Search content
Sort by

Showing 20 of 29 results by Marco Polo
Post
Topic
Board Exchanges
Re: mtgox is really hacked again?
by
Marco Polo
on 10/03/2014, 07:10:27 UTC
Do not touch this dump unless you really know your stuff.

Now you tell me, after I thought I was assure all is well prior to downloading it, then...wait for it...opened it. Still not sure what I may have compromised for I'm a serious noob when it comes to these sort of things.
Someone on reddit did a dissassembly and there is a wallet stealer embedded in the .exe. So for the love of god move your bitcoins if you ran that exe.

Seems I cant link to the post, but its on reddit /r/bitcoin.
Post
Topic
Board Service Discussion
Re: 24 BTC stolen from my bitstamp account 2FA and email confirmation protected
by
Marco Polo
on 05/03/2014, 11:06:14 UTC
Most likely a login session on the phone was not terminated, so hacker simply re-enter bitstamp and at the same time email account is usually auto-login, no 2FA is required

This would have been my guess also, but from the history it says:

Code:
* 2014-02-22 19:56:08   109.163.234.9   Logged in using two-factor authentication

109.163.234.9 is a TOR relay, so it seems it was the hacker that did a full logon from TOR using 2FA (also it is the same address that withdraws the BTC).

The most likely option then is that they have access to (atleast) your phone.

I think the reason the hacker changed the password was so you would not log on yourself and change the password in case you saw the withdrawal email. He then changed it back to cover his tracks, just in case you would not notice.

* Did he delete the confirmation emails bitstamp sent from your email?

* You should make a list of all ip addresses the hackers used and confirm that they are TOR relays on https://metrics.torproject.org/relay-search.html
Not likely, but the hacker might have made a mistake somewhere in not using TOR.

* It would be interesting if you could export a list from your Android phone of all the applications installed and post it here, especially those installed just (1-2 weeks) before the hack.
Post
Topic
Board Skandinavisk
Re: I want to sell BTC in Stockholm(person to person)
by
Marco Polo
on 16/04/2013, 12:11:38 UTC
Is there anybody else in Stockholm who would like to buy?
What is your exchange rate ?
Post
Topic
Board Scam Accusations
Re: Find Trendon Shavers in person thread... [BTCST, BTS&T, pirateat40]
by
Marco Polo
on 05/03/2013, 15:47:11 UTC
[10/25/2012 4:53:54 PM] BangkokGuy: He had plenty of cash on him as well. 5000 bhat notes. But he was scruffy as hell, he was wearing shorts and trainers
Correct me if Im wrong but Im pretty sure there are no 5000 baht notes
Post
Topic
Board Bitcoin Discussion
Re: MAJOR SCREW UP - 111 BTC AS FEES (don't do raw tx's when you're tired)
by
Marco Polo
on 11/01/2013, 21:29:59 UTC

102 BTC returned in this transaction: http://blockchain.info/tx-index/42579467/4a0fe8cb78b19778a49d171642649c9ee25453ed206894c88b049d0ee7939a0f

I'd highly recommend not creating raw transactions in the future unless absolutely necessary Smiley.  $1,500 is a pretty risky mistake if it didn't land on a known pool wallet/IP.

Nice to see there are honest people out there still  Smiley
Post
Topic
Board Bitcoin Discussion
Re: SSL certificates are changing on Bitcoin websites
by
Marco Polo
on 22/11/2012, 12:44:23 UTC
The SAN field on the certificate for bitcoin.de is pretty interesting:
Or maybe not, maybe they need to be able to read the traffic in order to be able to filter out ddos attacks..
DNS Name=ssl2669.cloudflare.com
DNS Name=*.ukashvip.com
DNS Name=ukashvip.com
DNS Name=bookmakers.com.au
DNS Name=*.calendars.com
DNS Name=calendars.com
DNS Name=subeta.net
DNS Name=*.subeta.net
DNS Name=*.goldenarium.com
DNS Name=*.hellocq.com
DNS Name=*.bookmakers.com.au
DNS Name=*.pcbooster.com
DNS Name=*.hosthack.com
DNS Name=hosthack.com
DNS Name=*.aitec.ee
DNS Name=greenpolkadotbox.com
DNS Name=pcbooster.com
DNS Name=goldenarium.com
DNS Name=testwanda.com
DNS Name=bitinstant.com
DNS Name=*.testwanda.com
DNS Name=bitcoin.de
DNS Name=*.bitcoin.de
DNS Name=president.gov.ph
DNS Name=*.greenpolkadotbox.com
DNS Name=aitec.ee
DNS Name=*.president.gov.ph
DNS Name=*.bitinstant.com
DNS Name=hellocq.com
DNS Name=*.tangostress.info
DNS Name=tangostress.info
Post
Topic
Board Services
Re: [AVAILABLE] MomentoVPS - Immediately Available KVM VPS SSD backed
by
Marco Polo
on 20/11/2012, 09:37:55 UTC
I have had 4 major downtimes  in the last couple of two weeks. Effin worthless...
Post
Topic
Board Bitcoin Discussion
Re: Proposal - Bitcoin peer review board
by
Marco Polo
on 06/11/2012, 19:09:03 UTC
Wow, if that is supposed to be a short presentation about bitcoin its clearly not objective.

