Possible Hack Attempt?

#0 - Nov. 5, 2010, 11:59 a.m.
Blizzard Post
Ok so in the past 2 weeks i have had this happen twice, i open WoW client and i try to log in and it says "The password is incorrect" or something along those lines, so i have to go to the blizzard site and reset my password and confirm my email and i can play again.

Is this someone screwing with my account? this has happened 2 times now in 2 weeks, and has only started happening since i tried using one of those Smoothping or lowerping tunneling services to help with my latency problem (i live in Australia).

I am a nut when it comes to security, i have Avast AV which is updated, ive got firewalls enabled, i use firefox with noscript and adblock and i dont go to dodgy sites. I am currently scanning my computer with a full scan but as yet no viruses have been detected =/

Edit: Oh and i have been getting HEAPS of fishing attempt emails in my mailbox, i can tell because they are poorly worded and when hovering over the hyperlink you can see it is actually a masked dodgy site....naturally i NEVER click the links and instantly report them as fishing scams!

Edit2: Just noticed their is an updated version of Adobe Flash player, installing it right now as i know flash exploits can lead to hacks!
#8 - Nov. 5, 2010, 1:11 p.m.
Blizzard Post
Q u o t e:
Someone needs to help me! My email password was just changed and my wow password just changed AGAIN.

I now have no way to access my email account, can a blizzard staff please lock my account RIGHT NOW or something. They are messing with my account as we speak!


Quite a tug of war here - looks like not only are you fighting for control, more than one compromiser is too!

Oh my.

It's vital that the source of this be located before anything moves forward here or they WILL be right back. Both your system and email need to be secure. It may be a good idea once you are certain of your system to just make a new totally unrelated email for the purpose of your WoW account.

I'd also highly recommend the addition of an authenticator to your account if at all possible.

Blizzard Store
http://us.blizzard.com/store/browse.xml?f=c:6

Mobile Authenticator
http://us.blizzard.com/support/article.xml?locale=en_US&articleId=26109

I've asked that this be locked for the moment to allow you time to get everything sorted.
#10 - Nov. 5, 2010, 1:24 p.m.
Blizzard Post
Q u o t e:
I just used my girlfriends computer (which im certain is secure) to create a new email account with a different name combination and password which i have never used before. Now the real question, HOW do i change my email address in my battlenet page, if i cannot even log in?


I'd recommend doing that over the phone.

Just in the time between these posts someone successfully took off the B.net lock I'd asked be put on, so yes no doubt - that email IS compromised.

I also had your main account locked down so even getting through the b.net lock - they aren't getting back in there till it's unlocked :)

Normally we'd send instructions via email, but - well, that won't do a lot of good in this case >,<

Billing will open in just a few hours, they can also assist you in getting this into a restoration process to reverse any damages. I'd recommend NOT proceeding with that particular step until you are back in control of the account. As long as this is done soon, shouldn't make any difference in what can be recovered for you.

Billing and Account Services
Phone Support - 1 (800) 59-BLIZZ (1 (800) 592 5499)
Live Representatives Available 7 days a week, 7am to 8pm Pacific Time
E-mail Support - [email protected]
    Players in Australia should call 1-800-041-378
    Players in Singapore should call 800-2549-9273
    Players in Chile should call 1230-020-5554
    Players in Mexico should call 001-888-578-7628
    Players in Argentina should call 0800-333-0778
    All other international players should call: (949) 955-0283


Further contact information can be found here...

http://forums.worldofwarcraft.com/thread.html?topicId=24702231246
#12 - Nov. 5, 2010, 1:59 p.m.
Blizzard Post

Q u o t e:

Just a few more questions before i let you go:

1. I live in Australia and its currently 11:30pm here at night, you say the billing will be open in a few hours right? when i call the Aussie number are they actually located in Australia or the US? Just so i know what to expect when it comes to phone call fee's and weather of not i will be calling at a reasonable hour or in the middle of the night!


It's currently 5 till 5 Pacific Time, Billing opens at 7 AM Pacific. Do try the Australian number once they open and if that proves not to be productive, you might want to look into programs such as Skype. Many of our international players report good results

Q u o t e:
2. I have an ipod touch and will be looking into getting an Authenticator, but should i arrange the Auth NOW or wait until i have had my new email account set in my wow account and have full control again


I believe you should be able to set that up - if it let's you into the store. If that's blocked because things are locked down, you'll just need to do it once that's been undone. You could ask Billing more about that as well when you speak with them.

Q u o t e:
3. If possible, should i try and delete my compromised email account via the companies website? or just leave it active and just never use it again? (not that i CAN use it anyway lol).


That would be totally your call. If it were *me* I certainly wouldn't want such malicious parties in control of an email account they could use to phish and spam with. Most phishes are sent out from slaved accounts in just such a fashion.

Q u o t e:
Edit: At least the hackers have spent more time TRYING to stay logged into my account then actually being logged in and deleting my hard earned gear! Seems they are getting blocked at every turn, and suck crap to em >:( damn parasites!


Certainly more generous than I am friend :) I tend to think of them in more unprintable language ;-0