FacebookTwitterLinkedIn

Avoid getting scammed by the fake "SAFEMOON Giveaway"

Also Known As: SAFEMOON Giveaway scam website
Damage level: Medium

What is the "SAFEMOON Giveaway" scam?

"SAFEMOON Giveaway" refers to a scam promoted on various deceptive sites. This scheme promises five times the return on the SafeMoon cryptocurrency users transfer to it.

To elaborate, the scam requests users to invest at least 500,000,000 in SafeMoon by transferring it to the listed cryptowallet address, and states that they will receive five times the amount in return. It must be emphasized that the "SAFEMOON Giveaway" is fake.

Hence, victims of this scam will receive nothing in return and only lose what they transferred to the scammers. Deceptive/Scam websites are usually accessed unintentionally; most users enter them via mistyped URLs, redirects caused by intrusive advertisements, or have the pages force-opened by installed PUAs (Potentially Unwanted Applications).

SAFEMOON Giveaway scam

The "SAFEMOON Giveaway" scam states that it is an effort to encourage the mass adoption of cryptocurrency. The fake giveaway's fund pool is supposedly 12,000,000,000,000 in SafeMoon.

This sum is worth approximately 60 million USD at the current exchange rate (note, the conversion may be inaccurate due to constant exchange rate fluctuation). To participate, the scheme states that users must transfer at least 500,000,000 in SafeMoon cryptocurrency (approx. 2500 USD) to the provided cryptowallet address.

The scam promises that what users invest will be immediately returned in five times the amount (e.g., 500,000,000 will allegedly return as 2,500,000,000,000). Additionally, the scheme claims that depending on how much users transfer - there may also be a 5-50% bonus.

The scam informs users that they can only participate once. As mentioned in the introduction, "SAFEMOON Giveaway" is a scam; therefore, by trusting it - users will experience financial loss and possibly other serious issues as well.

Unwanted applications can force-open various untrustworthy, deceptive, and malicious websites (e.g., ones running the "SAFEMOON Giveaway" scam). However, PUAs can have additional/other harmful abilities. Adware-types run intrusive advertisement campaigns.

The delivered ads diminish browsing quality and are considered to be dangerous. When clicked on, intrusive advertisements redirect to unreliable/malicious sites, and some can stealthily download/install software.

Browser hijackers are another type of PUAs. They operate by promoting (causing redirects to) fake search engines through modifications to browser settings. The promoted search engines are seldom able to provide search results, so they redirect to Google, Bing, Yahoo, and other legitimate ones.

Furthermore, most PUAs can track data. They can record browsing activity (URLs visited, pages viewed, search queries typed, etc.) and collect vulnerable information extracted from it (IP addresses, geolocations, and personally identifiable details). This vulnerable data is then shared with and/or sold to third-parties (potentially, cyber criminals).

In summary, the presence of unwanted software on devices can lead to system infections, severe privacy issues, financial losses, and even identity theft. To ensure device integrity and user safety, all dubious applications and browser extensions/plug-ins must be removed immediately upon detection.

Threat Summary:
Name SAFEMOON Giveaway scam website
Threat Type Phishing, Scam, Social Engineering, Fraud
Fake Claim Scam claims users can get five times the amount of SafeMoon cryptocurrency that they invest.
Related Domains safemoonreward[.]xyz
Detection Names (safemoonreward[.]xyz) BitDefender (Malware), Certego (Malicious), Fortinet (Phishing), Netcraft (Malicious), Webroot (Malicious), Full List Of Detections (VirusTotal)
Serving IP Address (safemoonreward[.]xyz) 198.54.121.237
Scammers' Cryptowallet Address 0x66C72ef5f1740821d4C6d5c04e6fF9D4Ea60Cf2E (SafeMoon)
Symptoms Fake error messages, fake system warnings, pop-up errors, hoax computer scan.
Distribution methods Compromised websites, rogue online pop-up ads, potentially unwanted applications.
Damage Loss of sensitive private information, monetary loss, identity theft, possible malware infections.
Malware Removal (Windows)

To eliminate possible malware infections, scan your computer with legitimate antivirus software. Our security researchers recommend using Combo Cleaner.
▼ Download Combo Cleaner
To use full-featured product, you have to purchase a license for Combo Cleaner. 7 days free trial available. Combo Cleaner is owned and operated by Rcs Lt, the parent company of PCRisk.com read more.

"Doge Giveaway", "BTC giveaway", "Binance giveaway", and "LiteCoin Giveaway" are some examples of scams similar to "SAFEMOON Giveaway". The Internet is full of misleading, deceptive, and malicious content.

