Are you prepared for Wrath of the Lich King? WoW Insider has you covered!

How misspelling might get you keylogged


There have been a lot of scares recently about AddOns having keyloggers in them. For the most part, it turned out to be ads on the sites that were the problem. And now we have the Fraps scare. Unfortunately, no one is immune and it's best to be as careful as possible. Recently, I came across another particularly sneaky way you could get keylogged.

I don't use many AddOns when I play. Cartographer, Auctioneer and Gatherer are pretty much it. I've tried tarting my UI up with some of the fancier mods, but I always come back to my minimalist setup. Because I don't use many, I don't have to upgrade very often and I always neglect to bookmark the appropriate download sites. I'm also a believer in convenience, so I make full use of my Firefox address bar to do my "searches". Firefox will either bring up a Google search for whatever I type in or it will bring up the closest webpage to what I have typed.
Recently, I was looking for an upgrade and I mistyped the name in my address bar. Firefox cheerily brought up the website that matched what I typed. It was a site that listed a few WoW UIs as well as some popular WoW searches. I closed the window, typed what I wanted into my handy dandy Search Box (which is honestly just as convenient) and went on my merry way. I proceeded to play some WoW that night and logged into City of Heroes for a bit as well.

The next morning, my virus program informed me that a Trojan had taken residence on my machine for the purpose of recording my keystrokes. Nice. After I double-checked that the evil program had been removed, I immediately changed my passwords for the games I had played. Happily no damage had been done -- nor do I think I was really at risk. Because of that convenience thing, I let my usernames be saved as often as possible so that the keylogger wouldn't have actually known to what username to link my newly stolen passwords.

At first I blamed the AddOns since that was the only new thing I had downloaded. But then I retraced my steps and remembered the mistyping. That is what makes this whole thing so sinister. I had to think hard to remember I had visited the fake UI site for a few seconds because who remembers the typos one makes while searching?

Earlier this month, Vox pointed out on the forums that there is a keylogging site Warcraftsmovies.com (DON'T GO!) that is taking advantage of misspelling Warcraftmovies.com (that one is OK). Blizzard poster Vrakthris requests that anyone who comes across these sites please report them on their official webform. I would report the one that got me, but I don't remember which one it is and, honestly, I'm scared to go and look for it.

These criminals are clever. They create domain names that are misspellings of commonly searched WoW-related terms and then put "content" on there so that it looks like a semi-respectable place. If you don't get taken there automatically, the sites will still show up looking like valid sites in a Google search. And unless you have your browser setup so that it won't run scripts automatically, just loading the site will load the program onto your computer.

We've said this before, but these are the best ways to keep your account safe:
  • Don't buy from gold sellers and power levelers.
  • Don't share your account info with anyone.
  • Don't download from shady sources.
  • Do keep your anti-virus/anti-spyware tools up to date.
  • Do change your password regularly.
As is usual with criminals, however, they get around your safety measures with tactics like these websites. But I guess that convenience is a small price to pay to keep my precious drood with her leet gear safe.

Related Headlines

Reader Comments (Page 1 of 3)

Add your comments

Please keep your comments relevant to this blog entry. Email addresses are never displayed, but they are required to confirm your comments.

When you enter your name and email address, you'll be sent a link to confirm your comment, and a password. To leave another comment, just use that password.

To create a live link, simply type the URL (including http://) or email address and we will make it a live link for you. You can put up to 3 URLs in your comments. Line breaks and paragraphs are automatically converted — no need to use <p> or <br> tags.

New Users

Current Users


RESOURCES

Class Columns
Pimp My Profile (1)
(Druid) Shifting Perspectives (41)
(Hunter) Big Red Kitty (37)
(Hunter) Scattered Shots (13)
(Mage) Arcane Brilliance (38)
(Paladin) The Light and How to Swing It (48)
(Priest) Spiritual Guidance (22)
(Rogue) Encrypted Text (33)
(Shaman) Totem Talk (43)
(Warlock) Blood Pact (26)
(Warrior) The Care and Feeding of Warriors (47)
Gameplay
(Arena PvP) Blood Sport (22)
(BG PvP) The Art of War(craft) (21)
(Casual) WoW, Casually (21)
(Engineering) Hoof and Horn Research and Development (17)
(Guild Leadership) Officers' Quarters (55)
(Professions) Insider Trader (55)
(Raid Healing) Raid Rx (18)
(Raiding) Raiding 101 (3)
(Raiding) Ready Check (20)
(Roleplaying) All the World's a Stage (36)
Hybrid Theory (13)
AddOns and UI
AddOn Spotlight (80)
Macro Anatomy (12)
Reader UI of the Week (26)
Reader WoWspace of the week (29)
The Creamy GUI Center (11)
Lore and Stories
Around Azeroth (471)
Barrens Chat (1)
Know your Lore (57)
Tales from the Lion's Pride Inn (14)
WoW Moviewatch (468)
Features
15 Minutes of Fame (18)
About the Bloggers (24)
Ask WoW Insider (55)
Azeroth Security Advisor (1)
Back In The Day (3)
Breakfast topics (682)
Build Shop (34)
Gamers on the Street (19)
Guildwatch (75)
He Said She Said (4)
It came from the Blog (26)
Phat Loot Phriday (85)
Two Bosses Enter (61)
Well Fed Buff (22)
World of WarCrafts (19)
WoW Insider Show (51)
WoW Rookie (36)
[1.Local] (5)
Classes
Death Knight (52)
Druid (268)
Hunter (259)
Mage (160)
Paladin (267)
Priest (224)
Rogue (166)
Shaman (245)
Warlock (177)
Warrior (181)
News
Account Security (10)
AddOns (237)
Analysis / Opinion (2714)
Blizzard (1485)
BlizzCon (188)
Bugs (215)
Burning Crusade (365)
Contests (205)
Economy (183)
Events (369)
Expansions (566)
Fan stuff (826)
Features (623)
Forums (251)
Guilds (463)
Hardware (24)
Humor (724)
Interviews (137)
Lore (270)
Mounts (131)
News items (1419)
NPCs (186)
Odds and ends (1606)
Patches (1122)
Podcasting (72)
Ranking (51)
Realm News (282)
Realm Status (228)
RP (158)
Rumors (32)
Virtual selves (613)
WoW Insider Business (280)
WoW Social Conventions (137)
WoW TCG (49)
Wrath of the Lich King (259)
Strategy
Alts (86)
Arena (166)
Battlegrounds (108)
Bosses (305)
Buffs (116)
Cheats (69)
Classes (287)
Enchants (29)
Factions (145)
Guides (326)
How-tos (362)
Instances (626)
Items (794)
Leveling (243)
Making money (161)
PvP (700)
Quests (345)
Raiding (673)
Talents (120)
Tips (544)
Tricks (219)
Walkthroughs (76)
Media
Comics (62)
Fan art (33)
Galleries (132)
Machinima (547)
Podcasts (52)
Polls (55)
Screenshots (612)
Races
Alliance (103)
Draenei (62)
Dwarves (15)
Gnomes (39)
Human (14)
Night Elves (42)
Horde (102)
Blood Elves (69)
Orcs (25)
Tauren (41)
Trolls (22)
Undead (21)
Professions
Alchemy (75)
Blacksmithing (55)
Cooking (66)
Enchanting (70)
Engineering (108)
First Aid (16)
Fishing (57)
Herbalism (44)
Inscription (10)
Jewelcrafting (79)
Leatherworking (59)
Mining (42)
Skinning (28)
Tailoring (64)
Retired
Azeroth Interrupted (24)
World Wide WoW (8)
/silly (14)

RSS NEWSFEEDS

Powered by Blogsmith

    Featured Galleries

    Magisters' Terrace walkthrough
    Patch 2.4 Sunwell Isle
    It came from the Blog: Children's Week Gallery
    Children's Week: Stormwind
    Children's Week: Orgrimmar
    M'uru loot
    Children's Week: Dornaa's quests
    Children's Week: Shattrath City -- Horde
    The Darkmoon Faire

     

    Most Commented On (30 days)

    Recent Comments

    Weblogs, Inc. Network

    Other Weblogs Inc. Network blogs you might be interested in: