World of Warcraft

1 . 2 . 3 . 4
Blizzard Entertainment
View All Posts by This User ignore-inactive
Radoslawn
Blizzard Poster
  • 0. Best ways to get your account compromised   11/25/2008 09:38:24 AM PST
quote reply
Hello Everyone,


Since some of us don't seem to be getting through to people with the fact that there are no invisible keylogging programs and viruses for a Mac, I figured I'd help those that want to get their account(s) hacked and then spend time posting about it. So here is my list of what to do to get your account compromised. Feel free to add to this list:

1. click on the Spam for free gold and power leveling while in the game to find out more info
2. as above, go to a site to buy gold and give them your Account name and password
3. as above, go to a power leveling web site and give them your Account name and password
4. visit web site claiming to give you the latest demo of our games that haven't come out yet, enter your data
5. install a program onto your Mac, not knowing what it does, and input your admin password for the install
6. use a PC on the side which doesn't have the security programs updated to the latest hour
7. share your account with someone
8. install 3rd party AddOn management program that keeps automatically updating your 3rd party AddOns
9. logging into private servers (thank you Ohhey)
10. replying to an e-mail from @blizz.com or @blzzard.com or @blzzd.com or .net and including your account info and password (we do not ask for passwords, don't want to know them, can't verify them, will quickly put our hands to our eyes and yell, "I'm not looking !!" while trying to find the delete e-mail button
11. log into the game while connected to a wireless public access network or paid wireless connection (parks, cafés, etc.) (thank you Minaka)
12. logging into a web site that looks just like the Account Management web site, after getting an in-game chat from someone WITHOUT a Blizzard icon, but claiming to be from Blizzard and offering free mounts

[ Post edited by Radoslawn ]


Let me know how I'm doing...

https://www.surveymk.com/s.aspx?sm=OXrtw1WfuVlU_2fd_2bJQf0JSg_3d_3d
80
View All Posts by This User Toggle Ignore / Unignore This User
  • Kil'jaeden
  • 1. Re: Best ways to get your account compromised   11/25/2008 09:41:50 AM PST
quote reply
I could kiss you. But I won't... Will a hug do?

Stoneblade - Lev 70 Warrior
Vedyendal - Lev 20 Warlock (rerolled)
Bloodrae - Lev 20 Shaman
Weakling - Lev 20 Mage
76
View All Posts by This User Toggle Ignore / Unignore This User
  • 2. Re: Best ways to get your account compromised   11/25/2008 10:03:17 AM PST
quote reply
could you explain number 7 a little more please? i think that is what might of happened to me.

Love.
Blizzard Entertainment
View All Posts by This User ignore-inactive
Radoslawn
Blizzard Poster
  • 3. Re: Best ways to get your account compromised   11/25/2008 10:27:48 AM PST
quote reply
Hello Pinball,


First off I know that there are many great 3rd party AddOn programs, but I don't trust anything that does something in the background without me knowing what it's actually doing, yes I'm paranoid by nature. So if you can check out the log file as to what the program does or has done for the last few weeks, see if something in there is questionable, use your instincts, it's your best weapon. What actual data is it sending.

Anyone can write a program that records your keystrokes and then sends that file back to whoever wrote the program. Then all they have to do is go through the data and start entering anything that makes sense until they get into your account. Always make sure you get these types of programs from well known web sites, no guild sites or a friend's ftp site. Things get passed around too much.

[ Post edited by Radoslawn ]


Let me know how I'm doing...

https://www.surveymk.com/s.aspx?sm=OXrtw1WfuVlU_2fd_2bJQf0JSg_3d_3d
76
View All Posts by This User Toggle Ignore / Unignore This User
  • 4. Re: Best ways to get your account compromised   11/25/2008 10:40:52 AM PST
quote reply
thanks rado. if i delete all my addons would this fix it?

Love.
80
View All Posts by This User Toggle Ignore / Unignore This User
  • Cho'gall
  • 5. Re: Best ways to get your account compromised   11/25/2008 10:41:22 AM PST
quote reply
Visiting a site which claims to have satellite video of naked girls and proceding to download the "video" file.

