The Rolex Forums   The Rolex Watch

ROLEXROLEXROLEXROLEXROLEXROLEXROLEXROLEXROLEXROLEXROLEXROLEX


Go Back   Rolex Forums - Rolex Watch Forum > Classifieds > WatchOut!!!

Reply
 
Thread Tools Display Modes
Old 12 June 2020, 06:11 AM   #31
Avav1
"TRF" Member
 
Avav1's Avatar
 
Join Date: Mar 2018
Real Name: Anthony
Location: Ny
Posts: 295
Same here. Thanks for the heads up.
Avav1 is offline   Reply With Quote
Old 13 June 2020, 01:25 AM   #32
Beauregard
"TRF" Member
 
Beauregard's Avatar
 
Join Date: May 2016
Real Name: Beau
Location: Avila Beach, CA
Watch: Rolex 116719BLRO
Posts: 971
FYI he just trolled me with a fake "New Private Message at Rolex Forums" email. I realized the font looked wrong so I was wary, sure enough- trolling for login and password.

This bastard is persistent.
__________________
I am the milkman of human kindness.
Beauregard is offline   Reply With Quote
Old 13 June 2020, 01:45 AM   #33
Spartan36
2024 Pledge Member
 
Join Date: Feb 2018
Location: USA
Posts: 67
Quote:
Originally Posted by Beauregard View Post
FYI he just trolled me with a fake "New Private Message at Rolex Forums" email. I realized the font looked wrong so I was wary, sure enough- trolling for login and password.

This bastard is persistent.
Was the PM from Lexflana ? Because I got that fake email too. But lexflana is a member here. Maybe their account too is compromised.
Spartan36 is offline   Reply With Quote
Old 13 June 2020, 02:24 AM   #34
Beauregard
"TRF" Member
 
Beauregard's Avatar
 
Join Date: May 2016
Real Name: Beau
Location: Avila Beach, CA
Watch: Rolex 116719BLRO
Posts: 971
Quote:
Originally Posted by Spartan36 View Post
Was the PM from Lexflana ? Because I got that fake email too. But lexflana is a member here. Maybe their account too is compromised.
Yes, username lexflana. I should have included that in my post. Thanks.
__________________
I am the milkman of human kindness.
Beauregard is offline   Reply With Quote
Old 13 June 2020, 02:34 AM   #35
bund
"TRF" Member
 
Join Date: Sep 2017
Location: US
Posts: 468
Quote:
Originally Posted by Beauregard View Post
Yes, username lexflana. I should have included that in my post. Thanks.


Got the same email .


Sent from my iPhone using Tapatalk
bund is offline   Reply With Quote
Old 13 June 2020, 02:35 AM   #36
AJSM
2024 Pledge Member
 
AJSM's Avatar
 
Join Date: May 2011
Location: CA
Posts: 604
same here!

100% its a fake link!!!

I got the same one!!
AJSM is offline   Reply With Quote
Old 13 June 2020, 05:32 AM   #37
Chiboy
"TRF" Member
 
Chiboy's Avatar
 
Join Date: Aug 2016
Location: Chicago
Watch: Daytona
Posts: 5,380
Quote:
Originally Posted by 77T View Post
WARNING TO MEMBERS DO NOT CLICK THAT LINK

Since it’s been more than an hour, you can’t edit it. I’ve alerted the Mods to remove it.
Just for my own edification (I didn't click on the link), can your account be compromised just by clicking on a link or do you have to subsequently submit username and pw to "log in" and that's where the problem is?

If it's the latter, why not just use a password app like LastPass, which will not be confused by a web address that looks somewhat like, but is different from, a site you visit?
__________________
Datejust w/black Tapestry dial (1985) / Daytona (2016)
Chiboy is offline   Reply With Quote
Old 13 June 2020, 05:53 AM   #38
77T
2024 ROLEX DATEJUST41 Pledge Member
 
77T's Avatar
 
Join Date: Dec 2010
Real Name: PaulG
Location: Georgia
Posts: 40,687
Quote:
Originally Posted by Chiboy View Post
Just for my own edification (I didn't click on the link), can your account be compromised just by clicking on a link or do you have to subsequently submit username and pw to "log in" and that's where the problem is?



If it's the latter, why not just use a password app like LastPass, which will not be confused by a web address that looks somewhat like, but is different from, a site you visit?


For the phishing methods we are currently discussing, you would need to enter data. But there are other sinister methods that can be harmful.

For example, images can carry a lot of data that’s normally invisible to your eye. Like the type of metadata associated with Facebook and Instagram pictures. That, though, is nothing compared to what sophisticated threat actors use to craft images that deliver malicious code or exfiltrate user data.

