I just caught a hacker...
IrishCB
The reason why an anti-virus might pick up texmod is because its a 3rd party program that changes files. Try this with another game and get a trainer, your av might act the same way.
Painbringer
Quote:
Originally Posted by Jetdoc
Yeah, I found it odd as well that he took the time to open the chest 47 times instead of just opening a trade with his other account. Maybe he didn't realize that the keys were worth a ton at the moment, and was just hoping for an everlasting tonic.
|
JET... the PM i sent you (I run NORTON as well) took three days to catch the trojan on my system. I ran numerous scans 2 full and at least 4 quick, I update daily my definitions
britnie31
Quote:
Originally Posted by nitetime
you have this on your account and someone just wanted to use your keys!?
http://www.guildwarsguru.com/forum/s...57&postcount=7 certainly someone is just messin with you. |
Yeah it really does just sound like some one messed with ya here ... i mean if some one was to take the time to hack and have time to pop a chest 50 times they would just as quickly have moved cash / ectos instead ..
Chthon
Jet, you did well by PMing Regina. I hope they can figure out what happened and prevent it from happening again.
Because it allows me to be a jerk by entering "123456" X times each day to keep your account locked out indefinitely. (Note: This wouldn't be a problem if accounts tied to PlayNC could change their username. Just one more reason to NEVER tie your account to PlayNC if you can avoid it.)
Half the time it's going to be the hacker displacing the legitimate user, and half the time it's going to be the legitimate user displacing a hacker who logged in while the use was out.
But, what should be happening is that anet's system should be automatically logging whenever one user bumps another off an account and sending a notification to support to investigate it.
That's a good idea, and I have no idea why it still hasn't been implemented.
There is no excuse for this. There is also no excuse for permanently binding your username when you link to PlayNC.
It's encrypted, but pretty weakly. The GWLP team had no trouble breaking it. However, man-in-the-middle doesn't fit Jet's scenario, because he was already logged in for some time when his account was accessed. Unless the hacker had been waiting for Jet to log in, then just sat on the password for awhile instead of using it.
I very much doubt that. Moreover, your comments are defamatory. Unless you can back them up, you shouldn't go around saying things like that.
---
@ Haskell: I see you've crawled out from whatever rock you were hiding under to troll these forums again. I've got an idea: Instead of trolling this thread, why don't you head over to the technical forum and post that method of connecting GW to a VPN that you once claimed you had? I've seen at least two people ask for it since you crawled under that rock, and I'm sure they'd appreciate it a lot more than Jet appreciates you calling him an idiot.
Quote:
Originally Posted by Hissy
Why no lockout/delay after x failed attempts?
|
Quote:
Why does a player gets kicked out when a second person gains access? I'd like to see an ingame message telling me that someone else just tried to log on, their IP address, and the option to /report instantly. |
But, what should be happening is that anet's system should be automatically logging whenever one user bumps another off an account and sending a notification to support to investigate it.
Quote:
Why can't we set a character to "undeletable" or delayed deletion, so that even if we lose cash/items we don't also potentially lose our characters/titles? |
Quote:
Why does PlayNC password changer only allow numbers and letters, and not the extra characters from a regular keyboard? |
Quote:
Originally Posted by cataphract
Man-in-the-middle attack?
But that would mean the login process of GW isn't encrypted! OMG! |
Quote:
Originally Posted by Malice Black
Name a GW player thats always going on about hacks ingame and on the PlayNC site etc and you have your answer....got it yet?
bingo! |
---
@ Haskell: I see you've crawled out from whatever rock you were hiding under to troll these forums again. I've got an idea: Instead of trolling this thread, why don't you head over to the technical forum and post that method of connecting GW to a VPN that you once claimed you had? I've seen at least two people ask for it since you crawled under that rock, and I'm sure they'd appreciate it a lot more than Jet appreciates you calling him an idiot.
Dylananimus
Quote:
Originally Posted by britnie31
Yeah it really does just sound like some one messed with ya here ... i mean if some one was to take the time to hack and have time to pop a chest 50 times they would just as quickly have moved cash / ectos instead ..
|
cosyfiep
Quote:
Originally Posted by shru
The only connections I've seen between all hackies (by all their stories) is that they're GWGuru members.
