Hello and welcome to CertForums.co.uk, here we host free active certification forums with links to the best free resources for Microsoft's MCSA MCSE MCDBA Cisco's CCNA CCDA and CCNP, and CompTIA's A+ Network+ i-NET+ and Security+ certifications in the UK. If you wish to post or use other advanced features you will need to register first. Registration is absolutely free and takes only a few minutes to complete so sign up today!

If you have any problems with the registration process or your account login, please contact support

Go Back   CertForums > Computing Support Forums > Connectivity, Telecommunications & the Internet
Home Forums Register Search Today's Posts Mark Forums Read

help needed sister in law's email account hijacked

Post New ThreadReply
 
Thread Tools Display Modes
  #1  
Old 12-Jan-2008, 08:54 PM
grizz3210's Avatar
grizz3210 grizz3210 is offline
Valued Member
Posts: 106
Points: 2 grizz3210 has between 1 & 100 points
Power: 3
None
Join Date: 12 Jul 2007
Location: Reading uk
Age: 28
Certifications: A+ N+
WIP: MCDST
help needed sister in law's email account hijacked

hi guys

just after any info you can give me please.

this story starts a few months ago when someone got hold of my sister in law's face book password.
the person then went on to send some really nasty messages to people on her account.
she managed to get control back changing her password to a better one every thing seamed ok,
untill yesterday when some one got control of face book again yet again she changed the password and deactivated her facebook and left it at that.
i have just heard that some one now has got in to her hotmail account changed the password so she can not get in and has reactived face book and is send very nasty messages to everyone.

i am currently looking on the mircosoft website trying to find info on how we go about getting it stopped, and having no luck (mircosoft for you).

as i am typing this my wife has told me she has spoken to face book and has got control back.

now for the iceing on the cake face book say that they know who hacked in but cannot tell her to protect the privacy of the person who hacked her account!!!!!!!!!!

 
Reply With Quote
  #2  
Old 12-Jan-2008, 09:11 PM
drum_dude's Avatar
drum_dude drum_dude is offline
Lifetime Member
Posts: 1,035
Points: 773 drum_dude has over 500 pointsdrum_dude has over 500 pointsdrum_dude has over 500 pointsdrum_dude has over 500 pointsdrum_dude has over 500 pointsdrum_dude has over 500 pointsdrum_dude has over 500 points
Power: 24
None
Join Date: 23 Dec 2004
Location: Solihull, Birmingham
Age: 33
Certifications: MCSA W2K , N+, A+ , ITIL Foundation
WIP: CCNA and Vista MCTS I think?
This hotmail/msn hijacking is turning into an epedemic! Two people I know have had there accounts hijacked! Turns out that they responded to those "Find out who has blocked you on MSN" emails - the link takes you to a phishing website were one is asked to enter their email address and password! Hey presto and the hi-jackers got their details!

I don't think MS have responded to their requests to get their hotmail accounts back...it's terrible!


 
Reply With Quote
  #3  
Old 12-Jan-2008, 09:13 PM
zebulebu's Avatar
zebulebu zebulebu is offline
Lifetime Member
Posts: 1,718
Points: 4099 zebulebu has over 4000 pointszebulebu has over 4000 pointszebulebu has over 4000 pointszebulebu has over 4000 pointszebulebu has over 4000 pointszebulebu has over 4000 pointszebulebu has over 4000 pointszebulebu has over 4000 pointszebulebu has over 4000 pointszebulebu has over 4000 pointszebulebu has over 4000 points
Power: 61
None
Join Date: 07 Aug 2006
Location: Croydon - arsehole of the universe
Age: 34
Certifications: A few
WIP: NCDA, VCP
Sadly, there's very little that can be done here. Even if a criminal act has been committed (and, despite what you or I might think about the obviousness of that, proving it is extremely difficult, time-consuming and costly in a court of law) the Police don't have the time, technical know-how or resources to do anything about it.

I sympathise with your sister-in-law. Someone once did this to one of my private web-based mail accounts and thought it would be funny to send rude messages to all my MSN contacts - not particularly clever when you consider that the messages were extremely rude - and some of them went to my nieces and nephews. However, I would put it down to experience, delete the facebook account, delete any webmail accounts that link to it and change passwords on all other web-based accounts she owns. Email all the contacts from a new webmail address and explain that she has been hacked, and that any communication from the facebook account and her 'old' email address are not from her. People will be much more sympathetic about this type of thing than she realises and, once the initial embarrassment has worn off, she'll realise it has taught her a valuable lesson - use strong passwords, change them frequently, don't EVER have a web browser remember them for you and make sure your browser is closed & your workstation locked/logged off when you aren't using it. I know that when this happened to me I resolved never to use the feature that some sites offer to 'help' you recover a password by asking you a question - those questions are often extremely easy to guess the answers to!

We have a member on this very forum who went through a similar experience just before Christmas - it was traumatic for him at the time, but he seems to be over it now. personally, if anyone ever did this to me again I would pummel the living **** out of them - but as it's probably not wise to advocate violence, I'll refrain from doing that here

The question of privacy is an extremely hot topic at the moment. Social networking sites like Facebook seem to think they are completely unaccountable to law enforcement. Actually, It's not just social networking sites - I used to have to deal with Ebay's law enforcement department on a semi regular basis for the Professional Standards Department (Internal Affairs) when I worked for a police force - they deliberately select the stupidest, laziest, most unhelpful people possible because, as far as they are concerned, all they are is a drain on their profits. I would imagine Facebook will hide behind every piece of legislation possible, not so much because they deliberately want to be arseholes, but because every time they have to investigate miscreants of this kind, they know it will take a certain amopunt of time (and time equals money) to do it.


‘vamos espaρa!


My crappy youtube vids
 
Reply With Quote
  #4  
Old 12-Jan-2008, 09:18 PM
grizz3210's Avatar
grizz3210 grizz3210 is offline
Valued Member
Posts: 106
Points: 2 grizz3210 has between 1 & 100 points
Power: 3
None
Join Date: 12 Jul 2007
Location: Reading uk
Age: 28
Certifications: A+ N+
WIP: MCDST
i m not sure if it is a pro hijack.
i think it is more likely someone she has p****d off.

 
Reply With Quote
  #5  
Old 12-Jan-2008, 09:20 PM
wagnerk's Avatar
wagnerk wagnerk is online now CertForums News Posting Member
Lifetime Member
Posts: 3,262
Points: 2013 wagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 points
Power: 58
Join Date: 13 May 2005
Location: Northants, UK
Age: 30
Certifications: 2nd Degree Black Belt
WIP: 70-647 (last exam for MCITP: EA)
The only thing I can advise is to speak to the Citizens Advice Bureau (CAB), as this may come under personation, Indentify Theft and/or maybe the Computer misuse act. Especially when this has happened multiple times.

-ken


The Martial Arts: The more you sweat in practice, the less you bleed in battle.

My Community Profile
 
Reply With Quote
  #6  
Old 12-Jan-2008, 09:25 PM
grizz3210's Avatar
grizz3210 grizz3210 is offline
Valued Member
Posts: 106
Points: 2 grizz3210 has between 1 & 100 points
Power: 3
None
Join Date: 12 Jul 2007
Location: Reading uk
Age: 28
Certifications: A+ N+
WIP: MCDST
hi zeb

thanks for the advice i will pass this on to my sister in law.

 
Reply With Quote
  #7  
Old 12-Jan-2008, 09:31 PM
grizz3210's Avatar
grizz3210 grizz3210 is offline
Valued Member
Posts: 106
Points: 2 grizz3210 has between 1 & 100 points
Power: 3
None
Join Date: 12 Jul 2007
Location: Reading uk
Age: 28
Certifications: A+ N+
WIP: MCDST
hi wagnerk

Quote:
“
Originally Posted by wagnerk View Post
The only thing I can advise is to speak to the Citizens Advice Bureau (CAB), as this may come under personation, Indentify Theft and/or maybe the Computer misuse act. Especially when this has happened multiple times.

-ken
”
it looks like she had bank details from members of her family saved in her inbox so looks like her family will be canceling their bank cards i will get them to look in the the Citizens advice bureau at the same time.

thanks

 
Reply With Quote
  #8  
Old 12-Jan-2008, 11:25 PM
BosonMichael's Avatar
BosonMichael BosonMichael is offline
Premium Member
Posts: 9,937
Points: 4640 BosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 points
Power: 149
None
Join Date: 02 Nov 2006
Location: near Nashville, TN
Age: 38
Certifications: MCSE+I, MCSE: Securi.. huh? out of room?
WIP: Just about everything!
Quote:
“
Originally Posted by grizz3210 View Post
hi wagnerk



it looks like she had bank details from members of her family saved in her inbox so looks like her family will be canceling their bank cards i will get them to look in the the Citizens advice bureau at the same time.

thanks
”
Ouch, that's rough. Hope she doesn't use her e-mail box as a storage facility in the future...

She should also change the passwords and e-mail address on record for EVERYTHING else she uses online... Amazon accounts, eBay accounts, online banking, EVERYTHING.


BosonMichael
MCSE+I, MCSE: Security, MCDST, MCDBA, OCP, CCNP, CCDP, CNE, SCSA, Security+, Linux+, Server+, Network+, A+
Served proudly, US Army, 98C Intelligence Analyst, '89-'92
 
Reply With Quote
  #9  
Old 12-Jan-2008, 11:36 PM
greenbrucelee's Avatar
greenbrucelee greenbrucelee is offline
Premium Member
Posts: 7,119
Points: 1522 greenbrucelee has over 1500 pointsgreenbrucelee has over 1500 pointsgreenbrucelee has over 1500 pointsgreenbrucelee has over 1500 pointsgreenbrucelee has over 1500 pointsgreenbrucelee has over 1500 pointsgreenbrucelee has over 1500 pointsgreenbrucelee has over 1500 pointsgreenbrucelee has over 1500 pointsgreenbrucelee has over 1500 pointsgreenbrucelee has over 1500 points
Power: 89
Join Date: 21 Mar 2007
Location: Carlisle Cumbria
Age: 31
Certifications: A+
WIP: N+
yep she is gonna have to cancel it all aswell as tell the family members to do it too.


HND Bussiness Computing, GNVQ IT, NVQ 1 & 2 IT, A+
 
Reply With Quote
  #10  
Old 13-Jan-2008, 08:50 AM
wizard's Avatar
wizard wizard is offline
Lifetime Member
Posts: 4,532
Points: 659 wizard has over 500 pointswizard has over 500 pointswizard has over 500 pointswizard has over 500 pointswizard has over 500 pointswizard has over 500 points
Power: 60
None
Join Date: 09 Feb 2004
Location: United Kingdom
Age: 34
Certifications: Not Surviving 2008
WIP: Getting a job
I wouldn't go to the CAB, if you don't know who did it, then you'll have no chance.

Do as zeb suggested, and chalk it down to experience and move on.

 
Reply With Quote
  #11  
Old 13-Jan-2008, 10:17 AM
MrNerdy's Avatar
MrNerdy MrNerdy is offline
Valued Member
Posts: 327
Points: 164 MrNerdy has over 100 pointsMrNerdy has over 100 points
Power: 7
None
Join Date: 17 May 2007
Location: London
Certifications: ECDL, CiscoIT1 & A+
WIP: Girlfriend & Network+
Can you not ask Facebook for the persons details under The Freedom of Information Act 2000.


I'm not a complete idiot, some parts are missing!
 
Reply With Quote
  #12  
Old 13-Jan-2008, 10:37 AM
wagnerk's Avatar
wagnerk wagnerk is online now CertForums News Posting Member
Lifetime Member
Posts: 3,262
Points: 2013 wagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 pointswagnerk has over 2000 points
Power: 58
Join Date: 13 May 2005
Location: Northants, UK
Age: 30
Certifications: 2nd Degree Black Belt
WIP: 70-647 (last exam for MCITP: EA)
Quote:
“
Originally Posted by wizard View Post
I wouldn't go to the CAB, if you don't know who did it, then you'll have no chance.
”
However Facebook do know, see Grizz3210's quote below...

Quote:
“
Originally Posted by grizz3210 View Post
...now for the iceing on the cake face book say that they know who hacked in but cannot tell her to protect the privacy of the person who hacked her account!!!!!!!!!!
”
Quote:
“
Originally Posted by MrNerdy View Post
Can you not ask Facebook for the persons details under The Freedom of Information Act 2000.
”
If there has been any criminal acts commited, especially since this person has access to bank details, etc... Then it becomes a police matter, the affected parties would not be the ones asking for the persons details, the police would be. Now it's down to the law to determine whether or now a criminal act has been commited.

-Ken


The Martial Arts: The more you sweat in practice, the less you bleed in battle.

My Community Profile
 
Reply With Quote
  #13  
Old 13-Jan-2008, 10:43 AM
wizard's Avatar
wizard wizard is offline
Lifetime Member
Posts: 4,532
Points: 659 wizard has over 500 pointswizard has over 500 pointswizard has over 500 pointswizard has over 500 pointswizard has over 500 pointswizard has over 500 points
Power: 60
None
Join Date: 09 Feb 2004
Location: United Kingdom
Age: 34
Certifications: Not Surviving 2008
WIP: Getting a job
Quote:
“
Originally Posted by wagnerk View Post
However Facebook do know, see Grizz3210's quote below...





If there has been any criminal acts commited, especially since this person has access to bank details, etc... Then it becomes a police matter, the affected parties would not be the ones asking for the persons details, the police would be. Now it's down to the law to determine whether or now a criminal act has been commited.

-Ken
”
The bank may ask why were there bank details stored in an email inbox? The onus is on the person to make sure the bank details are stored in a secure place, I wouldn't call being left in a hotmail account as a secure place.

 
Reply With Quote
  #14  
Old 13-Jan-2008, 01:07 PM
grizz3210's Avatar
grizz3210 grizz3210 is offline
Valued Member
Posts: 106
Points: 2 grizz3210 has between 1 & 100 points
Power: 3
None
Join Date: 12 Jul 2007
Location: Reading uk
Age: 28
Certifications: A+ N+
WIP: MCDST
Quote:
“
Originally Posted by wizard View Post
The bank may ask why were there bank details stored in an email inbox? The onus is on the person to make sure the bank details are stored in a secure place, I wouldn't call being left in a hotmail account as a secure place.
”
I would have to agree with you on that one.

I think that she has learnt the hard way the same as most people do i don't think she will store things like that again.

Just found out that they have now got in to her pay pal account she's not having a great time of it i belive she is going to speak to the police over this, we will just have to see what they can do.

 
Reply With Quote
  #15  
Old 13-Jan-2008, 02:25 PM
wizard's Avatar
wizard wizard is offline
Lifetime Member
Posts: 4,532
Points: 659 wizard has over 500 pointswizard has over 500 pointswizard has over 500 pointswizard has over 500 pointswizard has over 500 pointswizard has over 500 points
Power: 60
None
Join Date: 09 Feb 2004
Location: United Kingdom
Age: 34
Certifications: Not Surviving 2008
WIP: Getting a job
Is she using the same email address as her paypal address?

 
Reply With Quote
Post New ThreadReply Spread this thread: Submit this thread to digg Submit this thread to del.icio.us


Go Back   CertForums > Computing Support Forums > Connectivity, Telecommunications & the Internet


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump