Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!

So..I got hacked

NierroNierro Member UncommonPosts: 1,755

Yeah..I was brushing my teeth and my brother shouts to me "Why the hell did you make this random level one named Warriorhema guild leader?" So I go in his room looked at the log and it said I invited this guy and made him leader less then an hour ago..when I was out taking my dog for a walk.

So I kinda freaked out and got on WoW, to make sure I actually COULD and I kept getting disconnected..so I knew me and some other guy were trying to get control of my character. I then continued to freak out and went into a made dash to change my account info..but alas. It was too late. He changed the password. My email confirmed it. And my "secret question" was probably 5 years old so I totally forgot it.

"Warriorhema" then decided to disband my guild, delete all my gear, on literally all my toons. Even alts.  (I was checking armory as this happened).

I FEEL VIOLATED! Hahaha, I've played WoW for a long time..and I just figured that only the people who bought gold and powerlevelled got hacked. After googling and shit I finally drew a conclusion. I had a keylogger.

Had or has? I honestly have no idea.. and if I still have it I want to get rid of it!

How do I get rid of a keylogged?! Thanks.

image
«1

Comments

  • DeviousIncDeviousInc Member Posts: 17

    I'd say just do a full system scan with whatever anti-vrius software you have and then email the WoW support team and tell them what happened. Im sure theyll get your account back within a few days.

  • EkibiogamiEkibiogami Member UncommonPosts: 2,154

    this is why i dont use 3rd party Programs or UI Mods.

    If ye love wealth greater than liberty, the tranquility of servitude; greater than the animating contest for freedom, go home from us in peace. We seek not your counsel, nor your arms. Crouch down and lick the hand that feeds you; May your chains set lightly upon you, and may posterity forget that ye were our countrymen.
    —Samuel Adams

  • VemoiVemoi Member Posts: 1,546

    Let us know how it all comes out. Could help some of us aviod haveing the same thing happen. Hackers are bottom of the barrel scum.

  • JayBirdzJayBirdz Member Posts: 1,017

    His no drop gear might be gone for good.   I feel for ya Nierro.  It hasn't happened to me yet (knock on wood). I hope you can get things sorted to your liking.

     

    Maybe a suggestion or maybe not. I will toss it out none the less.  I use alot of different free programs to help watch prevent this type of thing.   The best free and user friendly software by far has to be comodo firewall and its defense+.  It watches your processes and connections and always asks whenever something happens with either.  It asks whether to allow or not and I never tick the always allow box.  

  • bojinxbojinx Member Posts: 172

    If you don't have a half decent virus scanner NOD 32 has a free online scanner www.eset.com/onlinescan/ (you need to use internet explorer for scanning purposes) .

    I would also run SuperAntiSpyware  www.download.com/SUPERAntiSpyware-Free-Edition/3000-8022_4-10523889.html , it is a very good free on demand scanner.

    Once the scanning is complete you should change your password,

    Best of Luck !

  • JessixaJessixa Member Posts: 45

    Hello Nierro,

    Your best bet is first to do a full system scan, if you don't have any software for this i must insist that you buy one such as Norton. Also, open a GM ticket and if you can tell them around the time this incident happened, they should be able to track your character changes and restore them with their gear.

    Just incase you have, don't ever give out your account details!

    Hope this helps, Jessixa

    Jessixa <!--
    * 70 Blood elf
    * Rogue
    * Darksorrow (EU)

  • bluberryhazebluberryhaze Member Posts: 1,702

    oops.

    snicker, i really dont feel too bad if wow is the only damage done.

    do you pay your bills online?

    you best check your other shit, if keylogger is the culprit.

    if wow is the only damage done, it must be that cheat you downloaded.

    cheater. hacker yourself.

    karma.

    good luck.

     

    -I will subtlety invade your psyche-

  • JackcoltJackcolt Member UncommonPosts: 2,170

    I'm sorry to tell you this, but about 99% (pulled that out of my ass, but it's a qualified guess) of all keyloggers is discovered by a proper updated anti virus software, not to mention that, unless it's binded into another program, it also need access through your firewall unless it also works as a trojan. Sucks to have hours and hours of work destroyed by something which could have been prevented in 5-10 minutes.

    If you don't have firewall/AV software, I can recommand Avast and PC Tools Firewall. Both are free. If you don't have very specific demands towards your software, there is absolutely no need to not use the free ones. Their detection rate is as good if not better on most areas compared to the most popular commercial ones. (Talking about compared AVG and Avast to Mcaffe, Norton and so on)

    Another thing I can definately recommend to avoid shit like this in the future : Always know what processes are running and which should be running - Will give often give away spyware, trojans, keyloggers, som viruses, and other malware. I usually keep process explorer open for the resource statistics, but it will also reveal to me if anything that shouldn't be running is running. So make sure you know what each running process is. If you see something you haven't seen before, it might be a good idea to google it.

    image
    image

  • Rikimaru_XRikimaru_X Member UncommonPosts: 11,718

    Sorry to hear about that man. I got hacked on a MMORPG on Christmas Morning some years ago so I know how you feel.  Follow what Jack said. Also if you have Windows Defender (Free from windows) You can do an advanced look at whats running on your PC and what starts up, etc. Very good if you see programs running and you don't know where it came from.

