Posting Freak
Posts: 2,247
Threads: 32
Joined: 2008-08
Gender: Male
Country Flag: Texas
Server: Broa
Level: 200
Job: Mercedes
2011-04-06, 07:14 PM
(This post was last modified: 2011-04-06, 08:39 PM by Panacea.)
Okay, well, to put you at ease I just cleared any and all saved data that my browser had stored. I'm also installing Avast! to check for possible key loggers, just in case McAfee missed anything. I'll let you know the results.
EDIT: Quick scan yielded nothing to report. Still waiting for full scan.
Member
Posts: 173
Threads: 4
Joined: 2010-04
Gender: Male
Sexual Orientation: Straight
Country Flag: Washington
IGN: Sugarsouffle
Server: Broa
Level: 200
Job: Mercedes
Guild: Virtus
Guild Alliance: TeamRocket
Do you have a Tivo account? All emails in Tivo's database was recently exploited and exposed, though I'm not sure if that would lead to getting hacked. That's actually a pretty extreme scenario.
Posting Freak
Posts: 2,247
Threads: 32
Joined: 2008-08
Gender: Male
Country Flag: Texas
Server: Broa
Level: 200
Job: Mercedes
Toastyc12 Wrote:Do you have a Tivo account? All emails in Tivo's database was recently exploited and exposed, though I'm not sure if that would lead to getting hacked. That's actually a pretty extreme scenario.
Nope.
Member
Posts: 55
Threads: 1
Joined: 2008-09
Panacea Wrote:Okay, well, to put you at ease I just cleared any and all saved data that my browser had stored. I'm also installing Avast! to check for possible key loggers, just in case McAfee missed anything. I'll let you know the results.
You mention keyloggers! Not sure you understand the concept of this current discussion of possible hacking via wireless data? Its got nothing to do with keyloggers and don't need a keylogger to get hacked. Since Nexon's web site login is not https, all data transmitted are in plain unencrypted text including your login ID and password over wireless frequency, so anyone that had legit access to the network just need to use a readily available wireless hacking tools to "read" all data from the network and then able to pick out what they want by using some type of filtering. As for person without legit access, they will need to use a encryption key mining tool which also readily available and then do the above.
Keylogger was another discussed possibility in this thread, maybe thats why it causes the confusion.
Keylogger are very rare in my opinion, you really have to go out of your way to get infected with it, so I think your scan won't show any infection, but still a good action to perform after a event like this.
Posting Freak
Posts: 2,247
Threads: 32
Joined: 2008-08
Gender: Male
Country Flag: Texas
Server: Broa
Level: 200
Job: Mercedes
ctblack Wrote:You mention keyloggers! Not sure you understand the concept of this current discussion of possible hacking via wireless data? Its got nothing to do with keyloggers and don't need a keylogger to get hacked. Since Nexon's web site login is not https, all data transmitted are in plain unencrypted text including your login ID and password over wireless frequency, so anyone that had legit access to the network just need to use a readily available wireless hacking tools to "read" all data from the network and then able to pick out what they want by using some type of filtering. As for person without legit access, they will need to use a encryption key mining tool which also readily available and then do the above.
Keylogger was another discussed possibility in this thread, maybe thats why it causes the confusion.
I think I understand now. Would the outcome be the same if when I access the game I'm wired directly to the university server instead of wireless?
Member
Posts: 55
Threads: 1
Joined: 2008-09
Panacea Wrote:I think I understand now. Would the outcome be the same if when I access the game I'm wired directly to the university server instead of wireless?
If you are wire connected it would be more difficult for the hacker to "read" your activities, but if they are in the same network access point (switch/hud) as you, they can still sniff all the data arriving at that point using a similar tool as the wireless hacking tools. If you had gotten hacked while you were wire connect, you would have to be either targeted or very unlucky. Bottom line is when passing personal information on any non encrypted site is not safe. Always check the url to see if it is https or just plain http.
Posting Freak
Posts: 2,247
Threads: 32
Joined: 2008-08
Gender: Male
Country Flag: Texas
Server: Broa
Level: 200
Job: Mercedes
ctblack Wrote:Bottom line is when passing personal information on any non encrypted site is not safe. Always check the url to see if it is https or just plain http.
The Maplestory website is the only place I enter my Maplestory info, if I for some reason decide not to go through Gamelauncher.
Posting Freak
Posts: 8,031
Threads: 178
Joined: 2008-07
Gender: Male
IGN: Justice
Server: Tespia
Level: 162
Job: Shadower
Guild: Gundam
Member
Posts: 173
Threads: 4
Joined: 2010-04
Gender: Male
Sexual Orientation: Straight
Country Flag: Washington
IGN: Sugarsouffle
Server: Broa
Level: 200
Job: Mercedes
Guild: Virtus
Guild Alliance: TeamRocket
Panacea Wrote:The Maplestory website is the only place I enter my Maplestory info, if I for some reason decide not to go through Gamelauncher.