I don't browse other fansites, but are there people on other sites getting hacked aswell? Additionally, any info on alt GW sites regularly visited could be quite helpful. |
gee we seem to think that everyone who has been having problems WILL get visit a fansite and post about it....
LOTS of players have no idea what guru (or other fansites) is, and since this one is in english I bet there are tons of non-english players who have never heard of it and since they may not read/write english wont visit this site....
AND
who says that others were not hacked???? Only a few people have come forward, I am sure they are others who have no clue what do to if they get hacked or just give up and stop playing altogether.....
(and usually these threads have been deleted in the past---so why would you post if you know your thread is just going to get deleted?)
Dante the Warlord
Hmm im a bit afraid, how do I prevent this notorious hack from hacking me?
Malice Black
Quote:
Originally Posted by Chthon
I very much doubt that. Moreover, your comments are defamatory. Unless you can back them up, you shouldn't go around saying things like that.
|
#1 It needed to be said. I wasn't the only one thinking it, just the one who isn't bothered by the forum kiddies, the self righteous and the general forum idiots.
#2 There is a very good chance it is this person, or someone associated with this person.
To get to the bottom of this, every angle has to be covered. If someone e-feelings get hurt, tough shit.
lordheinous
This just in on the official gw site:
Update - Tuesday May 13
Bug Fixes
* Fixed an exploit.
Kind of lacking in detail, don't you think? I'm thinking it perhaps has something to do with the problems discussed in this thread.
Update - Tuesday May 13
Bug Fixes
* Fixed an exploit.
Kind of lacking in detail, don't you think? I'm thinking it perhaps has something to do with the problems discussed in this thread.
Nightmares Hammer
Quote:
Originally Posted by Malice Black
Maybe so, but:
#1 It needed to be said. I wasn't the only one thinking it, just the one who isn't bothered by the forum kiddies, the self righteous and the general forum idiots. #2 There is a very good chance it is this person, or someone associated with this person. To get to the bottom of this, every angle has to be covered. If someone e-feelings get hurt, tough shit. |
TheRaven
Quote:
Originally Posted by Nightmares Hammer
So... Who do you suspect?
|
LOL, even I know the respuesta to that one, Señor and I don't know most of the regulars all that well.
Ruby Lightheart
Quote:
Originally Posted by Angelica
Well I was told, by the supports people,that if you changed your email it was impossible to change your PW because the email for the change would be sent to the old email address. So no you cannot change your PW.
|
Everytime you change your password, you get an email telling you that your password has been changed AND the ip address from which the change was made. So the hacker has to change your email addres to something you dont know in order to change your password without you knowing.
What really should be done to upgrade security is something like these:
1) require ALL email address changes to be verified and the verification email sent to both the old and the new address...this would help notify you if someone sneaks into your plaync account and changes the email firrst. The REquired verification would be limited to a 5 minute experation..after the 5 minutes, the account would be locked and you would be required to contact support to get your account back
2) require that all password and email changes be made only AFTER a secret security question is answered
3) limit the number of times someone can enter an invalid password. After 3 attempts, the account cannot be accessed again till you verfiy your idenity via security question.
I have noticed that the majority of hte hacks reported seem to be after someone has been in PVP or AB. Sounds alot like a smart hacker group is lingering in the pvp areas and targeting those whom have elite armor or whom they notice frequent the pvp arenas. This would flag that player as someonen whom possibly has alot of goodies and keys. Now I am not sure how they would get your user name, but perhaps they have hacked into a fan site database or are just that good at snooping into someones computer ip.
a
anyhow just my 2 cents on what could help improve security
Jetdoc
Okay guys, here's the response I got from Support when I filed my ticket (at Regina's request).
So, in short, it sounds like A-Net and NCSoft's offical stance on hackers is that they won't do an "official" investigation unless we file a police report and the police issue a subpoena. I'm not sure if the police would issue such a subpoena unless it can demonstrated that the individual was "distributing and propagating a keylogger, Trojan, or other computer virus."
In my situation, I'm not sure if I can do that, unless (as Painbringer suggested above) my antivirus program subsequently detects a keylogger, Trojan or some other sort of virus (which it hasn't thus far)...and I'm not sure if that was even the cause of this hacking attempt.
Interesting official response, to say the least.
