Scammed by [redacted]

Discussion in 'Report A Scammer Archive' started by Laughs, Sep 24, 2017.

Thread Status:
Not open for further replies.
Scammed by [redacted]
  1. Unread #1 - Sep 24, 2017 at 2:56 AM
  2. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    Read below
     
    Last edited by a moderator: Sep 24, 2017
  3. Unread #2 - Sep 24, 2017 at 3:24 AM
  4. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    After reading Scammed by EasyRSGP.com I saw someone who got scammed in a very similar way that I was scammed, except it's a different website and a different player collecting the gold. These links were being spammed in a few Discord servers I am active in. I tried contacting customer support about this and they didn't seem to know about the scam page on their website and they basically told me there's nothing I can do. I don't want to post the URL because it could trick another user but it however here is a video:



    I was told the that link that redirected me was a referral link by the scammer, I didn't download anything all I did was click on it and it redirected to EasyRSGP's domain so I trusted the content. A reputable gold site should not have a feature that allows users to put up fake pages. @OblivionRage because of your website I lost 1657 million GP I would like an explanation of why there is a scam page of your domain and a refund. It doesn't matter if I click on another website, if the scam page is hosted on yours that is your fault not mine. Is

    I have also archived the web page Buy RSGP with BTC to prove the scam page was really on EasyRSGP.com

    Also you can check the blockchain, obviously the transaction never went through:
    14uo5eyuJ6pPzekwXtfdoEBnTCBf6cGE15
    Bitcoin Address 14uo5eyuJ6pPzekwXtfdoEBnTCBf6cGE15
     
  5. Unread #3 - Sep 24, 2017 at 3:51 AM
  6. OblivionRage
    Joined:
    Feb 15, 2011
    Posts:
    12,167
    Referrals:
    2
    Sythe Gold:
    7,758
    Vouch Thread:
    Click Here
    Discord Unique ID:
    158863811024125952
    Discord Username:
    OblivionRage#8347
    Heidy Le Kingdoms Player 420 yolo swag blaze it fuck the popo legalize it anyone got some chips Sythe's 10th Anniversary Extreme Homosex <3 n4n0 MushyMuncher Gohan has AIDS (3) Homosex Potamus (2)

    OblivionRage www.EasyRSGP.com to buy/sell 07/rs3 GP Best Rates!
    OblivionRage Donor

    Scammed by [redacted]

    i think you will find that ''referral link'' you used was infact a phishing link.... like i already told you on my live chat.

    if you want to use the website www.EasyRSGP.com, then go the website www.EasyRSGP.com, not some random link someone posted.

    i am truly sorry for you're loss but this has absolutely nothing to do with EasyRSGP.com.
     
  7. Unread #4 - Sep 24, 2017 at 3:52 AM
  8. Miles94
    Joined:
    Sep 23, 2017
    Posts:
    3
    Referrals:
    0
    Sythe Gold:
    4

    Miles94 Newcomer
    Banned

    Scammed by [redacted]

    Explain this: Buy RSGP with BTC
     
  9. Unread #5 - Sep 24, 2017 at 3:55 AM
  10. OblivionRage
    Joined:
    Feb 15, 2011
    Posts:
    12,167
    Referrals:
    2
    Sythe Gold:
    7,758
    Vouch Thread:
    Click Here
    Discord Unique ID:
    158863811024125952
    Discord Username:
    OblivionRage#8347
    Heidy Le Kingdoms Player 420 yolo swag blaze it fuck the popo legalize it anyone got some chips Sythe's 10th Anniversary Extreme Homosex <3 n4n0 MushyMuncher Gohan has AIDS (3) Homosex Potamus (2)

    OblivionRage www.EasyRSGP.com to buy/sell 07/rs3 GP Best Rates!
    OblivionRage Donor

    Scammed by [redacted]

    Please direct me to where this link is on MY website, i dont want to visit 3rd party links to gain access to the page you accessed.

    also you have the exact same report open against another gold seller, does this not ring any bells?
     
    Last edited: Sep 24, 2017
  11. Unread #6 - Sep 24, 2017 at 4:01 AM
  12. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    [​IMG]
    I cannot send you a direct link, but an issue with the POST to /order/helper.php#Referral. I don't know how to code but my friend kind of explained the issue to me
     
  13. Unread #7 - Sep 24, 2017 at 4:03 AM
  14. OblivionRage
    Joined:
    Feb 15, 2011
    Posts:
    12,167
    Referrals:
    2
    Sythe Gold:
    7,758
    Vouch Thread:
    Click Here
    Discord Unique ID:
    158863811024125952
    Discord Username:
    OblivionRage#8347
    Heidy Le Kingdoms Player 420 yolo swag blaze it fuck the popo legalize it anyone got some chips Sythe's 10th Anniversary Extreme Homosex <3 n4n0 MushyMuncher Gohan has AIDS (3) Homosex Potamus (2)

    OblivionRage www.EasyRSGP.com to buy/sell 07/rs3 GP Best Rates!
    OblivionRage Donor

    Scammed by [redacted]

    was this the same great friend of you're who gave you the ''referral link'' out of curiosity?
     
