EntropiaForum.com
Go Back   EntropiaForum.com > Information > About Entropia Universe > Security
Notice
Security Discussion relation to Entropia Universe account security.

Reply
 
LinkBack (1) Thread Tools
Old 01-02-2008, 01:36   #31
Prowler
Dunn AbleDunn AbleDunn AbleDunn AbleDunn AbleDunn AbleDunn AbleDunn AbleDunn Able  
  Activity Longevity
2/2015/20
Posts: 1,790
Gender: Male Ingame: Male
Avatar Name:
Duncan Dunn Idaho
Soc: Novus Ordo Seclorum
Location: Bergen, Norway
EFD: 20,077.34
Reputation: Able
Fame: 549 Achievements: 17

Goldcard are the best thing in EU.
I dont see why every MMO shouldt have them these days.
Dunn is offline Reply With Quote
Sponsored Links
Old 01-02-2008, 07:19   #32
Provider
DIMSOT's Avatar
DIMSOT BeginnerDIMSOT Beginner  
  Activity Longevity
1/2013/20
Posts: 209
Gender: Male Ingame: Male
Avatar Name:
Aristomenis Dimsot Messinios
Soc: Greek United
Location: Athina Hellas
EFD: 3,324.56
Reputation: Beginner
Fame: 538 Achievements: 17
Ranged Damage Assessment Serendipity Coolness

sad story.............................
__________________

DIMSOT is offline Reply With Quote
Old 01-02-2008, 23:39   #33
Old
andsim Poor  
  Activity Longevity
1/206/20
Posts: 92
Gender: Male Ingame: Male
Avatar Name:
Happyone andsim Hammerer
Soc: Calypso Beauty Cener
EFD: 2,425.24
Reputation: Poor
Fame: 0 Achievements: 0
Style: Zychion Battle

post is deleted

gord is forgive
read my latest post about gord

Last edited by andsim; 02-08-2008 at 02:58.. Reason: i forgive gord for telling him a scammer
andsim is offline Reply With Quote
Old 01-03-2008, 00:32   #34
Alpha
Blue Dragon's Avatar
Blue Dragon BeginnerBlue Dragon BeginnerBlue Dragon Beginner  
  Activity Longevity
0/2011/20
Posts: 582
Gender: Male Ingame: Female
Avatar Name:
Alex Blue Dragon Moor
Soc: Chaos Crew Cadets
Location: Slovakia
EFD: 3,051.63
Reputation: Beginner
Fame: 50 Achievements: 2

haha I have luck cos I have Kerio fire wall, gold card AVG and things like that hehe
__________________


Selling cheap items here
Blue Dragon is offline Reply With Quote
Old 02-06-2008, 07:21   #35
Mature
Bobbias Mediocre  
  Activity Longevity
0/205/20
Posts: 35
Gender: Male Ingame: Male
Avatar Name:
Cheese Bobbias McGlinty
Soc: Freelancer
Location: Midland, Ontario, Canada
EFD: 2,390.79
Reputation: Mediocre
Fame: 0 Achievements: 0

The main problem with people getting hacked is that they don't know how to avoid bad sites, or potential ways for someone to hack them. If you don't know what to protect yourself from, you can't possibly find a way to protect yourself from it. The most powerful tool to prevent hacks is knowledge. I am running a completely unsecured computer, no firewall, no antivirus, nothing. I only have 1 adware program [Which my brother accidentally downloaded in a torrent for a movie, the movie supposedly came as an exe installer, which should have set alarms off like mad...] (technically, I have antivirus, but it's not setup to auto-protect, it's just there for me to occasionally check for viruses and such). Unfortunately, I can't get rid of that adware program right now, but it's only a minor inconvenience.

As I said, the biggest issue is that we need to educate people on how to identify and keep away from bad websites, or how to scan files to make sure that they aren't downloading something that could be harmful.

"Knowledge is half the battle." The more you know, the more you can protect from. I regularly frequent sites that most people would stay away from, such as sites for games CD keys and such (Yes, I pirate games...), but I have learned which sites are reliable, and how to avoid places that are untrustworthy.