Popular scam models are: fake giveaways, hoax lotteries, ludicrous offers and deals, warnings about the device being infected or at risk, alerts that a piece of software is outdated or missing, and so forth.

Regardless of what online schemes offer, promise, request, or demand, the end-goal is the same - to generate revenue at user expense. Due to how widespread scams are on the Web, it is strongly advised to exercise caution when browsing.

How did potentially unwanted applications install on my computer?

PUAs can have "official" promotional/download webpages. However, these applications are more commonly downloaded/installed together with other programs.

This false marketing technique of packing regular programs with unwanted or malicious additions - is termed "bundling". Rushed download/installation processes (e.g., ignored terms, skipped steps and sections, etc.) increase the risk of inadvertently allowing bundled content into the system.

Intrusive adverts proliferate PUAs as well. Upon being clicked, the ads can execute scripts to make downloads/installations without user permission.

How to avoid installation of potentially unwanted applications?

It is important to research software prior to download/installation and/or purchase. Furthermore, all downloads must be done from official and verified sources.

Untrustworthy download channels, e.g., unofficial and free file-hosting websites, Peer-to-Peer sharing networks, and other third-party downloaders - often offer harmful and/or bundled content. When downloading/installing, it is recommended to read terms, study available options, use the "Custom/Advanced" settings, and opt-out from supplementary apps, tools, features, etc.

Intrusive advertisements appear ordinary and innocuous; however, they redirect to dubious and unreliable sites (e.g., gambling, pornography, adult-dating, and so on). In case of encounters with such ads and/or redirects, the system must be checked and all suspicious applications and browser extensions/plug-ins detected - immediately removed from it.

If your computer is already infected with PUAs, we recommend running a scan with Combo Cleaner Antivirus for Windows to automatically eliminate them.

Text presented in the "SAFEMOON Giveaway" scam:

Join the giveaway


SAFEMOON believes that blockchain and SAFEMOON coin will make the world more fair. To speed up the process of cryptocurrency mass adoption, We decided to run 12,000,000,000,000 SAFEMOON giveaway.

 

To participate you just need to send from 500,000,000 SAFEMOON to 500,000,000,000 SAFEMOON to the contribution address and we will immediately send you back 2,500,000,000 SAFEMOON to 2,500,000,000,000 SAFEMOON (x5 back) to the address you sent it from

 

NOTE: You can do it only one time.

 

For example:

 

If you send 5,000,000,000 SAFEMOON , you will be get 25,000,000,000 SAFEMOON back
If you send 50,000,000,000 SAFEMOON , you will be get 250,000,000,000 SAFEMOON back
If you send 200,000,000,000 SAFEMOON , you will be get 1,000,000,000,000 SAFEMOON back.
If you send 300,000,000,000 SAFEMOON , you will be get 1,500,000,000,000 SAFEMOON back
If you send 400,000,000,000 SAFEMOON , you will be get 2,000,000,000,000 SAFEMOON back
If you send 500,000,000,000 SAFEMOON , you will be get 2,500,000,000,000 SAFEMOON back

 

Contribution Special BONUS:

 

5,000,000,000 SAFEMOON + = 5% BONUS
50,000,000,000 SAFEMOON + = 15% BONUS
200,000,000,000 SAFEMOON + = 20% BONUS
300,000,000,000 SAFEMOON + = 30% BONUS
400,000,000,000 SAFEMOON + = 40% BONUS
500,000,000,000 SAFEMOON + = 50% BONUS

 

Payment Address
You can send SAFEMOON to the following address:

 

Copy Address to Clipboard
Waiting for payment

 

12,000,000,000,000/4,500,000,000,000

 

Last chance
to get your SAFEMOON

 

Instruction
To make a transaction, you can use any wallet or exchange to participate!

 

Once we receive your transaction, the outgoing transaction is processed to your address.

 

Once we receive your transaction, we will immediately send the requested amount back to you.

 

Every address that is sent too late, gets their SAFEMOON immediately sent back.

 

Transactions for Address
0x66C72ef5f1740821d4C6d5c04e6fF9D4Ea60Cf2E

The appearance of "SAFEMOON Giveaway" scam (GIF):

Appearance of SAFEMOON Giveaway scam

Another example of SAFEMOON-themed scam website:

Safemoon giveaway-themed scam website (2021-10-12)

Text presented within:

SafeMoon
Wallet to a Connect
Safemoon Rewards 2021

You are one active users who are lucky to get
1489809405 SAFEMOON ($2500USD)
The SafeMoon Protocol is a community driven, fair launched DeFi Token. Three simple functions
occur during each trade: Reflection, LP Acquisition, and Burn.

