Got a scam email with my password to this site

Help Support House Repair Talk:

Flyover

Trying not to screw things up worse
Joined
Jan 6, 2017
Messages
432
Reaction score
279
Location
Oh Hah
I received one of those extortionary scam emails about 45 minutes ago. It's one of the ones that starts like this:


Screen Shot 2020-04-10 at 15.21.35.png



...and so on. Hidden behind that black rectangle is the password I used for this site until a few minutes ago, and this is the only site (I can think of) that I use it for.

Eventually in that email he says I need to send him like $2k in bitcoin to keep him from sending porn videos to all my Facebook and FB Messenger contacts, which is a well-known scam. I don't use either of those sites and it's obviously a scam so I'm not worried. Still, it was a bit alarming to see him repeat my password back to me.

I immediately changed my password here. Maybe it's too late, but I'd suggest everybody do this real quick.
 

Angie

Administrator
Staff member
Admin
Moderator
Joined
Jul 29, 2016
Messages
514
Reaction score
73
I am not sure how they got your password, and I'm making sure the site is safe by having the server tech check things out. I know they keep it pretty darn secure on the servers, so I'm expecting this to be something else. But, it never hurts to change a password every 90 to 180 days. Even if it is a pain.
 

Angie

Administrator
Staff member
Admin
Moderator
Joined
Jul 29, 2016
Messages
514
Reaction score
73
Nothing was taken via our server or this site. I was given this link so you can check possible breaches that could have leaked your password in the past .



 

bud16415

Fixer Upper
Staff member
Admin
Moderator
Joined
Feb 5, 2013
Messages
5,518
Reaction score
1,960
Location
Erie, PA
I’m far from an expert but if your computer or phone stores your password so you don’t have to log in with it each time that is likely where they came up with it.

I have been going to a totally legit hot tub forum for years and just this week my protection software tells me it is high danger and to change my password. I don’t know how this all works but it seems they are trying to plant something on your device to find your stored PW info.
 

Angie

Administrator
Staff member
Admin
Moderator
Joined
Jul 29, 2016
Messages
514
Reaction score
73
I had to deny someone trying to get my gmail password last week. They were from Vietnam. Trying to reset it. Now I have double security on it.
 

Flyover

Trying not to screw things up worse
Joined
Jan 6, 2017
Messages
432
Reaction score
279
Location
Oh Hah
I use a flip phone and I keep my computer browser on "private" mode so I have to enter my passwords every time I quit and reopen. My passwords aren't stored anywhere.

I just checked that website you linked and it looks like my data was included in several breaches from years ago, all on sites I no longer use and where no other personal data (as far as I can recall) was stored. It's possible I used the same password on some of those sites, so that probably explains the email I got.
 

Angie

Administrator
Staff member
Admin
Moderator
Joined
Jul 29, 2016
Messages
514
Reaction score
73
Sure glad to figure out what it may have been. We try very hard to keep the forums secure via keeping the server/s secure.
 

ajaynejr

Active Member
Joined
Jan 27, 2011
Messages
26
Reaction score
4
You should not click anything inside that email.

Better yet, close down the browser (Safari, Firefox, Edge, etc.) , and wait 30 seconds before restarting it.

Another new spam and hacking threat. Or is it an old spam and hacking threat? You get an email from the Mailer Daemon or the Postmaster saying Unable to deliver your email or Unknown recipient or something like that. You open up the message and it says click here to see the details. Don't click it. This is not an error message or a message from the postmaster. It is a brand new piece of spam and clicking it can bring malware or a virus into your computer.
 

havasu

Administrator
Staff member
Admin
Moderator
Supporting Member
Joined
May 20, 2010
Messages
4,090
Reaction score
125
So are you saying the password you use for this site was used as a intro for spam? Did you use this same password anywhere else?
The reason I ask is because as an admin here, I have access to most info, but never your password. I can only generate a new password, or provide help on how to reset your password.
 

Latest posts

Top