HELP alarming transaction on hardware wallet account via malicious smart contract

Cryptocurrency News and Public Mining Pools

HELP alarming transaction on hardware wallet account via malicious smart contract

About 45 minutes ago I received 0 ETH from an unknown address. This seemed odd but could have been an airdrop or something… didn't think much of it. Then approximately 11 minutes later, my account transferred 17 "ETH" (not actual ETH, more below) back out to that unknown wallet. Of note, the outbound 17 ETH are not actual ETH, but they are an ERC20 token at contract address 0x6dB383F99e01D8ad6a1A4Ee5BC8de2F084369f2E which has a name of ETH and is only 6 decimals instead of 18.

Important, the most recent transaction which I executed was back in November and was transferring 17 ETH to a coinbase account. The 0 ETH that I received today came from an account that shares the same first 6 and last 6 addresses as that coinbase account:

Valid transfer to account: 0xa1780A7F08Ec1B0B6aFf4d4F9d2da05192D7D2ab

Unknown 0 ETH sender: 0xa178631b2D55B8825555E1747C33984F0CD7D2ab (fixed)

Here is my account in question: https://etherscan.io/address/0x807155d5e590f04e67BEd71AB02E7bcA829cF9d6

Please note the following transaction: 0 ETH received via txn hash 0xe1ff9aabdc9125e73204bf3e1ba37fcc61441a1b1b71b378a9020a36f30bde11

Please note the following token transfer: 17 "ETH" transferred via txn hash: 0xec8cc807d45ebe9cda0fddd8cff6f5b19daca05f19e4a281cc2c0d23c1570499

As far as I can tell, all of my funds are safe, but this is very stressful. This is a hardware wallet account. It has never been connected to Metamask or any web3 browser. My seed phrase has never been made accessible to a digital device. All other accounts on that hardware wallet appear to be intact and untouched (ETH and other assets).

As far as I can tell the attacker has achieved an address collision (of the first 6 and last 6 digits) and then used this transfer of 0 ETH to my account to initiate some type of transfer.

I was not at a computer during this time and have no idea how this outbound transfer would even be possible. Getting this notification from etherscan scared the ever living shit out of me.

Am alerting the community here for both advice and in case this is something more serious. Any thoughts?

submitted by /u/LevitatingTurtles
[link] [comments]