A previous threat was thwarted by a member whose password manager noted the anomalous clone of TRF.

Here is the catch - how will you know, in advance of clicking an embedded link, that it was crafted by an idiot scammer or a sophisticated threat actor?

Even a simple keystroke logger would be enough to compromise your TRF credentials and any other website with simple password sign-on.

I’m saying don’t click on links for more reasons than our Moderators warnings - but I would hope their admonitions were enough.


Sent from my iPhone using Tapatalk Pro
__________________


Does anyone really know what time it is?
77T is offline   Reply With Quote
Old 13 June 2020, 05:57 AM   #39
Chiboy
"TRF" Member
 
Chiboy's Avatar
 
Join Date: Aug 2016
Location: Chicago
Watch: Daytona
Posts: 5,380
Quote:
Originally Posted by 77T View Post
For the phishing methods we are currently discussing, you would need to enter data. But there are other sinister methods that can be harmful.

For example, images can carry a lot of data that’s normally invisible to your eye. Like the type of metadata associated with Facebook and Instagram pictures. That, though, is nothing compared to what sophisticated threat actors use to craft images that deliver malicious code or exfiltrate user data.

A previous threat was thwarted by a member whose password manager noted the anomalous clone of TRF.

Here is the catch - how will you know, in advance of clicking an embedded link, that it was crafted by an idiot scammer or a sophisticated threat actor?

Even a simple keystroke logger would be enough to compromise your TRF credentials and any other website with simple password sign-on.

I’m saying don’t click on links for more reasons than our Moderators warnings - but I would hope their admonitions were enough.
Thank you. I don't. I do tend to hover over a link, especially in one of those phishing emails, to see if the real webpage is the one being shown in the email or something that's completely different. It's usually the latter. And that's when the email gets deleted.
__________________
Datejust w/black Tapestry dial (1985) / Daytona (2016)
Chiboy is offline   Reply With Quote
Old 13 June 2020, 06:01 AM   #40
ZOOK
2024 ROLEX DATEJUST41 Pledge Member
 
ZOOK's Avatar
 
Join Date: Sep 2017
Real Name: Dave
Location: PDX
Posts: 8,874
Never mind. Paul, 77T posted before me.....
ZOOK is online now   Reply With Quote
Old 13 June 2020, 06:25 AM   #41
77T
2024 ROLEX DATEJUST41 Pledge Member
 
77T's Avatar
 
Join Date: Dec 2010
Real Name: PaulG
Location: Georgia
Posts: 40,687
I forgot to add my opinion that if we could use 2-factor authentication on TRF, it would save many unwary buyers from falling for a scammer who hijacked a legitimate seller account.

This could be mandatory to sell on TRF to better secure the seller accounts.


Sent from my iPhone using Tapatalk Pro
__________________


Does anyone really know what time it is?
77T is offline   Reply With Quote
Old 13 June 2020, 07:34 AM   #42
Avav1
"TRF" Member
 
Avav1's Avatar
 
Join Date: Mar 2018
Real Name: Anthony
Location: Ny
Posts: 295
Got another one today from “lexflana“. Keep on the lookout for this.
Avav1 is offline   Reply With Quote
Old 13 June 2020, 10:02 AM   #43
swaini3
"TRF" Member
 
Join Date: Jan 2016
Real Name: Mo
Location: Dubai
Watch: 1675 GMT, DRSD
Posts: 1,432
Quote:
Originally Posted by 77T View Post
I forgot to add my opinion that if we could use 2-factor authentication on TRF, it would save many unwary buyers from falling for a scammer who hijacked a legitimate seller account.

This could be mandatory to sell on TRF to better secure the seller accounts.


Sent from my iPhone using Tapatalk Pro
swaini3 is offline   Reply With Quote
Old 13 June 2020, 09:40 PM   #44
VintageVagabound
"TRF" Member
 
VintageVagabound's Avatar
 
Join Date: Sep 2017
Location: Washington, DC
Posts: 568
Quote:
Originally Posted by Beauregard View Post
How do I get law enforcement involved?
I don’t believe any actual crime has occurred. Which is good but federal law enforcement is not going to take interest in trolls trying to get access to your TRF account.
VintageVagabound is offline   Reply With Quote
Old 14 June 2020, 06:15 AM   #45
ZOOK
2024 ROLEX DATEJUST41 Pledge Member
 
ZOOK's Avatar
 
Join Date: Sep 2017
Real Name: Dave
Location: PDX
Posts: 8,874
Quote:
Originally Posted by 77T View Post
I forgot to add my opinion that if we could use 2-factor authentication on TRF, it would save many unwary buyers from falling for a scammer who hijacked a legitimate seller account.