Quote:
Thank you for contacting us regarding this matter. Dealing with a hacked account is terribly frustrating, and can leave a victim with a feeling of sincere vulnerability and loss. We have constructed this document to help players get through this situation, as well as to empower you to take action on the individual(s) responsible. Please understand that NCsoft only considers a "hacked" account to be the unauthorized access of an account resulting from the criminal act of distributing and propagating a keylogger, Trojan, or other computer virus. We do not recognize a "hacked" account to be the theft of items resulting from any sort of account sharing, trading, or selling. Please remember that the integrity, security and interactions of characters on an account are the sole responsibility of the account owner, and not NCsoft's. Additionally, we do not return any items that are missing as a result of hacked/stolen accounts or having been accessed by another person. Owners are responsible for maintaining the confidentiality of their password and security of their account at all times. The act of writing and distributing malicious code is a criminal act, one that the police will often investigate. A victim will need to contact their local authorities in order to report this activity. Because the actual crime was committed on the user's system, and not a system owned by NCsoft, we cannot file such the report on behalf of the user. During the investigation, police will likely need to contact us with a subpoena request to identify and track down the perpetrators. Once we receive this information, we will then proceed to review the account history and pursue the individuals responsible. If there are any additional questions or concerns, or if there is anything else that we may be able to assist with, please let us know and we will help as soon as possible. |
In my situation, I'm not sure if I can do that, unless (as Painbringer suggested above) my antivirus program subsequently detects a keylogger, Trojan or some other sort of virus (which it hasn't thus far)...and I'm not sure if that was even the cause of this hacking attempt.
Interesting official response, to say the least.
Malice Black
Basically they said screw you, come back with evidence.
Earth
"Hi guys, our security sucks so you get hacked, but ofcourse, it's YOUR problem!"
PS: HI ANDREW
PS: HI ANDREW
fusa
Quote:
Originally Posted by Jetdoc
Okay guys, here's the response I got from Support when I filed my ticket (at Regina's request).
So, in short, it sounds like A-Net and NCSoft's offical stance on hackers is that they won't do an "official" investigation unless we file a police report and the police issue a subpoena. I'm not sure if the police would issue such a subpoena unless it can demonstrated that the individual was "distributing and propagating a keylogger, Trojan, or other computer virus." In my situation, I'm not sure if I can do that, unless (as Painbringer suggested above) my antivirus program subsequently detects a keylogger, Trojan or some other sort of virus (which it hasn't thus far)...and I'm not sure if that was even the cause of this hacking attempt. Interesting official response, to say the least. |
Cebe
We should place bets on how umm...'quick' the police will act when one person reports having been hacked.
Malice Black
Police wouldn't do shit. It would be passed to the cyber division, who would in turn sweep it under the carpet.
gone
it's gonna be hard for them to really do anything considering that the individual(s) is/are underage...mommy and daddy might catch hell, but junior will walk.
Jetdoc
Quote:
Originally Posted by Hajimesaitou
So I just learned what happened. I had made a post saying that all my gold was stolen, I saw that everyone said they had a toon in balthazars temple and so when i saw my necro there i checked it out. turns out that the hacker went on and didnt steal my gold, he just used it all for z keys and then opened a grip load of chests. I find firewaters and brules in my inventory but no golds (he prolly took all the expensive crap) and I am now rank 1 in the zaishen stupid thing. Then only way my acct could have been hacked is through my plaync account or here on guru as I was stupid enough to use same e-mail n password (which have since been changed on both guru and the game). any thoughts would be nice, but why would hacker just buy keys instead of take straight cash which was probably worth more than the crap he got (350k).
|
Mystica
Ok sorry but this is starting to get funny. Not for the victims but generally.
1. Whoever got onto your accounts doesn't look for ectos but ZKeys to USE them! That's seriously random and I would love to have this guy on my account to get me a Zaishen Emote. I am too lazy to do it myself and opening the chest is frustrating as I had enough Firewaters and Brulees before the title came. I'll buy the keys now.
2. Anet is right with their response. They are not responsible for the account theft but the way they put it is insane. They could have added that the police is not going to do anything about it or at least that your chances are slim. No clue how they handle it in the US but here in Germany there are unofficially no actions taken against cyber criminals unless the crime would result in 2 or more years of arrest. Otherwise it is just too much work to contact Anet, get the IPs involved, backtrace them, all the paper work, etc etc etc for a $200 account and since Anet does not allow RMT and selling items for cash your account is worth the price you payed for the gamecodes (about $200 for all) and maybe less cause it is used . That's probably not even worth a mail to the cyber division.
