Forum Settings
       
Reply To Thread

QQFollow

#1 Apr 03 2009 at 9:36 AM Rating: Good
*
199 posts
Just needed to get something off my chest.

I logged on to my Druid last night only to find that I had been hacked. They took almost everything I had. Including most of the gold on all muy characters. About the only things left where my tier gear and badge (emblem) purchases. What really sucks is I had a least 4 BIS items in my tank set that are now gone. :( I'll also miss the 22 Arctic Furs I was saving.

Put a ticket in and got an e-mail saying the attack is been investigated. I can't help wondering what, if anything, I'll get back.

The strangest thing is they didn't take anything from my DPS set which I was wearing. /shrug
#2 Apr 03 2009 at 10:01 AM Rating: Good
****
7,732 posts
Run AV scanners and all that jazz.

I hope your ticket helps.

Maybe look into an authenticator after the ticket is done.

/sympathy
____________________________
Hellbanned

idiggory wrote:
Drinking at home. But I could probably stand to get laid.
#3 Apr 03 2009 at 11:16 AM Rating: Good
***
1,859 posts
Oh crap dude, I feel for you. A few people in my guilds had such troubles in the past.

I wouldn't want to give you false hope, but so far I think they got most of their stuff restored so hopefully your ticket will have positive results.

And yeah, scan your computer a few dozen times with various AV's and anti-malware programs to make sure it's all gone.

Good luck. :/
#4 Apr 03 2009 at 11:37 AM Rating: Excellent
***
1,270 posts
I know! It sucks, you feel violated. My hubby was hacked a few weeks ago. We didn't even know it had happen til he got an e-mail from blizzard saying something odd was going on and they temp banned him so he could regain control of his account.

Over all the Account Admin guys are very, very nice but all their automatic reply's and account security stuff will basically make you feel like a criminal.

So One! Are you clean? (at the end of the post I have some useful proggies for that area).
Two absolutely invest in a Authenticator, I know they are hard to get a hold of at times but it is well worth the peace of mind it brings. (Or if you have a next gen phone ~ unlike me! ~ there is the completely FREE Mobil Authenticator App, you can get). Three, be patient which I know can be hard. In our case it took about a week for Blizzard to send everything back via the in-game mail. They gave him back everything he lost (Gear, Mats, Old quest items, etc..) From what I have heard the only things they can't do is restore professions if it were dropped or roll back quests or achievements if the hacking ******* did some.

Even when all was said and done blizzard will send you another e-mail or in-game mail willing to investigate further if you feel there is still something missing.

So I wish you luck in getting everything righted again, it takes time but it will happen! ^^



Here's my default list of helpful and FREE proggies that have been recommended to me over the years by gamers and techies alike.

Quote:
Anti-Virus Scanners:

AVG - http://free.grisoft.com/

Micro Trend HouseCall - http://housecall.trendmicro.com/us/index.html (A Online Scanner)

BitDefender - http://www.bitdefender.com/scan8/ie.html (A Online Scanner that requires Internet Explorer 4+ to work.)


Anti-Spyware / Anti-Malware Scanners:


Spybot: Search & Destroy - http://www.safer-networking.org/en/index.html

MalwareBytes - http://www.malwarebytes.org/

SUPER AntiSpyware - http://www.superantispyware.com/

Spyware Blaster - http://www.javacoolsoftware.com/spywareblaster.html (This is a preventive proggie, just update.)

Spyware Guard (Beta) - http://www.javacoolsoftware.com/spywareguard.html (This is a preventive proggie.)


Defragmenter :

JKDefrag - http://www.kessels.com/JkDefrag/ (disk defragmenter and optimizer for Windows 2000/2003/XP/Vista/X64.)


Miscellaneous:

PC Wizard 2008 - http://www.cpuid.com/pcwizard.php (Utility designed to analyze and benchmark your computer system.)

Advanced System Care - http://www.iobit.com/ (helps protect, optimize, and repair your computer.)

CCleaner - http://www.ccleaner.com/ (system optimization and privacy tool.)

Answers That Work: Task List Programs - http://www.answersthatwork.com/Tasklist_pages/tasklist.htm (This site has a pretty comprehensive list of processes.)

Process Library - http://www.processlibrary.com/

KillBox - http://www.killbox.net/ (Use at your own RISK: a tool to delete in-use files. http://killbox.net/help.html) - last resort to really nasty viruses masquerading as essential window files; Do your research first!!!
#5 Apr 03 2009 at 12:26 PM Rating: Good
*
199 posts
I scanned my system twice last night once with Norton Security (currently installed program) and Ad Aware that I downloaded. Problem is nither found anything but some cookies I guess I'll have to try a few others just to be sure. I plan on looking into the authenticator.

