Wow Tech Support

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Wednesday, 25 January 2012

You are not the player, you are the content

Posted on 22:00 by Unknown
Below you can find my results within the World of Tanks game using an ISU-152 tank destroyer with and without the BL-10 cannon (with BL = all - without):
The difference is stunning. By upgrading the cannon my damage and kills doubled, my win chance increased from way below average to slightly above average and my XP/battle (XP needed for further upgrades) also increased significantly.

No doubt that this game is extremely gear dependent. OK, who cares, you get the BL-10 and enjoy! Except in the game experience is locked to the tank. You can only research the BL-10 by playing the tank without it. The BL-10 costs 55000 XP and it's heavy so you must first research a new suspension to be able to install it. That's another 15000XP. To collect 70K XP with my XP/battle you need to play 150 matches.

Or, you can just pay some real money and convert the experience of other tanks (which are already researched or even item-shop bought). From the fact that I had only 42K XP when I stopped using the old cannon, you can guess that I paid. On the top of the "subscription" that already increased my XP gain by 50% without it I'd have to play 225 battles with the old cannon.

OK, you might think that this system is the trick of the developers to force you into paying. However they could do it much more easily: the first 4 tiers of tanks are free to play, but you must pay to advance. Just like you can freely play the first 20 levels of WoW and must pay to continue.

However this system is not a demo mode, like the first 20 levels of WoW. Not only it allows evasion (after all, you could play 225 battles), but also frustrating which isn't the best way to get new customers. Imagine that on the trial account you could only play battlegrounds, naked. I doubt WoW would get many new players. Also a player who can't pay just ignores the game, while the one who hated it will make bad word of mouth. So why do microtransaction games allow freeloaders to linger and use server resources while frustrate them at the same time, alienating them from the game?

Because they are not players. They are the content. Their purpose in the game is to suck, therefore provide amusement to the real players: the ones who pay. The real players are having fun both killing them and being ahead of them on the meters. It's much more clever than PvE nerfs: everyone knew that WotLK "heroics" were faceroll, so the players said "meh I had to grind another 3 HCs for points" instead of "Yay I defeated those huge monsters!". Even those players said and believed that who were boosted and couldn't do even the WotLK "heroics" with 4 like-skilled fellows. On the other hand the player of World of Tanks who kills an ISU-152 without BL-10 with his Type59 tank could not know that his target couldn't fight back, he was tricked into believing that he is awesome, since other ISUs (ones ran by paying players) could kill him.

This is the reason why Free to Play increase the income of the companies. Most players are socials who just want to feel awesome. They can't pass challenges, they want easy wins, but in the same time they don't want grinds that are observed easy by peers. Free to play allows creating "NPCs" that look and act like players, but they are still just NPCs whose strength was designed to be easily defeatable by most players.
Read More
Posted in Ideas | No comments

Tuesday, 24 January 2012

Te bright future of gold bid

Posted on 22:00 by Unknown
We tried 80+ on Deathwing extending the first week lockout. Couldn't kill him. We farmed a month and he went down in 5 tries.

This proves a significant shift from the WotLK and 4.0-4.1 design. Output now matters and dance is secondary. In the previous contents literally blue geared players could kill end season bosses as long as they did not fail in the various bizarre dance moves. While the Dragon Soul bosses still have annoying amount of dance, they also have performance requirements. You can wipe despite no dance fails if you have insufficient DPS and HPS.

This design works as you can see from the statistics of MMO champion. On the first month 67K players completed Firelands, but 175K Dragon Soul and 1.31M LFR. The content is clearly used by players but still not facerolled and spitted on. We have every reason to believe that this way of design will continue (success continues, failure fixed)

However such approach increase the importance of gear. In WotLK and 4.0 but especially in 4.2 gear was purely cosmetic or "quality of life" feature, providing only bragging rights and faster runs. In DS and probably MoP gear will significantly effect your performance and chance of kills.

However this rises the question of gear distribution systems. At first I'd like to point out that in a fixed-roster guild gear distribution is irrelevant. The piece will increase the future performance of the raid, regardless of who wield it. Besides loot whores (socials who want to show off their gear), no one will gives a damn who gets the drop as long as he doesn't quit instantly. If you don't get drops, you still enjoy their benefits as your raid can kill more bosses.

In non-fixed raids on the other hand gear distribution will be crucial. There you must mind your own gear as there is absolutely no guarantee that the other guy will raid with you again. He can stop playing, he can quit the guild, he can go casual, he can simply raid on other days as you and you can leave too. In such guilds the only gear that increase the performance of your future raids is your own gear.

