1. SteamRep is shutting down at the end of 2024. See announcement.

Invalid Report: 76561198138970311 - ([CSGO] Counter-Strike: Global Offensive Items)

Discussion in 'Archived Reports' started by Chocolate Coconut Cake, Dec 21, 2015.

Thread Status:
Not open for further replies.
  1. Chocolate Coconut Cake

    Chocolate Coconut Cake New User

    Messages:
    5
    Steam:
    STEAM_0:0:19940316
    Scam Report

    Report Type: [Other] Any other fraudulant behavior
    Virtual item type involved: [CSGO] Counter-Strike: Global Offensive Items

    Accused profile: 76561198138970311

    Victim profile: 76561198000146360

    What happened? Description:
    His reddit username is /u/penorr

    His Hackforums account is http://hackforums.net/member.php?action=profile&uid=1119638

    His Hackforums account also contains malicious things (He has made a Java Drive-by thing, which makes it so it will download a RAT/Virus through a URL you put in it.)

    His alt is: http://steamcommunity.com/profiles/76561198072571000

    This person sells a Bitcoin bot which actually works, but it has two malicious pieces of code inside it. One of them makes him an admin to the Bot (Which will allow him to take any keys that the bot has without any trouble).

    The other piece of code makes a command that would send the amount of bitcoins he would put in the command to him.

    The proof in his code (which I had someone who did purchase his bot de-compile it for (Which also saved him since he was gonna invest big on it lol)​

    Provide Evidence:
    I will post the screenshots of his new bot's de-compiled code (the malicious parts) first, then I will post the screenshots of his old bot's de-compiled code as well. (Also the malicious parts).

    ----New EXE's De-compiled Code Description----

    The first picture of the de-compiled code has this person's SteamURL in it, which I don't know what exactly is the purpose, but who would EVER put their SteamURL in the bot's code, especially under a command? I'm assuming it makes him the admin of the bot.

    The second picture shows the Bitcoin Stealer, which would allow him to use the command !send <amount in USD> to send that much to his bitcoin address.

    ----Old EXE's De-compiled Code Description (Before Escrow)----

    The third attached picture shows how he would become the admin of the bot based on that SteamURL ID as well.

    He also was reported on HF for scamming a month ago.

    http://hackforums.net/showthread.php?tid=5045232 and http://hackforums.net/showthread.php?tid=5045112

    I will post screenshots of the threads from Hackforums posts since you need an account to view them. (I had to make one to view them)

    The first three pictures (After the code screenshots) are from http://hackforums.net/showthread.php?tid=5045232

    The last three pictures are from http://hackforums.net/showthread.php?tid=5045112

    Let me know if more proof is needed, I can ask the guy who purchased his bot to make more pictures of the de-compiled code.​

    Attached Files:

  2. Edward.

    Edward. SteamRep Admin Donator - Tier V

    Messages:
    2,211
    SteamRep Admin:
    STEAM_0:0:30537130
    Steam:
    STEAM_0:0:30537130
Thread Status:
Not open for further replies.