This is what happens if you post late at night and are too tired to properly proofread your own posts :)
The important thing is: if someone runs a TOR exit node, it is extremely easy for them to steal user names and passwords on unencrypted connection; but there is a very real possibility that someone phishes for GC usernames/passwords on encrypted connections by manipulating DNS on their TOR exit node and rerouting traffic for GC to a fake site that looks just like GC: in other words, a classical phishing scam. That's why it is important to make sure that the site you are connecting to uses the correct certificate. If you have told your browser to permanently accept our current SSL certificate, and the browser suddenly complains about the certificate, there may be something wrong and you should contact me immediately.
Surf safe;)
NFiH