What to do after being Hacked?

The Super Chilli

The Super Chilli

Lion's Arch Merchant

Join Date: Jun 2008

BEHIND YOU!

HRUU

Me/

Last night someone had managed to change my password and hack into my account. They stole everything worth over 1k over my entire account yet thankfully didnt delete any of my characters.

What I want to know is there anyway that I can report this to Anet so they can track down whoever was responsible or possibly even restore any lost goods.

Thanks

neighto

neighto

Lion's Arch Merchant

Join Date: Nov 2005

The Heart of Life is [Love]

well you can send a report to them.. anet will get your account back.. give you access to change your email (as long as you can provide the Keys that are associated to your account) but thats about all you will get. No use trying to get any items etc back.. as you are SOL on that one.

Be grateful they didnt delete your toons! all the other stuff and money can be replaced..

GL

Skye Marin

Skye Marin

Jungle Guide

Join Date: May 2006

The Seraphim Knights [TSK]

E/A

Quote:
Originally Posted by The Super Chilli View Post
What I want to know is there anyway that I can report this to Anet so they can track down whoever was responsible or possibly even restore any lost goods.
Yes, no, and no.

Support will help you reset your passwords if needed and may do some investigation to prevent it from happening again, but I've never heard of any lost goods ever being recovered.

The Super Chilli

The Super Chilli

Lion's Arch Merchant

Join Date: Jun 2008

BEHIND YOU!

HRUU

Me/

Ok i worked out how to get my password back. What is the website to report things like this to Anet?

Black Metal

Black Metal

Desert Nomad

Join Date: Jan 2009

N/

besides securing your anet account, you need to put some serious thought into how this person got your account details, and remedy that too.

Eragon Zarroc

Eragon Zarroc

Atra estern?? ono thelduin

Join Date: Jan 2008

Madness Incarnate

[Duo]

W/P

Quote:
Originally Posted by The Super Chilli View Post
Ok i worked out how to get my password back. What is the website to report things like this to Anet?
Here are multiple helpful links, including the links to email support and web support.

The Super Chilli

The Super Chilli

Lion's Arch Merchant

Join Date: Jun 2008

BEHIND YOU!

HRUU

Me/

Ok last question...I gave my bank details to Anet to to buy game ad-ons through Guild Wars, will this person have any access to them?

Also thanks to all answers

Darcy

Darcy

Never Too Old

Join Date: Jul 2006

Rhode Island where there are no GW contests

Order of First

W/R

Your credit card information should not be available to a hacker as it is not part of your account. ArenaNet does not need to keep that information as there is no "billing" being done.

In the future, if you contact them immediately, [email protected] with ACCOUNT HACKED in the subject line, they sometimes can retrieve items that haven't been merched or passed to a third person.

Boogz

Boogz

Lion's Arch Merchant

Join Date: Feb 2008

Variable Speed Farmers[VsF]

Mo/

I got hacked once. Wish you luck, ANet didn't give me back a single gold stolen. Lost my deldrimor armor set, an elite kurz gloves, tons of golds/greens and over 150 plat.

Painbringer

Painbringer

Furnace Stoker

Join Date: Jun 2006

Minnesota

Black Widows of Death

W/Mo

Quote:
Originally Posted by Black Metal View Post
besides securing your anet account, you need to put some serious thought into how this person got your account details, and remedy that too.
Exactly

If you have no ideas how they got on your account. I would scan for Key loggers and other malware. Unfortunately the hacker’s luv fan sites. I would recommend an online scanner and a virus scanner

The Super Chilli

The Super Chilli

Lion's Arch Merchant

Join Date: Jun 2008

BEHIND YOU!

HRUU

Me/

When i first logged on and it didnt work, I thought it just wasnt connecting to the server. After i was forced to change my password and i realized what happened i reported it immediately. Although Anet was at first fast to respond future emails have taken several hours to come, meaning there is no chance to get any items.

Just for the record, the stole around 2 stacks of ectos total...

ropes782

Frost Gate Guardian

Join Date: Jun 2006

Friends of Sanity [LOCO]

R/Me

So the same thing happened to me over the holidays. My account was hacked (password was changed with no email notification about the change) and was looted for roughly 2-3mil of guild wars gold (this includes ecto/zkeys of course).
After thinking long and hard about it, I still can't think of a LIKELY scenario for how they got my password. An unlikely scenario (but most plausible) is that my account info was hacked off of this forum or another GW forum because I have used very similar passwords for them. But this is still highly unlikely since my GW activity has been limited to only logging into the GW client to chat with friends for the past 6 months at least (these friends I have known for a few years and even though I haven't given them my account info, I'd still trust them).