This could be mandatory to sell on TRF to better secure the seller accounts.

Paul, Do you know if vBulletin, the Forum management software TRF rides on supports 2-factor authentication?
ZOOK is online now   Reply With Quote
Old 14 June 2020, 07:05 AM   #46
77T
2024 ROLEX DATEJUST41 Pledge Member
 
77T's Avatar
 
Join Date: Dec 2010
Real Name: PaulG
Location: Georgia
Posts: 40,687
Quote:
Originally Posted by ZOOK View Post
Paul, Do you know if vBulletin, the Forum management software TRF rides on supports 2-factor authentication?


vBulletin 5.3.0 and higher does.


Sent from my iPhone using Tapatalk Pro
__________________


Does anyone really know what time it is?
77T is offline   Reply With Quote
Old 24 June 2020, 12:25 AM   #47
Pongster
"TRF" Member
 
Join Date: Dec 2016
Location: Marikina
Posts: 2,561
Quote:
Originally Posted by 77T View Post
WARNING TO MEMBERS DO NOT CLICK THAT LINK

Since it’s been more than an hour, you can’t edit it. I’ve alerted the Mods to remove it.


Sent from my iPhone using Tapatalk Pro

Got curious. The page would look like this -



The date is still 2016. If not careful, you can really be phished.


Sent from my iPhone using Tapatalk
Pongster is offline   Reply With Quote
Old 24 June 2020, 01:09 AM   #48
77T
2024 ROLEX DATEJUST41 Pledge Member
 
77T's Avatar
 
Join Date: Dec 2010
Real Name: PaulG
Location: Georgia
Posts: 40,687
Quote:
Originally Posted by Pongster View Post
Got curious. The page would look like this -



The date is still 2016. If not careful, you can really be phished.


Sent from my iPhone using Tapatalk


True - but the next phisher will likely wipe the old red ink date line. Most phishing has some little aberration but the recipient often overlooks that.


Sent from my iPhone using Tapatalk Pro
__________________


Does anyone really know what time it is?
77T is offline   Reply With Quote
Old 25 June 2020, 09:33 AM   #49
Willgardner
Banned
 
Join Date: Jun 2020
Real Name: William
Location: NC
Watch: HULK
Posts: 26
Thanks for sharing!
Willgardner is offline   Reply With Quote
Old 21 July 2022, 12:05 AM   #50
drawp28
"TRF" Member
 
Join Date: Oct 2020
Location: N/A
Posts: 47
Apologies for bumping an old thread but can we add alextur840@gmail.com. I got an email notification from TRF but his message never appeared in my private messages.
drawp28 is offline   Reply With Quote
Old 21 July 2022, 12:13 AM   #51
2bigalow
"TRF" Member
 
Join Date: Mar 2019
Location: OC/Ca
Posts: 320
Quote:
Originally Posted by drawp28 View Post
Apologies for bumping an old thread but can we add alextur840@gmail.com. I got an email notification from TRF but his message never appeared in my private messages.
Yup, same here. Reported to the moderators, so they might have already banned him/her and removed the message.
2bigalow is offline   Reply With Quote
Old 21 July 2022, 04:04 AM   #52
cornerstore
"TRF" Member
 
Join Date: Sep 2009
Location: Canada
Posts: 3,997
Quote:
Originally Posted by drawp28 View Post
Apologies for bumping an old thread but can we add alextur840@gmail.com. I got an email notification from TRF but his message never appeared in my private messages.
Also got one today from same username. Not in in PM box only in my email. So how did he get my email address is my question? Have PM’d user to see if he’s aware.
cornerstore is offline   Reply With Quote
Old 21 July 2022, 07:07 AM   #53
cornerstore
"TRF" Member
 
Join Date: Sep 2009
Location: Canada
Posts: 3,997
Quote:
Originally Posted by cornerstore View Post
Also got one today from same username. Not in in PM box only in my email. So how did he get my email address is my question? Have PM’d user to see if he’s aware.
Spoke with the member, says it’s not him who contacted me. Thanks for the heads up posts earlier today. Old thread but informative.
cornerstore is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Coronet

Takuya Watches

Bobs Watches

Asset Appeal

My Watch LLC

OCWatches

DavidSW Watches


*Banners Of The Month*
This space is provided to horological resources.





Copyright ©2004-2024, The Rolex Forums. All Rights Reserved.

ROLEXROLEXROLEXROLEXROLEXROLEXROLEXROLEXROLEXROLEXROLEXROLEX

Rolex is a registered trademark of ROLEX USA. The Rolex Forums is not affiliated with ROLEX USA in any way.