Anet is using Dismiss Responsibility on themselves!
1. Whoever got onto your accounts doesn't look for ectos but ZKeys to USE them! That's seriously random and I would love to have this guy on my account to get me a Zaishen Emote. I am too lazy to do it myself and opening the chest is frustrating as I had enough Firewaters and Brulees before the title came. I'll buy the keys now.
2. Anet is right with their response. They are not responsible for the account theft but the way they put it is insane. They could have added that the police is not going to do anything about it or at least that your chances are slim. No clue how they handle it in the US but here in Germany there are unofficially no actions taken against cyber criminals unless the crime would result in 2 or more years of arrest. Otherwise it is just too much work to contact Anet, get the IPs involved, backtrace them, all the paper work, etc etc etc for a $200 account and since Anet does not allow RMT and selling items for cash your account is worth the price you payed for the gamecodes (about $200 for all) and maybe less cause it is used . That's probably not even worth a mail to the cyber division.
Anet is using Dismiss Responsibility on themselves!
Jetdoc
Quote:
Originally Posted by Mystica
Whoever got onto your accounts doesn't look for ectos but ZKeys to USE them! That's seriously random...
|
EmptySkull
Please Anet. Just give me a perma lock on my characters. If everything else is stolen I can replace it. My toons I cannot. I don't want to hear about how some people would qq after the perma locked a character. And now regret the decision. Because I would instantly perma lock all my toons and never look back.
Chthon
Quote:
Originally Posted by Jetdoc
Okay guys, here's the response I got from Support when I filed my ticket (at Regina's request).
|
Support has no way of knowing if it was your system that was compromised or theirs. Moreover, it could have been their code on your system, which would also be their problem. They need to be taking a lot more responsibility for this.
What's more, even if they were not responsible, it would be in their best interest to figure out what happened and fix it. No one is going to buy GW2 if GW1 accounts aren't secure. Even the morons at support should understand this.
Go back to Regina, and also talk to Gaile; between the two of them they should be able to get the devs looking at it, instead of the support personnel who apparently try to avoid actually dealing with a ticket, no matter how serious the problem is.
crazybanshee
Quote:
Originally Posted by EmptySkull
Please Anet. Just give me a perma lock on my characters. If everything else is stolen I can replace it. My toons I cannot. I don't want to hear about how some people would qq after the perma locked a character. And now regret the decision. Because I would instantly perma lock all my toons and never look back.
|
Accursed
Quote:
Originally Posted by Mesmer in Need
Lol as soon as i opened this thread, my Norton Antivirus scan started running. My computer is paranoid for itself lol. Grats for catching him before did any major damage.
|
Once I opened, this page exited out and my anti-virus came up.
All good now
Thizzle
If the guy was really after something he wouldn't just get on the account and spend. He would have a second computer ready to make the trade so he could get your valuables right away. Is there seriously a consequence for stealing accounts?
Savio
The whole "you downloaded a keylogger or shared your account" thing is getting old. Stop posting it and read the thread.
dread pirate fargus
Quote:
Originally Posted by EmptySkull
Please Anet. Just give me a perma lock on my characters. If everything else is stolen I can replace it. My toons I cannot. I don't want to hear about how some people would qq after the perma locked a character. And now regret the decision. Because I would instantly perma lock all my toons and never look back.
|
/signed
Lady Lozza
Quote:
Originally Posted by Savio
The whole "you downloaded a keylogger or shared your account" thing is getting old. Stop posting it and read the thread.
|
I said in another thread that stealing information, or intercepting information from websites is a lot easier than from a custom client like GW. And forum sites are hardly known to be as secure as shopping sites - let's face it, they don't need to be.