I hope you're right and I get most of the stuff back.
#6 Apr 03 2009 at 12:35 PM Rating: Good
If you want, you can run HijackThis and post the log here or PM it to me, I'll be happy to look it over and see if anything is running that those scanners didn't pick up (doesn't happen often, but you never know).
#7 Apr 03 2009 at 12:44 PM Rating: Good
***
1,270 posts
I recommend running HouseCall for sure, since it's a online scanner it can catch something that maybe hiding from Norton.

Also use more then just Ad-ware! Spybot: Search & Destroy and/ or MalwareBytes are good choices. Sometimes one proggie with catch something that another didn't.

Spyware Guard and Spyware Blaster are great because you only have to update them every now and again. They are preventive proggies so think of them as little shields that keep the nasty stuff from getting a foot hold on your PC in the first place.



Edited, Apr 3rd 2009 4:55pm by GryphonStalker
#8 Apr 06 2009 at 4:04 AM Rating: Good
*
199 posts
Heres an update on the situation.

I got my stuff back with a few changes. I got all of the gear back so that was good, but for mats there were substitutions. I didn't get my arctic furs back :( but I got a ton of ore (titanium and saronite) and even 6 titansteel bars :) I also got a bunch of herbs.

I still haven't found anything on my system, so I'm taking a different approach to entering my password that doesn't involve typing it in. I appreciate all the suggestions and support from everyone here.
#9 Apr 06 2009 at 7:07 AM Rating: Good
The problem with Keyloggers, etc is that it doesn't matter where you type your password, even Copy/Paste into the field doesn't protect you, because you have to type it somewhere. Notepad, Wordpad, so on and so forth...anywhere and any activity from Copy/Paste to randomly typing elements of the PW in different locations won't stop them, because they can record every keystroke on your machine regardless of what you're doing.

In all honesty, the Blizz authenticator is the best line of security. And for $6.50 USD, there's really no reason to avoid getting one.
#10 Apr 06 2009 at 7:38 AM Rating: Decent
I had a couple guildies hacked last summer.

One was particularly annoyed at losing 100+ badges, instead compensated with gems (which presumably hacker spent badges on).

I simply don't understand why Blizz won't return badges, emblems, etc. once they agree that you were indeed hacked. It's not because they can't, but I don't understand their policy on it.

And in the op's case, wtf can't they return the arctic fur? I fail to understand that too.
#11 Apr 06 2009 at 9:00 AM Rating: Good
*
199 posts
Actually, I had most of my Emblems of Heroism take and they return some to me. I assume they returned all that I lost. Don't recall exactly how many I had before.

I don't know why they didn't return the Arctic Furs, Frozen Orbs, or Frostweave cloth. Don't really care about the cloth as I can replace that very easily. But they would say I was more then fairly compensated for what I didn't get back. The gear was my biggest concern.

As for the Authenticator I would be happy to get one, but the Blizzard site says they're sold out. I think the plan is to replace it with the Battle.net one that you can put on your cell phone/Ipod. I don't have a Iphone or Ipod so I'll have to wait for them to create the app for my cell phone.
#12 Apr 07 2009 at 6:37 AM Rating: Good
**
676 posts
Sorry to hear about you getting hacked Lastar. I was hacked twice in the same week earlier in the year. I'm pretty sure it was due to me logging into the WoW forums from work. The worst part was that they not only hacked my WoW account and took everything, they also transferred my shammy to another realm the second time they did it. I ended up finding all my level 70+toons sitting in the corner near the entrance to Shadow Labs.

So not only did I have to put in a ticket for them to return all my things (which some of my mats where messed up just like you had happen), but I also had to put one in to get my shammy x-fered back, then another to get him his stuff back since the restoration happened before he was x-fered back.

To add insult to injury, the way they got my password the second time that week was to hack my yahoo e-mail which I had also used from work and was attached to my blizz account and requested a new password. So they got into it twice. Stupid hackers and their goddamn ******* money farmers!

All I need is 5 minutes in a room with them. That's so I'll have 4 minutes to smoke the cigarette after.

QQ indeed! :P
#13 Apr 07 2009 at 9:43 AM Rating: Good
*
199 posts
I received an e-mail over the weekend that supposably from Blizzard saying my account was being offered for sale and that it was a valiation of the EULA. If I hadn't put it up to send them all kinds of information like the CD key, my username, and password, etc. I knew it couldn't be true because Blizzard alway says they won't ever ask for your password. I submitted a GM ticket and got verification. The lengths they'll go to to steal your stuff. WOW!
#14 Apr 07 2009 at 10:18 AM Rating: Good
Yeah, as a general rule, NEVER click through an email like that; if you suspect it is legitimate, then login to your account on worldofwarcraft.com directly and look for information there, or contact them by phone/GM for verification. This applies to email of any sort of potentially sensitive information really, I even go so far as to never click through a bank statement email...I'll login and find the statements site myself.

Edited, Apr 7th 2009 2:19pm by Norellicus
#15 Apr 19 2009 at 5:24 PM Rating: Decent
*
216 posts
Well, it was my turn to be hacked over the weekend and it was a cut copy of Lastar's experience: they cleaned out all the gold, gear and everything else in the bags/bank from myself and my guild... :(

Only thing my toons were left with was literally the clothes/armour on their backs!

Blizz temp banned my account so I've changed the password etc, only had limited time online over the weekend so my ticket wasn't attended to... here's hoping this story has a happy ending, I'm sure Blizz will look after me.

BUT I'm really confused as to how they got into my account. I've run Search and Destroy, AdAware, AVGFree, and attempted HouseCall but apart from a few site-tracking cookies, those apps couldn't find anything on my computer and certainly no keyloggers.

Until I know how my password was stolen I can't be sure it won't be stolen again...

Does anyone have any suggestions?

Also, a question about Housecall, I left it to run for 4 hours (twice) and it seemed to be chugging away, but it never moved past the "testing brower/platform" stage and never really "finished", its supposed to play nicely with Firefox but does it really?
#16 Apr 20 2009 at 4:10 AM Rating: Good
*
199 posts
There is a couple articles written here on Alla that address the hacking I suggest reading them. I never did find any keyloggers on my system. I'm guessing that my previous password was too easy and I used it in a couple of places. Now I have a different password for WoW and I cut and paste it from a file on my system. Also, I just ordered an Authenticator. They are availiable again. I suggest you get on.
#17 Apr 20 2009 at 7:49 PM Rating: Decent
*
216 posts
Lastar, when Blizzard returned your items did they "post" them back to you, or did the items re-appear back in your bags?
#18 Apr 21 2009 at 1:13 AM Rating: Good
*
216 posts
Laster:

Quote:
Now I have a different password for WoW and I cut and paste it from a file on my system


I feel for you, but please don't fool yourself in thinking this cut and paste works to avoid keyloggers. Keyloggers are more then capable of reading the clipboard memory and thus the password being copied.

If anything you could try to type in a wrong password and by clicking the mouse at random spots in the typed password delete and correct character by character. That way they would only be able to tell what characters are in your password, but not the sequence.. still all that trouble seems hardly worth it because they can easily find your password by trial and error then..

#19 Apr 21 2009 at 3:44 AM Rating: Excellent
**
676 posts
When blizzard returns items to you, they will be in your mailbox, in no order whatsoever. You will just have as many letters as it takes to have space for all the items to be mailed back to you.

Sometimes they will return things you never had, but you'll notice other things missing.

Thems the breaks :(

Good luck getting things back together.

Also, using the parental controls is another way to keep your account a little bit more secure.

Two separate passwords means the guy actually has to go online and reset your **** to be available.

Won't stop them all, maybe not even any, but it'll make you feel better :P
#20 Apr 21 2009 at 4:23 AM Rating: Excellent
*
199 posts
I know the cut paste thing isn't "full prove" but I plan to continue to use it. I don't think I had a keylogger, just an easy password to guess. I now use a more complicated password that isn't used anywhere else. I also bought one of the Blizzard Authenticators over the weekend, just waiting for it to arrive.

As for getting my stuff back as Galenmoon said they in-game mailed it to me. I got all my gear back but there was differences in the mats I got back. For example I had 22 Arctic Furs before the hack and didn't get any back, but I got a bunch of herbs and ore back which I didn't have before. I sold the titanium ore and made a bunch of gold. I kept the saronite ore and have a friend prospect it when I need a gem. I still have a couple of stacks left too. They also sent me 6 titansteel bars. I think I'll put them on the AH to see how much gold I can get now that the Patch is out. The herbs I'm saving for my Hunter who is an Alchemist.

Reply To Thread

Colors Smileys Quote OriginalQuote Checked Help

 

Recent Visitors: 81 All times are in CST
Anonymous Guests (81)