May 01, 2008, 07:21 AM // 07:21
|
#61
|
Academy Page
Join Date: Jun 2006
Location: Netherlands
Profession: R/
|
I was wondering, in a game like bf2 there is alot of account spoofing/hacking. What they do is download a little software(freely avalible tru google), open sertain files replace there own pid number with the targetplayers, and go nuts with the account, using cheats, statpad,ect so the target account gets reset by ea or gets banned by PB. I know apples and oranges, because gw is mostly serverside, but still. Could this be done in GW? or something similar.
I surprised me that some files are so easy to acsess, same with the dat file thread here on guru. It surprises me that they allow that.
mzzls
|
|
|
May 01, 2008, 08:12 AM // 08:12
|
#62
|
Ascalonian Squire
|
There is a reason why you should update your OS, Adobe Flash(!), your browser, use adblockers etc.
If the database of one of the big fansites would get leaked... well, let's say it would not be very nice. It's a good guess that around 5% of all regged users here have the same mail-account and pw in the forums as in the game. And enough of them would have a pw that is easy enough to be reversed (and no - 'computer1' is not a good pw). Now, this site here is hosted by people who have a clue - but how many are regged on guild-forums hosted on some private root-server by people that update their stuff once every 2 years... anyone remember ULGG? Yeah, yeah...
|
|
|
May 01, 2008, 08:32 AM // 08:32
|
#63
|
Frost Gate Guardian
Join Date: Apr 2007
Guild: No Goats No Glory [BAAA]
Profession: Me/
|
IMO No way would a hacker have a 'guilty conscience' to leave your cash, but take your ectos, they're scumbags pure and simple. Maybe he has maxed out storage from breaking into numerous accounts. I feel for your plight sir.
|
|
|
May 01, 2008, 08:40 AM // 08:40
|
#64
|
Re:tired
Join Date: Nov 2005
Profession: W/
|
Quote:
Originally Posted by Inde
2nd report of this in 2 days. Interesting. Only thing that makes it unusual is that people still have access to their accounts. Something to keep an eye on but the response is still the same, report it to Guild Wars support.
|
You can't change someones account info without their PlayNC details, right?
|
|
|
May 01, 2008, 08:59 AM // 08:59
|
#65
|
Krytan Explorer
Join Date: Aug 2006
Location: Somewhere
|
As far as I'm aware, GW accounts linked to PlayNC are redirected to the PlayNC website for changes to GW account info.
Most players don't trust PlayNC security at all. Imagine the amount of players that don't make purchases from the online store because of that reason. Maybe if the company worked on player perception, in regards to PlayNC, they could remedy that.
As it stands, we haven't heard further on any type of security tests/monitoring/changes at PlayNC, so when we hear about hacked accounts we'll think it's due to PlayNC's poor security. Might not be true, but the company hasn't done much to alter this perception or to try to regain customer faith.
|
|
|
May 01, 2008, 09:03 AM // 09:03
|
#66
|
Re:tired
Join Date: Nov 2005
Profession: W/
|
Quote:
Originally Posted by Shai Lee
As it stands, we haven't heard further on any type of security tests/monitoring/changes at PlayNC, so when we hear about hacked accounts we'll think it's due to PlayNC's poor security. Might not be true, but the company hasn't done much to alter this perception or to try to regain customer faith.
|
I would assume that the recent spate of hackings are to do with keyloggers or the Guild Wars client, due to account info not being changed. It seems far more likely that the hacker couldn't get access to the related PlayNC accounts, or s/he could have just taken the whole account and stripped it bare, without the original owner able to log back in.
|
|
|
May 01, 2008, 09:09 AM // 09:09
|
#68
|
Desert Nomad
|
Don't know if this is relevant, but I checked my firewall logs a little while ago, and two things were weird:
a) it was blocking (yay) outgoing attempts to connect to a particular IP address. "whois" identified that IP address as belonging to "Lewt Inc." and Googling that name revealed them to be exactly what they sound like - a gold selling site (and I might add, I have never used or visited any gold selling sites).
b) My firewall was blocking repeated attempts to connect to my PC, from an IP Address that appeared to be PlayNC.com. I suspect this to be a spoof, since why would PlayNC attempt to connect to my PC? Perhaps the hope is that I will trust PlayNC and let them through my firewall (Yeah right. As if. Like even)
I run a truly absurd amount of security, anti-virus, anti-spyware, anti-rootkit, anti-suspicious behaviour, anti-everything software... always on, and multiple full scans per day. Nothing is detected. I use texmod downloaded from a "trusted" source, and Ventrillo for voice chat - but I've never used any other 3rd party software for GW. I've never visited or used any gold selling sites.
