![]() |
|
|||||||
| Notice |
| Security Discussion relation to Entropia Universe account security. |
![]() |
|
|
LinkBack (1) | Thread Tools |
|
|
#33 | ||||||
|
Old
Posts:
Gender:
Ingame: ![]() Avatar Name:
Happyone andsim Hammerer Soc: Calypso Beauty Cener
EFD: 2,425.24
|
post is deleted
gord is forgive read my latest post about gord Last edited by andsim; 02-08-2008 at 02:58.. Reason: i forgive gord for telling him a scammer |
||||||
|
|
|
|
|
#35 | ||||||
|
Mature
|
The main problem with people getting hacked is that they don't know how to avoid bad sites, or potential ways for someone to hack them. If you don't know what to protect yourself from, you can't possibly find a way to protect yourself from it. The most powerful tool to prevent hacks is knowledge. I am running a completely unsecured computer, no firewall, no antivirus, nothing. I only have 1 adware program [Which my brother accidentally downloaded in a torrent for a movie, the movie supposedly came as an exe installer, which should have set alarms off like mad...] (technically, I have antivirus, but it's not setup to auto-protect, it's just there for me to occasionally check for viruses and such). Unfortunately, I can't get rid of that adware program right now, but it's only a minor inconvenience.
As I said, the biggest issue is that we need to educate people on how to identify and keep away from bad websites, or how to scan files to make sure that they aren't downloading something that could be harmful. "Knowledge is half the battle." The more you know, the more you can protect from. I regularly frequent sites that most people would stay away from, such as sites for games CD keys and such (Yes, I pirate games...), but I have learned which sites are reliable, and how to avoid places that are untrustworthy. Here's an example of a way to scam someone: You set up a site that looks identical to say, the ebay front page, you then create a small program that does one thing: It edits a file located at C:\windows\system32\drivers\etc\hosts and adds a single line to the file. What that does is allows them to replace a website's IP address with whatever they want. If they added a line that said "207.32.87.164 ebay.com" every time you go to ebay.com, instead of your internet asking a server what the IP address for ebay.com is, it simply looks at 207.32.87.164. If that is where the fake ebay page is, then they have done almost everything necessary to fool you. There are other safety measures, but unless you know to look for a security feature that 90% of the internet doesn't know about, there's no way to tell it's a fake site. All you would have to do is log in to the fake site, and you're password and username are theirs. If, however, you knew about the security certificate issued to https://signin.ebay.com, you could check to make sure that the site you've reached really is the official ebay sign in page. I honestly couldn't tell you the number of ways that someone could get a program like that into your system, but the main thing you can do to protect yourself is be weary of any weird programs people might send you. If someone sends pictures, make sure they are jpg or other real picture types, and make sure you scan them just in case. It is possible to hide a rar file inside a png image, and coupled with a covert program installed, the hacker could store stuff inside that file without you ever knowing. They could have the keylogger hidden in that file, once it's extracted into temp folders and run, it could be running in the background from that temporary folder until you restart your computer, and then it could have placed something in the registry that makes it get extracted and run every time you reboot. Stuff like that is hard to locate, but usually can easily be stopped by making sure you trust the person, and, if they send you a png, you can always rename it to .rar and try to open it. (That is one of many many ways to hide things on your computer.) I hope some of you guys have a bit better idea of how important it is to understand stuff like this. You can't blindly have faith in your antivirus and firewall, because there ARE ways around it. A firewall doesn't help if you willingly download the program while it's hidden someplace else, and I have no idea if antivirus can identify images with rars hidden in them. Sorry for the huge rant, but this is the sort of thing that happens when I notice that very few people understand the true nature of security. Security on your computer is not a simple "install this and forget it" thing. Security is an ongoing battle to prepare yourself from as many different attacks as you can, because they are always uncovering more ways to get in, and a firewall and antivirus is only one small part of that battle for security. (I only operate without a firewall and antivirus because my computer simply gets bogged down after a while. I do have about 1.4 TB of hard drive space, and LOTS of programs that want to run in the background, and I'm just as safe without background scanning anyway.) |
||||||
|
|
|
|
|
#37 | |||||||
|
Alpha
![]() ![]() ![]() ![]() ![]() ![]() ![]()
|
Quote:
Regards |
|||||||
|
|
|
|
|
#38 | ||||||
|
Stalker
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]()
Posts:
Gender:
Ingame: ![]() Avatar Name:
Alpha AG Geek Soc: Dragons Shadow
Location: Central VA, US
EFD: 38,390.32
|
If you do any other online commercial transactions, such as banking, a gold card is the least of your worries if your Romanian friend put a key logger on your PC.
You 'll need to contact business you exchange money with online to secure your accounts. Meanwhile, your Romanian friend has taken the money from you and others and is now driving a BMW. You should report this to your local law enforcement and make sure they document that this happened at the very least. It's possible they'll investigate. If all your skills were in line with what it takes to get to 4k in handgun, you probably had 1000 USD in skills, plus whatever value your items had. Catching the guy selling the stuff on your account may be helpful to authorities, especially if you have times, dates, and other avatars that the hacker interacted with. It's possible that investigators could get a court order instructing MA to get the connecting IP address, and the investigation could go from there. It all depends on local law, value lost, and the technical savvy and disposition of whatever law enforcement you deal with. In any case, it sucks that this happened. I hope you catch the bastard and that justice is served. Now go check your antivirus software for updates! AG |
||||||
|
|
|
|
|
#39 | |||||||
|
Provider
![]() ![]() ![]() ![]() ![]() ![]()
Posts:
Gender:
Ingame: ![]() Avatar Name:
gord gordon dye Soc: The Rat Pack
Location: usa virginia
EFD: 721.97
|
Quote:
GORD GORDEN DYE Last edited by gord_dye; 02-06-2008 at 19:28.. Reason: I had more to say |
|||||||
|
__________________
Hunting 27 team Hof, 192 team globals ,75 solo hunting globals 28 crafting, 45 mineing global ,67 Pk ,2 mineing hofunlocks MS RDA MDS MA SERDIP insert comment here_______________ |
||||||||
|
|
|
![]() |
| Bookmarks |
| Thread Tools | |
|
|
LinkBacks (?)
LinkBack to this Thread: http://www.entropiaforum.com/forums/security/93405-harley-sweety-jolly-rip-hacked-scammed.html
|
||||
| Posted By | For | Type | Date | |
| RebornSouls | This thread | Refback | 12-23-2007 16:31 | |
| EntropiaTracker.com Global Trends | ||
| Hunting Globals: -29.56 % | Mining Globals: -42.17 % | Crafting Globals: + 13.29 % |
| EntropiaTracker.com Latest Uber Loots |