And they're still trying

#0 - Nov. 5, 2010, 12:35 p.m.
Blizzard Post
Battle.net Account - Password Reset

We have reset the password for the Battle.net account associated with this email address. To choose a new password, please click the following link and follow the instructions:

<removing malicious URL>

If you did not request the reset, it is possible that this Battle.net account has been accessed by someone not authorized to do so. If you notice issues with the Battle.net account or associated games after logging in with your new password, please contact the appropriate support department for assistance immediately:

..........

and where does the get reported?
#1 - Nov. 5, 2010, 12:57 p.m.
Blizzard Post
That is of course a phish - and that overly-hyphenated-Blizzardish-sounding-ridiculously-long-URL, is not Blizzard :)

[email protected] is the appropriate place to forward such things.
#4 - Nov. 5, 2010, 2:08 p.m.
Blizzard Post
If you do a whois on the actual domain I originally removed from you post - you'll find it registered in zhengzhou, China.

US players also aren't going to receive anything with EU associated with it.

#6 - Nov. 5, 2010, 2:15 p.m.
Blizzard Post
That particular one seems to be of the imitation variety which are particularly insidious.

They take an email that is otherwise 'real' and doctor links or spoof them to go to fake sites.

The first best line of defense against of phish is to check the internal routing headers of any email. That will show the true sender, although they can take a little bit of time to learn to decipher.
#9 - Nov. 5, 2010, 2:28 p.m.
Blizzard Post
Q u o t e:
enigma - did you actually request a password reset though?

I did - and that email came. hence it seems really really legit to me - and seeing as the link really do point to the real site - it does look legit. Still looking around to see how else my account could have been compromised. I just can't sleep until that's sorted out :(

Anyway thanks orlyla for the response. though my questions wasn't exactly answered and expertly dodged ;)


I was actually responding to him, Loranidan. Yours is likely legit - but it still pays to check the headers first.

The one I originally edited out was a mile-long-and-over-hyphenated :)