ChipTalk.net - Poker Chip Forums Play Online Poker

Go Back   ChipTalk.net - Poker Chip Forums > General Poker > Online Poker

Loading...


» Navigation Menu
ChipTalk Forums
Poker Chips!
Custom Chips
Collector's Corner
Group Buys
Reviews
Articles
Market Place
Home Game Advice
Poker Strategy
General Poker
Non-Poker Topics

Home Poker Advice
Home Poker Rules
Tournament Structures
Chip Breakdowns
Poker Gear
Listings and Leagues
Poker and the LAW
Dealer's Choice Games
Stories and Bad Beats
General Discussion
Dead Button Tool
Robert’s Rules
Poker Tables
Get Chip Samples
Poker Chip Reviews
Poker Gear Reviews
Chip Breakdown Calc

ChipTalk Tools
Poker Chip Factory
Poker Classifieds
Hand Converter
Chip Breakdown Calc
Dead Button Tool
ChipTalk Store by HPC
ChipTalk GiftShop
vBux Store
Robert’s Rules
Tourney Password
Vector Playing Cards
CC-GTCC Application
Donate to ChipTalk

Contact Us
Staff
Contact Us
Product Review Rqst
Link to Us
Advertise with Us
» Latest Auction Listings
Go to first new post They're baaaaaack....
12-20-2008 12:03 PM
Go to first new post 804 Sonny's
01-06-2009 03:47 AM
Go to first new post Outpost $25
01-06-2009 09:21 AM
Go to first new post Over 700 Paulson Cherries
12-31-2008 12:02 PM
Go to first new post Factory sealed kems- dirt cheap
01-05-2009 05:15 PM
Go to first new post Bud Jones, Mirage Springs and...
01-05-2009 02:12 PM
Go to first new post Lazy Spade chips, CHEAP!
01-04-2009 07:32 PM
Go to first new post 5 Dragonara plaques...
01-02-2009 12:07 PM
Go to first new post Custom asm hot stamp set
01-03-2009 02:09 PM
Reply
 
LinkBack Thread Tools Display Modes
  #81  
Old 01-05-2007, 01:26 AM
shadesofgrey's Avatar
World Series Final Table
 
Join Date: Apr 2005
Location: portland
Age: 98
Posts: 2,833
Chips: 1,904.3
Bank: 0.0
Total Chips: 1,904.3
Re: My Neteller & PokerStars accounts compromised - already lost over $1100

Quote:
Originally Posted by Zentish
I keep thinking through the vector of your credential compromise, and the simplest explanation would seem that someone got your P* credentials and worked backwards to your netteller account.

I have to assume that the P* client encrypts all it's internet traffic and the only way for someone to obtain your credentials is at one end or the other, your PC or the P* servers.

If the P* authentication systems were compromised, your account and $1000 would be small time compared to what someone could go after. So again, everything points to it being on your side of things.

Your computer and network appears to be secure, although there are a lot of ways these scumbag bot nets can hide themselves on a windows box. Is it possible that you logged on to P* from some other computer or on some other network? Are there other computers on your network that may be compromised?
I remember a while back I wanted to test the security level of poker rooms.. I ran a packet sniffer on all the traffic sent to and from P* to see if login info or card info was being transmitted unencrypted. P*'s was fine, pokerroom was not. Pokerroom sent login and password in a packet unencrypted.... I dropped pokerroom like a rock.

So I think P* is fairly secure. Jambys problem has got to be local....

The fact that her PC looks solid is whats scaring me. obvious good firewall... i snitched nill from jambys IP address. all ports stealth. there's something local to her PC. id like to figure this out / without getting it. period.

Jamby, before you read the rest.... I offer you help beyond this point.

Jamby, In truth, right now, i'd be reinstalling the whole OS. you've been comprimised. not sure how, but for sure it happened.

my money is on an email distro of nasties. not a phishing scam....THIS IS SPOOKY! Its probably all over IRC.

Two last thoughts, its late & im going to vegas tomorrow
Check your keyboard and mouse plugins... make sure there's no HW inbetween.

Jamby, how do you do email? what program? think lists, buyers, sellers, anyone who could also be infected and passing it on?

PM me your email address... i'll send you a google invite.... or anyone else who wants one... ive got over a hundred available.

Going to bed & Going to vegas tomorrow!!

Last edited by shadesofgrey; 01-05-2007 at 04:34 AM.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #82  
Old 01-05-2007, 08:31 AM
jamby's Avatar
Meetup Advisor
 
Join Date: Oct 2005
Location: Obamaland
Posts: 12,917
Chips: 19,309.2
Bank: 0.0
Total Chips: 19,309.2
Have a glass of wine on me! - NanaBanana 
Re: My Neteller & PokerStars accounts compromised - already lost over $1100

No, I've never logged onto P* from any other computer and these are the only two computers on my network that have P* client software. The other laptop is my partner's and it has never been used for any kind of poker or money transfer.
Quote:
Originally Posted by Zentish
Is it possible that you logged on to P* from some other computer or on some other network? Are there other computers on your network that may be compromised?
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #83  
Old 01-05-2007, 08:34 AM
WolfPack's Avatar
ChipTalk.net Article Writer
 
Join Date: Feb 2006
Location: O-H-I-O
Age: 36
Posts: 2,188
Chips: 353.7
Bank: 0.0
Total Chips: 353.7
Re: My Neteller & PokerStars accounts compromised - already lost over $1100

I don't think NT could have been compromised from someone accessing her P* account.