Here's an example of a way to scam someone:

You set up a site that looks identical to say, the ebay front page, you then create a small program that does one thing: It edits a file located at C:\windows\system32\drivers\etc\hosts and adds a single line to the file. What that does is allows them to replace a website's IP address with whatever they want. If they added a line that said "207.32.87.164 ebay.com" every time you go to ebay.com, instead of your internet asking a server what the IP address for ebay.com is, it simply looks at 207.32.87.164. If that is where the fake ebay page is, then they have done almost everything necessary to fool you. There are other safety measures, but unless you know to look for a security feature that 90% of the internet doesn't know about, there's no way to tell it's a fake site.

All you would have to do is log in to the fake site, and you're password and username are theirs. If, however, you knew about the security certificate issued to https://signin.ebay.com, you could check to make sure that the site you've reached really is the official ebay sign in page.

I honestly couldn't tell you the number of ways that someone could get a program like that into your system, but the main thing you can do to protect yourself is be weary of any weird programs people might send you. If someone sends pictures, make sure they are jpg or other real picture types, and make sure you scan them just in case. It is possible to hide a rar file inside a png image, and coupled with a covert program installed, the hacker could store stuff inside that file without you ever knowing. They could have the keylogger hidden in that file, once it's extracted into temp folders and run, it could be running in the background from that temporary folder until you restart your computer, and then it could have placed something in the registry that makes it get extracted and run every time you reboot.

Stuff like that is hard to locate, but usually can easily be stopped by making sure you trust the person, and, if they send you a png, you can always rename it to .rar and try to open it. (That is one of many many ways to hide things on your computer.)

I hope some of you guys have a bit better idea of how important it is to understand stuff like this. You can't blindly have faith in your antivirus and firewall, because there ARE ways around it. A firewall doesn't help if you willingly download the program while it's hidden someplace else, and I have no idea if antivirus can identify images with rars hidden in them.

Sorry for the huge rant, but this is the sort of thing that happens when I notice that very few people understand the true nature of security. Security on your computer is not a simple "install this and forget it" thing. Security is an ongoing battle to prepare yourself from as many different attacks as you can, because they are always uncovering more ways to get in, and a firewall and antivirus is only one small part of that battle for security.

(I only operate without a firewall and antivirus because my computer simply gets bogged down after a while. I do have about 1.4 TB of hard drive space, and LOTS of programs that want to run in the background, and I'm just as safe without background scanning anyway.)
Bobbias is offline Reply With Quote
Old 02-06-2008, 10:44   #36
Guardian
Apple GREEN's Avatar
Apple GREEN AmateurApple GREEN AmateurApple GREEN AmateurApple GREEN Amateur  
  Activity Longevity
4/208/20
Posts: 312
Gender: Male Ingame: Male
Avatar Name:
Apple Mystery Green
Soc: Freelancer
Location: Smokedonia
EFD: 63.44
Reputation: Amateur
Fame: 161 Achievements: 3

post deleted due to Andsim's apology

Last edited by Apple GREEN; 02-08-2008 at 10:12.. Reason: setting things streight
__________________
AMG Creations Inc.
Apple GREEN is offline Reply With Quote
Old 02-06-2008, 11:13   #37
Alpha
LAZZ's Avatar
This member has helped support EntropiaForum in the past via donations.
LAZZ QualifiedLAZZ QualifiedLAZZ QualifiedLAZZ QualifiedLAZZ QualifiedLAZZ QualifiedLAZZ Qualified  
  Activity Longevity
5/2018/20
Posts: 617
Gender: Male Ingame: Male
Avatar Name:
Lazer"LAZZ" Nero
Soc: Alpha WildD3amons
Location: Im from the high coust in sweden!
EFD: 11,725.22
Reputation: Qualified
Fame: 121 Achievements: 2

Quote:
Originally Posted by Bobbias View Post
The main problem with people getting hacked is that they don't know how to avoid bad sites, or potential ways for someone to hack them. If you don't know what to protect yourself from, you can't possibly find a way to protect yourself from it. The most powerful tool to prevent hacks is knowledge. I am running a completely unsecured computer, no firewall, no antivirus, nothing. I only have 1 adware program [Which my brother accidentally downloaded in a torrent for a movie, the movie supposedly came as an exe installer, which should have set alarms off like mad...] (technically, I have antivirus, but it's not setup to auto-protect, it's just there for me to occasionally check for viruses and such). Unfortunately, I can't get rid of that adware program right now, but it's only a minor inconvenience.

As I said, the biggest issue is that we need to educate people on how to identify and keep away from bad websites, or how to scan files to make sure that they aren't downloading something that could be harmful.

"Knowledge is half the battle." The more you know, the more you can protect from. I regularly frequent sites that most people would stay away from, such as sites for games CD keys and such (Yes, I pirate games...), but I have learned which sites are reliable, and how to avoid places that are untrustworthy.

Here's an example of a way to scam someone:

You set up a site that looks identical to say, the ebay front page, you then create a small program that does one thing: It edits a file located at C:\windows\system32\drivers\etc\hosts and adds a single line to the file. What that does is allows them to replace a website's IP address with whatever they want. If they added a line that said "207.32.87.164 ebay.com" every time you go to ebay.com, instead of your internet asking a server what the IP address for ebay.com is, it simply looks at 207.32.87.164. If that is where the fake ebay page is, then they have done almost everything necessary to fool you. There are other safety measures, but unless you know to look for a security feature that 90% of the internet doesn't know about, there's no way to tell it's a fake site.

All you would have to do is log in to the fake site, and you're password and username are theirs. If, however, you knew about the security certificate issued to https://signin.ebay.com, you could check to make sure that the site you've reached really is the official ebay sign in page.

I honestly couldn't tell you the number of ways that someone could get a program like that into your system, but the main thing you can do to protect yourself is be weary of any weird programs people might send you. If someone sends pictures, make sure they are jpg or other real picture types, and make sure you scan them just in case. It is possible to hide a rar file inside a png image, and coupled with a covert program installed, the hacker could store stuff inside that file without you ever knowing. They could have the keylogger hidden in that file, once it's extracted into temp folders and run, it could be running in the background from that temporary folder until you restart your computer, and then it could have placed something in the registry that makes it get extracted and run every time you reboot.

Stuff like that is hard to locate, but usually can easily be stopped by making sure you trust the person, and, if they send you a png, you can always rename it to .rar and try to open it. (That is one of many many ways to hide things on your computer.)

I hope some of you guys have a bit better idea of how important it is to understand stuff like this. You can't blindly have faith in your antivirus and firewall, because there ARE ways around it. A firewall doesn't help if you willingly download the program while it's hidden someplace else, and I have no idea if antivirus can identify images with rars hidden in them.

Sorry for the huge rant, but this is the sort of thing that happens when I notice that very few people understand the true nature of security. Security on your computer is not a simple "install this and forget it" thing. Security is an ongoing battle to prepare yourself from as many different attacks as you can, because they are always uncovering more ways to get in, and a firewall and antivirus is only one small part of that battle for security.

(I only operate without a firewall and antivirus because my computer simply gets bogged down after a while. I do have about 1.4 TB of hard drive space, and LOTS of programs that want to run in the background, and I'm just as safe without background scanning anyway.)
I plus rep u for this post! well spoken! Thx!
Regards
LAZZ is online now Reply With Quote
Old 02-06-2008, 13:35   #38
Stalker
AlphaGeek's Avatar
EntropiaForum Senior Member, click here for more information.
AlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek ExceptionalAlphaGeek Exceptional  
  Activity Longevity
8/2015/20
Posts: 2,434
Gender: Male Ingame: Male
Avatar Name:
Alpha AG Geek
Soc: Dragons Shadow
Location: Central VA, US
EFD: 38,390.32
Reputation: Exceptional
Fame: 95 Achievements: 2
Style: Zychion Battle

If you do any other online commercial transactions, such as banking, a gold card is the least of your worries if your Romanian friend put a key logger on your PC.

You 'll need to contact business you exchange money with online to secure your accounts.

Meanwhile, your Romanian friend has taken the money from you and others and is now driving a BMW.

