Rofl what a dumbass.
*Don't you all realize you're being fooled by a complete idiot? All he did is use something we can all use, command prompt.*
Login to your server and type "netstat -a" into command prompt, then find the IP which your connected to port 5816 on (Map server port). You now have game server IP [sarcasm]OMG THAT WAS HARD[/sarcasm]
All he did is realize that there's an FTP server running, which is pretty easy for most people to figure out. Yes, they have a banner for the FTP which is quite stupid, but serv-u isn't easily brute forced. You didn't find anything but another login, and it's doing EXACTLY what it should be doing, keeping you out.
You didn't hack anything script-kiddie. If you really want to meet someone who's been inside TQ's SQL servers, talk to me. I'll give you SQL SELECT access to my backup of the Dragon game server database (I'm not kidding). The previous hack was on their website, they left a gaping security hole in the player photo system: that, coupled with an admin/admin user authentication got us in with a PHP shell script that brought about the massive hacks on CO around last september/august (The DB drop on Dragon, yes).
P.S. Xiron:
Quote:
|
Originally Posted by Xiron
a. You don't know where the character files are b. You (probably) don't know how the character files are formatted c. Your ass is grass when they notice that they have someone accessing their server in this manner d. And TQ's lawyers are lawnmowers e. It will probably not take them much longer to notice you in their system than it will take you to go "Woohoo, I'm in!"
|
a - It's SQL, no files
b - Again, SQL
c - They took about a week last time
d - No lawyers because you're not accessing it by illegal means
e - Look at 'C'