Welcome Guest ( Log In | Register )

5 Pages V < 1 2 3 4 > »   
Reply to this topicStart new topic
> My Account was hacked and lost everything

 
post Jan 8 2018, 18:48
Post #21
@43883




************
Group: Gold Star Club
Posts: 31,486
Joined: 6-March 08
Level 500 (Newbie)


Damn, I fucked up with the emoticon. I always disable that stuff, sorry about that.

In a nutshell, what likely happened here is all 16 of you got a script, willingly or unwillingly, that tried to collect all of your e-monies and turn it into shiny real life currency through some black market site. It's not the first time people attempt to resell stolen EH currency or even special accounts for real money cryptos (new era, better mafia tricks, yay securecoins).

If that was an accident and you can prove it, you may get a refund. If you attempted to break the rules using a dodgy script, the worst case situation is a permaban.

(I kinda doubt chung is stupid enough to do this - he's a renowned translator - so I'm leaning towards "accident" for at least some.)

tl;dr: Please see this directly with Tenboro.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 18:55
Post #22
reisherry



Newcomer
*
Group: Recruits
Posts: 10
Joined: 28-June 13
Level 106 (Lord)


QUOTE(b923242 @ Jan 8 2018, 23:56) *

Having the same problem.
All my GP had changed to Credit by the hijacker and transmitted. (IMG:[invalid] style_emoticons/default/cry.gif)
I wonder this will affect my HentaiAtHome Cilent as well.
I believe the support team will do the justice for me.
However I would like to know beside from changing the password, what should I look out for to prevent this from happen again?

QUOTE(chung2795 @ Jan 9 2018, 01:19) *

lol same here
You guys sure it's not a security breach? (IMG:[invalid] style_emoticons/default/laugh.gif)

It maybe link up to Intel Meltdown&Spectre ...just maybe.
don't know if clean up the cookies and stop the plugins can help (chrome reset).

I don't know how those hijack works, maybe they will capture the new one right away,
but I think clean up cookies then change the password maybe the best solution.

I just found something about the session hijacks
Its like a 2side loophole, I guess, other than that is too technical to understand (IMG:[invalid] style_emoticons/default/anime_cry.gif)

now all my cpu power is pull to scan virus and malware...
But actually I won't install any unknown things, always take care when browsing ,not click into those fake downloads ads.

@AgentLillian
I never trust chinese software except a few other I trust.
Thanks for the suggestions.
QUOTE(AgentLillian @ Jan 9 2018, 02:34) *

The lockdown limited to all 16 Chinese accounts was manual as stated above.
Don't visit dodgy Chinese forums and stop playing the HentaiVerse. The minigame is bad for your health if you can't manage.

I'm not a heavy HV player and i never go to that forum
I earn GP from H@H and for gallery downloads ,thats it.

QUOTE(Tenboro @ Jan 9 2018, 02:12) *

A breach limited to 16 Chinese accounts, with no indication of login attempts or password/email resets? Absolutely. My money is on some kind of script or plugin with a malicious payload, that either had limited distribution or that was posted in a Chinese forum.

I pretty sure that is a sniffing attack.
I don't install plugin/scripts that i don't know/trust.

@w45451212
A hacked sites always change i think

QUOTE(g3733738 @ Jan 9 2018, 02:36) *

Many of us didn’t know each other. The BIG BROTHER is watching us?

The Big Brother is ALWAYS watching us (IMG:[invalid] style_emoticons/default/biggrin.gif)
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 19:00
Post #23
NekoHime27



忙しい猫姫
***********
Group: Catgirl Camarilla
Posts: 10,795
Joined: 9-July 11
Level 405 (Godslayer)


QUOTE(AgentLillian @ Jan 9 2018, 00:48) *

Damn, I fucked up with the emoticon. I always disable that stuff, sorry about that.

In a nutshell, what likely happened here is all 16 of you got a script, willingly or unwillingly, that tried to collect all of your e-monies and turn it into shiny real life currency through some black market site. It's not the first time people attempt to resell stolen EH currency or even special accounts for real money cryptos (new era, better mafia tricks, yay securecoins).

If that was an accident and you can prove it, you may get a refund. If you attempted to break the rules using a dodgy script, the worst case situation is a permaban.

(I kinda doubt chung is stupid enough to do this - he's a renowned translator - so I'm leaning towards "accident" for at least some.)

tl;dr: Please see this directly with Tenboro.

Eh I don't even care much for HV or credits stuff, I have way more important stuff to do (like translating Chinese cartoon porn lol)

Though the possibility of another Chinese site getting hacked is pretty high now that I look at it with anecdotes given by w
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 19:16
Post #24
WatermelonJuice



Arcobaleno
*******
Group: Gold Star Club
Posts: 2,220
Joined: 20-April 13
Level 500 (Ponyslayer)


QUOTE(reisherry @ Jan 9 2018, 00:55) *

I'm not a heavy HV player and i never go to that forum
...
I pretty sure that is a sniffing attack.


