I recently had my second mule account stolen from me within the span of one month. The reason I am making this thread is to inquire about the types of viruses RMT are using to compromise accounts.
I've run multiple virus scans, I keep a virus protection running at all times, and I change my passwords on the accounts regularly. I changed the password on the account 2 weeks ago.
The only viruses that I have had on my machine are Conficker.A and Conficker.D, which I promptly removed, then proceeded to perform a Windows Update to patch the problem.
My question is, are RMT actively using Conficker worms to compromise accounts? If not, what kind of viruses/keyloggers should I be looking for?
Note: the account was virtually worthless, with almost 0 gil/items and minimal level 75 jobs - which makes me think it is more likely to be RMT than an inside job.
XI Wiki


