hacked

satanaphyte

In Cryo Sleep
hi can someone check if my character is alive or anything armory says nothing and my acc password has been hacked and pass has been changed thank you please give feedback asap im shitting myself here:mad:
 

Windzarko

Well-Known Member
Can't find any of your characters on the armoury at all, mate. I'd heavily recommend contacting Blizzard Support as fast as you can; if they're renamed and/or transferred your characters elsewhere, you're going to need to act fast to get them back intact.

Also, clean up your PC. If you're been hacked, you almost certainly have spyware on your machine that's managed to steal your account details. What web browser are you using, and do you have any anti-virus or anti-malware stuff installed?
 

Zaggu

In Cryo Sleep
This. Blizzard was very fast acting towards my account hack, which trails back to flash player vulnerabilities and poor configuration of the machine where I had originally reactivated my account from. Install an antivirus such as AVG and a good anti-spyware registry blocker.

Most importantly - report the situation to Blizzard using the appropriate form ASAP and install a mobile authenticator. If the hack hasn't been detected by now, you were unfortunate enough to get a clever hacker who doesn't sell everything on the fly.
 

Windzarko

Well-Known Member
Easiest steps to take to avoid being hacked:

*Don't use Internet Explorer, use Firefox or Opera or something, and grab a few security plugins for it (eg AdBlock Plus, Flashblock, NoScript)

*Get Spybot Search & Destroy and/or Ad-Aware, and use it/them once a week at least. If you can afford it, maybe a good anti-virus software (maybe AVG? I don't know which ones are good these days. DO NOT GET NORTON.)

*Update Flash. Seriously, update it to the latest version. Don't keep reading this, go do it NOW. Flash is one of the bigger vulnerabilities.

*Don't download blatantly dodgy files unless you truly know it's safe.

*Don't click on banner ads (even google ones) for anything WoW-related, ever. Seriously, this is the other major vulnerability, and it was through stuff like this that the first hacks of authenticator-protected accounts happened.

*Don't buy gold, power-levelling services or anything like that. Besides the fact that I will toss you out of the guild and report you for stuff like this, it's another easy way to lose your account.

*Don't tell anyone else your details. Don't even let family or close friends use your account unless you know their computer is safe. No point in making your own rig safe if you're going to let someone else use your account on an unsafe machine.

*Get an authenticator. If you can't manage anything else, the mobile/desktop ones or the iPhone app ones will do, but nothing matches up to the real deal.


If you do get Spybot Search & Destroy, it has a little module called "TeaTimer" which you can have running in the background. It uses more resources than I personally care for, but it's blocked SO many things that slipped through everything else over the years that I'll never turn the thing off. But yeah, do as much of the stuff above as you can and you're tons safer. I daresay other people will throw in tips for safety and security as well (and perhaps the name of a good anti-virus, I seriously don't know any other than AVG).
 

Zaggu

In Cryo Sleep
AVG / Spybot is what I use, and I highly recommend both. There are no detrimental performance issues with both programs running at once, and Spybot allows you to block a TON of nasty content by blocking the entries (they call it "immunize") right off the bat.

Firefox is safe-ish, but the flash exploit did find its way to this machine even though flashblock was running, which is how I found the hideous security configuration that had taken place in this machine.

Buying gold and powerleveling are two mistakes for two reasons: you stimulate more hacks to occur via giving the gold-farming companies the demand, and you voluntarily do one out of two things:
a) hand them your account password (needless to say what this implies)
b) you wave a huge flag saying "I just received 10K gold from a gold farmer", which is a way to instantly be next in line for account hacking.
 

Angelic

Active Member
For what its worth, I´ve been using avast (the free version) for a couple years and in all that time I haven´t been hacked/got a virus/whatever. Avast is free, nice, often updated and I personally like it more than I did AVG - but it might be better in some regards, I don´t know.

As for spyware protection, I have AdAware. I think it works, or at least I hope so - none of my accounts anywhere have ever been sompromised :)

Good luck getting your stuff back! Again, contacting Blizz asap is crucial!

Angelic
 

Elincia

New Member
For what its worth, I´ve been using avast (the free version) for a couple years and in all that time I haven´t been hacked/got a virus/whatever. Avast is free, nice, often updated and I personally like it more than I did AVG - but it might be better in some regards, I don´t know.

Avast is epic :) it doesn't slow your pc down as much as AVG :)
Since I use Avast I never had any virus whatsoever. I used to get a virus every once in a while while using AVG....
 

Enya

Member
For what its worth, I´ve been using avast (the free version) for a couple years and in all that time I haven´t been hacked/got a virus/whatever. Avast is free, nice, often updated and I personally like it more than I did AVG - but it might be better in some regards, I don´t know.

As for spyware protection, I have AdAware. I think it works, or at least I hope so - none of my accounts anywhere have ever been sompromised :)

Good luck getting your stuff back! Again, contacting Blizz asap is crucial!

Angelic

Jup same here. Avast Home edition lover :). It is free and if you are running a 32bit version it will after the 1st restart of you Pc (after you installed Avast)
check all your files and look for viruses before you enter Windows or whatever OS you are on. Somehow safer to do it that way I think. And for those that are running a 64bit OS, Avast is still your best choise IMO. :)
 

satanaphyte

In Cryo Sleep
blizzz has not contacted me yet jheres an update on my problem i managed to get my password reset asap from europe my buddy did the reset as i cudnt get it to reset from here i reset it natrally it is linked to my hotmail acc so upon getting that right i tried to login and noticed that i have an authenticator linked to my acc its asking for my code ... now i dont have an authenticator I CANT GET ONE THEY DONT SHIP TO OUR COUNTRY !! i hate blizz for that we all that live here want one and are willing to pay they just wont ship to us so now i have a new password on my acc that i have but he (Hacker) has the authentictor i used an impossbile password this time so ja but then again nothing is impossble for them waiting for feedback i have mailed blizz gave them scans of my Id credentials as well as pics of me holding my retails boxes and clos up of my CD keys as as leveling pics of my chars , so now i at least want a response from them my acc has been banned three times now for trade channel abuse so now it is quite obvious a hack ...
 

SwampFae

Super Moderator
Staff member
[Response]: hacked

[MOD]
I would suggest calling the Blizzard tech support.
The list of phone numbers can be found here.

As for authenticators:
Downloadable versions[/MOD]

Remember to:
  • Scan your computer for viruses/malware/spyware, etc
  • Update Flash to the latest version (Link)
 

Zaggu

In Cryo Sleep
You can get a Java application from Blizzard that works on any java VM, most mobile phones included. Don't blame blizzard - this particular hack was clearly well made and the hacker knows how to buy time.

Since you managed to reset the password and the account is already banned, you have prevented any potencial issues regarding char transfers and the like, which take quite a bit to sort out amidst all the foul play done to your characters in the meantime.
 

thatbloke

Junior Administrator
If you have an iPhone or an Android-based phone there are official Blizzard Authenticator apps for both platforms and there is a thread on the forum with an unofficial guide to getting the program working on any phone that uses Java.

The Authenticator trick is the hacker's way of making sure you don't get your account back in a hurry. Unfortunately because this problem is so widespread it can take some time for you to get your account back.

This reminds me... I need to switch email addresses as somehow I've recently started getting spam email from the hackers telling me I need to login to their website and give them my full personal details...
 
Top