Forums

Uncle Arch's Security Corner

Quick find code: 86-87-850-62432224

Subzero

Subzero

Posts: 23,266 Opal Posts by user Forum Profile RuneMetrics Profile
Hey Arch,

I've re-written your 'What to do if you are hijacked' post. :) If you'd like to use this!


Step I: Get your Account Locked
---------------------------------
Post your Account name on "Lost control of my account!" (Quick find code: 250-251-727-63596056). Staff can also investigate the hijacking and punish the culprit.


Step II: Check for Breaches
---------------------------------
1. Update your Detection Software.

2. Turn off your Internet to prevent further attacks, and scan with detection programs. Scan as thoroughly as possible, as possibly in Safe Mode.

3. If necessary, use the Task Manager (Windows machines, Ctrl+Alt+Delete) to End any unknown programs. Use Google to help you identify them.

4. If you cannot find anything, then proceed to the next Step. MalwareBytes and SpyBot S&D are good Malware scanners; which will find Keyloggers and Remote Admin Tools.


Step III: Recover your Account
---------------------------------
WARNING: Do not attempt this whilst your email address or computer is insecure. You must have a secure email account and computer, else this will lead to another hijack.

To submit a Recovery using your Email account:

1) Go to any Jagex login screen and click "Forgotten Pass word".
2) Enter your Login name/Login email
3) It will now ask you for an email, enter it.

If you have a registered email, you will be unable to Manually recover your account.

If you are having trouble Recovering your account, you can email [email protected]­m, or you can use these Threads in the Account Help section:

Hijacker Set a Registered Email
Quick find code: 250-251-5-63915722

No Recovery Email?
Quick find code: 250-251-17-63886055

Expired Links in Email
Quick find code: 250-251-18-63886066


Step IV: Future Security
---------------------------------
In future, please ensure you have a good understanding of Internet security. I advise you to read the "Safety Centre" section of the forums, as well as follow the advice in this thread.
Subzero

Incursione 2100+/130+ Clan, Avatar access for all.

01-Aug-2012 15:33:03 - Last edited on 01-Aug-2012 16:11:15 by Subzero

Archaeox
Dec
fmod Member
2011

Archaeox

Forum Moderator Posts: 53,398 Emerald Posts by user Forum Profile RuneMetrics Profile
Thanks Subzero, I'll try to work that in when I get a few minutes... likely to be at the end of this month!

And thanks The East, hope it's helpful to you and your clan :)
~~~~ Just another victim of the ambient morality ~~~~

~~ Founder of the Caped Carousers quest cape clan ~~

!! Slava Ukraini - heroyam slava !!

08-Aug-2012 10:02:35

Yawhatnever

Yawhatnever

Posts: 4,500 Adamant Posts by user Forum Profile RuneMetrics Profile
I think most stolen accounts are being recovered though email now. I'm pretty sure when fansites like RSC or Runehead were hacked about a year ago they gained a list of email addresses and account names and right now are actively targeting those email addresses.

I say this based on my personal experience with helping friends gain back their accounts, and in some cases either my friends or my own conversation with the hackers.

I recommend anyone who reads this to alert their clan members to update their recovery email address, especially if they use Hotmail or have used the same address for more than a few years. If they've used the same address to sign up for any fansites they should definitely change their recovery email before it becomes a target.

20-Aug-2012 13:56:07

Mercifull
Mar Member 2021

Mercifull

Posts: 1,607 Mithril Posts by user Forum Profile RuneMetrics Profile
A week or so ago I posted a concept for a way of implementing 2-step verification into the game to protect our accounts. It's a bit long to post here again but the QFC is 277-278-105-63939404 if people want to look at it.

23-Aug-2012 10:05:27

[#6QDC11M49]

[#6QDC11M49]

Posts: 1,024 Mithril Posts by user Forum Profile RuneMetrics Profile
Hmm, maybe you can write a bit about the Java 7 exploit in one of your reserves, Arch.
Since, the exploit get's people hacked through RAT's wich are being downloaded through Java 7. I have about 2-3 people hacked in my clan because of this.

02-Sep-2012 16:03:37

Aquilo
May Member 2007

Aquilo

Posts: 355 Silver Posts by user Forum Profile RuneMetrics Profile
I may have a two other suggestions that you may want add.

1. Kapersky makes a rescue disk that you can load to a bootable USB key. I have had to use this and it does work on a number of viruses out there. I don't know if there are other similar products, but, they are an option as you can boot from a clean USB key to start fixing the system.

2. Microsoft also has a bootable product called Windows Defender Offline. It also builds a USB key that will scan a system. You do have to pick the 32 bit or 64 bit version depending on what O/S you are using. Again, I have had to use this product and while not the fastest it seems to do the job.

17-Sep-2012 20:14:25

Quick find code: 86-87-850-62432224 Back to Top