So why am I seeing a) above? My suspicion is malware on GW related sites/forums eg. adverts -
b) is worrying because it suggests someone knows I have a PlayNC game, and I am on a hitlist of people to be specifically targeted.
Is anyone else seeing similar activity?
Last edited by Riot Narita; May 01, 2008 at 09:54 AM // 09:54..
|
|
|
May 01, 2008, 09:21 AM // 09:21
|
#69
|
Lion's Arch Merchant
Join Date: Apr 2007
Guild: Ancient Shaolin Guardians
Profession: E/D
|
Since i don't actually type anything in, when i load up guild wars to log in...does that make me safe from key loggers????
Just wondering, maybe if that is the case, everyone should get themselves a shortcut that allows them to just log straight in without typing anything.
|
|
|
May 01, 2008, 09:41 AM // 09:41
|
#70
|
Jungle Guide
Join Date: Jul 2006
Location: The Land of Hyrule
Guild: [GoE]
Profession: W/
|
Uhm Oukanna I don't really know about it, but those info you use for the shortcut are saved somewhere on you pc, so I believe you can still be hacked. By the way, I don't really think that the hack comes from SoftNC side, I mean it would take too much effort (maybe) to hack into their server and steal info.
About the pop up thing on guru, some days ago a load of pop ups showed up for me as well, but Antivir didn't recognize any trojan or other kinds of malware. The only weird thing was that untill now FireFox did lock all pop ups on guru, dunno why he didn't that day....
|
|
|
May 01, 2008, 10:01 AM // 10:01
|
#71
|
Lion's Arch Merchant
Join Date: Apr 2007
Guild: Ancient Shaolin Guardians
Profession: E/D
|
Shame i don't know more about hacking-_-
Though, i would of thought if they use key logging, that only records inputted data, not searches through files?? but then again if they can put a key logger on your pc then i guess a program that can look through certain files would be simple.
You know, it could be as simple as the hacker gets random email addresses from perhaps guild wars guru (some people here have their email address showing, and everyone here plays guild wars) Then using a password hacker/key gen thing, that randomly tries combinations unitl it fits???
|
|
|
May 01, 2008, 10:03 AM // 10:03
|
#72
|
Frost Gate Guardian
Join Date: Jun 2007
Location: Isle of Meditation
Profession: N/
|
Horrible.
About the NCsoft password issues, as far as I am concerned they fixed it. My GW account is linked to NCsoft. Before this meant you couldnt change your GW password. But a couple of months ago I found out by trying that it was already made possible to change GW password via NCsoft.
Hopefully ANet will make it more difficult/impossible to delete a toon, since that (think about experience, progress ingame and titles) is worth more than ectos or armors......
|
|
|
May 01, 2008, 12:20 PM // 12:20
|
#73
|
Jungle Guide
Join Date: Jun 2006
Location: Holland
Guild: [Uni]
Profession: Mo/
|
I also got hacked, they stole all stuff on my monk and deleted it.
This hacking thingy costed me around 1.5 mil so...
Also anet couldn't help me at all, so i am abit disapointed right now...
|
|
|
May 01, 2008, 12:43 PM // 12:43
|
#74
|
Desert Nomad
Join Date: Apr 2006
Profession: W/
|
Quote:
So why am I seeing a) above?
|
Could be any number of things as malicious as a trojan to as inoccuous as an image ad, iframe text ad, etc. Close out all of your applications, including any launchers (iTunes, Adobe, Office, etc.) and see if you still get them.