    Last edited: Sep 24, 2017
  15. Unread #8 - Sep 24, 2017 at 4:06 AM
  16. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    I cannot send you a direct link, but an issue with the POST to /order/helper.php#Referral. I don't know how to code but my friend kind of explained the issue to me

    [​IMG]
     
    Last edited: Sep 24, 2017
  17. Unread #9 - Sep 24, 2017 at 4:34 AM
  18. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    [​IMG]
    Proof I was able to embed your sites logo into a called /order/helper.php#Referral using a tool called LiveHTTPHeaders by modifying the POST request.
     
  19. Unread #10 - Sep 24, 2017 at 4:35 AM
  20. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    The attacker can embed whatever they want, i dont know javascript but my friend told me he used javascript and html to automatically embed content in your website
     
  21. Unread #11 - Sep 24, 2017 at 4:38 AM
  22. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    I have been researching this since I got scammed by your site, I am pretty confident that this is an issue with your website and it is not a phisher.
     
  23. Unread #12 - Sep 24, 2017 at 5:09 AM
  24. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    [​IMG]
    Anyone is able to embed whatever they want into your website by exploiting the 'helper.php' file which doesn't sanitize input properly if you pass it the correct parameters as a POST request
     
  25. Unread #13 - Sep 24, 2017 at 5:17 AM
  26. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    Using this technique the scammer was able to embed a full page iframe containing a scam page that stole my RSGP. This is a video demonstration:
     
  27. Unread #14 - Sep 24, 2017 at 5:20 AM
  28. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    Now that I have spent hours figuring out how I got scammed I have finally come to the conclusion that it is in fact a problem that is server sided. Now thats we have cleared that issue up, I would like to be refunded.
     
  29. Unread #15 - Sep 24, 2017 at 5:34 AM
  30. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    I would like someone with technical knowledge to verify my claims.
     
  31. Unread #16 - Sep 24, 2017 at 9:42 AM
  32. TerrorIsland
    Joined:
    Aug 15, 2017
    Posts:
    44
    Referrals:
    0
    Sythe Gold:
    43

    TerrorIsland Member
    Banned

    Scammed by [redacted]

    This would of been a lot more believable if you had said you dont know anything about coding. your friend is obviously @Miles94 who is also reporting someone for the exact same scam.

    you'd not of been able to learn all this in the matter of a few hours. i'm compiling evidence on how you and your friend has framed obvlivion rage now if @OblivionRage could join the livechat and help me with something id be able to find out in a matter of minutes
     
  33. Unread #17 - Sep 24, 2017 at 9:43 AM
  34. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    Vulnerable: https://archive.fo/i9CGB
    Not Vulnerable: https://archive.fo/Yb49H

    XSS Vulnerability Fixed! Good Job, now no one else is going to get scammed.
    [​IMG]
    However, that does mean I was correct about a vulnerability existing. I would like an apology and a refund. The proof I have provided is undeniable.
     
  35. Unread #18 - Sep 24, 2017 at 9:46 AM
  36. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    I took a web design class in high school however I did not have any knowledge of javascript which is why I needed to ask a friend. I understand the basics of this sort of stuff but I am not a pro
     
  37. Unread #19 - Sep 24, 2017 at 9:48 AM
  38. Laughs
    Joined:
    Mar 5, 2016
    Posts:
    33
    Referrals:
    0
    Sythe Gold:
    28

    Laughs Member
    Banned

    Scammed by [redacted]

    Also, I have never even spoke with @Miles94 I just saw his forum post talking about the same scam that took my RSGP.
     
  39. Unread #20 - Sep 24, 2017 at 9:50 AM
  40. TerrorIsland
    Joined:
    Aug 15, 2017
    Posts:
    44
    Referrals:
    0
    Sythe Gold:
    43

    TerrorIsland Member
    Banned

    Scammed by [redacted]

    this is alot of back end coding your talking about which isn't something you'd learn in a simple web design class in school. Web design would be more front end, simple html, designing etc

    you also said you dont know how to code, now i've called you out on knowing a lot of it you just happened to of done a year of it hmmmmm ok


    still compilin evidence. second.
     
< SameCxlol is Yesboiz | Don't use GameTradeEasy >

Users viewing this thread
1 guest
Thread Status:
Not open for further replies.


 
 
Adblock breaks this site