Thursday, July 2, 2026

Who is Scammer “Đặng Thanh Tùng” (“Tungtata”)?


Introduction I installed “SamFW Tool” v5.4 from Đặng Thanh Tùng, also known as Tungtata. Within hours, my wallet balance dropped to zero. Later, files became corrupted and text documents were destroyed.

Đặng Thanh Tùng (also known as “Tungtata”) is a founder of MiFirm / Phone Info Pro / SamFw / Trạmsạc.app. I am calling him a scammer because of his “SamFW Tool” package (v5.4) contains malicious code.

For years, my crypto wallet was untouched and the wallet remained safely on my computer. After I installed “SamFW Tool” (v5.4), my entire wallet balance was drained. In addition, my data appears to have been wiped: text files were shredded, and multiple files were irrecoverable.

This happened immediately after installing the tool. I believe the tool includes malware or code that injects and runs unwanted actions on the computer. I am currently alone trying to warn others not to install this tool.

I’m not making this up I am a victim and I lost a significant amount. When I tried to seek clarification, the scammer blocked me and told me to go to the police.

scammer_tungtata_pic2.png

I’m asking for help: guidance on how to report this properly, preserve evidence, and protect others from falling victim.

Đặng Thanh Tùng, Tungtata, MiFirm, Phone Info Pro, SamFw, Trạmsạc.app, SamFW Tool v5.4, malware, malicious code, wallet drained, crypto theft, data wiped, file shredding, Trojan, code injection, remote access, scam, fraud, victim, cybercrime, evidence, report, cybersecurity warning

Sunday, June 28, 2026

Hanoi Developer “Tungtata” (Đặng Thanh Tùng) Distributing SamFW Tool Leading to XMR Theft and Device Data Wipe


Introduction SamFW/“SamFW Tool” Malware, Wallet Drain (Feather Wallet), and Modified v5.5.1 Re-upload to Reduce Forensics — Request for Vietnamese Cybercrime Police Contact & Responsible-Party Identification

Hanoi Developer “Tungtata” Cybercrime Case

Cybercrime involving “SamFW” / “SamFW Tool” associated with Hà Nội-based developer Đặng Thanh Tùng (also shown as Tungtata / “tungtata”).

a family member installed “samfw.com” software on Jun 23, 2026, after which approximately 10,000 XMR (about $3 million) were withdrawn from a Feather Wallet and the victim’s computer data was deleted.Incident has been claimed to be linked to the package “samfwtoolsetup_v5.4.zip,” followed by an alleged post-theft removal and replacement of the tool with a revised build labeled “SamFwToolSetup_v5.5.1.zip” to reduce evidence.

scammer_tungtata_samfw_pic2.png

Public materials also reportedly connect the named party to SamFW Global LLC and additional Vietnam technology entities, with multiple online profiles and payment channels tied to the same identity. The case has been reported to several crypto exchanges, and the organizers are requesting community help to collect, preserve, and organize evidence (technical indicators, download/build identifiers, logs, and attribution data) to support a report to Vietnamese police/cybercrime investigators. The goal is to identify responsible parties and provide actionable leads to authorities.

scammer_tungtata_pic2.png

Footer keywords: Tungtata scam, Tungtata fraud, Đặng Thanh Tùng scammer, DangThanhTung fraud, SamFW scam, SamFW Tool malware, samfw trojan, samfw rat, samfw security risk, samfw suspicious software, Feather Wallet XMR theft, XMR withdrawn ~10,000, device data deletion, modified SamFW package v5.5.1, remote access suspected, wallet monitoring suspected, SamFW Global LLC, LeHuy Technology Co., Ltd, Quynh Chi Investment and Technology Co., Ltd, Hanoi cybercrime report, Vietnam crypto scam, Android app com.samfw, MiFirm, Trạmsạc.app

Saturday, June 27, 2026

Security Warning: Avoid SamFW Tools

Security Warning: Avoid SamFW Tools

Exercise extreme caution regarding **SamFW (samfw.com)** and associated tools developed by **Đặng Thanh Tùng (Tungtata)** . Tools contain malicious code, including remote access trojans (RATs) designed to steal cryptocurrency and sensitive user data.

Tungtata_scam.png

We had a significant financial losses and unauthorized system access following the installation of “SamFW Tool.” Given the potential for sophisticated malware, **do not download or run any software from this site.** If you have already installed these tools, immediately isolate your machine, move your funds to a new, secure wallet, and perform a full system wipe.

After installing samfwtoolsetup_v5.4.zip, the scammer tungtata stole the funds from the Feather Wallet. After the theft, they removed and modified the original tool package to reduce evidence. The download is now replaced with a revised version labeled SamFwToolSetup_v5.5.1.zip.