This is the first time I hear of that site.


Um... I don't think so.
We are not from the same region, and network, of course.
It's not easy to sniff across regions such as China and Taiwan.

Did you use the same password in any Chinese site, like baidu (百度) or weibo (微博)?


QUOTE(chung2795 @ Jan 9 2018, 01:00) *

Eh I don't even care much for HV or credits stuff, I have way more important stuff to do (like translating Chinese cartoon porn lol)

Though the possibility of another Chinese site getting hacked is pretty high now that I look at it with anecdotes given by w


I don't care either.
But I do not run H@H now, due to the law in my country.
And I earn credits slowly by clearing arena each day.
If those credits are gone, I may not have enough credits for donation (translator or someone else). (IMG:[invalid] style_emoticons/default/laugh.gif)

This post has been edited by w45451212: Jan 8 2018, 19:17
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 19:20
Post #25
NekoHime27



忙しい猫姫
***********
Group: Catgirl Camarilla
Posts: 10,795
Joined: 9-July 11
Level 405 (Godslayer)


QUOTE(w45451212 @ Jan 9 2018, 01:16) *

If those credits are gone, I may not have enough credits for donation (translator or someone else). (IMG:[invalid] style_emoticons/default/laugh.gif)

Gimme all of your delicious eh shekels (IMG:[invalid] style_emoticons/default/laugh.gif)
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 19:52
Post #26
Cleavs



A certain pervert. OT expert. Just dancing around in the game.
***********
Group: Gold Star Club
Posts: 24,313
Joined: 18-January 07
Level 500 (Ponyslayer)


pretty sure admin is checking things, will flag some checks, tick some boxes and situation will be reverted.

as you may (or may not) know, the more a site is renowned, the bigger of a candy is for hackers - and this site is quite well known, within the H community. please be patient and follow the normal security procedures (IMG:[invalid] style_emoticons/default/smile.gif)
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 19:53
Post #27
TeeKay2000



Lurker
Group: Lurkers
Posts: 2
Joined: 24-March 10
Level 33 (Journeyman)


QUOTE(Tenboro @ Jan 8 2018, 17:12) *

A breach limited to 16 Chinese accounts, with no indication of login attempts or password/email resets? Absolutely. My money is on some kind of script or plugin with a malicious payload, that either had limited distribution or that was posted in a Chinese forum.


Are you sure? My account was affected as well and it's not a Chinese account. (IMG:[invalid] style_emoticons/default/sad.gif)
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 19:54
Post #28
cdzxc



Regular Poster
******
Group: Gold Star Club
Posts: 951
Joined: 7-January 13
Level 500 (Godslayer)


QUOTE(Tenboro @ Jan 8 2018, 18:12) *

A breach limited to 16 Chinese accounts, with no indication of login attempts or password/email resets? Absolutely. My money is on some kind of script or plugin with a malicious payload, that either had limited distribution or that was posted in a Chinese forum.


Does this guy try to log in many other accounts?
If so then he may have an account database.
If he was directly and accurately logged in to our account,i think the victims should explore what they have in common. We need to know each other, and try to explore something that will happen only in China.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 19:57
Post #29
NekoHime27



忙しい猫姫
***********
Group: Catgirl Camarilla
Posts: 10,795
Joined: 9-July 11
Level 405 (Godslayer)


QUOTE(TeeKay2000 @ Jan 9 2018, 01:53) *

Are you sure? My account was affected as well and it's not a Chinese account. (IMG:[invalid] style_emoticons/default/sad.gif)

Okay now this is getting weird
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 20:47
Post #30
reisherry



Newcomer
*
Group: Recruits
Posts: 10
Joined: 28-June 13
Level 106 (Lord)


QUOTE(chung2795 @ Jan 9 2018, 03:57) *

Okay now this is getting weird

Not quite, data packet always have to go throw some checkpoint e.g. in Asia Singapore/HongKong/Japan
If there is any hackers want a specific thing, in this case the eh account, just filter it analyse it ,then we are the victims.
Just I think ,not sure is 100% true.
As i said maybe this is relation to the Intel meltdown.
I don't know the whole picture in this case except we all lose what we earn and transferred to an unknown account.
Nobody wants to get robbed...
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 21:16
Post #31
mundomuñeca



Lo Scimmiotto
********
Group: Members
Posts: 4,221
Joined: 14-July 17
Level 477 (Dovahkiin)


This may be or may be not related to all that, but some minutes ago I was looking in Item Shop, when suddenly someone dumped there a full collection of old trophies and 21 stuffers !

