Emails that bare the subject “World of Warcraft – Account Management,” and threaten users that their accounts will be disabled after they were discovered as trying to sell them, turn out to be part of a phishing scam that targets World of Warcraft (WoW) customers.
“It has come to our attention that you are trying to sell your personal World of Warcraft account(s). As you may not be aware of, this conflicts with the EULA and Terms of Agreement. If this proves to be true, your account can and will be disabled,” reads the scam provided by
Hoax Slayer. “It will be ongoing for further investigation by Blizzard Entertainment's employees. If you wish to not get your account suspended you should immediately verify your account ownership.”
Next, the victim is required to click the link contained in the email and provide information such as account name, password, account holder name and the answer to the secret question. The message warns that if the email is ignored, the recipient’s account will be “closed permanently.”
In reality, this is nothing than a phishing expedition that targets the virtual assets of WoW players and to make it seem more legitimate, many of the links from both the email and the malicious page point to genuine sites belonging to Blizzard and its partners.
As in many similar situations, the accounts to online RPGs are highly valuable since the virtual possessions of a player can worth large amounts of real money.
This is why you are advised never to trust the content of an email that makes threats and requests sensitive information. Even if there is the possibility that the claims from the message are correct, don’t click on the links from the email, instead access the account by typing the involved site’s name directly into the browser’s address bar.