You should report this to your local law enforcement and make sure they document that this happened at the very least. It's possible they'll investigate. If all your skills were in line with what it takes to get to 4k in handgun, you probably had 1000 USD in skills, plus whatever value your items had.

Catching the guy selling the stuff on your account may be helpful to authorities, especially if you have times, dates, and other avatars that the hacker interacted with. It's possible that investigators could get a court order instructing MA to get the connecting IP address, and the investigation could go from there.

It all depends on local law, value lost, and the technical savvy and disposition of whatever law enforcement you deal with.

In any case, it sucks that this happened. I hope you catch the bastard and that justice is served.

Now go check your antivirus software for updates!

AG
__________________


As of November 2008, my last global was:
DroneGeneration 01 for 185 PEDSaturday, June 28, 2008 02:58
AlphaGeek is online now Reply With Quote
Old 02-06-2008, 19:16   #39
Provider
gord_dye's Avatar
gord_dye Qualifiedgord_dye Qualifiedgord_dye Qualifiedgord_dye Qualifiedgord_dye Qualifiedgord_dye Qualifiedgord_dye Qualified  
  Activity Longevity
0/206/20
Posts: 124
Gender: Male Ingame: Male
Avatar Name:
gord gordon dye
Soc: The Rat Pack
Location: usa virginia
EFD: 721.97
Reputation: Qualified
Fame: 285 Achievements: 13
Style: Original EF Skin
FAP 5

Quote:
Originally Posted by andsim View Post
Wow, i never read about this before. i am getting a GC as i can get ped build or depostit in
i have been scam by other people i don't trust expect my friend list
i may never know i will be scam by someone, like one guys i met Gordon Gord Dye is a scammer i have block him to avoid contact me. i been on EU since sept 07. since last today i was be asked if i have any ped i told her i don't have any. i mean 000ped she don't stop asking me. i knew she was scamming me
i am watching out for a scammer.
as sooner i get ped i order the gold card
Andrew i want to see the proof you have that i scamed you. i gave you a gun, free ammo, armor,and taught you how to play this game, so how did YOU get scamed?. never once did i ever scam you. If you do not show proof you will be reported to the fourms and Mind Ark. I have played this game for over 5 years and never scamed anyone. I am not about to let my rep go down over some lies and bullshit. you better be able to back your thread about me scaming you. Thank you for blocking me, I had to do the same thing.
GORD GORDEN DYE

Last edited by gord_dye; 02-06-2008 at 19:28.. Reason: I had more to say
__________________
Hunting 27 team Hof, 192 team globals ,75 solo hunting globals 28 crafting, 45 mineing global ,67 Pk ,2 mineing hof
unlocks MS RDA MDS MA SERDIP
insert comment here_______________
gord_dye is offline Reply With Quote
Old 02-06-2008, 19:28   #40
Old Alpha
Coelacanth's Avatar
Coelacanth TrainedCoelacanth TrainedCoelacanth TrainedCoelacanth TrainedCoelacanth TrainedCoelacanth TrainedCoelacanth TrainedCoelacanth Trained  
  Activity Longevity
0/2016/20
Posts: 1,026
Blog Entries: 7
EFD: 8,445.68
Reputation: Trained
Fame: 0 Achievements: 0

Quote:
Originally Posted by Sweety2 View Post
The point of this whole story is GET A GOLD CARD!!!!!!!!!!!!!!!!
Or, don't accept a file from another EU player, for any reason (unless it's a JPG screenshot maybe). I'm really sorry to hear what's happened to you, but common sense should have prevailed.
__________________
Entropia's Unluckiest Vet - The Real Unchosen One
Paying for all your HOFs and ubers since 2003.
Coelacanth is offline Reply With Quote
Reply

Bookmarks

Thread Tools
 
LinkBacks (?)
LinkBack to this Thread: http://www.entropiaforum.com/forums/security/93405-harley-sweety-jolly-rip-hacked-scammed.html
Posted By For Type Date
RebornSouls This thread Refback 12-23-2007 16:31

