Skip to content

Instantly share code, notes, and snippets.

@morimolymoly
Last active December 2, 2021 05:43
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save morimolymoly/d861f376a4accc7c48125fc8654f9a3e to your computer and use it in GitHub Desktop.
Save morimolymoly/d861f376a4accc7c48125fc8654f9a3e to your computer and use it in GitHub Desktop.

Scam Details

steal account credentials

Scammer(https://steamcommunity.com/profiles/76561198378304894) send messages to victims for inviting to exchange in-game items. He let you to connect to legit trading website. (e.g. csmoney, bitskins) And also, he introduce fake website(https://suffinfo.com/) to check item's price.

fakewebsite do picture-in-picture attack. It steals victim's account ID and password and also 2FA code.

Login window is totally fake(with picture-in-picture attack, it seems totally legit) https://suffinfo.com/gYJOUC8ck7/jc1e6f6sts/27dsj8qc8h?q=gYJOUC8ck7&s=445cfa720ed0d28f76a0b692a7a5afad

Under-control trade

Victim send trade request.(from: victim, to: scammer) By using victim's stolen credentials, scammer's bot automatically cancel this request and create a new fake trade(from: victim, to: scammer's bot) Scammer's bot has same profile as a scammer. Steam mobile app's UI is so poor, so victim can't get fake trade is (from: victim, to: scammer's bot) one.

Information

Fake website information

fake website was developed by Faker(https://t.me/savage67) Faker's service are listed in this (password: gg)

fake website has a same Admin login page. e.g. https://suffinfo.com/Admin/login.php

@morimolymoly
Copy link
Author

`
D5tDgh5UwAAhi-a
D5tCXimVUAIHQYo
D5tCx0CU0AAvOPN

`

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment