blockchain / unused-My-Wallet

Legacy Blockchain Web Wallet - current version is at https://github.com/blockchain/My-Wallet-V3-Frontend
205 stars 127 forks source link

Lost logs #101

Closed walletsk closed 9 years ago

walletsk commented 10 years ago

I set full logging ( both IP and user agent ) , which should be kept 2 weeks , but is missing. Someone has stolen my BTC and I want to know at least the corresponding logs !

walletsk commented 10 years ago

Have also wroten request to blockchain , but explanation is not sufficient for me:

Request #27972 lost logs

Clix Oct 07 07:29

My BTC was stolen and I want to know details. I was surprised that log was missing. I wrote to github a week ago. https://github.com/blockchain/My-Wallet/issues/101

Comments User photo Mandrik Blockchain

Hey there, and sorry to hear about this. You may have some type of malware on your computer that resulted in your funds being stolen, because your private information was somehow obtained. One of the most common types of these are browser extensions posing as bitcoin price tickers that are actually stealing your account information. There's also the possibility that you visited a phishing site posing as blockchain.info. Scammers send out phishing emails all the time posing as big named companies with the intention of stealing your login credentials. By design, Blockchain.info never has access to users' accounts or bitcoins. If you keep your password and private key backups secure, then your bitcoins are safe with blockchain.info. Since this information has been compromised, be sure to never use this wallet or addresses contained within it. I'd also highly advise against using the same password again. Sorry again that you had funds stolen from you. That's certainly must be an extremely frustrating experience.

-----
Mandrik | Blockchain & ZeroBlock Support
Facebook: https://www.facebook.com/blockchain Twitter: https://twitter.com/blockchain
Blog: https://blog.blockchain.com/
Appreciate the help? Send me a tip at https://blockchain.info/address/17xmDbmeSMcA5B7eG5ibQZzw2wm6M4bJZm

October 07, 2014 10:58 User photo Clix

This is surprising for me because:
-have antivirus ( eset )
-corporate firewall
-never do a backup of private key

But probably our corporate administrator ( I have no admin account on computer ) is "in" ( I cannot ask him because we have prohibited private activity on office's computer ).

At all , WHY THE LOGS WAS MISSING ?
Is the private key persistent in the firefox ( in cache , or elsewhere ) ?

I do only one "send" transaction ( 2014-06-04 12:22:40 ) from the wallet.

October 08, 2014 08:34 User photo Mandrik Blockchain

Did you enable logging after this happened? Logs are only kept from the time this feature is enabled, not from any time prior. Private keys aren't cached in Firefox. These are stored encrypted in your wallet backup, and these backups are sent to our server. We never have your password, only the encrypted backup.

-----
Mandrik | Blockchain & ZeroBlock Support
Facebook: https://www.facebook.com/blockchain Twitter: https://twitter.com/blockchain
Blog: https://blog.blockchain.com/
Appreciate the help? Send me a tip at https://blockchain.info/address/17xmDbmeSMcA5B7eG5ibQZzw2wm6M4bJZm

October 08, 2014 09:06 User photo Clix

Of course , logging was enabled before theft ( I reported it also on github ).

I still have no idea , how theft is possible because:
-private key was never downloaded to my computer
-no one was logged on to wallet ( missing logs )

October 13, 2014 07:59 User photo Clix

Because no one work on my issue on Github , I will look for another ( more secure ) online wallet :-(

October 20, 2014 07:59

Screen_shot_2013-10-29_at_3.32.43_pmMandrik is assigned to your request.

Priority

Wallet Identifier

2d5670fa-bea4-ad68-68db-a372ffef96ea

walletsk commented 9 years ago

I think , this issue is NOT SOLVED and should be reopened !

walletsk commented 9 years ago

Amazing ! Even if I discontinue the wallet , suspicious logon appears : 2015-11-06 02:48:03 viewed login page 222.124.22.19 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/46.0.2490.80 Safari/537.36

ISP: Pt. Telekomunikasi Indonesia City: Salatiga