EntropiaTracker.com Global Trends
Hunting Globals: -29.56 % Mining Globals: -42.17 % Crafting Globals: + 13.29 %
EntropiaTracker.com Latest Uber Loots
 devastating Vodka lindsey GeoTrek LP485 Apis (L) - 7102 PED: 12/4/2008 15:46 | Just Ozie Jones OreAmp OA-103 (L) - 2048 PED: 12/4/2008 15:27 | Kostja Kostja Gretic OreAmp OA-101 (L) - 1250 PED: 12/4/2008 15:19 | Filip Kozlicek Falta Caldorite stone - 2393 PED: 12/4/2008 15:07 | Bill Billyboy Carson Zombie Arm Guards (F,L) - 2439 PED: 12/4/2008 14:17 | Kostja Kostja Gretic OreAmp OA-101 (L) - 3762 PED: 12/4/2008 14:08 | Vincent Vince Amarillo OreAmp OA-101 (L) - 4348 PED: 12/4/2008 14:02 | ENTROPIAS MOST WANTED OreAmp OA-101 (L) - 1761 PED: 12/4/2008 12:23 | lee mundo chis Abrer Laser Sight - 6278 PED: 12/4/2008 12:08 | Kostja Kostja Gretic OreAmp OA-101 (L) - 2168 PED: 12/4/2008 12:06 | Patrik Stormer Deluxe Falxangius Young - 13981 PED: 12/4/2008 11:21 | Mikael Mike Smoker OreAmp OA-102 (L) - 1247 PED: 12/4/2008 06:46 | Aurora Linzey Zamperath Jashonich AP - 4221 PED: 12/4/2008 02:47 | joe jeff xXSqUaLLXx EnMatAmp MA-105 (L) - 1939 PED: 12/4/2008 02:10 | joe jeff xXSqUaLLXx OreAmp OA-105 (L) - 1383 PED: 12/4/2008 01:27 | Amen Cool Breeze Blackheart Simple III Conductors - 1195 PED: 12/4/2008 01:23 | RI RiRa Ra Drone Generation 07 - 1285 PED: 12/4/2008 00:56 | Tony Coolieman Pinares Simple I Plastic Springs - 1102 PED: 12/4/2008 00:54 | bARbie zNap cooL OreAmp OA-101 (L) - 1641 PED: 12/3/2008 23:43 | Don Loki Lokus OreAmp OA-101 Light (L) - 1515 PED: 12/3/2008 23:36 | Heffa von Klumpen Svempa S40 (L) - 1725 PED: 12/3/2008 23:17 | joe jeff xXSqUaLLXx OreAmp OA-104 (L) - 25268 PED: 12/3/2008 22:56 | Agent Insomniac Andrews OreAmp OA-101 (L) - 2695 PED: 12/3/2008 22:51 | joe jeff xXSqUaLLXx OreAmp OA-104 (L) - 3391 PED: 12/3/2008 22:48 | Pereat AgnusDei Post Festum Simple I Plastic Springs - 1226 PED: 12/3/2008 22:06 | Miguel Garco Gracio Jashonich AP - 3393 PED: 12/3/2008 21:58 | Ari Arppe Jortsu OreAmp OA-101 (L) - 2463 PED: 12/3/2008 21:58 | Skelethor Skel Hadesguard Niksarium stone - 3311 PED: 12/3/2008 21:57 | esteban kace beowker OreAmp OA-101 (L) - 1281 PED: 12/3/2008 21:39 | Goober GOOBSTER Assipe OreAmp OA-101 (L) - 1655 PED: 12/3/2008 19:16 | Vargavinter Vargen Ragnarok Armax Bull Mature - 1064 PED: 12/3/2008 18:08 | William Will Laurence Mann MPH - 1056 PED: 12/3/2008 17:18 | ENTROPIAS MOST WANTED OreAmp OA-101 (L) - 1857 PED: 12/3/2008 17:14 | Einstein brainie brain OreAmp OA-101 (L) - 10487 PED: 12/3/2008 16:50 | Frederic Zoligato Faure Simple II Plastic Springs - 2139 PED: 12/3/2008 16:44 |