So let's analyze the loot systems from the non-fixed perspective:
  • /roll: totally random, so totally "fair". Far from it! You can only roll on upgrades (and actually there is no point rolling for non-upgrades), so the more geared you are, the less items you can roll on. On the other hand the guy in starter gear who did half of your performance can roll on everything, including that last piece you want. /roll favors undergeared players seriously and give no incentive to players with gear to participate
  • Loot council: this is a complete nonsense in a non-fixed system even if the council is completely unbiased and fair (good luck finding such). The reason is that the "perfect" loot council distributes the loot according to the needs of the raid. But the very point is that there is no such thing as "the raid" in a non-fixed environment. So even the "perfect" council will decide based on the blind guess on "who will stay longer and be more active".
  • DKP: fair if the guild remains successful and active in raiding. You earn DKP according to your effort and you can buy gear from it. But in a casually raiding guild "successful and active" cannot be guaranteed by definition. If everyone comes and goes as he pleases no one can tell if there will be raid tomorrow. Or ever. So you just gather your DKP and then the guild stops raiding and your DKP worth zero. Also, just because some guy were raiding under this guild name longer, he'll have more DKP despite he did not do anything more for your success. He got his DKP raiding with other people.
Please also note that if the DKP and loot council would magically work (council is perfect, guild keeps on raiding actively), both will reward the more frequent players, turning the guild into a fixed-attendance one as they will soon seriously overgear everyone else, so even if the guild rules remain casual, the casual players only get spot when the alternative is 9-manning, just in a HC guild. However you are in the guild exactly to be able to raid without fixed attendance.

This leaves nothing but gold bid. Here you are instantly compensated for your performance. You get something that is not bound to the guild, something that you can use instantly by buying BoEs, consumables, enchants, gems. I believe gold bid will become the standard in non-fixed roster raiding guilds. We use it for more than a year without a single loot drama or even debate.
Read More
Posted in Random | No comments

Sunday, 4 September 2011

Diablo 3 Beta Phishing Season Begins

Posted on 19:59 by Unknown
The scammers are out in force with the recent Diablo 3 beta opt-in announcement.  

Phishing scams are very common around any Blizzard beta release announcement so it is time to be especially on your guard.


I received the following in my in-box today:

Greetings from Blizzard Entertainment!
We’re gearing up for the forthcoming launch of Diablo III and would like to extend you an invitation toparticipate in the beta test. If you are interested in participating, you need to have a Battle.net account, which you can create on our Battle.net website.
We will flag you for access to the Diablo III beta test when we begin admitting press. You do not need to go through the opt-in process.
To secure your place among the first of Sanctuary’s heroes,Please use the following template below to verify your account and information via email.
* Name:
* Battle.account name:
* Password:
* Country:
* E-mail Address:
Thanks and see you all in the Burning Hells!

The email claims to give you an express beta invite without having to go through the formal opt-in process. Naturally, this is a phishing attempt aimed at getting hold your valuable battle.net account details. The reply email address resolves into a d3-blizzard.com domain which, not-so-surprisingly, is registered in China:

Domain Name: D3-BLIZZARD.COM
Registrar: HICHINA ZHICHENG TECHNOLOGY LTD.
Whois Server: grs-whois.hichina.com
Referral URL: http://www.net.cn
Name Server: DNS27.HICHINA.COM
Name Server: DNS28.HICHINA.COM
Status: ok
Updated Date: 29-aug-2011
Creation Date: 29-aug-2011
Expiration Date: 29-aug-2012

Remember, Blizzard will never ask your for your battle.net password - be wary of any communications that requests this.
Read More
Posted in diablo 3 phishing scam | No comments

Tuesday, 5 April 2011

Top WoW Phishing Scams for March 2011

Posted on 22:20 by Unknown
I have established a WoW phishing honeypot and I see a lot of active phishing scams.  I thought I would take the time to cover off the top two WoW phishing scams for March :

#1 Titled "Too Many Attempts Warning No.x" - 37% of WoW scams

The most common phishing scam for March comes in the form of a straight text email that warns you that your account has been locked due to too many login attempts. It provides a link to restore your account, but naturally points to a fake battle.net site, where your account details are captured.

-----------------------------------------------------------------------------
Dear customer, 
Due to suspicious activity, your Battle.net account has been locked. You tried to login your account too many times (403). We are concerned about whether your account has been stolen. In order to guarantee the legitimacy of your account, we need you follow these steps:

Step 1: Secure Your ComputerIn the event that your computer has been infected with malicious software such as a keylogger or trojan, simply changing your password may not deter future attacks without first ensuring that your computer is free from these programs. Please visit our Account Security website to learn how to secure your computer from unauthorized access.