I bought everything I could, obviously.

If Tenboro checks in his logs, maybe he can tell if it was a legitimate selling or not, but in any case I was buying from Bazaar in good faith, so even if he can trace back those sellings to hacked account, get ready to pay something for them (I paid for them the Bazaar price, but I'd expect something more, fair warning! )

@Tenboro : or you could just tweak the database and make them "disappear" from my inventory, but I'd expect to get at least my credits back as a minimum, and possibly some "bounty-like" premium.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 21:42
Post #32
iDShaDoW



Regular Poster
*****
Group: Members
Posts: 584
Joined: 4-January 14
Level 469 (Godslayer)


QUOTE(mundomuñeca @ Jan 8 2018, 14:16) *

@Tenboro : or you could just tweak the database and make them "disappear" from my inventory, but I'd expect to get at least my credits back as a minimum, and possibly some "bounty-like" premium.


I would think Tenboro would just check the database logs and rollback the transactions so that neither you nor the impacted account owner would be screwed.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 21:44
Post #33
Juggernaut Santa



Living in HV 0.83 until Tenboro adds the Tower to Persistent
***********
Group: Gold Star Club
Posts: 11,132
Joined: 26-April 12
Level 500 (Ponyslayer)


omg the greed (IMG:[invalid] style_emoticons/default/laugh.gif)


Anyway, to all the victims here, do you happen, by any case, to have an "easy name" wifi connection?

A lot of scammers like to name their wifi connections with "easy names" and leave them unprotected (no password), usually mobile wifi connection does not check if the wifi is the same as the one you connected the first time, but only if the name is the same, therefore if you have a home connection/random wifi you connected time ago saved on your device with the same name, it will connect to that if you happen to pass by.

Usually that's the way they rob info from you. You, unaware, use your phone/laptop using their wifi, and everything you do is copied byte by byte from the thief.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 22:01
Post #34
mundomuñeca



Lo Scimmiotto
********
Group: Members
Posts: 4,221
Joined: 14-July 17
Level 477 (Dovahkiin)


QUOTE(iDShaDoW @ Jan 8 2018, 22:42) *

I would think Tenboro would just check the database logs and rollback the transactions so that neither you nor the impacted account owner would be screwed.


He could do just that, if he wants, obviously. I wouldn't necessarily see it as "fair", though.

Everything in this game is based on luck (under the form of RNG) and time invested in playing.
I got those item legit, by investing my time (I'm repeatedly checking the Item Shop like a hundred times a day since a couple of days ago someone reported in another thread of a Tenbora's box he had got in Bazaar, and Scremaz answer was "it happens"). And being lucky, obviousdly (it happened, but it could well not happen).

So why should I be penalized, for being too lucky? He can just as well give the stuff back to where it was, without taking it away from me, since it's all virtual to him anyway.

Besides, when someone screw his junk sellings and bazaar some Legendary Power or other stuff, those lucky ones that get it keep it; Ithink this is just the same (from my side, obviously . from the side of the guy who's been hacked, if it's really so, is different. But why that should impact me, do tell me please.)
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 22:05
Post #35
lazyNPC



├┬┴┬┴┤(・_├┬┴┬┴┤
********
Group: Gold Star Club
Posts: 3,346
Joined: 8-June 12
Level 500 (Godslayer)


QUOTE(mundomuñeca @ Jan 8 2018, 21:01) *

...

Why should that impact you?
In real life, that's called receiving stolen goods, and it's breaking the law, for which you could be arrested (IMG:[invalid] style_emoticons/default/tongue.gif)
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 22:32
Post #36
chivoef



Total delinquent
********
Group: Gold Star Club
Posts: 4,063
Joined: 12-January 10
Level 500 (Hero)


just had to check, because you know..
My credit log has definitely seen better days.
Attached Image
Not even sure why I still buy that junk.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 22:42
Post #37
Mysael



Casual Poster
***
Group: Members
Posts: 120
Joined: 22-February 14
Level 460 (Godslayer)


@mundomuñeca
Are you really serious?
So because you spend your live playing this game it makes it legitimate for you to buy stolen stuff? I know that in this world the misfortune of one makes the happiness of others but must not be exaggerate. You talk to us about time invested and a "fair" decision, these people have also invested time in this game, luck has nothing to do in this case, a malevolent individual has just hacked their account. Your attitude is like someone shooting on you in the street and instead of helping you I take your wallet and I let you die in your blood and shit, because you see I'm "too lucky".

Edit: This thread is not intended for this, as a result I will defend my point of view by PM with the interested for the continuation.
And yes my comparison was not the best taste but that's what it this post evoked me on the moment. If some people were shocked, I'm sorry for that.