Maplestory website is not exactly secure. In the instance you were to use the site, what browser are you running when you do sign on?
Posting Freak
Posts: 2,247
Threads: 32
Joined: 2008-08
Gender: Male
Country Flag: Texas
Server: Broa
Level: 200
Job: Mercedes
Toastyc12 Wrote:Maplestory website is not exactly secure. In the instance you were to use the site, what browser are you running when you do sign on?
Chrome.
Member
Posts: 54
Threads: 1
Joined: 2011-03
Gender: Male
Country Flag: Arizona
IGN: IanAnderson
Server: Bellocan
Level: 200
Job: Mercedes
Guild: HiddenStreet
Sounds very similar to what happened to me about a month ago. I was training my UA and got off right before a server check happened. It ended an hour before I got on again and I noticed that my characters weren't wearing what I logged off with. I tried to log on to one of my characters and my PIC was changed. I went directly to my email and there was no notice of a change, so I changed my email password and reset my PIC.
When I finally got on everything that wasn't nailed down(untradable) was gone so it was clearly for pure profit. I checked through the FM and found mushroom shop with all my stuff. I monitored it for a while and now it seems that everything that wasn't sold on that mules shop is now in this guy's shop.
I hadn't downloaded anything for about a month before this happened unless it was school related, my userID was something I never shared and I never used the ID on any other sites. My password and PIC were not something easy like "password" "111111" and would have been impossible to guess. I scanned with multiple scanners and nothing was found with any of them.
Posting Freak
Posts: 2,247
Threads: 32
Joined: 2008-08
Gender: Male
Country Flag: Texas
Server: Broa
Level: 200
Job: Mercedes
iananderson Wrote:Sounds very similar to what happened to me about a month ago. I was training my UA and got off right before a server check happened. It ended an hour before I got on again and I noticed that my characters weren't wearing what I logged off with. I tried to log on to one of my characters and my PIC was changed. I went directly to my email and there was no notice of a change, so I changed my email password and reset my PIC.
When I finally got on everything that wasn't nailed down(untradable) was gone so it was clearly for pure profit. I checked through the FM and found mushroom shop with all my stuff. I monitored it for a while and now it seems that everything that wasn't sold on that mules shop is now in this guy's shop.
I hadn't downloaded anything for about a month before this happened unless it was school related, my userID was something I never shared and I never used the ID on any other sites. My password and PIC were not something easy like "password" "111111" and would have been impossible to guess. I scanned with multiple scanners and nothing was found with any of them.
That's really strange, and I don't like it, lol. Especially happening right after a server check.
I'm sorry it happened to you, too.
Member
Posts: 137
Threads: 5
Joined: 2008-09
well, back in 2009 my e-mail was definitely not compromised when my account was hacked. unless they decided to cover their tracks for some reason... no info was changed anywhere, my account just went naked between days >_>
Posting Freak
Posts: 9,907
Threads: 379
Joined: 2010-02
knlbr Wrote:unless they decided to cover their tracks for some reason...
Why wouldn't you cover your tracks...
Member
Posts: 137
Threads: 5
Joined: 2008-09
Locked Wrote:Why wouldn't you cover your tracks...
is it worth the effort when you take a low level account stuff worth 200mish? xd
Posting Freak
Posts: 9,907
Threads: 379
Joined: 2010-02
knlbr Wrote:is it worth the effort when you take a low level account stuff worth 200mish? xd
..Yes.
It isn't hard to delete 4 emails, that completely clean off your record and cause confusion like is currently happening.
Posting Freak
Posts: 1,214
Threads: 39
Joined: 2010-09
Ugh... Could it be that they really did get some info (lol nexonsecurity) but instead of going wild with them they're just taking it slow, in order to not raise too much suspicion?
Posting Freak
Posts: 2,247
Threads: 32
Joined: 2008-08
Gender: Male
Country Flag: Texas
Server: Broa
Level: 200
Job: Mercedes
Locked Wrote:..Yes.
It isn't hard to delete 4 emails, that completely clean off your record and cause confusion like is currently happening.
I agree. They hadn't changed my password at all, so I can't confirm whether they actually had access to my email or not. My mom asked my dad if anything suspicious had been emailed to him and he said no, but I was like, "F7". I know they don't understand, so I just told my mom to change the password and watch out for anything else such as eBay, PayPal, etc.
Muppy Wrote:Ugh... Could it be that they really did get some info (lol nexonsecurity) but instead of going wild with them they're just taking it slow, in order to not raise too much suspicion? 
Danny's proposition is the most plausible to me, at the moment. It's possible they've had my UserID since '09 and just now hit me with it, despite how long it's been.
Member
Posts: 68
Threads: 5
Joined: 2008-08
Posting Freak
Posts: 2,247
Threads: 32
Joined: 2008-08
Gender: Male
Country Flag: Texas
Server: Broa
Level: 200
Job: Mercedes
No worries, Tepp. Thanks.
|