And/or

Sharing naked pics of your wife and downloading "epic pics" from the link provided.


Edit: Hmmmm Damn you number 4

[ Post edited by Ohhey ]


MacBook Pro user

 Mac Tech. Support Forum 
"Dual Boxing" = http://www.wowwiki.com/Mac#.22Dual-Boxing.22_on_one_Mac
Blizzard Entertainment
View All Posts by This User ignore-inactive
Radoslawn
Blizzard Poster
  • 6. Re: Best ways to get your account compromised   11/25/2008 11:01:20 AM PST
quote reply
Hello Pinball,


Once an account is compromised, you need to jump through the hoops, sorry. Time to change your password find the program that's saving the data, etc. If you want, e-mail us at macsupport@blizzard.com and put in ATTN: Radoslawn in the subject line, I'll send you all the info how to get your account back after it's been compromised. It's a lengthy e-mail.

First I would recommend calling our billing department and verbally change your password, since if you have someone that knows your password, you may not want to use your computer to change the password.

Billing Department: 1-800-59-BLIZZARD

Let me know how I'm doing...

https://www.surveymk.com/s.aspx?sm=OXrtw1WfuVlU_2fd_2bJQf0JSg_3d_3d
Blizzard Entertainment
View All Posts by This User ignore-inactive
Radoslawn
Blizzard Poster
  • 7. Re: Best ways to get your account compromised   11/25/2008 11:06:30 AM PST
quote reply
Hello Ohhey,


Good ones, thanks.

About number 4: I remember the Wrath of the Lich King fiasco. There was a dummy site claiming to give out Beta versions of the game, before we even had an Alpha version and all you had to do is input your Account name and password, so many accounts were compromised. It was ugly. Hope you didn't fall for it, it was very convincing.

Thanks for bring up the 2x #4's, much appreciated. Data has been changed.

Unless it's on http://www.worldofwarcraft.com or http://www.blizzard.com I don't trust it.

[ Post edited by Radoslawn ]


Let me know how I'm doing...

https://www.surveymk.com/s.aspx?sm=OXrtw1WfuVlU_2fd_2bJQf0JSg_3d_3d
80
View All Posts by This User Toggle Ignore / Unignore This User
  • Cho'gall
  • 8. Re: Best ways to get your account compromised   11/25/2008 11:08:05 AM PST
quote reply
OH and using a non-blizzard server to run wow. 3rd party servers running wow. . . ILLEGALLY. /wag finger

PS. You have two number 4's. I was refering to the second number 4. . . pwning my post. :D

PSS. I feel important now :D

[ Post edited by Ohhey ]


MacBook Pro user

 Mac Tech. Support Forum 
"Dual Boxing" = http://www.wowwiki.com/Mac#.22Dual-Boxing.22_on_one_Mac
2
View All Posts by This User Toggle Ignore / Unignore This User
  • Blackwater Raiders
  • 9. Re: Best ways to get your account compromised   11/25/2008 02:16:40 PM PST
quote reply
How about spending all of your available free time playing WoW and then upsetting your Significant Other to the point where said SO gets into your account and deletes your characters? :p
Blizzard Entertainment
View All Posts by This User ignore-inactive
Radoslawn
Blizzard Poster
  • 10. Re: Best ways to get your account compromised   11/25/2008 03:01:21 PM PST
quote reply
Hello Reylando,


I have seen that or derivatives of that situation which fall under number 7. When having a spouse or mate I stay with this golden rule:

You can share bank accounts, but never share the same computer and your WoW Account info.

To get those characters back e-mail wowgm@blizzard.com with the character name, realm name, and what was the date this happened, and of course your account, but no password info, we don't want it, have no way to verify it, and even if we could all passwords looks like this : • • • • • • • • • • • • to us, it's encrypted, only the computer security system knows what behind the dots.

Let me know how I'm doing...

https://www.surveymk.com/s.aspx?sm=OXrtw1WfuVlU_2fd_2bJQf0JSg_3d_3d
63
View All Posts by This User Toggle Ignore / Unignore This User
  • 13. Re: Best ways to get your account compromised   11/27/2008 02:06:26 PM PST
quote reply
Point 6 made me laugh.