This post has been edited by Mysael: Jan 8 2018, 23:56
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 22:55
Post #38
Tenboro

Admin




QUOTE(Scremaz @ Jan 8 2018, 18:52) *
pretty sure admin is checking things, will flag some checks, tick some boxes and situation will be reverted.


It's not *quite* that easy, but MM is thoroughly logged, so it shouldn't be too hard to script a reversal.

QUOTE(TeeKay2000 @ Jan 8 2018, 18:53) *
Are you sure? My account was affected as well and it's not a Chinese account. (IMG:[invalid] style_emoticons/default/sad.gif)


From the account list, most seemed to be Chinese. I'm looking at a few leads, but I can't confirm a particular attack vector yet.

QUOTE(mundomuñeca @ Jan 8 2018, 20:16) *

If Tenboro checks in his logs, maybe he can tell if it was a legitimate selling or not, but in any case I was buying from Bazaar in good faith, so even if he can trace back those sellings to hacked account, get ready to pay something for them (I paid for them the Bazaar price, but I'd expect something more, fair warning! )


There's no evidence of any further account compromises, but even if they were, those wouldn't just disappear from your account.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 23:07
Post #39
blue penguin



in umbra, igitur, pugnabimus
***********
Group: Gold Star Club
Posts: 10,046
Joined: 24-March 12
Level 500 (Godslayer)


Shot in the dark.

QUOTE(Tenboro @ Jan 8 2018, 20:55) *
From the account list, most seemed to be Chinese. I'm looking at a few leads, but I can't confirm a particular attack vector yet.
I just noticed a couple of days ago that:
CODE
[me@phoenix ~]$ dig e-hnetai.org A

; <<>> DiG 9.11.2 <<>> e-hnetai.org A
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 20722
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 512
;; QUESTION SECTION:
;e-hnetai.org.            IN    A

;; ANSWER SECTION:
e-hnetai.org.        299    IN    A    199.191.50.73

;; Query time: 156 msec
;; SERVER: 8.8.8.8#53(8.8.8.8)
;; WHEN: Mon Jan 08 20:56:49 GMT 2018
;; MSG SIZE  rcvd: 57

[me@phoenix ~]$ dig e-henati.org A

; <<>> DiG 9.11.2 <<>> e-henati.org A
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 9549
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 512
;; QUESTION SECTION:
;e-henati.org.            IN    A

;; ANSWER SECTION:
e-henati.org.        299    IN    A    199.191.50.73

;; Query time: 160 msec
;; SERVER: 8.8.8.8#53(8.8.8.8)
;; WHEN: Mon Jan 08 20:56:57 GMT 2018
;; MSG SIZE  rcvd: 57
That both typos now point to the same IP. This has changed in the last couple of weeks I believe. That is in the Virgin British Islands but the registar for both domains is Vietnam. Also both close to expiration.

Do anyone here types the EH address into the address bar?
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 8 2018, 23:13
Post #40
mundomuñeca



Lo Scimmiotto
********
Group: Members
Posts: 4,221
Joined: 14-July 17
Level 477 (Dovahkiin)


QUOTE(Mysael @ Jan 8 2018, 23:42) *

@mundomuñeca
Are you really serious?
So because you spend your live playing this game it makes it legitimate for you to buy stolen stuff? I know that in this world the misfortune of one makes the happiness of others but must not be exaggerate. You talk to us about time invested and a "fair" decision, these people have also invested time in this game, luck has nothing to do in this case, a malevolent individual has just hacked their account. Your attitude is like someone shooting on you in the street and instead of helping you I take your wallet and I let you die in your blood and shit, because you see I'm "too lucky".


First, in any law and jurisdiction I know of, and certainly in Europe, noone can take stuff from me that I legitimately bought in good faith, not even if it is proven that it was originally stolen, without a compensation.

For me to be responsible, and therefore to be confiscated without indemnation and prosecuted, you have to prove not just that the stuff I own was stolen but also that I bought it knowing that it was illegitimately owned by the one from which I bought it.

Secondly, your paragon is completely flawed. Physical items can (obviously) be owned only by one or the other of the two parties involved, and that's why legislation gives some imdemnity rights to the "unknowing third" that bought in good faith. Here items are immaterial, they can just be given to both (innocent) parties.

Not to speak that if you rob a shooted man, you're obviously participating in a crime with full knowledge of it, which is such a compleetely different thing that I donìt even know why you should bother to cite such a case.

Think before you speak (or write), that's my simple counsel, or get a lawyer (IMG:[invalid] style_emoticons/default/smile.gif)

User is offlineProfile CardPM
Go to the top of the page
+Quote Post


5 Pages V < 1 2 3 4 > » 
Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 


Lo-Fi Version Time is now: 1st July 2025 - 17:28