Step 2: Secure Your E-mail AccountAfter you have secured your computer, check your e-mail filters and rules and look for any e-mail forwarding rules that you did not create. For more information on securing your e-mail account, visit our Support page.

Step 3: Restore access to Your accountWe now provide a secure link for you to verify whether you have taken the appropriate steps to secure the account, your computer, and your email address. Please follow this site to restore the access to your account: xxxxxxxxxxxxxxxxxxxxxxxxxxxx

If you still have questions or concerns after following the steps above, feel free to contact Customer Support at xxxxxxxxxxxxxxxxxxx.

Sincerely, 
The Battle.net Account Team 
Online Privacy Policy
-----------------------------------------------------------------------------


#2 Titled "Account Change" - 26% of WoW scams

This scam attempts to scare you into thinking that your contact information has been illegally modified and entices you to log in to a fake site to verify your account information.

-----------------------------------------------------------------------------
Hello,
This is an automated notification regarding your Battle.net account. Some or all of your contact information was recently modified through the Account Management website.

*** If you made recent account changes, please disregard this automatic notification.
*** If you did NOT make any changes to your account, we recommend you log in to xxxxxxxxxxxxxxxxxxxx review your account settings.

If you cannot sign into Account Management using the link above, or if unauthorized changes continue to happen, please contact Blizzard Billing & Account Services for further assistance.

Billing & Account Services can be reached at 1-800-59-BLIZZARD (1-800-592-5499 Mon-Fri, 8AM-8PM Pacific Time) or at billing@blizzard.com.

Account security is solely the responsibility of the accountholder. Please be advised that in the event of a compromised account, Blizzard representatives will typically lock the account. In these cases the Account Administration team will require faxed receipt of ID materials before releasing the account for play.

Regards,
The Battle.net Support Team 
Blizzard Entertainment
www.blizzard.com/support 
Online Privacy Policy
-----------------------------------------------------------------------------

Other active scams including a "7 days free access offer", "investigations on the sale/trade of your game account" and various "compensation" emails.  I have also started to see scams for LOTRO and RIFT.  You know that you have made it as an MMO when you see active phishing scams - sad, but true.

Learn more about the mechanics of these scams.
Read More
Posted in march, phishing, scams, wow | No comments

Sunday, 27 March 2011

Trust Me, I am a Security Pro

Posted on 20:04 by Unknown
Everyone you talk to seems to have their own special advice on how to avoid having your game account hacked. Unfortunately, there is both good and bad advice given. While I normally blog about the good advice, I decided to take some time and dispel some of the common IT security myths out there.



Myth: You can't get hacked by simply visiting a web site

People often claim that you can't be hacked by just visiting a web site and that you need to download and install something by clicking on it.

This is false. You can indeed pick up a trojan/keylogger simply by browsing to a web site that has malicious content which takes advantage of a vulnerability and, depending on the vulnerability, you may not even know that you have been infected.

Vulnerabilities can be found in the operating system, your browser, your flash player, your media player and in any piece of software that runs on your machine. Many of these vulnerabilities, if exploited, allow remote code execution which can be used to automatically download malicious software without your interaction or knowledge.

Myth: Running Firefox/Mozilla means I am safe

Internet Explorer has traditionally been one of the most exploited browsers, mainly because of its historical prevalence. These days, Firefox is the most popular browser amongst WoW users (44%), with IE (22%) and Chrome (21%) coming next... and the hackers have followed. Many vulnerabilities and exploits have been discovered with Firefox.

Other browsers are not perfect either. For example, a competition at a security conference found that most browsers could be easily compromised with Google's Chrome being the last one standing.

Myth: Run 'noscript' and you will be fine

Noscript is an addon for firefox that allows you to block flash and javascript on web pages. It helps alleviate issues such as flash vulnerabilities that are often announced. 

Noscript is a very good idea in concept but it breaks most web sites, especially modern web sites that require flash and javascript (which is nearly all of them).  This is the traditional trade-off you get with security.  Noscript provides some excellent protection but you will not get the full functionality from web sites without extensive whitelisting.

Myth: I run a Mac and Macs don't get malware

Yes they do - just not as much malware as what Windows users can expect.

However, you can still get phished.  Given that many of the account hacks are a result of phishing attacks, Mac users need to remember that they are just as vulnerable to these as any other user.