    -In memory of Laura "Taera" Genender. Passed away on Aug/13/08-
    |
    RISING DRAGOON ~AION US ONLINE LEGION for Elyos

  • Tyres100Tyres100 Member Posts: 704

    These small scanner keylogger viruses are often found in new addons you download. Always scan addons and make sure they are from a trusted source.

    Also you don't have to have a virus to get hacked on WOW. Let me explain this real quickly. WOW has over 10million subs, hackers for fun have been sitting back in their chairs for the past couple years going through passwords and login infos by guessing. With so many people out there many of them will use easy login and passwords. Many get hacked this way.

    Also another way is by going to the official forums and looking at the characters names, using them as a login and password cause most will use the character name as a pass and login with a variation at the end like a 11 or 00 or 1 or 0 or something. Hackers love to take hundreds of tries to break accounts.

    Another way on the forums people will post a Quote under the signature or some phrase or word having meaning to them. Could be a favorite song or lyric, which often is used as a password.

    For you guys wanting to be safe take my advice as a former hobby hacker (non damaging hacks) that you make a password not your character name and a login something very hard for someone to guess. Use combinations always of letters and numbers and something totally random and made up.

    Good luck getting your account back, Blizzard will often know. One last thing I thought the email could not be changed or passwords without the account user accessing his or her email to click the link to confirm it, at least for changing emails passwords I thought?? I never in 3yrs of WOW changed my pass or email so not 100% sure on that.

    Who let you in the VIP section?

  • bluberryhazebluberryhaze Member Posts: 1,702

    i remember them aol days.

    i think it was called a brute force hacker. it randomly tried user and pw to adult sites.

    on a side note, i recently been to a site that required numbers, letters and symbols...grty4573@$#

    -I will subtlety invade your psyche-

  • TickleDownEconomicsTickleDownEconomics Member UncommonPosts: 89
    edited February 2022

    ---

    Post edited by TickleDownEconomics on
  • NierroNierro Member UncommonPosts: 1,755

    UPDATE!

    Well, I talked to a GM. Got my account back. Got my items reimbursed. But guess what?

    They must have had either the keylogger still on my computer because they GOT INTO MY EMAIL, FOUND THE TEMPORARY PASSWORD THAT BLIZZARD GAVE ME, LOGGED ONTO MY ACCOUNT, AND TRANSFERED MY TWO LEVEL 70'S TO RANDOM REALMS.. COSTING ME 50 BUCKS.

    I'm done. 10 million customers and what the hell do I get?

    What the fuck do I do now? I have to go into a shop and get this thing figured out. God, what a nightmare.

    image
  • KurushKurush Member Posts: 1,303

    A few questions.

    Did you have the same username for your Blizzard account as your character?

    Was your password only lowercase letters?

    I'm just asking these things out of curiosity.  To those who talk about bruteforcing a WoW password, that's ridiculous.  Most systems will lock you out for several minutes after you try a few passwords in quick succession.  The lockouts only get more severe if you keep trying incorrectly after that.

    Anyway, it seems like you do have a keylogger.  I'd back up your key files and format your whole computer.  By that, I mean _only_ things like pictures, music, videos, and secure documents.  Nothing else.  DO NOT back up any kind of executable or installer.

  • JackcoltJackcolt Member UncommonPosts: 2,170

    You definately have a keylogger. Are you sure it was removed?

    After you removed it, the first thing you should have done was to change your password on your e-mail. Them getting access to your e-mail is a huge problem, because now they can either retrieve or reset your password on so many sites, provided they know your login name.

    Bruteforcing passwords without having a hash is basically impossible. So unless you were already compromised, you definately have a keylogger. The safest thing is just to reformat your comp, and stop things like that before they get in. You're priority would be to change your emails password, and do that NOW by using your brothers computer or something. You can limit your loss to WoW, but if they are interested in more carnage, you can a whole lot more if you don't secure your e-mail.

    image
    image

  • tvalentinetvalentine Member, Newbie CommonPosts: 4,216

    lol doesnt sound like a average gold farmer doin this. you D/Led something or went to the wrong site, or pissed off the wrong person. Nothing you can do, except to whipe your drive imo.

    image

    Playing: EVE Online
    Favorite MMOs: WoW, SWG Pre-cu, Lineage 2, UO, EQ, EVE online
    Looking forward to: Archeage, Kingdom Under Fire 2
    KUF2's Official Website - http://www.kufii.com/ENG/ -

  • VemoiVemoi Member Posts: 1,546

    You would think wow would have a security team to trace an account back to user. Is it possible to get authorities involved if it involved money? I know police wouldn't get involved when someone kept using my phone number for long distance. They just refered me back to phone company.  

