View Single Post
  #17 (permalink)  
Old 18th June 2008, 06:15 PM
Agricola's Avatar
Agricola Agricola is offline
Registered User
 
Join Date: Jun 2008
Location: Scandinavia
Posts: 4
WTGs: 0
WTGd at 0 Times in 0 Posts
Thanks: 0
Thanked 0 Times in 0 Posts
Reputation Points: 10
Rep Power: 0
Agricola is on a distinguished road
Quote:
Originally Posted by vinylweatherman View Post
There have been many complaints about lack of security at Neteller, and one player even stated that a reply from their CS contained the words "we are not a secure service" as an excuse for what happened in their case.

Clearly, it was posible to use a THIRD PARTY credit card on your account to make deposits, and immediate transfers to the poker room. This should have rung alarm bells, but seemingly no-one heard them at Neteller HQ.

Neteller should have had something in place to prevent deposits coming from a card that does not bear the Neteller account holder's name.

The details could have been gained through a Trojan keylogger or screenscraper on a PC used to access the Neteller account, and this would have been enough to compromise it without you ever having any idea. The thief would probably then have changed the registered Email address to prevent you from being alerted by the credit card confirmations that are sent whenever Neteller receives a transfer in from a credit card.

The thief would have to be using another IP address to access Neteller, and normally this would trigger a security lockout and request to confirm that you are using the account on another PC. There is an extra secret question code needed when phoning Neteller, and this can NOT be stolen by a Trojan as it is not used for normal logins.
Perhaps because the account was rarely used, there was not enough information for the security systems to determine that the account had switched access IP addresses and PCs.

YOUR PC IS PROBABLY STILL COMPROMISED!!!!!

Checking this should be a top priority.

The only way to guarantee freedom from Trojans would be to reformat the hard drive and reinstall everything from scratch, including some security software, or even a hardware firewall, before using the PC online again.
Thanks for the wise words, vinylweatherman. I as a matter of fact I reinstalled my operating system after the incident. But I still wonder how they got through to my system. I have a hardware firewall and a software one, trustworthy virus protection and a software to track system changes. I run Spybot and Adaware regularly, too.

But I guess one just can't be too careful with online security. Only other possibility I can think of was that they were able to hack into my Gmail account where my Neteller details were sent.
Reply With Quote