This is the message I sent to NCSOFT:
"Someone recently broke into my Guild Wars account, changed the password, and stole all of my in game gold. I do understand that you may not be able to reclaim any lost in-game-gold, but this poses a security threat to me and any help with this matter would be greatly appreciated.

details:
The hacker gained access to my account between 12/23/2010-12/28/2010. I discovered the issue in the evening of 12/28/2010 because my Guild Wars password had been changed. Luckily I still had access to NCsoft so I reset my password and was able to log back into my GW account only to find that all of my gold and most of my items were missing (my characters were still there).
My normal IP address is: xx.xxx.xx.xx (though I do have a dynamic IP so it may change every now and then)
Could you provide any information regarding the computer which accessed my account during the time frame I provided? (IP, MAC, etc.)

Interesting side note: I never received a password change notification in my email when the hacker changed my password (but I did receive notifications when I changed my password). Is there a way the password could have been changed without a notification sent to my email?

Any insight into how this could have happened would be greatly appreciated. I have not done any "risky" activity with the account at all. I have not even used a GW forum for quite a few months (I mainly just log into the client and only participate in activities with my friends). I have never given my account information out to another person (that goes for password AND account name).
I also doubt that my computer was hacked because it is a fairly new machine that I built myself and I do not download needless or random things. None of my other personal accounts have been compromised either."

darkdudefly

Pre-Searing Cadet

Join Date: Dec 2010

most time in ascalon city

tnhs

N/E

i never trydn, but do you get an e-mail notification if you change your e-mail adress ?
Tough it only get's deficulter for the hacker, he changes e-mail then changes pass and he also must have changed the e-mail back to yours. Then he had to know alot about your passes and accounts. Quite inpossible actually?!

Lucci_Slevin

Frost Gate Guardian

Join Date: Nov 2008

Liars Cheats and Thieves

Quote:
Originally Posted by ropes782 View Post
An unlikely scenario (but most plausible) is that my account info was hacked off of this forum or another GW forum because I have used very similar passwords for them. But this is still highly unlikely since my GW activity has been limited to only logging into the GW client to chat with friends for the past 6 months at least (these friends I have known for a few years and even though I haven't given them my account info, I'd still trust them).
This site and others did get their databases raided last year. You would not have needed to actually visit the site when that happened for them to get the info.

It is important that the password for GW be unique to GW and nowhere else. The password for the email address that is linked to your account should be unique to it as well. To be clear: these should be two different passwords.

xhappy feetx

Wilds Pathfinder

Join Date: Oct 2007

Isle of the Nameless

Black Crescent [BC] / Stonebenders [sC] / The Rimmers [rR]

W/E

I've heard of many people getting hacked recently, wtf is going on o.O

Bassma

Frost Gate Guardian

Join Date: Oct 2010

Quote:
Originally Posted by xhappy feetx View Post
I've heard of many people getting hacked recently, wtf is going on o.O
One problem is that many players use the same logon and password as they do elsewhere. Hackers put 2 & 2 together and that's how they get some logons and passwords.

You should never use the same logon and password twice anywhere. What you should do is keep a notebook of them and keep it securely locked in a safe under your bed (fireproof of course) with lock n key. I think I have about 100 logins and passwords now and many I can keep in my head easily enough.
Memory is just a matter of association anyway.

Jumping Is Uselss

Jumping Is Uselss

Jungle Guide

Join Date: Sep 2005

-... . .... .. -. -.. / -.-- --- ..-

Quote:
Originally Posted by Bassma View Post
You should never use the same logon and password twice anywhere. What you should do is keep a notebook of them and keep it securely locked in a safe under your bed (fireproof of course) with lock n key. I think I have about 100 logins and passwords now and many I can keep in my head easily enough.
Memory is just a matter of association anyway.
You could just use notepad and put it all on a USB. No need to go nuts with the security. If you are paranoid about getting your usb getting hacked, encrypt it with truecrypt, but that seems excessive to me.

Aba

Aba

Wilds Pathfinder

Join Date: Dec 2006

Vancouver,Canada

Buying a cheap 2nd acount is always good.
But,When my beloved Main account was hacked and Anet gave me the middle finger, I went out and bought a PS3. Sweet timing as well cause the PS3 was "hacked".....
Still play my second Guildwars account here and there, but with this game being watered down and simplified more and more by the week, I think it was a good call on my part.
Plus it gave me a reason to stop wasting money on microsoft RROD paper wieghts.
Anyways thats my 2 cents..

headlesshobbs

Krytan Explorer

Join Date: Apr 2006

Quote:
Originally Posted by Boogz View Post
I got hacked once. Wish you luck, ANet didn't give me back a single gold stolen. Lost my deldrimor armor set, an elite kurz gloves, tons of golds/greens and over 150 plat.
One would think they should at least give you the ip address of said person who last logged aside from yours, that way you can do a little bit of sleuth work and pay the poor SOB a surprise visit.

