Friend's account hacked and banned

#0 - Aug. 20, 2010, 6:30 a.m.
Blizzard Post
So as the title says my friend received several emails that his character was involved in exploitative activity involving the selling of gold. He's positive that he did not engage in such activity and was definetly hacked, evidently as he received 3 emails of an unauthorized password changes. He'd like his account back after resetting password but seems as the account is perma-banned atm and GMs have told us that they're currently running an "investigation" on the issue. He's positive he did not engage in gold selling activity so he doesn't see why the account must remain banned and would like to see if any of his items/gold were stolen.

Would appreciate a response from a GM here. His main toon was Vaelroth-80 druid-Emerald Dream.
#1 - Aug. 20, 2010, 6:44 a.m.
Blizzard Post
There is very little we are able to tell a 3rd party, Jan - but perhaps you could pass on some generic information to your friend.

This is open for an investigation, so that part is already proceeding.

He needs to find out how someone got hold of his password and ID because if that source still exists, they WILL be back.

When an account is used by a 3rd party for malicious behavior, we have no choice but to shut it down unless and until a player has a chance to address the source of the issue. It is every player's responsibility to maintain the security of their system and their account. This is not at all uncommon in a compromise situation, they don't steal these to do 'nice' things with them.

If you could pass on the information below, that would also be most helpful.

Account Hacked? Security Issue? Look Here!
http://forums.worldofwarcraft.com/thread.html?topicId=24702231244

He may also want to look into getting an authenticator for his account. It's no substitute for good security habits, but it will help keep them out of a WoW account.

Blizzard Store
http://us.blizzard.com/store/browse.xml?f=c:6

Mobile Authenticator
http://us.blizzard.com/support/article.xml?locale=en_US&articleId=26109

#3 - Aug. 20, 2010, 7:08 a.m.
Blizzard Post
Any one scanner is not NEARLY enough.

Please read over that sticky I posted above. Also, lapses in security do not necessarily equate to any purposeful high-risk behavior.

Often, it's what isn't done that will catch a player, not necessarily what was done.

NOT updating a scanner - or using appropriate ones, NOT updating programs like Flash, NOT using a unique password and ID for WoW, NOT catching a phish attempt - all those will have the same results as purposefully surfing unsafe sites, etc.