I'm posting to follow this thread, I see three options:
- OP activated his 2fa after the "hack" and used a Chinese proxy/henchman to "steal" his own funds and double up on mtgox
- OP activated his 2fa after the "hack" and plays possum insisting that they were enabled before the theft
- A real hacker disabled 2fa and enabled it back somehow, allowing the theft and only mtgox can tell
MtGox should have the logs to tell exactly when and how many times 2fa has been enabled/disabled on the account.