Aba

Aba

Wilds Pathfinder

Join Date: Dec 2006

Vancouver,Canada

Quote:
One would think they should at least give you the ip address of said person who last logged aside from yours
I wish this was the case.....I would make them regret, taking my account.
Reminds me of something I read a couple days back, when Zos had his Computer and all its contents stolen
(Never mess with hackers stuff)Heres a link
http://www.pocketfives.com/f13/lesso...mputer-613034/
(Long video but its worth the watch.....)

Aycee

Aycee

Lion's Arch Merchant

Join Date: Aug 2010

The other side

Quote:
Originally Posted by Aba View Post
http://www.pocketfives.com/f13/lesso...mputer-613034/
(Long video but its worth the watch.....)
Watched it all lol definitely entertaining.

Bassma

Frost Gate Guardian

Join Date: Oct 2010

Quote:
Originally Posted by Jumping Is Uselss View Post
You could just use notepad and put it all on a USB. No need to go nuts with the security. If you are paranoid about getting your usb getting hacked, encrypt it with truecrypt, but that seems excessive to me.
Problem is Usb's don't last forever and can be corrupted as well. Best to put it on material that is out of site and far away from the computer. Paper and certain inks will last your lifetime and in a fireproof safe nothing will happen except for you getting robbed. Less chance of robbery than there is of being hacked these days.

Buzzer

Buzzer

Wilds Pathfinder

Join Date: Nov 2005

Australia

God damn, this just happened to my account.
I use a lot of different passwords but I just realised it's the same one that I use on another gaming site.
Don't think I can be motivated to play again.

pumpkin pie

pumpkin pie

Furnace Stoker

Join Date: Jul 2006

behind you

bumble bee

E/

Quote:
Originally Posted by The Super Chilli View Post
Last night someone had managed to change my password and hack into my account. They stole everything worth over 1k over my entire account yet thankfully didnt delete any of my characters.

What I want to know is there anyway that I can report this to Anet so they can track down whoever was responsible or possibly even restore any lost goods.

Thanks

you can try but they will be very cold, and tell you that It is their policy bla bla bla, basically tells you they do not restore stolen item, even when they can track it, and even thou you have the purchase code to proved it , they won't do a thing, after telling you that, they will send you a survey asking it their service is good .

Bassma

Frost Gate Guardian

Join Date: Oct 2010

Quote:
after telling you that, they will send you a survey asking it their service is good

lmao choked on my coke

Spiritz

Forge Runner

Join Date: Apr 2007

DMFC

Quote:
Originally Posted by Buzzer View Post
God damn, this just happened to my account.
I use a lot of different passwords but I just realised it's the same one that I use on another gaming site.
Don't think I can be motivated to play again.
This is what a lot of players dont realise - a lot of hackers once they hack your email account then attempt to use the forgot login on many mmo`s and gain access.after i got hacked a long time ago and regained my hotmail account i found i was getting a few emails from a few free mmo`s that i know i never heard of yet i was getting info emails etc.

If you use anything like msn live or yahoo version never use your gaming accounts email addy - email accounts are so easy to get - googlemail for example - make one up just for using on msnlive ( you dont need msn email account ) and that way you can chat to contacts from gw without the worries of a hacker gaining your gw acount ( seriously decreases the chance ) .
That way and periodically rotating passwords like anet suggests , keeping login details private and not sharing , and avoiding 3rd party software unless from a legit site ( guru and wiki comes to mind ) and not having same password and email account on multiple games etc will help and make the hackers life a lot harder - also a gd antivirus and firewall program helps.

Big John Thomas

Big John Thomas

Ascalonian Squire

Join Date: May 2006

Urgoz Warren

R/Rt

Quote:
Originally Posted by Skye Marin View Post
but I've never heard of any lost goods ever being recovered.
It is possible. I was one of a number of people who lost stuff around Feb '09 I think it was. We had to email Gaile herself with as much info as possible and I think she actually spoke on the phone to people in the US. I was lucky all I lost was a Torment Shield, Ever Charr tonic a few ectos and around 700k. Took about 4 weeks then I was invited to a private guild hall and she gave me my shield and tonic back but she said she couldnt give money back so gave me 2 ambraces instead.

