholds required.

Etherscan Ads Phishing Scam

If someone wishes to have fun with the attacker, Doyler NFT has shared the attacker’s Infura API key screenshot.

Etherscan Ads Phishing Scam

What was the Team’s Response to the Attack?

The CoinZilla integration was immediately disabled by Team as soon as they were notified of this scam. CoinZilla team has also fixed this issue on their end. EtherScan Team is now monitoring this situation since they have not seen any new reports.

CoinZilla team has also added additional verifications to ensure the security of users seeing their ads. The Team will also ensure that the ad codes will be cleaned from any 3rd party scripts. Furthermore, they will be closely working with their publishers to offer support to affected users and identify the person behind the Attack.

So we want to advise our readers that many scammers are out there in full force. So users should always be highly suspicious when connecting their wallet to a website, and they should never type their seed phrase. Users should always make sure that they are on the correct URL, and they should never confirm random transactions. Also, they can use a cold wallet for better security,

Here are some other phishing links scams you should know about:
  1. LooksRare NFT Phishing Scam
  2. OpenSea Phishing Link Scam
  3. MetaMask Phishing Scam
  4. Moonbirds NFT Phishing Scam





Source link

Technology

Post navigation

Previous Post: Chelsea FC Forays Into Crypto With Amber Group-backed Whalefin As Official Sleeve Sponsors
Next Post: CoinCodeCap’s The Weekly: Issue 5

Related Posts

*GUARIRE IL DIABETE* - La Cura del Diabete *GUARIRE IL DIABETE* – La Cura del Diabete Beauty
Need to simplify/summarize text online? Technology
Fatty Liver Case Study cb | Blue Heron Health News Beauty
Forex Gold Investor – Best Converting Forex Robot For Gold! New 2017! Technology
Nervogen Pro Beauty
Activate The Self Healing Process Within You: Activate Your Body’s Amazing Ability To Heal Itself Technology

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Merhorse info

mail: info@merhorse.com

powered by Futuremedia – Netherlands

Dutch Chamber of commerce Nr. 66868815

VAT nr. NL 139693865B02

 

 

Merhorse latest

Categories

BITCOIN CRYPTO SECRETS

All secrets to earn money online with BITCOIN and CRYPTO currencies

Recent Posts

  • Ukrainian forces say they have fulfilled their “combat mission” in besieged Mariupol
  • Turkish president says he will not approve Sweden and Finland’s NATO membership if they sanction Turkey
  • Do Kwon Shares Revival Plans For The Terra Ecosystem
  • Ryanair CEO launches expletive-ridden tirade against Boeing
  • South Korean Authorities Take Actions After The Luna Incident 
  • Portugal To Tax Crypto Earnings And Payments Soon
  • Denmark, Iceland and Norway “strongly welcome” Finnish and Swedish decision to apply for NATO membership 
  • A BAYC NFT Was Mistakenly Sold For 200 USDC  
  • Live updates: Russia’s war in Ukraine
  • Grayscale Investments Announces First European ETF

Recent Comments

  • Linda Jobson on Eat Sleep Burn
  • Wyatt Boderick on Muscle Imbalances RevealedMuscle Imbalances Revealed
  • i miss google plus on Muscle Imbalances RevealedMuscle Imbalances Revealed

Cheap Condo Rental Manila

Call Annalyn on +639230903469 or +639257808420

RSS Spaceforce

  • China’s Mars Rover: Water Detection Reported
  • Dead By Daylight invites the bogeyman to its sixth birthday party
  • Star Wars Celebration After Parties
  • Save $120 on this massive Playmobil Star Trek U.S.S. Enterprise set
  • Mars lander InSight has few months to live on Red Planet
  • Concussion symptoms in children may have multiple underlying causes — ScienceDaily
  • Arma Reforger First-Look Preview: An Early But Promising Return for a Milsim Great

Copyright © 2022 MERHORSE.

Powered by PressBook Grid Blogs theme

We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept”, you consent to the use of ALL the cookies.
Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT