Hacking

X Firestorm

Ascalonian Squire

Join Date: Feb 2006

Gold

W/

Not sure where to post this so ill put it here. Today i was in TOA after enjoying a trip to thw uw when i saw someone spaming out(i wont give out address):www.//////.com has all you hacking needs from money hacks to farming hacks its the best way to make money. Seeing this anoyed me as i was someone who worked hard for there money etc... I then checked out the site and sure enough there was the hacks and them saying there was spyware on them. I did no dare try downloading it so i dont know if it works but what i wanna know is that if Anet knows about this site and hacks why do they not try to put a stop to it???

optical

Banned

Join Date: Dec 2005

There are numerous sites claiming to have "hacks" for item duping and the such. They're nothing more than the same back-door trojan being spread around the internet by multiple people. Item duping, god mode, speed hacks and the such do not exist for Guild Wars.

benmanhaha

benmanhaha

Krytan Explorer

Join Date: Aug 2005

nowhere!!!

N/Mo

Yea, a-net is claiming that their servers are fairly impervious to these hacks. This ain't diablo. But yes you were right for not downloading them, they are chock-full of trojans. If you took a screen-shot, send it in to a-net, the account may be banned/suspended.

Also, there isn't really a suggestion here, so next time something like this comes up, send it on over to riverside.

David Lionmaster

Frost Gate Guardian

Join Date: Jul 2005

above the floor and below the celing

Fortunes Favored

Quote:
Originally Posted by optical
There are numerous sites claiming to have "hacks" for item duping and the such. They're nothing more than the same back-door trojan being spread around the internet by multiple people. Item duping, god mode, speed hacks and the such do not exist for Guild Wars.
yeah, i wouldnt even go to the site, they could put a keylogger on your comp by just going there.

kade

Lion's Arch Merchant

Join Date: Oct 2005

Currently residing in ToA dis 1

Mo/

Quote:
Originally Posted by David Lionmaster
yeah, i wouldnt even go to the site, they could put a keylogger on your comp by just going there.
is that possible without actually downloading content from the site?

X Firestorm

Ascalonian Squire

Join Date: Feb 2006

Gold

W/

I took a screenshot of the guy saying about it should i email it to anet?

benmanhaha

benmanhaha

Krytan Explorer

Join Date: Aug 2005

nowhere!!!

N/Mo

Quote:
Originally Posted by X Firestorm
I took a screenshot of the guy saying about it should i email it to anet?
Yis, I would know exactly who to send it to, never having done it before, but check the site, and look around.

Also, as far as I know, you can't get viruses from just viewing a web-site, if I'm wrong, please lemme know, I basically live under a rock.
Edit: Read the posts below me, and you can see I do infact live under a rock.

Soul Shaker

Soul Shaker

Krytan Explorer

Join Date: Aug 2005

Sunshine Coast, Australia

Soul Crusaders

Quote:
Originally Posted by kade
is that possible without actually downloading content from the site?
If you open up the page, you're downloading content. It is very well possible, i've gotten the same virus twice by a hi-jacked link. First time forced me to reformat...

Otherwise, yes, send it off to anet.

optical

Banned

Join Date: Dec 2005

Quote:
Originally Posted by kade
is that possible without actually downloading content from the site?
yes. if you have ActiveX turned on.


I took the liberty of downloading the "hacks" and infecting myself. The trojan created a new lsass.exe which is your Local Security Authentication Server, it's the process that verifies your account info when you log into Windows. The trojan creates a new lsass.exe which runs the authentication server as well as a back-door on your system. You'll notice in your registry that the lsass.exe Hkey changes to a new directory. if your lsass.exe isn't running from c:\windows\system32\lsass.exe you're probably infected.

If you're infected go to your run menu and type "msconfig" click the services tab, uncheck lsass.exe(it should only be there if you're infected) then boot your machine run a search and delete the lsass.exe it created.

Mandy Memory

Mandy Memory

Desert Nomad

Join Date: Mar 2005

USA

Xen of Sigils [XoO]

W/

you can embed a trojan in a .gif which nothing will block (well an imageblocker...but no one uses those)
When you load the site it will not just get downloaded but also executed.

Killin_Frenzy

Killin_Frenzy

Frost Gate Guardian

Join Date: Nov 2005

E/

Quote:
Originally Posted by X Firestorm
Today i was in TOA after enjoying a trip to thw uw when i saw someone spaming out(i wont give out address):www.//////.com
Saw the same guy in LA...sent a few nasty whispers to say the least...

Savio

Savio

Teenager with attitude

Join Date: Jul 2005

Fifteen Over Fifty [Rare]

http://support.guildwars.com/. There isn't a real suggestion so closed.