All you can do is email support straight away with as much info as possible and hope for the best but like I say we were lucky because a number of us reacted quickly and they managed to track down the person responsible

BuD

BuD

Krytan Explorer

Join Date: Mar 2006

Nunya

E/Mo

Quote:
Originally Posted by Big John Thomas View Post
then I was invited to a private guild hall and she gave me my shield and tonic back but she said she couldnt give money back so gave me 2 ambraces instead.

right....

screen shot or it didnt happen...

Linksys

Jungle Guide

Join Date: Apr 2006

I'm sure this has been said before and I think I said it before in past threads. If you join a guild and you don't know anyone in it and they have a web forum at someone's own domain website, don't register and post there. Even if you use a different email address and password. Don't even visit it. Unless you want to use a library computer or something. I never join a guild that makes it a requirement that I use their forums.

And about using different email addresses from the same service(like Yahoo or Gmail) for different things: If logging out and back in is a hassle, just use the CookieSwap add-on for Firefox.

The email address I use for GW Guru has nothing to do with my GW account. I know the Guru staff wouldn't do any sneaky. But it's just procedure and habit. A matter of making no exceptions in isolating my GW account from anything else I do online.

lemming

lemming

The Hotshot

Join Date: May 2006

Honolulu

International District [id???]

Quote:
Originally Posted by Linksys View Post
If you join a guild and you don't know anyone in it and they have a web forum at someone's own domain website, don't register and post there. Even if you use a different email address and password. Don't even visit it. Unless you want to use a library computer or something. I never join a guild that makes it a requirement that I use their forums.
There's a difference between security consciousness and paranoia.

You can't see me

You can't see me

Forge Runner

Join Date: Nov 2006

USA

P/W

Steps to ensure that your account is secure:

1. Use a totally different password than any that you have used in your life. Memorize it the first three days you use it. It's not hard.

2. Never share your account with anyone. Never let a friend sit down and play your account without you watching, and for the love of god, don't let your friend watch you type in your password.

3. Use web security when browsing the internet and a filter on your emails.

4. Don't download anything that you're not 100% sure is the real deal for what you're getting.

5. Don't brag about your ingame wealth on ten different forums.

6. Don't use any personal information on the web. Give Guild websites an alternative email and a different password than any you use in real life or in game.

7. Don't make easy links between information in your life, other games you've played, sites you use, and Guild Wars.

8. Just be smart. Don't download garbage, don't account share, don't buy gold and keep your PC secured. Unless someone it 100% out to get you, chances are that if you follow these steps your account is safe and sound.

silesky

silesky

Ascalonian Squire

Join Date: Dec 2005

Mines of Moria

Celtic Wild Hunt

W/R

just recovered my hacked account which like everyone elses was raided for well over 1 mill of items and in game gold, funny thing is the only 2 friends on my friends list are people i have never seen or spoken to before (my friends list was full prior to be hacked) and I have 1 item customised to somebody whom again I have never seen or spoken to before, hopefully these are the people that commited the crime and arenanet do something about them

Linksys

Jungle Guide

Join Date: Apr 2006

Or it might be a planted item from another hacked account intended to throw you off.

cosyfiep

cosyfiep

are we there yet?

Join Date: Dec 2005

in a land far far away

guild? I am supposed to have a guild?

Rt/

either way I hope you alerted anet to this and let them figure out if they are from another victim or a perp.....

(and sometimes a little paranoia is not a bad thing)

Linksys

Jungle Guide

Join Date: Apr 2006

I agree. I know it sounds paranoid that I won't even load a guild's own forum on my web browser. But if it's on some home made domain I've never heard of and has some script or whatever it is of their own, I don't wanna load it. No matter how many security features or add-ons I'm using. Just the way I am.

Bassma

Frost Gate Guardian

Join Date: Oct 2010

Quote:
Originally Posted by lemming View Post
There's a difference between security consciousness and paranoia.
That's what all the hackers say.

Showtime

Showtime

Forge Runner

Join Date: Sep 2005

WTB Q9+5e Bows/Q8 14^50 Weapons

R/P

Quote:
Originally Posted by ropes782 View Post
So the same thing happened to me over the holidays. My account was hacked (password was changed with no email notification about the change) and was looted for roughly 2-3mil of guild wars gold (this includes ecto/zkeys of course).
After thinking long and hard about it, I still can't think of a LIKELY scenario for how they got my password. An unlikely scenario (but most plausible) is that my account info was hacked off of this forum or another GW forum because I have used very similar passwords for them. But this is still highly unlikely since my GW activity has been limited to only logging into the GW client to chat with friends for the past 6 months at least (these friends I have known for a few years and even though I haven't given them my account info, I'd still trust them).

