My Account is hacked!

#0 - May 31, 2010, 8:01 p.m.
Blizzard Post
My account has been stolen and they are taking my stuff right now. What do I do?
#14 - May 31, 2010, 8:33 p.m.
Blizzard Post
Q u o t e:
Bliz doesn't have to be "hacked" for someone inside to sell account info to gold sellers.


Hardly, Insepctorr since no one here can see passwords and we are VERY closely monitored for everything we do.

Can you give me a character name/realm on that account?

Malware isn't the only way this happens. Phishes and fake websites are rampant. Also, using the same pass/ID anywhere else - especially websites can be very risky - that becomes a crime of opportunity.

It is vital to pin this down, however - as if whatever allowed this is still present chances are VERY high they will be back.
#18 - May 31, 2010, 8:53 p.m.
Blizzard Post
Well, I can only tell you this was indeed foreign, and malicious.

Also, looks like your password was changed from a foreign country on 5/12 - that should always be a red flag that something is afoot when you get a password change you did not request.

There are a few possibilities here.

You have as yet unidentified malware.

Your email account itself is compromised and they are pulling the information directly.

Another system was used and that one is infected (even to log into the armory or this website).

Phishes or other forms of social engineering.

Even those aren't all the ways this happens, but those are the most common. Fake websites are also very active at the moment pretending to be Blizzard - and also they are being setup that look like popular addon sites.

In addition to scanning for malware, you'll want to make sure your Flash, etc. is updated. One does not have to visit a 'bad' site to come across an infected web banner if Flash hasn't been updated to repair the vulnerabilities they've been using.

This compromise has already been reported and put into process, looks like a friend reported this for you. It may be some days before you'll hear from your Specialist.

I do wish you all the best.
#22 - May 31, 2010, 9:34 a.m.
Blizzard Post
Also, be sure when you scan to have the launcher active and a bit of gibberish in the fields.

Some of the ones aimed at WoW accounts are very sneaky and won't 'wake up' to be found unless the launcher is active.