[Warning] SRO DB Bot[Keylogger?]

06/06/2010 17:41 recking#1
I recently had to quit my programming projects.

My Character recking on SWSRO 2 has been robbed out. I logged in bout 10 minutes ago...

my silk items are gone, together with about 1,4 bil gold.

The only 3rd Party tool (besides autoit) was SRO Winmod, which is declared as clean an i checked the source... and the new SRO DB Bot.

I advise all of you using this bot to get away from it, together with changing to linux...

if anybody belives that he had moved me to quit in total, he FAILED.

I will move on to Linux, doing some Stuff with the new edx Proxy, which will be hopefully released real soon by Drew Benton. Im planning to do a full universal clientless, for ALL Silkroad versions.

I hope to get some partners for that project, u can contact me at ICQ or MSN, if i dont accept u at msn, send an email first.

so much for now.
~recking
06/06/2010 17:47 Haxor#2
I can approve to you its not virus
Maybe any 1 come to your comp and see the setting.ini file where your pw saved?
I using bot from 1 month and never hacked..
06/06/2010 17:47 ilias2006#3
are you sure its the db bot? i use it since its released and i have over 5B and never hacked
06/06/2010 17:52 recking#4
I had some problems with a guy who is familiar with some mods on srokey...

i cant say for sure, that they dont have to do something with it, but after seeing my name on their bann list, i cant say anything for sure.
06/06/2010 18:01 zikor1337#5
Well... weird. Today I lost about 150 silk and 15 skill edit pots. The weird part is that I have 104+7 spear, 4 prems, full 11D FB +5 set and nothing disappeared ... just those silks o_O and I am sure that nobody could steal my silks. The bad part is that I used the sro-db bot ONCE.

Edit:
Scans:

SRO-DB Bot v0.9a Crack.exe: [Only registered and activated users can see links. Click Here To Register...]

crackloader.exe(The one that is generated): [Only registered and activated users can see links. Click Here To Register...]

In the first scan we can see a backdoor thingy ... But... still not sure if it's harmful in any ways.
06/06/2010 18:11 recking#6
ty Keo, hope your Neith is gone well, im currently on my rescue system, moving to linux, i will pm u later my SWSRO 2 login details, you could handle the guild then over to skor, its gabo from here.

the crackloader.exe : [Only registered and activated users can see links. Click Here To Register...]

Artemis... this is bady in my memory when i remember the first sbot cracks...
06/06/2010 18:22 zikor1337#7
Quote:
Originally Posted by recking View Post
ty Keo, hope your Neith is gone well, im currently on my rescue system, moving to linux, i will pm u later my SWSRO 2 login details, you could handle the guild then over to skor, its gabo from here.

the crackloader.exe : [Only registered and activated users can see links. Click Here To Register...]

Artemis... this is bady in my memory when i remember the first sbot cracks...
You're welcome. It gone well ^^. Umm... Ok :) waiting for your pm.
06/06/2010 18:23 recking#8
ok made a quick wpe pro check, there are some outgoin packets i could not identify, if somebody has the time please check it.
06/06/2010 18:25 sweeed#9
virustotal is nothing btw, if even it contained keylogger(impossible) they wud use fud
06/06/2010 19:24 andrelac#10
Well my avast antivirus dont let me use sro-db bot v0.9a crack because says it's a virus.
06/06/2010 19:26 sweeed#11
avast sux ;)
06/06/2010 19:52 recking#12
Ok im excluding nobody from the list of suspects for now.

My Name appeared 2 days ago on srokey bannlist, i dunno whoever did anything.

But the FACT: Whoever it was, left 5.000 gold, so thats either 1. because he needed the char for something else (standing at dw guild manager) or he wanted to tell me "haha" bitch, i got you".

But he messed up with the big dogs. Im currently getting in contact with the "real" gms, not any fucking reseller.

I should tell by now, most of the pros here know already, the prices on srokey ARE ALL Hilliarious! They do about 900% winning of every sale! Chinese get the silk for a cup of coffee and less...

stay tuned, i will set up a windows box to sniff the packets which are send or not.

~recking
06/06/2010 20:03 EliteGabo#13
Well this is just to weird.
But i trust recking coz he doesnt stop till he fixes the problem.
Good luck. If i can help you with somthing tell me
06/06/2010 20:08 Dropdead*#14
Been using db bot for a long time, never got hacked.
Sad to hear tho.
06/06/2010 20:11 zikor1337#15
Quote:
Originally Posted by recking View Post
I should tell by now, most of the pros here know already, the prices on srokey ARE ALL Hilliarious! They do about 900% winning of every sale! Chinese get the silk for a cup of coffee and less...

~recking
For chins:
700 silk = 50 RMB
50 RMB = 7.32$

Nothing more to say. :D