NT has not only a password, but a pin number and I don't see how someone could get the pin number from P* account, even if they both used the same password.
__________________
Insert something witty here.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #84  
Old 01-05-2007, 08:38 AM
jamby's Avatar
Meetup Advisor
 
Join Date: Oct 2005
Location: Obamaland
Posts: 12,917
Chips: 19,309.2
Bank: 0.0
Total Chips: 19,309.2
Have a glass of wine on me! - NanaBanana 
Re: My Neteller & PokerStars accounts compromised - already lost over $1100

Google's what I use already. Thanks anyway though.

If it's local it doesn't really make sense that the offender's IP is in Arkansas does it?

Enjoy LV - I hope you get lucky there. Thanks for all your help.
Quote:
Originally Posted by shadesofgrey
IJamby, how do you do email? what program? ... PM me your email address... i'll send you a google invite.... or anyone else who wants one... ive got over a hundred available.
... Going to bed & Going to vegas tomorrow!!
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #85  
Old 01-05-2007, 09:22 AM
jamby's Avatar
Meetup Advisor
 
Join Date: Oct 2005
Location: Obamaland
Posts: 12,917
Chips: 19,309.2
Bank: 0.0
Total Chips: 19,309.2
Have a glass of wine on me! - NanaBanana 
Re: My Neteller & PokerStars accounts compromised - already lost over $1100

I heard from Betway today regarding the $300 that went to them. The perpetrator's IP address is: 82.2.232.170.

Here's their response. Real helpful.

Your Netelleraccount have been used on this registration, and the IP adress is:
82.2.232.170

please note that he lost all the funds in Poker and we can not retrieve that money back to you.

Regards,
Betway.com Ltd
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #86  
Old 01-05-2007, 09:37 AM
Nexttime's Avatar
World Series Final Table
 
Join Date: Nov 2005
Location: Roch cha cha, NY
Posts: 2,620
Chips: 10,181.6
Bank: 0.0
Total Chips: 10,181.6
Re: My Neteller account compromised - already lost over $1100

Quote:
Originally Posted by jamby
My P* and NT passwords were the same. Conceivably, he could have hacked into NT, checked the history for transactions, saw P* and tried the obvious. He then drained my P* account. That's what the P* folks think happened anyway. They weren't suspicious because there were no logon failures when he logged in there and he transferred the funds out the same way they had gone in. No red flags at all. Their conention is that the folks at Betway and ParadiseBet should have used the same precautions and matched the funding source with the account.
Umm.. Don't you have to login with a username, password and a backup id on neteller? The password might have been the same as P* but the P* doesn't use a pin code, right?
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #87  
Old 01-05-2007, 09:39 AM
Nexttime's Avatar
World Series Final Table
 
Join Date: Nov 2005
Location: Roch cha cha, NY
Posts: 2,620
Chips: 10,181.6
Bank: 0.0
Total Chips: 10,181.6
Re: My Neteller & PokerStars accounts compromised - already lost over $1100

Quote:
Originally Posted by jamby
I heard from Betway today regarding the $300 that went to them. The perpetrator's IP address is: 82.2.232.170.

Here's their response. Real helpful.

Your Netelleraccount have been used on this registration, and the IP adress is:
82.2.232.170

please note that he lost all the funds in Poker and we can not retrieve that money back to you.

Regards,
Betway.com Ltd

nslookup 82.2.232.170

Non-authoritative answer:
170.232.2.82.in-addr.arpa name = cpc1-seve1-0-0-cust169.popl.cable.ntl.com.

Authoritative answers can be found from:
232.2.82.in-addr.arpa nameserver = dns2.ntli.net.
232.2.82.in-addr.arpa nameserver = dns1.ntli.net.
dns1.ntli.net internet address = 62.253.162.237
dns2.ntli.net internet address = 194.168.4.237



A cable modem at ntl.com
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #88  
Old 01-05-2007, 09:42 AM
jamby's Avatar
Meetup Advisor
 
Join Date: Oct 2005
Location: Obamaland
Posts: 12,917
Chips: 19,309.2
Bank: 0.0
Total Chips: 19,309.2
Have a glass of wine on me! - NanaBanana 
Re: My Neteller account compromised - already lost over $1100

True enough.
Quote:
Originally Posted by Nexttime
Umm.. Don't you have to login with a username, password and a backup id on neteller? The password might have been the same as P* but the P* doesn't use a pin code, right?
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #89  
Old 01-05-2007, 09:47 AM
Harlequin011's Avatar
Sin City Showdown Host
 
Join Date: Feb 2006
Location: In Cincinnati, Out of Position
Age: 32
Posts: 6,144
Chips: 4,549.6
Bank: 0.0
Total Chips: 4,549.6
Send a message via AIM to Harlequin011
Re: My Neteller & PokerStars accounts compromised - already lost over $1100

Shades,

It's possible that either P* or Neteller themselves were compromised without Jamby's PC being breached. Possible brute force or something.

Like she said, she hasn't logged into P* for 9 months. That would mean that whoever got this info has probably been sitting on it for 9 months. That seems a little odd to me.

Unless a hash was obtained and it was run against a cracker... That would make sense for the long delay. Do you know what encryption is being used?

Good on you BTW for finding out who protects there traffic.
__________________
C'mon J, let some air out of your balls and get back to playing good profitable poker....
-tomb1
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #90  
Old 01-05-2007, 10:07 AM
WolfPack's Avatar
ChipTalk.net Article Writer
 
Join Date: Feb 2006
Location: O-H-I-O
Age: 36
Posts: 2,188
Chips: 353.7
Bank: 0.0
Total Chips: 353.7
Re: My Neteller & PokerStars accounts compromised - already lost over $1100

damn, not only is the guy a crook, but a donk as well. He lost $300 in a day.
__________________
Insert something witty here.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Powered by vBadvanced CMPS v3.1.0

FREE MONEY when you sign up through our link! JT Casino Games is your stop for everything poker and casino related. Click here for your favorite eBay items Play online and get FREE GEAR! High end chips, cards, more!