Rado, you break the mold.

That's a good thing.
Blizzard Entertainment
View All Posts by This User ignore-inactive
Radoslawn
Blizzard Poster
  • 15. Re: Best ways to get your account compromised   12/03/2008 08:35:27 AM PST
quote reply
Hello Legend,


There seems to be a question about this, and since I'm not about to install it, I can't be 100% sure. And yes, I am a very paranoid person, hehe. The one thing to do is, find the log files for the program and see what it does ? Does it send data out of your computer and what is that data ?

[ Post edited by Radoslawn ]


Let me know how I'm doing...
( or in HEX: 4c 65 74 20 6d 65 20 6b 6e 6f 77 20 68 6f 77 20 49 27 6d 20 64 6f 69 6e 67...)

https://www.surveymk.com/s.aspx?sm=OXrtw1WfuVlU_2fd_2bJQf0JSg_3d_3d
80
View All Posts by This User Toggle Ignore / Unignore This User
  • Korgath
  • 16. Re: Best ways to get your account compromised   12/03/2008 08:39:57 AM PST
quote reply
Might as well add your IP address getting compromised to that list. I *just* had an account get compromised this morning and I'm currently on the phone trying to get the issue resolved, but the thing is my computer has no viruses or spyware on it, and running VirusScan with a library up to date as of 30 November (there are no newer updates available) and running MacScan for spyware, both came up negative for either. I really think the only way they actually got my account info was they were able to somehow get my IP address and then remotely sniff my packets. No one has my account info, and I even changed my password *twice* yesterday to prevent it from happening.

Apparently there's a third strike policy set up with the "Forgot your Password" option, so at this time the only way to recover it is to wait for a representative...

Well played.
Blizzard Entertainment
View All Posts by This User ignore-inactive
Radoslawn
Blizzard Poster
  • 17. Re: Best ways to get your account compromised   12/03/2008 09:04:11 AM PST
quote reply
Hello Minaka,


Sorry to hear about your ordeal, good luck with your account, I know what a pain it can be to get the account back to normal. Do you use a wireless connection ?

That's another reason why I don't use a wireless connection at home, too easy to get my network tapped. Even if you have WEP or WPA encryption, all someone would need is a $1000+ wireless USB card, a scan program and a few hours of letting the program run. Also don't log into personal places (WoW, Bank web site, etc.) when at a café or other public place with a wireless connection, also a good place to get tagged.

[ Post edited by Radoslawn ]


Let me know how I'm doing...
( or in HEX: 4c 65 74 20 6d 65 20 6b 6e 6f 77 20 68 6f 77 20 49 27 6d 20 64 6f 69 6e 67...)

https://www.surveymk.com/s.aspx?sm=OXrtw1WfuVlU_2fd_2bJQf0JSg_3d_3d
80
View All Posts by This User Toggle Ignore / Unignore This User
  • Korgath
  • 18. Re: Best ways to get your account compromised   12/03/2008 09:29:20 AM PST
quote reply
Although I do have a wireless router, I doubt that was the issue. I transmit through the ethernet port, and I also live well within the confines of a military post in the barracks there. I'm the only one here with access to my account and a key to my room, so I know it wasn't someone else. I also checked the logs on my router, and it's not showing that anyone else has gained access to it.

Well played.
Blizzard Entertainment
View All Posts by This User ignore-inactive
Radoslawn
Blizzard Poster
  • 19. Re: Best ways to get your account compromised   12/03/2008 09:45:42 AM PST
quote reply
Hello Minaka,


I have a few ex-military people around here at work, maybe they will have an idea how this could have happened. Or explain how the network is set up at a barrack since I'm afraid that I just don't have the criminal mind to figure this out without help. I'll let you know what I do find out.

Let me know how I'm doing...
( or in HEX: 4c 65 74 20 6d 65 20 6b 6e 6f 77 20 68 6f 77 20 49 27 6d 20 64 6f 69 6e 67...)

https://www.surveymk.com/s.aspx?sm=OXrtw1WfuVlU_2fd_2bJQf0JSg_3d_3d
1 . 2 . 3 . 4
Forum Nav : Jump To This Forum
Blizzard Entertainment