Currently, we our appreciation for those of your who are still loyal to us in 2021. We share Rewards 1489809405 (free) for your Wallet.

Copyright © 2021 Safemoon LLC. | All Rights Reserved

Instant automatic malware removal: Manual threat removal might be a lengthy and complicated process that requires advanced computer skills. Combo Cleaner is a professional automatic malware removal tool that is recommended to get rid of malware. Download it by clicking the button below:
▼ DOWNLOAD Combo Cleaner By downloading any software listed on this website you agree to our Privacy Policy and Terms of Use. To use full-featured product, you have to purchase a license for Combo Cleaner. 7 days free trial available. Combo Cleaner is owned and operated by Rcs Lt, the parent company of PCRisk.com read more.

Quick menu:

Removal of potentially unwanted applications:

Windows 11 users:

Accessing Apps and Features in Windows 11

Right-click on the Start icon, select Apps and Features. In the opened window search for the application you want to uninstall, after locating it, click on the three vertical dots and select Uninstall.

Windows 10 users:

Accessing Programs and Features (uninstall) in Windows 8

Right-click in the lower left corner of the screen, in the Quick Access Menu select Control Panel. In the opened window choose Programs and Features.

Windows 7 users:

Accessing Programs and Features (uninstall) in Windows 7

Click Start (Windows Logo at the bottom left corner of your desktop), choose Control Panel. Locate Programs and click Uninstall a program.

macOS (OSX) users:

Uninstall app in OSX (Mac)

Click Finder, in the opened screen select Applications. Drag the app from the Applications folder to the Trash (located in your Dock), then right click the Trash icon and select Empty Trash.

PUAs uninstall via Control Panel

In the uninstall programs window, look for any suspicious/recently-installed applications, select these entries and click "Uninstall" or "Remove".

After uninstalling the potentially unwanted application, scan your computer for any remaining unwanted components or possible malware infections. To scan your computer, use recommended malware removal software.

Remove rogue extensions from Internet browsers:

Video showing how to remove potentially unwanted browser add-ons:

Google Chrome logoRemove malicious extensions from Google Chrome:

Removing rogue extensions from Google Chrome step 1

Click the Chrome menu icon Google Chrome menu icon (at the top right corner of Google Chrome), select "More tools" and click "Extensions". Locate all recently-installed suspicious browser add-ons and remove them.

Removing rogue extensions from Google Chrome step 2

Optional method:

If you continue to have problems with removal of the safemoon giveaway scam website, reset your Google Chrome browser settings. Click the Chrome menu icon Google Chrome menu icon (at the top right corner of Google Chrome) and select Settings. Scroll down to the bottom of the screen. Click the Advanced… link.

Google Chrome settings reset step 1

After scrolling to the bottom of the screen, click the Reset (Restore settings to their original defaults) button.

Google Chrome settings reset step 2

In the opened window, confirm that you wish to reset Google Chrome settings to default by clicking the Reset button.

Google Chrome settings reset step 3

Mozilla Firefox logoRemove malicious plugins from Mozilla Firefox:

Removing rogue extensions from Mozilla Firefox step 1

Click the Firefox menu firefox menu icon (at the top right corner of the main window), select "Add-ons". Click on "Extensions", in the opened window remove all recently-installed suspicious browser plug-ins.

Removing rogue extensions from Mozilla Firefox step 2

Optional method:

Computer users who have problems with safemoon giveaway scam website removal can reset their Mozilla Firefox settings.

Open Mozilla Firefox, at the top right corner of the main window, click the Firefox menu, firefox menu icon in the opened menu, click Help.

Accessing settings (Reset Firefox to default settings step 1)

Select Troubleshooting Information.

Accessing Troubleshooting Information (Reset Firefox to default settings step 2)

In the opened window, click the Refresh Firefox button.

Clicking on Refresh Firefox button (Reset Firefox to default settings step 3)

In the opened window, confirm that you wish to reset Mozilla Firefox settings to default by clicking the Refresh Firefox button.

Confirm your want to reset Firefox settings to default (Reset Firefox to default settings step 4)

safari browser logoRemove malicious extensions from Safari:

removing adware from safari step 1 - accessing preferences

Make sure your Safari browser is active, click Safari menu, and select Preferences....

removing adware from safari step 2 - removing extensions

In the opened window click Extensions, locate any recently installed suspicious extension, select it and click Uninstall.

Optional method:

Make sure your Safari browser is active and click on Safari menu. From the drop down menu select Clear History and Website Data...

resetting safari step 1

In the opened window select all history and click the Clear History button.

resetting safari step 2

Microsoft Edge (Chromium) logoRemove malicious extensions from Microsoft Edge:

Removing adware from Microsoft Edge step 1

Click the Edge menu icon Microsoft Edge (chromium) menu icon (at the upper-right corner of Microsoft Edge), select "Extensions". Locate all recently-installed suspicious browser add-ons and click "Remove" below their names.

Removing adware from Microsoft Edge step 2

Optional method:

If you continue to have problems with removal of the safemoon giveaway scam website, reset your Microsoft Edge browser settings. Click the Edge menu icon Microsoft Edge (chromium) menu icon (at the top right corner of Microsoft Edge) and select Settings.

Microsoft Edge (Chromium) reset step 1

In the opened settings menu select Reset settings.

Microsoft Edge (Chromium) reset step 2

Select Restore settings to their default values. In the opened window, confirm that you wish to reset Microsoft Edge settings to default by clicking the Reset button.

Microsoft Edge (Chromium) reset step 3

  • If this did not help, follow these alternative instructions explaining how to reset the Microsoft Edge browser.

Internet Explorer logoRemove malicious add-ons from Internet Explorer:

Removing rogue extensions from Internet Explorer step 1

Click the "gear" icon Internet Explorer options icon (at the top right corner of Internet Explorer), select "Manage Add-ons". Look for any recently-installed suspicious browser extensions, select these entries and click "Remove".

Removing rogue extensions from Internet Explorer step 2

Optional method:

If you continue to have problems with removal of the safemoon giveaway scam website, reset your Internet Explorer settings to default.

Windows XP users: Click Start, click Run, in the opened window type inetcpl.cpl In the opened window click the Advanced tab, then click Reset.

Resetting Internet Explorer settings to default on Windows XP

Windows Vista and Windows 7 users: Click the Windows logo, in the start search box type inetcpl.cpl and click enter. In the opened window click the Advanced tab, then click Reset.

Resetting Internet Explorer settings to default on Windows 7

Windows 8 users: Open Internet Explorer and click the gear icon. Select Internet Options.

Reseting Internet Explorer settings to default in Windows 8 - accessing

In the opened window, select the Advanced tab.

Resetting Internet Explorer settings to default on Windows 8 - Internet options advanced tab

Click the Reset button.

Resetting Internet Explorer settings to default on Windows 8 - click the Reset button in the Internet options advanced tab

Confirm that you wish to reset Internet Explorer settings to default by clicking the Reset button.

Resetting Internet Explorer settings to default on Windows 8 - confirm settings reset to default by clicking the reset button

Summary:

declining installation of adware while downloading free software sampleCommonly, adware or potentially unwanted applications infiltrate Internet browsers through free software downloads. Note that the safest source for downloading free software is via developers' websites only. To avoid installation of adware, be very attentive when downloading and installing free software. When installing previously-downloaded free programs, choose the custom or advanced installation options – this step will reveal any potentially unwanted applications listed for installation together with your chosen free program.

Removal assistance:
If you are experiencing problems while trying to remove safemoon giveaway scam website from your computer, please ask for assistance in our malware support forum.

Post a comment:
If you have additional information on safemoon giveaway scam website or it's removal please share your knowledge in the comments section below.

Click to post a comment

About the author:

Tomas Meskauskas

Tomas Meskauskas - expert security researcher, professional malware analyst.

I am passionate about computer security and technology. I have an experience of over 10 years working in various companies related to computer technical issue solving and Internet security. I have been working as an author and editor for pcrisk.com since 2010. Follow me on Twitter and LinkedIn to stay informed about the latest online security threats. Contact Tomas Meskauskas.

PCrisk security portal is brought by a company RCS LT. Joined forces of security researchers help educate computer users about the latest online security threats. More information about the company RCS LT.

Our malware removal guides are free. However, if you want to support us you can send us a donation.

About PCrisk

PCrisk logo

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Removal Instructions in other languages
Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

QR Code
SAFEMOON Giveaway scam website QR code
Scan this QR code to have an easy access removal guide of SAFEMOON Giveaway scam website on your mobile device.
We Recommend:

Get rid of Windows malware infections today:

▼ REMOVE IT NOW
Download Combo Cleaner

Platform: Windows

Editors' Rating for Combo Cleaner:
Editors ratingOutstanding!

[Back to Top]

To use full-featured product, you have to purchase a license for Combo Cleaner. 7 days free trial available. Combo Cleaner is owned and operated by Rcs Lt, the parent company of PCRisk.com read more.