Save your Relationship: Cyber Intrusion to Your Personal Life

Rakesh Krishnan
7 min readJul 26, 2020

Hacking Services are always a hot topic among Non-Tech Groups, as they do not comprehend the fact that though there are some legit services available, most of them are proved to be a larger scam unit. Without doing much background checks about the advertised “Hacking Service” vendors, people get blindfolded by the Reviews, Images as Proofs, Successful Client Conversations etc presented by the “Hackers”; which can be easily manipulated and present before their client in order to defraud them in the chain of vicious business deal.

Interesting plot which often gets leveraged by such Scamsters is by offering “Spying on Partners” which is a common ground for anyone to land up due to the concept of Infidelity.

Image Credit: Queen of Eagles | Source: Deviant Art

After the massive success of dating sites like Ashley Madison (124M Visitors per month), Zoosk, Match and many more, the online community is clearly striving towards this trend by adopting it to their personal life, hence re-defining their existing relationship/marriage.

Even there are dedicated apps like Gleeden which are purely targeting people to have an affair outside their existing relationship.

It is an undeniable fact that whenever any new habit gets formed in the online community, the same would give Equal Room Space (or more) to the Bad Actors/Attackers to exploit the same.

Yes! You are waving a Green Flag to an Uninvited Guest to your life — in the form of SCAMMERS (in this article)!!!

One of the most commonly discussed questions is Hey, Do you know Hacking? I want to spy on my partner! This is a perfect pitch-in for the scammers as so called “Hackers”.

We are going to uncover such a Massive Scam where a Scamster who had made more than ~$27,000 (20 Lakhs INR) within a span of 9 months without any deliverables.

Scamster Advertisement

This is an advertisement being propagated on various popular Social Discussion platforms such as Quora, Reddit and several other Review Platforms (would be covered in detail).

MODUS OPERANDI OF SCAMSTER

Targeting right audience from the Social Networking Platforms is the initial step adopted by the fraudster. For this, they may keep a continuous watch on channels like Relationship Advise, Cheating Stories and other like-minded groups and offer Hacking Services.

Fraduster’s Smart Pitch-In

By self boasting fraudulent services on various platforms, at least a small percentage of Netizens would fall for the bait.

Hence, the Scamster would focus more on uncovered platforms and would also do a background work of self-boasting in order to gain more traction.

From the above information, following Identities of QueenHacker112 can be deduced:-

Quora: https://www.quora.com/profile/Dave-Will-23
Reddit: https://www.reddit.com/user/jennyy1303/(Active in Sub: Cheating Stories)
Email: queenhacker112@gmail.com
Target: Relationship/Couples
Phone #: +1 518 323 9503

DELVING DEEP

By doing a plain check on the email address queenhacker112@gmail.com, the following scam report was found.

Spotted among Fake Hackers

This is the initial checkpoint where we get to know about the maliciousness of the fraudster. Of-course, we cannot judge this with a single instance. Hence we would further go deep.

Upon investigating further, another profile popped up with the name “Cryptospecialist112", targeting the Crypto Community. The comment was spotted on a popular review platform named Trustpilot — A Danish Consumer Review Website.

Comment on Nuvoo: A Cloud Mining Service on TrustPilot

From this, we came to know the following details.

Name: Mr. Wang Shu
Email: cryptospecialist112@gmail.com
Target: Crypto Community
Phone #: +1 518 323 9503

Fictional Character from Mr.Robot (Source: Fandom)

Now, we know why Actor had picked that name! ;-)

On further checks with the extrapolated facts, a 3rd Identity sprung up with the name “WangHackingFirm”, giving a professional naming convention for the newbies/inexperienced eyes to believe it as a part of a greater firm at the initial glance.

From the above complaint following information can be brought to the notice that the person is also targeting senior citizens by luring them to find the missing personals. It is also notable that the scammer had demanded an amount frequently, may be by giving doltish reasons on an ad-hoc basis to extort. This would lead to a successful extortion by the scammer.

Name: Mr. Wang Shu
Email: wanghackingfirm@gmail.com
Target: Senior Citizen — Stolen/Lost Requests
Phone #: +1 518 323 9503

By checking the Records of Public Abusal/Complaint platforms, we would get more information about the scammer, once our checkpoints are confirmed. One such evidence was from the Bitcoin Community where we got the bitcoin address of the Scammer, which is a breakthrough in our case in order to map the financial assets of the Scammer.