After the scam, the photo of the incident was taken on a phone. Later, the scammer updated their website and removed that specific version of the tool.

scammer2pp.png

Tungtata Samfw.com scam | don’t install any tool from that site. They contain trojans.

We’re looking for a Vietnamese translator to translate this scam thread.

In addition reward, the translator should help us to contact the appropriate Vietnamese authorities to report this scam.

The scammer is Đặng Thanh Tùng (also shown as Tungtata / Đặng Thanh Tùng), based in Hanoi. He uses RAT (malicious remote access tool) by injecting his own tool to defraud victims. What he does is that he doesn’t always deploy ratted trojan tools. Instead, he shares them only in certain updates, and then removes them afterward scam. In our case, after he stole our money, he returned to the site to post an updated version of the tool and removed the virus one.

scammer2pp.png

We plan to report this scam case to the relevant authorities, and we’d like additional suggestions from other users on Bitcointalk. We also need help from users in Vietnam to assist with outreach and coordination related to this scam.

Cong An (Vietnam Police) - Trình báo lừa đảo trực tuyến tới Công an.
Interpol
VNCERT/CC - Trung tâm ứng cứu khẩn cấp máy tính Việt Nam.
econsumer.gov

Published at:
https://github.com/9623813/tungtata_scammer
https://96238132834.wixsite.com/samfwscam
https://www.tumblr.com/samfwtoolscam
https://github.com/tungtata/SamFw-Tool-Update/issues/1
https://github.com/chenxiaolong/BasicSync/issues/178
https://www.trustpilot.com/reviews/6a3e2e1f7bded8c96b894260

Keywords:
Tungtata scam, Tungtata fraud, Dang Thanh Tung scam, samfw scam, samfw malware, samfw trojan, samfw security risk, samfw suspicious software, Tungtata trojan virus, samfw warning, Đặng Thanh Tùng scammer, owner Đặng Thanh Tùng fraud, tungtata scam, DangThanhTung scammer, DangThanhTung fraud, DangThanhTung rat trojan

Đặng Thanh Tùng (Tungtata) is a Confirmed Scammer and Malware Distributor


Introduction On June 23, 2026, a family member installed the “SamFW Tool” (version 5.4) from samfw.com. Within moments of execution, the software—which contains sophisticated, hidden trojan/malware functionality—compromised the system. This resulted in the catastrophic theft of 10,000 XMR (valued at approximately $3,000,000 USD) from a local Feather Wallet. To cover their tracks, the attacker triggered a script that deleted all victim data, subsequently removing the malicious version 5.4 from their website and replacing it with version 5.5.1 to hinder forensic analysis. When confronted, the suspect responded with arrogance, mocking the victim and instructing them to report the crime to the police before blocking them.

Incident Report: Theft of $3,000,000 via “SamFW Tool”This post serves as a public warning to the developer community and cryptocurrency users: Đặng Thanh Tùng (Tungtata) , the founder of SamFW and MiFirm.net , is a scammer responsible for the distribution of malicious software designed to facilitate financial theft.

samfw_scammer.png

On June 23, 2026, a user installed the “SamFW Tool” (version 5.4) from samfw.com. Within moments of execution, the software—which contains sophisticated, hidden trojan/malware functionality—compromised the system, resulting in the theft of 10,000 XMR (valued at approximately $3,000,000 USD) from a Feather Wallet and the systematic deletion of all local data.Evidence of Malicious IntentTampering: Following the theft, the suspect immediately removed version 5.4 from the public domain and replaced it with a “revised” version (5.5.1) to obscure the malware payload.

scammer2pp.png

Admission of Guilt: When confronted, Đặng Thanh Tùng did not deny the operation; instead, he mocked the victim, telling them to “report it to the police” before blocking all lines of communication.Malware Infrastructure: The “SamFW Tool” is confirmed to house remote access trojans (RATs) capable of monitoring sensitive data and wallet keys.

Identified Suspect DetailsName: Đặng Thanh Tùng (Tungtata)Location: Hanoi, Vietnam (Operating via Quynh Chi Investment and Technology Co. Ltd.)

Keywords:
Tungtata scam, Tungtata fraud, Dang Thanh Tung scam, samfw scam, samfw malware, samfw trojan, samfw security risk, samfw suspicious software, Tungtata trojan virus, samfw warning, Đặng Thanh Tùng scammer, owner Đặng Thanh Tùng fraud, tungtata scam, DangThanhTung scammer, DangThanhTung fraud, DangThanhTung rat trojan