  • maskedweaselmaskedweasel Member LegendaryPosts: 12,195
    Originally posted by Kurush


    A few questions.
    Did you have the same username for your Blizzard account as your character?
    Was your password only lowercase letters?
    I'm just asking these things out of curiosity.  To those who talk about bruteforcing a WoW password, that's ridiculous.  Most systems will lock you out for several minutes after you try a few passwords in quick succession.  The lockouts only get more severe if you keep trying incorrectly after that.
    Anyway, it seems like you do have a keylogger.  I'd back up your key files and format your whole computer.  By that, I mean _only_ things like pictures, music, videos, and secure documents.  Nothing else.  DO NOT back up any kind of executable or installer.



     

    A couple things, first most importantly righ now, download a firewall. Comodo is a good one www.filehippo.com  also pick up an antivirus on the same site.  AVG is a good one.

    If you used the same password for WoW as your E-mail then its not so hard to crack it... theres still a good chance they're just guessing your PW.  Good PW security is to have both letters and numbers and either one CAPPED letter or a symbol where applicable.  That will decrease the chances of guessing a PW through a pw cracker by quite a bit. 

    Blizzard probably has something to track what account logged in from what IP address.  This can help track where the problem is coming from.  Afterwards you can get in more depth with it to detect the company, then the router with the exact IP lease (no self respecting hacker would allow for a static IP) and then match that up with the person who buys the service, and there you have it.  In the meantime, get your PW changed again, something very secure on all of your accounts. Install those programs.  Good luck!



  • TheocritusTheocritus Member LegendaryPosts: 10,014
    Originally posted by Ekibiogami


    this is why i dont use 3rd party Programs or UI Mods.



     

        Isn't that like 99 percent of WoWs playerbase though?? Add in the ones that buy gold and use powerleveling services also to those that get hacked.......

  • EnigmaEnigma Member UncommonPosts: 11,384
    Originally posted by tvalentine


    lol doesnt sound like a average gold farmer doin this.  or pissed off the wrong person.



     

    Thats exactly what I was thinking. Whoever did this was lying in wait wanting to pounce on you again.  I mean they got to your email before you did!

    I hope you dont online bank or buy anything online recently

    People who have to create conspiracy and hate threads to further a cause lacks in intellectual comprehension of diversity.

  • BrianshoBriansho Member UncommonPosts: 3,586

    I got hacked a few months ago in WoW. Someone somewhere figured out my password or something.

    I was at work and got an email that my account had the password request to be changed. 2 minutes later I get another email saying my account is under a 72 ban for inappropriate behavior. I hadn't logged into my account in about 2 weeks. I had issues contacting Blizzard so I just waited a few days. On the 3rd day I reset my password twice and logged in.

    Whoever was in my account left my 70 NE rogue dead in Shadow Labs. Instead of having 375 herbalism/alchemy I now had 375 herbalism/mining. My rogue still had all his original equipment but a newer bracelet and a slight respec. I checked my other characters and they all had a ton of auctions successfully completed. By the time I gathered the gold from all the auctions I had over 1000 gold. My friend had tried calling me earlier in the week because he saw me in the battlegrounds every night but I wouldnt respond. He cornered one of my alts in Stormwind and told him to call his cell phone but the guy just asked for some gold then logged off.

    People make sure your passwords are complex haha

    Don't be terrorized! You're more likely to die of a car accident, drowning, fire, or murder! More people die every year from prescription drugs than terrorism LOL!

  • NierroNierro Member UncommonPosts: 1,755

    Okay, an update.

    I somehow, somewhere downloaded a keylogger thing called "lovefly.dll". I "fixed" it with Hijack this, and changed the passwords to both WoW and my email using the windows click keyboard so it can't log what I type.

    I was NOT charged the 50 dollars.. if I would have been that would have meant they had access to my credit card and paypal which, thankfully, they did not. They used their own credit card. 

    I don't know if I have the keylogger still or not, I heard it redownloads and changed names or some bullcrap like that. 

    I think my email and WoW account are secure for the time being though.

    image
  • JackcoltJackcolt Member UncommonPosts: 2,170
    Originally posted by Nierro


    Okay, an update.
    I somehow, somewhere downloaded a keylogger thing called "lovefly.dll". I "fixed" it with Hijack this, and changed the passwords to both WoW and my email using the windows click keyboard so it can't log what I type.
    I was NOT charged the 50 dollars.. if I would have been that would have meant they had access to my credit card and paypal which, thankfully, they did not. They used their own credit card. 
    I don't know if I have the keylogger still or not, I heard it redownloads and changed names or some bullcrap like that. 
    I think my email and WoW account are secure for the time being though.

     

    Then by all means, format your computer to be sure it's gone. Some of the more nasty keyloggers "multiply" themselves. Works sorta like trojans and worms.

    Glad that you've saved your e-mail though. Saved you a lot of trouble.

    image
    image

  • EnigmaEnigma Member UncommonPosts: 11,384

    yeah. You're going to want to completely reformat your drives. A complete whipe.

    People who have to create conspiracy and hate threads to further a cause lacks in intellectual comprehension of diversity.

  • NierroNierro Member UncommonPosts: 1,755

    I don't have ANY hard copies of my windows disks and all that.. this computer is.. 8 years old. Maybe I get a new one now?

    image
Sign In or Register to comment.