Scammer Exposed with Bitcoin Wallet Address

A user had flagged the email address (QueenHacker112) as Scam. Now, we know the user get trapped to which Genre by knowing the email address.

BITCOIN ADDRESS INSPECTION

The Bitcoin Address 3JhF4mwUWFMXXZdxxJyK6WCd14BiiUoywD is very well active and the transactions are still hitting the same bitcoin wallet.

Wallet Transaction of Scammer

This indicates that the wallet is well active and in a functional state and the Scamster has been successfully targeting the right audiences.

Wallet History of Scammer

On analyzing the Wallet Activities of Scamster, following pointers are observed.

Bitcoin Activity Chart of Scammer

Incoming TX: The amount paid by the people requesting the “Scam” service
Outgoing TX: The Transaction moved/cashed out by the scammer

On analyzing the chart, it is found that the Scammer/Wallet is most active on Saturday, moving his fund to another wallet or cashing out directly. This activity is pointing towards the highest activity being recorded at midnight.

It is also found that the address 3JhF4mwUWFMXXZdxxJyK6WCd14BiiUoywD belongs to Paxful Account (Type: Wallet B) — A prominent platform to buy Cryptocurrency online.

This points to the fact that there are many innocents out there paying this scammer, paying the amount to a Pseudo Identity on the Internet.

Note:- We can track the activity of Bitcoin Movement across the Blockchain Network, but would not be focusing on them as our prime focus is to tail the operational activities of the Scammer. If you are really interested, here you can refer my article here where I had given a brief on Follow The Rabbit Approach — to track the Crypto.

HIDING BEHIND SPY APPS REVIEWS: DISGUISING AS A HACKER

One of the smartest approaches adopted by the scammer is by advertising his service on the review section of genuine Spy Applications out there in the market — hence stealing the traction by shouldering on the Apps Review.

One such review is:-

Found in Reviews.io

This is just an example of one such review comment of app “SpyPhoneTap” on the review platform named Review.io

Upon drilling down, it is found that the scammer had made self-promotion on behalf of following apps:-

BlurSPY
SpyFone
OneSpy
Spyzie
SpyFu
SpyPhoneTap
SpyFu
AppSpy

These are a couple of apps where the Scamster had targeted to boost the traction to his business. Some of the regular used sites by the Scammer to gain traction are:-

Quora.com
Reddit.com
Mamma.com
Reviews.io
Trustpilot.com
Bark.com

There may be many more sites where Scamster is using to reach a wider audience, but the above mentioned platforms are vigorously used (ATTOW).

SCAMSTER CARD

Name Used: Wang Shu
Emails: queenhacker112@gmail.com
cryptospecialist112@gmail.com
wanghackingfirm@gmail.com
Phone: +1 518 323 9503
Targeted Audience: Relationship/Couples, Crypto Enthusiasts, Senior Citizens
BTC Address: 3JhF4mwUWFMXXZdxxJyK6WCd14BiiUoywD
Initial Recorded Activity: 15th October, 2019
Received Amount: 26,721.12 USD in 9 months (ATTOW)
Wallet: Paxful Wallet B

This is just an example of a single service uncovered in the Scam Arena, as there are many Cyber Extortion Campaigns being kickstarted on various corners of the CyberSpace effortlessly on a regular basis.

KEY-INTAKES

>>If you have any trust issues with your partner, communicate it directly
>>Relying on a 3rd party would affect both relationship and financial stability
>>Do a thorough Background Check on the services offered (not recommended)
>>In case of subscription of any services, always follow ESCROW systems for payment
>>Not to rely on Cloud Mining, Bitcoin Doubling services (unless there is a clarity)

USEFUL LINKS

https://www.besthackingservice.com/
https://scamhackerslist.com/fake-recovery-team-list/
https://cellphonehackreview.com/unverified-hackers-list/
https://www.bitcoinabuse.com/

Have been listening to this Tamil Track on the loop while drafting this article. Thank you Psychomantra!

Note:- The Article is purely an Individual Research and is not subjected to be used/published anywhere without the Author’s consent.

--

--

Rakesh Krishnan

Independent Security Researcher and Threat Analyst. Often sheds light on Dark Web. Regular contributor to Infosec Community.