ECONOMY & WORK
MONEY 101
NEWS
PERSONAL FINANCE
NET WORTH
About Us Contact Us Privacy Policy Terms of Use DMCA Opt-out of personalized ads
© Copyright 2023 Market Realist. Market Realist is a registered trademark. All Rights Reserved. People may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.
MARKETREALIST.COM / NEWS

What Is The Telekopye Toolkit Scam On Telegram and How To Be Safe?

Telekopye operates as a bot that helps scammers create phishing websites from predefined templates, then generate and send phishing emails and SMS, etc.
PUBLISHED NOV 30, 2023
Telegram messaging app | Getty Images | Photo by Carl Court
Telegram messaging app | Getty Images | Photo by Carl Court

Whether it's electronics, clothes or groceries, online shoppers are always hunting for better deals. For this, people often turn to unconventional platforms that offer or post about unbelievable deals. Unfortunately, this habit is empowering scammers to dupe people. Scammers are using a Telekopye toolkit to dupe individuals with limited technical expertise, an August 2023 report by ESET revealed. The toolkit is implemented on Telegram, a popular messaging and information-sharing platform that has become popular for the use of bots that provide services. It helps scammers set up a Telegram bot that scams people.



 

Telekopye operates as a bot that helps scammers create phishing websites from predefined templates, then generate and send phishing emails and SMS, etc. The toolkit has been uploaded to a platform called VirusTotal multiple times, primarily from Russia and Ukraine. 

The toolkit offers a plethora of different functionalities that scammers can use to create QR codes, and fake screenshots and even store victim data, which usually includes card details or email addresses on a disk where the bot is run.

Several versions of the toolkit have been discovered by researchers, suggesting its continuous development. To identify the scammers, ESET has assigned them the name of “Neanderthals”.

Research reveals that scammers are recruited via advertisements seen across different online channels, mainly in underground forums. Interested people need to just complete an application form and answer key questions about their previous experience in this kind of work. They then join a Telegram group where they are communicated the rules and manuals. The transaction logs are stored in a different channel. Experienced members approve recruits and all of them have relevant ranks.

The Telekopye scam primarily targets Russian online marketplaces like YULA or OLX. However, the recent finding has indicated that non-Russian targets, including eBay, Sbazar, Jófogás, and BlaBlaCar are also being targeted.

There are three ways in which the scam unfolds. The first is the “Seller Scam” in which attackers pose as sellers and entice users into purchasing items that don’t exist. The scammers lure unsuspecting customers to make an advance online payment.

Photo illustration of a spam 'Phishing' email | Getty Images | Photo by Peter Dazeley
Photo illustration of a spam 'Phishing' email | Getty Images | Photo by Peter Dazeley

This is usually carried out through a fake phishing website link, which appears as a legitimate payment portal. Ultimately, the website steals the victim’s banking credentials or credit card details and transfers the data to the scammers along with stealing money.

The second type of scam is the “Buyer Scam” in which fraudsters pose as buyers. This type of scam involves targeting victims after comprehensive research. In this scam, the criminals pose as buyers claiming to have paid for a product of a seller. They also share a Telekopye Toolkit-created SMS or email containing a link to a phishing website that claims to have proof of the payment. When the victim clicks on the malicious link, he/she faces the same fate as the victims of the seller scam.

The third type of scam is the “Refund Scam” where the scammers pose as companies offering refunds to customers. The catch is, the refund is shared with customers who never bought anything from the company. Thus, the greedy victims who try to claim the non-existent refund are lured with a link to the fake website to get the amount. Upon clicking, they too end up risking/losing critical financial information or money. 

Representative image of a person making a credit card payment | Pexels | Photo by Mikhail Nilov
Representative image of a person making a credit card payment | Pexels | Photo by Mikhail Nilov

People should avoid entertaining unexpected messages and links from unknown sources should be reported on Telegram. Personal information should never be shared with a Telegram bot and files should be downloaded only from trusted bots. It is advised to keep the Telegram app up to date to receive security updates regularly.

 A close-up view of the Telegram messaging app seen on a smart phone | Getty Images | Photo by Carl Court
A close-up view of the Telegram messaging app seen on a smart phone | Getty Images | Photo by Carl Court
MORE ON MARKET REALIST
The player, Catrice Sandt, nearly blew the Bonus Round puzzle by saying too many words in the end.
2 hours ago
The co-founders of Nature's Wild Berry left the Sharks in shock with their miraculous product.
4 hours ago
The contestant named Whitney could barely control her emotions as she celebrated with Ryan Seacrest.
7 hours ago
The player named Kathy Young missed out on the Showcase Showdown as she had to leave.
1 day ago
Harrison closed a mega deal by scooping up three post cards for the price of one.
1 day ago
The guest who brought his father's prized possesion, had already made up his mind.
1 day ago
Harvey got a genius solution to avoid asking an awkward question to Carson Kressley's family member.
2 days ago
The player could barely control her excitement as she had a near-perfect game on the show.
2 days ago
Harrison knew it was too good of a collection to let go, and he decided to raise the stakes.
3 days ago
The guest who had little no idea about his family heirloom was shocked to know its significance.
3 days ago
Despite making a higher than usual offer, Harrison failed to close the deal.
3 days ago
The guest regretted that she wouldn't be able to keep the highly valued item in her home anymore.
3 days ago
They also triggered a showdown between Mark Cuban and Daniel Lubetsky before closing the deal.
4 days ago
As Heather took a second to solve the final puzzle, Seacrest admitted she made it look easy.
4 days ago
Carey suffered a similar snafu a few months ago while playing the same game of 'Bullseye'.
5 days ago
Fans also share some tips that could've helped Bain win the bonus round but it was too late.
5 days ago
Emily Croke coincidentally got the question related to her great-great aunt, Emily Folger.
5 days ago
Luckily for the veteran host, no one in the studio caught the mistake on time.
5 days ago
The executive producer of the show, Michael Davies later apologized for the spoiled show.
5 days ago
Even the seasoned expert was stumped by the unusual subject of the painting.
5 days ago