Jet, glad they didn't take much from your account, good job with your quick actions!
ceberation
ok i have seen many different questions about hacking, and how they are able to change your password,now my friend a very very good hacker was able to steal of 140 lvl 70 WOW accounts in 2 days using a fourm exploit as i dont know excatly how he manged to do it but i was sitting next to him as he did this along with a myspace account and several gmail accounts. after he did his thing with the fourm exploit he used a password cracker/reseter to get the passwords. i was a really intresting process but somehow he can take WOW accounts through a fourm. so my question is, could this be happening using the guru forums here?
natural_Causes
Quote:
Originally Posted by EmptySkull
Please Anet. Just give me a perma lock on my characters. If everything else is stolen I can replace it. My toons I cannot. I don't want to hear about how some people would qq after the perma locked a character. And now regret the decision. Because I would instantly perma lock all my toons and never look back.
|
I don't know what I would do if my Necro got deleted
Killed u man
Quote:
Originally Posted by natural_Causes
/signed
I don't know what I would do if my Necro got deleted |
It's not the end of "all" tough, however, people filling their HoM so they get some nice extra's in GW2 SHOULD atleast get the opportunity to secure their character...
(Make it soo that when U "lock" a character, there is a 30 days waiting period when U try and delete it. IF within these 30 days you "un-delete it", the timer will reset, and the account will go back to normal. This way you yourself could still delete a character, but a hacker couldn't. 30 Days seems a nice period of recovering your account)
You also got lucky you caught him, also what he did is kinda suspicious, expect a temp ban for "exploiting" or something soon... (You know, with the gay message they will look into it within the next days, which actually means the next weeks)
Shakti
Quote:
Originally Posted by Jetdoc
Okay guys, here's the response I got from Support when I filed my ticket (at Regina's request).
So, in short, it sounds like A-Net and NCSoft's offical stance on hackers is that they won't do an "official" investigation unless we file a police report and the police issue a subpoena. I'm not sure if the police would issue such a subpoena unless it can demonstrated that the individual was "distributing and propagating a keylogger, Trojan, or other computer virus." In my situation, I'm not sure if I can do that, unless (as Painbringer suggested above) my antivirus program subsequently detects a keylogger, Trojan or some other sort of virus (which it hasn't thus far)...and I'm not sure if that was even the cause of this hacking attempt. Interesting official response, to say the least. |
The fact that they are basically saying they will do nothing unless they get a subpoena from the police (which they know damn well won't happen) is leaving an awful taste in my mouth. They do have a responsibility to track down the how of all this and get it fixed. This may very well be on their end.
As it stands, there is no way in hell I'll invest any time or money in GW2 if this is all we can expect from them when our accts are on the line. I am so dissapointed.
Lady Lozza
Does the "do nothing" mean they will not perma-ban those they find hacking other players accounts? This doens't make any sense...
Aera Lure
The mention of the police in the official response was pretty funny. I doubt Anet was trying to be snide, but police looking into a game hack? I cant think of a country where that would happen. Certainly wouldnt happen here (US).
fenix
Anet are being a bit silly, all they have to do is check the IP address that hacked the account, and ban it from GW servers, or SOMETHING.
Fail support team is fail.
Fail support team is fail.
HuntMaster Avatar
1st off, I am sorry about the response you got jet, thats complete crap and shows me that we could all get hacked and nothing would happen, Anet just doesnt care.
Here's another idea, its a bit of a pain in the ass, but humor me. Anet could add these security features.
Log in password (which we have)
Character passwords (each character has its own password that must be input before it can be accessed.) yes this would take people a few extra seconds to get to playing, but it would add more security, and if like jet, we got booted cause someone hacked our log in pw, then we could get back on, change our log in pw before they hacked a character password. (this would make hacking passwords more time consuming, and we could log back in, boot them out, and change log in password, so they have to start all over again from the begining.
I doubt anyone can hack two different passwords in less than 5 minutes (without a program)
Add in a Lock feature for characters so they can not be deleted. I would love to lock my warrior, I'm never going to delete him ever, I would buy more character slots if need be, but after the work and time i put in on him, Hes never ever getting deleted.
Each password change needs to be confirmed through email, this way no one can change your passwords without access to your email.
In-game password. Once you finally get in the game on a character, you have another password you have to enter, you have 120 second (2 minutes incase of lag) to enter this password, or you are disconnected for 5 minutes.
This way even if they get two passwords correctly, they have to get the third quick or be shut out for 5 minutes, plenty of time to reset ALL passwords if need be.
for each failed attempt, the account would be disconnected for 5 minutes, so 2 failed tries would result in a 10 minute lock out, 3 tries means 15 minutes and so on.
Yes this is a pain in the ass, as I said, but it would be very effective in protecting our accounts. Anet says we are responsible for our security but then gives us very few ways to protect ourselves, And then when our protections fail, they say they wont help because its not their responsibility!
Another option would be a internal false key and password, so when a program tries to read it, it will only get the fake key or password.
I would rather it take and extra couple of minutes to get into each character and log on, than log in quickly and find all my items gone or characters deleted.
Because of this very real and very common problem I am taking a break from GW until it can be resolved. I am going to play other games and do other stuff. But if this keeps up I see people getting sick of doing everything over again to regain their items or characters and finally quitting the game, and if anet/ncsoft keeps treating their playerbase like they have with jet, I see people refusing to purchase ncsoft products in the future. Including gw2.
No point in getting into something that will only leave you frustrated in the end.
PS: Jet, If you are willing, You should call the police and report this, with all the information including the response, and then post what the police have to say, send the polices response to ncsoft and then post there counter response. Also look online for free legal advice and explain the situation, See if there is any action we the consumers can do to either persuade or force ncsoft to do their job and safeguard their product. It seems very shady that we spent our money on something that will fail in the end, almost as if the provider is scamming its customers. This just smells bad on all ends. Everyone who has been a victim of this (hacking) should also do the same. With enough support something will get done.
Here's another idea, its a bit of a pain in the ass, but humor me. Anet could add these security features.
Log in password (which we have)
Character passwords (each character has its own password that must be input before it can be accessed.) yes this would take people a few extra seconds to get to playing, but it would add more security, and if like jet, we got booted cause someone hacked our log in pw, then we could get back on, change our log in pw before they hacked a character password. (this would make hacking passwords more time consuming, and we could log back in, boot them out, and change log in password, so they have to start all over again from the begining.
I doubt anyone can hack two different passwords in less than 5 minutes (without a program)
Add in a Lock feature for characters so they can not be deleted. I would love to lock my warrior, I'm never going to delete him ever, I would buy more character slots if need be, but after the work and time i put in on him, Hes never ever getting deleted.
Each password change needs to be confirmed through email, this way no one can change your passwords without access to your email.
In-game password. Once you finally get in the game on a character, you have another password you have to enter, you have 120 second (2 minutes incase of lag) to enter this password, or you are disconnected for 5 minutes.
This way even if they get two passwords correctly, they have to get the third quick or be shut out for 5 minutes, plenty of time to reset ALL passwords if need be.
for each failed attempt, the account would be disconnected for 5 minutes, so 2 failed tries would result in a 10 minute lock out, 3 tries means 15 minutes and so on.
Yes this is a pain in the ass, as I said, but it would be very effective in protecting our accounts. Anet says we are responsible for our security but then gives us very few ways to protect ourselves, And then when our protections fail, they say they wont help because its not their responsibility!
Another option would be a internal false key and password, so when a program tries to read it, it will only get the fake key or password.
I would rather it take and extra couple of minutes to get into each character and log on, than log in quickly and find all my items gone or characters deleted.
Because of this very real and very common problem I am taking a break from GW until it can be resolved. I am going to play other games and do other stuff. But if this keeps up I see people getting sick of doing everything over again to regain their items or characters and finally quitting the game, and if anet/ncsoft keeps treating their playerbase like they have with jet, I see people refusing to purchase ncsoft products in the future. Including gw2.
No point in getting into something that will only leave you frustrated in the end.
PS: Jet, If you are willing, You should call the police and report this, with all the information including the response, and then post what the police have to say, send the polices response to ncsoft and then post there counter response. Also look online for free legal advice and explain the situation, See if there is any action we the consumers can do to either persuade or force ncsoft to do their job and safeguard their product. It seems very shady that we spent our money on something that will fail in the end, almost as if the provider is scamming its customers. This just smells bad on all ends. Everyone who has been a victim of this (hacking) should also do the same. With enough support something will get done.
garethporlest18
Hunt that would never work because everyone that plays GW would QQ so much for having to do all that crap Anet/NCSoft would be forced to switch it. I'd like it though.
HuntMaster Avatar
Quote:
Originally Posted by garethporlest18
Hunt that would never work because everyone that plays GW would QQ so much for having to do all that crap Anet/NCSoft would be forced to switch it. I'd like it though.
|