Forums

Secure account after hijack

Quick find code: 408-409-927-66105017

Sharpkrak
Jul Gold Premier Club Member 2017

Sharpkrak

Posts: 7Bronze Posts by user Forum Profile RuneMetrics Profile
hei, i recently got jebaited by a hijacker. i am not asking for my items back or anything, but i need some help in understanding how they got in and how i can secure my account to not let them in again.

they got me on this wierd website and i think they might have gotten a hold of my IP address and therefor getting my account info.

now, can they reuse this IP and get my new password and shit or do they have to get me in on a website again.

and also they told me to restart or reset my authenticator, this had me thinking that they used some sort of trick when i resetted it, otherwise i dont understand how they got past my authenticator.

so in summary if someone is willing take the time to explain this to me
i need to know how they got in, like through some linked shit, IP or gmail etc.
what can i do to secure my account further
and if they can get back in after i changed passwords and set up 2 step authenticators on every thing i have linked to my runescape account.

i realise after this BS that i was really ******* stupid thanks.
SharpKrak

10-Jun-2019 21:47:28

Asahel Frost
Dec Member 2007

Asahel Frost

Posts: 13,374Opal Posts by user Forum Profile RuneMetrics Profile
Hi Sharpkrak.

Please secure your PC & email account(s) using the advice here:
Security
Keeping your email secure
Do both virus and malware scans on your PC. If your email provider has 2FA then set that up to further protect your email account.

Do you think the hijacker managed to get any additional account information from you, other than the login name and password? Things like payment information?
Glad to be of service :) (Powered by GPP™ - Share and Enjoy!)
Forum Community Helper (info)
Twitter: @JagexHelpFrost
FC: SilverScaper

10-Jun-2019 23:06:51

Sharpkrak
Jul Gold Premier Club Member 2017

Sharpkrak

Posts: 7Bronze Posts by user Forum Profile RuneMetrics Profile
i set up 2FA and chanced the password on all my emails, my twitch, facebook and runescape ofc.
i ran a virus scan on my phone and PC found nothing and i don't think they got any payment information allthough i don't know how to check that, thanks for the reply and i will run a malware scan right now
SharpKrak

10-Jun-2019 23:23:32

Asahel Frost
Dec Member 2007

Asahel Frost

Posts: 13,374Opal Posts by user Forum Profile RuneMetrics Profile
If the hijacker asked you to submit a ticket via the Runescape website using a 'temporary account' and you put recovery information on that ticket, then the hijacker will have that information. You should never log in to any Runescape account that you did not create yourself.

See the Fake "Support Email" Phishing Scam section here:
Suspicious emails

Or the hijacker may have sent you to a fake Runescape website that asked for login information, and maybe extra things like bank PIN and Authenticator code. See this page for more information on that sort of hijack attempt:
Fake websites

Finally, Samora Kiba has written a very useful information thread here about fake emails:
Is this a Jagex email? [Info]
Glad to be of service :) (Powered by GPP™ - Share and Enjoy!)
Forum Community Helper (info)
Twitter: @JagexHelpFrost
FC: SilverScaper

10-Jun-2019 23:38:13 - Last edited on 10-Jun-2019 23:39:43 by Asahel Frost

Sharpkrak
Jul Gold Premier Club Member 2017

Sharpkrak

Posts: 7Bronze Posts by user Forum Profile RuneMetrics Profile
the second hijack method sounds the most accurate, he sent me to a fake website i logged in to my own account, i gave him my bank pin and he asked me to reset my authenticator and i think by resetting my autehnticator he bypassed it somehow.

After the hijack i got controll over the account again and followed all the security guidelines like changing password and setting up 2FA on everything linked to my runescape account and run a virus scan.

Now would you say that there are any other way that he can reenter my account.
SharpKrak

11-Jun-2019 01:26:22 - Last edited on 11-Jun-2019 01:54:25 by Sharpkrak

Ladyolake
Jan Gold Premier Club Member 2008

Ladyolake

Posts: 3,723Adamant Posts by user Forum Profile RuneMetrics Profile
If you did all the things mentioned I would say you will be safe
UNLESS you put your info in again.

I would also put 2fa on your email

Make sure the email you have on your account is YOUR email

other than that if you followed Asahel's advice you should be good
to go.
The richest person is not who has the most. It is who Needs the least.

11-Jun-2019 02:54:59

Quick find code: 408-409-927-66105017Back to Top