IMPORTANT: Keyloggers

Started by Tirkad, August 04, 2009, 09:41:14 AM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

Tirkad

As you may found in some previous posts, it seems Roary has been the last one in the guild to suffer from this plague. I found many rumors, confirmed by more than one friend, that both curse.com and worldofraids have an auto-installing keylogger. I suggest you to avoid those sites, becouse the consequences could be very annoying, at very least.
I don't think i've ever used the above mentioned sites (i use wowinterface for addons) and i have a blizzard autenticator. However if you see me online this morning, well it's not me, since i'm at work in this very moment and won't be back till the early afternoon at very least.
As always i suggest you to scan your pc with an anti-spyware and a good anti-virus, and to keep them updated. It's the safest way to avoid getting your wow experience spoiled.

Azunai

fak I visited WoR this morning. Now I'm scared to log in lol. Any idea how I would recognize it? My Sophos company edition didn't give any warnings...
or Garrit, or Torgen. Also, Livestream.

Tirkad

There are some suggestion on the official forum, HERE is the blue post that shows you how to keep the account safe.

Gandalf

http://eu.blizzard.com/store/details.xml?id=221003132

Get one of those. I have one, and they really help secure your account. Even if you get compromised, they will not be able to log in without your authenticator.

And to put everyones mind at rest. The bank is safe. Members only have access to the first tab, which is mostly junk. They have no access to the cash. Officers have access to all tabs, but again only limited amounts of cash (100G a day I believe) Even I don't have full access to the cash. There is only one account that does, which is kept under lock and key.
*G*

Cake: Four large eggs. One cup semi-sweet chocolate chips. Three/four cups butter or margarine. One and two third cups granulated sugar. Two cups all purpose flour. Fish shaped ethyl benzene. Twelve medium geosynthetic membranes. Three tablespoons rhubarb, on fire.

TeaLeaf

WoR got a script from a Blue post thread which their blue post tracker managed to pull over to their site.  Looks like Curse got the same problem and it relates to an Adobe Flash bug for which a patch has been issued.

    * a.exe
    * b.exe
    * c.exe
    * 6to4ex.dll

These are the 'known so far' problem files.  There might be more, but those are the ones posted.
TL.
Wisdom doesn\'t necessarily come with age. Sometimes age just shows up all by itself.  (Tom Wilson)
Talent wins games, but teamwork and intelligence wins championships. (Michael Jordan)

Tirkad

Quote from: Gandalf;285070http://eu.blizzard.com/store/details.xml?id=221003132

Get one of those. I have one, and they really help secure your account. Even if you get compromised, they will not be able to log in without your authenticator.

I bought my authenticator when i knew the GM of Genesis had been hacked and the guild got disbanded... sad story, but you can learn a very good lesson from it.

kregoron

Quote from: Gandalf;285070http://eu.blizzard.com/store/details.xml?id=221003132

Get one of those. I have one, and they really help secure your account. Even if you get compromised, they will not be able to log in without your authenticator.

And to put everyones mind at rest. The bank is safe. Members only have access to the first tab, which is mostly junk. They have no access to the cash. Officers have access to all tabs, but again only limited amounts of cash (100G a day I believe) Even I don't have full access to the cash. There is only one account that does, which is kept under lock and key.

Bought myself a few some months ago, for the people with certain mobile phones can now also get a software version from bliz that utilises the same code so can be used as a authenticator
http://webchat.quakenet.org/ ||| Channels: #deadmen


Inspiron83

Scary stuff, though i do use Firefox+Noscript+Adblock so that could help a little.  I have been after those little authenticators for a while but they just don't ship em here, which is a shame really.  Even tried to see if i could get the mobile authenticator but of course, i use a Samsung Omnia that runs in Windows Mobile and they apparently don't have a program for Windows phones :ranting2:
Iressa--70 Space Goat Shammy
Zahrah--70 Space Goat Priest
Trueblu--70 Space Goat Paladin

Lexander

Quote from: TeaLeaf;285073* a.exe
    * b.exe
    * c.exe
    * 6to4ex.dll

These are the 'known so far' problem files.  There might be more, but those are the ones posted.


As far as I know, not a single addon needs .exe files so why can't the sites just scan for them and remove if found ?
Welcome to IRC #deadmen @quakenet

Gandalf

*G*

Cake: Four large eggs. One cup semi-sweet chocolate chips. Three/four cups butter or margarine. One and two third cups granulated sugar. Two cups all purpose flour. Fish shaped ethyl benzene. Twelve medium geosynthetic membranes. Three tablespoons rhubarb, on fire.

Mat

Guys, besides of all tokens and other security stuff, there is one very important and easy thing to protect yourself from keyloggers. Keylogger to hack your account needs both your account name and password. So never type it together! Click option to remember your account name, so on daily bassis you need to type your password only. If you need to log to blizz account management, from starting wow page Ctrl-copy your account name and paste it, so again keylogger in best case will get only your password.

Mat