Quote:
from an IP Address that appeared to be PlayNC.com. I suspect this to be a spoof,
|
Spoofing an IP is generally impractical. If they spoofed the PlayNC IP, all the responses from your machine would be sent to PlayNC which would just send back a RST packet (or ignore you) because it wouldn't know what the hell your machine was talking about.
It COULD be a man-in-the-middle attack, but that also seems unlikely. Again, close out all your applications and check again for them.
|
|
|
May 01, 2008, 01:47 PM // 13:47
|
#75
|
Frost Gate Guardian
Join Date: Apr 2007
Location: Tennessee
Guild: The Mirror Of Reason [Snow]
Profession: Mo/Me
|
I feel the hacking deal is an issue. I just spoke with a guy a couple days ago that had and r2/3 koabd character and sever other max characters. He told me he logged in one day and had nothing. No characters no cash no nothing.
Imo. I think it's got to do with anets security.
|
|
|
May 01, 2008, 02:40 PM // 14:40
|
#76
|
Older Than God (1)
Join Date: Aug 2006
Guild: Clan Dethryche [dth]
|
Quote:
Originally Posted by Oukanna
Since i don't actually type anything in, when i load up guild wars to log in...does that make me safe from key loggers????
Just wondering, maybe if that is the case, everyone should get themselves a shortcut that allows them to just log straight in without typing anything.
|
You've traded one vulnerability for another. Instead of being vulnerable to a keylogger, you're vulnerable to having the information read from the file where the password is stored.
Arguably, your practice is superior because it is not a common practice (to my knowledge). However, it is easier to remotely read your files than it is to trojan a keylogger onto your system (though not by a wide margin if you protect your computer properly).
|
|
|
May 01, 2008, 03:10 PM // 15:10
|
#77
|
Wilds Pathfinder
Join Date: Nov 2005
Guild: Zerohour Enterprises [ZHE]
Profession: W/
|
i just use command line passwords....no typing
sorry to say, it sucks that this has happened to you. but reports of 2 accounts being hacked is no reason to say the sky is falling...yeah it sucks, but out of the millions accounts, 2 is rather small. again, sorry this happened to you man
|
|
|
May 01, 2008, 03:27 PM // 15:27
|
#78
|
Lion's Arch Merchant
Join Date: Mar 2007
Guild: The Eternal Champions
Profession: W/Mo
|
Quote:
Originally Posted by Star Gazer
i just use command line passwords....no typing
sorry to say, it sucks that this has happened to you. but reports of 2 accounts being hacked is no reason to say the sky is falling...yeah it sucks, but out of the millions accounts, 2 is rather small. again, sorry this happened to you man
|
See, that's what I was wondering. Is the sky falling - or something a little less dramatic? Or is this just 'normal' amounts of hacking going on.
I wonder if anybody from Anet could come let us know if they are getting more reports of hacking or not. It would be helpful to know, so we can all be extra vigilant, and change passwords and stuff more regularly (if there seems to be a problem somewhere).
I wouldn't care about ingame money that's made easily enough again, but I would be a little pissed if my main character went bye bye :/
|
|
|
May 01, 2008, 03:49 PM // 15:49
|
#79
|
Lion's Arch Merchant
|
Quote:
Originally Posted by R_Frost
could be the thing in common is this site. 2 weeks ago going from the main website page to the forum pages all the damn pops up dumpped a bunch of trojans onto my computer. took a week of work to get them all out. they got by the internet security software i had, installed a different one, found a bunch of threats, then used 2 other programs to get rid of everything. changed my game password as soon as i got my machine cleaned up.
|
Yes, the popups and stuff from GWG now have been causing problems here too.
|
|
|
May 01, 2008, 03:52 PM // 15:52
|
#80
|
Academy Page
Join Date: Apr 2007
Location: Australia Land
|
Happened to a mate last year. He was silly enough to use his same email and password for GW and some other GW related website. Things stolen is gold and ectos, everything else lefted as is.
So...to OP...are you on the same silly boat as him?
|
|
|
Thread Tools |
|
Display Modes |
Linear Mode
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
All times are GMT. The time now is 08:38 PM // 20:38.
|