Review board sounds like filtering information to me.
Bitcoin will succeed on its own merits, because my opinion is that bitcoin is so clear cut useful and ingenious that anyone will see it sooner or later.

Post
Topic
Board Legal
Re: MT.Gox account hacked - lost 2k USD - MT.GOX will not explain how.
by
Marco Polo
on 08/10/2012, 18:49:31 UTC
If you trade more than $150 USD it is worth it to invest in a Yubikey, IMHO. I have other issues with MtGox, but getting hacked is the least of my concerns.
i don't have a yubikey, but my password is something similar to jfdsaMFDasjm#R$MnVMXCL:m43mMVL:XJOP%$#mvc
Thats not enough for alot of attacks. You need to use 2-factor authentication
Post
Topic
Board Bitcoin Discussion
Re: Blockchain.info wallet on iOS - install it now!
by
Marco Polo
on 08/10/2012, 17:32:58 UTC
Just want to say that the blockchain.info services kick ass. Definitely the best bitcoin related services out there (imho).

Post
Topic
Board Speculation
Re: The Great Silk Road Crash of 20** ...?
by
Marco Polo
on 21/09/2012, 20:51:04 UTC
In my mind, it is inevitable that Silk Road will either be shut down or cease to operate in the not too distant future.

While successors will eventually spring up in its place, there will still be a large, sudden drop in demand for BTC.

How low will BTC go?

How soon might this happen?

Since I believe Bitcoin is bigger than Silkroad, I would welcome the opportunity to buy coins cheaply, but others may see this scenario as a disaster for the community.

I'm interested in peoples thoughts.
My thoughts exactly. Silk road will get closed down eventually, be it by the owners themselves or the FBI / DEA. Nothing lasts forever, all it takes is for the public to demand Silk Road to be closed and politicians will start handing out promises to the public and at the same time putting pressure on the feds.
If the US government uses all its resources it could probably disrupt SR enough too force them to shutdown.
Post
Topic
Board Off-topic
Re: So, about "exe binders".
by
Marco Polo
on 20/09/2012, 08:12:07 UTC
Sure you can, for steganographic purposes. It doesnt mean it will get executed to, you would need a .jpg that exploits some image viewer vulnerability for that. Holes like that have existed in the past, and probably more exists that is yet to be found or is not yet public (aka 0-day)
Post
Topic
Board Off-topic
Re: So, about Zhou Tong
by
Marco Polo
on 19/09/2012, 05:53:56 UTC
I bought a domainname from nameterrific a couple of days ago. Within the hour I got an email from Ryan saying the domain was ready. Say what you will about ZT but thats quick service for a sunday.
So looks like he is alive and well :-)
Post
Topic
Board Bitcoin Discussion
Re: A plea to exchanges ... lets do 2 factor right!
by
Marco Polo
on 14/09/2012, 14:57:48 UTC
It would also prevent unauthorized withdrawals done with stolen cookies using XSS bugs or MITM (for example in public wlans)
Post
Topic
Board Off-topic
Re: MNW Shill List
by
Marco Polo
on 13/09/2012, 15:07:57 UTC
It's that second guy that I have a hell of lot of info on and I have yet to publish anything relevant. Please don't PM me or try to bribe me as to whom that second guy is, but when it's finally revealed, you'll be shocked to all get-out.

LOL you just wasted 20 minutes of my life.. Timezones can be tricky Smiley
Post
Topic
Board Off-topic
Re: On 11/1/12, 1 bitcoin will be equal to or worth more than 1 share of Facebook
by
Marco Polo
on 09/09/2012, 07:26:03 UTC
Interesting bet!
I am going to put in some coin, just not sure which way to go yet Wink
Post
Topic
Board Off-topic
Re: I figured out who Satoshi is
by
Marco Polo
on 27/08/2012, 06:11:03 UTC
Keep it to yourself man
Post
Topic
Board Off-topic
Re: Happy 18th Birthday Zhoutong!
by
Marco Polo
on 24/08/2012, 22:00:03 UTC
Happy birthday ZT!
Post
Topic
Board Off-topic
Re: MtGox bloopers
by
Marco Polo
on 24/08/2012, 21:09:29 UTC
I have seen that too, sometimes the last price is higher than the "high".  That should not be possible right?
Post
Topic
Board Marketplace
Re: how is it possible to see how much activity and trade silk road has?
by
Marco Polo
on 24/08/2012, 08:23:41 UTC
When talking to people whose objection to Bitcoin is illegal activity then Silk Road is only 2% of the Bitcoin  economy.

When talking to people whose objection is that Bitcoin is all speculation and no commerce then Silk Road is 98% of the Bitcoin economy.

LOL.

It should be noted that not all users leave feedback. I have noted that with iPhone/Android apps maybe 1-10% of users leave feedback. Maybe with drugs it is a different thing, but I doubt it...

I would think that ratio is much higher on SR since the vendors rep are what customers look to when deciding what vendor to purchase from.
So the vendors want to get as many good feedbacks as possible, they often ask the customer to give feedback before the item has been delivered(!).

Still I dont think 100% of the customers leave feedback.