Myth: Pick up free anti-virus software and you will be right

Honestly, you get what you pay for.  As someone that comes from the anti-virus industry, I know the investment required to produce a top-quality anti-virus solution.  Free AV is good, but paid-for AV is better. It ultimately comes down to your tolerance of risk and whether you are prepared to pay for better protection. You can see a list of AV products and their ratings at avtest.org.

Myth: I have an Authenticator therefore I am protected 100%

No security will provide 100% protection. Whenever you hear someone say that something is 100% secure then don't believe a word of it.

The authenticator recently fell victim to some malware that intercepted the authenticator's code and sent it off to the hacker. But don't despair - the authenticator is still one of the best prevention mechanisms you can buy.

I don't have an authenticator, I don't run AV, I don't have a firewall and I have never been hacked.

You should go and buy yourself a lottery ticket. Seriously, you are very lucky.

As discussed earlier, you can get infected simply by surfing a page that features some malformed objects designed to exploit a vulnerability in some piece of software on your PC.

But you avoid bad sites such as hack sites or porn sites, right? 

Well, even the good sites get hacked to become a source of malware. This is becoming a much more common method of malware propagation.

Visit our 10 Easy WoW Security Steps post to learn more about securing your WoW account.

Read More
Posted in | No comments

Wednesday, 5 January 2011

NETGEAR TECH SUPPORT SETUP SCAM!! WOW $60.00 TO SETUP CONFIGURATION PROBLEMS.

Posted on 09:16 by Unknown
BEWARE OF NETGEAR SCAM. I PURCHASE A NETGEAR ROUTER ONE YEAR AGO AND TECH SUPPORT WON'T FIX THEIR CONFIGURATION.!!!!!BEWARE  WE SHOULD NOT HAVE TO PAY FOR TECH SUPPORT $60.00 IF IT IS A PROBLEM WITH THEIR WIZARD OR CONFIGURATION PROBLEM. THIS IS AN INTERNAL MATTER OF THE COMPANY.

I JUST MOVED TO NEW LOCATION AND HAD PROBLEM WITH NETGEAR CONFIGURATION, BECAUSE WIZARD COULD NOT FIX THE PROBLEM NOR THE CD PROVIDED. CONTACT NETGEAR TO HELP WITH THIS PROBLEM BEING THAT IT IS A PRODUCT SERVICE THAT CAN ONLY BE FIX BY ONE OF THEIR TECH. NO TECH WOULD HELP WITH THE PROBLEM UNLESS THE CLIENT PAY 60 DOLLAR FOR THEM TO FIX AN INTERNAL CONFIGURATION. AFTER SPEAKING TO OVER 10 DIFFERENT TECH AND SENDING E MAIL TO TECH TO FIX THE PROBLEM THEY HAVE NOT RESOLVE THE ISSUE AND DEMAND THAT YOU PAY FOR TECH SUPPORT TO FIX IT. TO ME THIS IS A SCAM AND CLIENT SHOULD BE ADVISED THAT IF THEY HAVE PROBLEM IN THE FUTURE THAT THERE IS NO TECH SUPPORT TO FIX THE PROBLEM WITHOUT RENEWING YOUR WARRANTY FOR THE PRODUCT. WHICH HAS NOTHING TO DO WITH THEIR CONFIGURATION OR WIZARD PROBLEM.
I ADVISE USER TO BEWARE THIS SCAM AND SELECT A MORE RELIABLE SERVICE AS LYNKSYS ROUTER. BIRKLIN IS SLOW AND HAS ISSUE TOO YET THEY PROVIDE SERVICE IF YOU HAVE SETUP PROBLEM.
Read More
Posted in | No comments

Thursday, 11 November 2010

Blizzard Adds Dial-in Authenticator

Posted on 20:50 by Unknown
Blizzard has announced a new security service for US players called the Dial-In Authenticator.

"Similar to the Battle.net Authenticator and Mobile Authenticator application, the Battle.net Dial-in Authenticator is an optional tool that provides an additional layer of security against unauthorized account access. The Battle.net Dial-in Authenticator is not a physical token or application run on a mobile device, however. Instead, it is a free opt-in service that will actively monitor an account and request additional authorization from the user when a potentially unauthorized login attempt occurs."

The service asks you to nominate a phone and a PIN.  When your account is accessed from a different IP address it will ask you to authenticate by dialling a US toll-free number from your nominated phone and entering your PIN and a single-use security code.  The service is optional and best of all, it is free.

This is a good addition to the security arsenal, especially for those users that move around a lot and don't have a hardware authenticator. Remember that good security is made up of several layers of protection, and this offers yet another layer.

More information can be found at the official Battle.net Dial-in Authenticator FAQ.
Read More
Posted in | No comments
Newer Posts Older Posts Home
Subscribe to: Posts (Atom)

Popular Posts

  • Diablo 3 Beta Phishing Season Begins
    The scammers are out in force with the recent Diablo 3 beta opt-in announcement.   Phishing scams are very common around any Blizzard beta ...
  • What would happen if people could trade?
    The question of mirror-ability of strategies often comes up when I post my trading strategy. The 0.01 strategy is clearly mirror-able. If th...
  • Tragedy of commons (and non-TC alliances)
    The tragedy of commons is a well-known economical problem, described by the anecdote: "herders sharing a common parcel of land, on whi...
  • A new approach to fight botting
    Botting is a widespread plague of MMOs. A botter can gain insane amount of game resources since it “farms for free”: the time of the bot cos...
  • The war for Finanar
    Finanar is a 0.5 system in Metropolis with 3 ice anomalies. If you check out my corp killboard you see lot of kills there, about 8B destro...
  • The (total lack of) balance of trade of highsec
    The fact that you can be much more rich in highsec than in the competitive areas of EVE (low, null, WH) is one of my main messages. It can b...
  • Planetary interaction for beginners
    Planetary interaction isn't a really profitable enterprise. However the "newbie-version" is a "printing money" schem...
  • Nullsec-altruism and a free titan
    Imagine that you are an avatar in Diablo 3. You enter New Tristram after defeating some risen dead. The town is clearly in danger. The undea...
  • The myth of the skilled, goodfight-seeking PvP-er
    While no sane man would claim that pilot skill decides large engagement instead of strategic decisions, there is a claim that there are skil...
  • (I'm not) defining lowsec
    This is a rather short post, will be one more today, about my very first PvP action. Sugar reminded me of a problem that I read about a l...

Categories

  • account
  • account theft
  • adobe
  • alpha
  • arena tournament
  • authenticator
  • authenticators
  • battle.net
  • beta
  • blizzard
  • brute force
  • cataclysm
  • diablo 3 phishing scam
  • dictionary attack
  • drive-by
  • email
  • fake
  • flash
  • game
  • Gold
  • guild
  • gumblar
  • hacked
  • hacking
  • hacks
  • Ideas
  • ISK
  • keylogger
  • march
  • mmo-champion
  • New
  • password
  • password stealing
  • patching
  • phishing
  • raiding
  • Random
  • ranks
  • remote auction house
  • scam
  • scams
  • security
  • security checklist
  • soccer
  • strong password
  • trojan
  • vulnerability
  • warcraft
  • wow
  • wowarmory
  • wowmatrix

Blog Archive

  • ▼  2013 (242)
    • ▼  November (15)
      • There is no "respect number"
      • Mobile vending machine
      • My big problem with EVE
      • Highsec POCO ownership
      • No way I go to WH space
      • Representation of women in MMOs
      • The failure of altruism
      • Thinking about highsec POCOs
      • My project failed
      • The largest awox in the history of EVE
      • Don't Fleet up!
      • Respect: the holy grail of MMOs
      • Talons of the Talos
      • Morons of the week
      • October ganking report
    • ►  October (25)
    • ►  September (24)
    • ►  August (21)
    • ►  July (24)
    • ►  June (22)
    • ►  May (22)
    • ►  April (22)
    • ►  March (20)
    • ►  February (21)
    • ►  January (26)
  • ►  2012 (261)
    • ►  December (24)
    • ►  November (21)
    • ►  October (24)
    • ►  September (21)
    • ►  August (26)
    • ►  July (25)
    • ►  June (20)
    • ►  May (25)
    • ►  April (23)
    • ►  March (23)
    • ►  February (23)
    • ►  January (6)
  • ►  2011 (4)
    • ►  September (1)
    • ►  April (1)
    • ►  March (1)
    • ►  January (1)
  • ►  2010 (17)
    • ►  November (1)
    • ►  September (2)
    • ►  August (1)
    • ►  July (1)
    • ►  June (2)
    • ►  May (2)
    • ►  April (1)
    • ►  March (2)
    • ►  February (2)
    • ►  January (3)
  • ►  2009 (4)
    • ►  December (1)
    • ►  October (1)
    • ►  September (1)
    • ►  July (1)
Powered by Blogger.

About Me

Unknown
View my complete profile