This is the message I sent to NCSOFT:
"Someone recently broke into my Guild Wars account, changed the password, and stole all of my in game gold. I do understand that you may not be able to reclaim any lost in-game-gold, but this poses a security threat to me and any help with this matter would be greatly appreciated.

details:
The hacker gained access to my account between 12/23/2010-12/28/2010. I discovered the issue in the evening of 12/28/2010 because my Guild Wars password had been changed. Luckily I still had access to NCsoft so I reset my password and was able to log back into my GW account only to find that all of my gold and most of my items were missing (my characters were still there).
My normal IP address is: xx.xxx.xx.xx (though I do have a dynamic IP so it may change every now and then)
Could you provide any information regarding the computer which accessed my account during the time frame I provided? (IP, MAC, etc.)

Interesting side note: I never received a password change notification in my email when the hacker changed my password (but I did receive notifications when I changed my password). Is there a way the password could have been changed without a notification sent to my email?

Any insight into how this could have happened would be greatly appreciated. I have not done any "risky" activity with the account at all. I have not even used a GW forum for quite a few months (I mainly just log into the client and only participate in activities with my friends). I have never given my account information out to another person (that goes for password AND account name).
I also doubt that my computer was hacked because it is a fairly new machine that I built myself and I do not download needless or random things. None of my other personal accounts have been compromised either."
If he got your gw info, he probably stole your email info and passwords too. Then he could intercept ncsoft emails and delete them.

THIS IS ALL EASILY POSSIBLE if someone gets a keylogger on your computer or you use someones computer that has a keylogger. It's not always a virus. Some people/places put them on their computer to monitor stuff. Work, libraries, etc could have keyloggers on them.

I'm sure there have been compromises at ncsoft, but most of it is us not protecting ourselves better or making a mistake or severa..l.

Use different passwords. Make good habits like not going to new sites before researching them and not opening attachments or auto running anything. Keep all protection up to date and use it. Don't assume someone elses computer is safe for you to access your email etc. Use a 2nd or a few different emails for different things and keep all pw's different.

Paranoid? Maybe, but I left my window open 6" a couple months ago and came back to find $500 worth of missing stuff. Very unlikely that that would happen in my driveway, in the day, but it did. I usually never leave my gps, tools etc in there, but I did. I always raise my windows, but was working on something and didn't raise it up after. Basically the one time I make a mistake, I get taxed good. If thieves are that brazen irl, think of how many thieving cowards hiding in their rooms would jack your stuff if they could? Hey there are probably tons of users here who would jack all your stuff if they got the chance. There are lots that wouldn't, but our numbers are getting smaller. So don't assume. Don't open up any info to others that you aren't willing to lose.

If you don't want to pay for protection or even if you have it, there are tons of good freeware that you can protect/check/scan your puter with. Try running free programs like Malwarebytes, adaware, avast, and hijackthis. Now is a good time to update passwords and security. It doesn't take long and just be sure to remember them. Use uppercase/lowercase/#'s/etc when possible. Don't keep those new passwords on your computer or in an email account. Better to write em down if you have to and keep that paper secure. The hackers will get better and be one step ahead most of the time, but if you follow those suggestions, you won't be that easy mark.

silesky

silesky

Ascalonian Squire

Join Date: Dec 2005

Mines of Moria

Celtic Wild Hunt

W/R

Quote:
Originally Posted by Linksys View Post
Or it might be a planted item from another hacked account intended to throw you off.
that too however the game stated i logged in 5 hours prior to me logging back in and there was also a mini pet, the roller beetle (gold one) why would somebody leave that on my acc is weird imo.
Just really gutting cause i literally have nothing so cant fight or really make money as i have no armour or weps

Linksys

Jungle Guide

Join Date: Apr 2006

If you dedicated your beetle mini pet, that's probably why no one took it. It doesn't have much if any resale value.

silesky

silesky

Ascalonian Squire

Join Date: Dec 2005

Mines of Moria

Celtic Wild Hunt

W/R

Quote:
Originally Posted by Linksys View Post
If you dedicated your beetle mini pet, that's probably why no one took it. It doesn't have much if any resale value.
No what im saying is is that it isnt mine ive never had it, it looks as if they were in the process of salvaging everything etc and to make room for my stuff chucked that onto my acc thinking they could get it back later