Register for your free account! | Forgot your password?

Go Back   elitepvpers > MMORPGs > Eudemons Online
You last visited: Today at 23:12

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



Could version 1655 be vulnerable to hacker?

Discussion on Could version 1655 be vulnerable to hacker? within the Eudemons Online forum part of the MMORPGs category.

Reply
 
Old   #1
 
zukoo's Avatar
 
elite*gold: 0
Join Date: Oct 2007
Posts: 558
Received Thanks: 206
Could version 1655 be vulnerable to hacker?

There is one thing that made me a little worried about version 1655, two administrators reported that their VPS was hacked, something I had never heard of in the classic version.
They reported that the VPS files were encrypted... And both happened in the same period.

The servers that were hacked were thunder online and Elitedemons.

What could have happened?
zukoo is offline  
Old 07/18/2024, 18:15   #2
 
elite*gold: 0
Join Date: Jul 2023
Posts: 91
Received Thanks: 9
simply the files has backdoors lol
jeffworkszx is offline  
Old 07/19/2024, 11:42   #3

 
DuaSelipar's Avatar
 
elite*gold: 480
Join Date: Nov 2009
Posts: 274
Received Thanks: 445
classic version much worse
DuaSelipar is offline  
Old 07/19/2024, 17:48   #4
 
zukoo's Avatar
 
elite*gold: 0
Join Date: Oct 2007
Posts: 558
Received Thanks: 206
Why would the classic version be worse? ?
zukoo is offline  
Old 08/07/2024, 19:39   #5
 
elite*gold: 0
Join Date: Jan 2017
Posts: 6
Received Thanks: 0
Welcome
revinmage is offline  
Old 08/08/2024, 00:59   #6
 
12tails's Avatar
 
elite*gold: 0
Join Date: Apr 2009
Posts: 782
Received Thanks: 458
The reason is simple:

1- The "1655" is a custom chinese server, same as the Paladin, just updated from the 2006 leaked codes;
2 - No one wants a fully working eudemons server out there, the chineses keep the things working for themselves only (also, neither of them use those custom bins, they just sell it and later steal files and shutdown the servers) actually they builds things on c# and since its a crime to run the servers on china, they try to put it on places other than there.
3 - Since the codes are too old, for the case of the classic versions, there are a lot of ways to exploit the doors, even if you change it the servers have no encryption, so its easy to force a packet through the doors and exploit some packages to shutdown the server (yeah there is a packet to do that inside the original versions).

And for the last: Yeah, believe on Windows Firewall System when it says 'this file contains a virus, similar to a backdoor' cuz it really has a backdoor ^^
12tails is offline  
Thanks
1 User
Old 08/19/2024, 02:01   #7
 
zukoo's Avatar
 
elite*gold: 0
Join Date: Oct 2007
Posts: 558
Received Thanks: 206
Another hypothesis is for the simple reason that the site is hosted on the VPS itself... This also creates vulnerability... taking into account port access.
zukoo is offline  
Thanks
1 User
Old 08/24/2024, 15:59   #8
 
12tails's Avatar
 
elite*gold: 0
Join Date: Apr 2009
Posts: 782
Received Thanks: 458
From what i could analise by deciphering the last version server.dat of eudemons and using a proxy do access the oficial servers, (this next part is already known by the community on conquer at last), TQ uses a single account server for a certain amount of game servers, the IP address in the server.dat is only the accountserver ip, and when the connection is authenticated the accountserver repplies with the game ip using the MsgConnect, this prottects a bit the game servers... so you guys can follow some simple steps to prevent it:

1 -> AccountServer separated from the GameServer VPS (yeah, two VPs to handle things);
2 -> WebSite can be set in a shared service, so you dont need to handle the site on same machine as account or game server;
3 -> If possible, changing the cipher keys is important to prevent some well known bots.
4 -> using API to acess the database of account server (like Canyon project does) but for this one you would need to build a custom accountserver to comunicates with the binaries.

Security the host from DDOS attacks and already known tricks...

But again, nothing of it matters if the Source has a backdoor... That's the case of Chinese 1655 -non oficial binaries- servers... Unfortunatelly.
12tails is offline  
Thanks
2 Users
Old 09/18/2024, 09:19   #9
 
elite*gold: 0
Join Date: Oct 2023
Posts: 4
Received Thanks: 0
Yes, you need an engine plug-in to perfectly prevent bug farming, database deletion, 2 billion servers, materials, and all kinds of problems
a2688266 is offline  
Reply


Similar Threads Similar Threads
[RELEASE] Version 1655 Engine (Celebrity Hall/Divine Fire Statue)
11/14/2025 - EO PServer Guides & Releases - 68 Replies
Status : tested 21/10/2022 Version 1655 Engine https://www.elitepvpers.com/forum/attachments/eo- pserver-guides-releases/341344d1666318424-release- version-1655-celebrity-hall-divine-fire-statue-213 233253.jpg Update : (Still using 1654 database cuz its same) Celebrity statue Divine fire statue Pk Statue Legion Fixed
[RELEASE] Translated AccountServer for version 1655
07/23/2025 - EO PServer Guides & Releases - 4 Replies
Hello All, I translated the Account server for server files version 1655. Hopefully there will be less problems to start new servers. Enjoy Download Translated Account Version
Version 1655 soul.exe is irrelevant
02/22/2025 - EO PServer Guides & Releases - 4 Replies
I realized that soul.exe in version 1655 is irrelevant, because it uses the dat files that are in the client's root folder, for example 1771.dat. I believe we can analyze the encryption of these data and thus be able to log in without the need for logintools. https://www.elitepvpers.com/forum/attachment.php? attachmentid=357111&stc=1&d=1713022696.jpg
Cheatengine and version 1655
05/02/2024 - EO PServer Guides & Releases - 0 Replies
I noticed that in version 1655 cheatengine works, especially when it comes to speed... What would be the best configuration to solve this problem? Currently I am using this configuration and it gives some DC to those who are not using cheatengine. 开启行走加速& #21028;断=1 当玩家行走封& #21253;结构异常大 0110;多少次时踢Ç 79;线=6 当玩家行走封& #21253;速度异常大 0110;多少次时踢Ç 79;线=6 限制加速等级= 5
[RELEASE] All GM/PM Commands version 1655
11/03/2023 - EO PServer Guides & Releases - 3 Replies
thanks to nomercyskin1 , ive manage to get look inside msg exe and locate the command that available to use for 1655 version see attachment for description of these command Only char with name or can use this MSG command (insert command without "/")



All times are GMT +1. The time now is 23:15.


Powered by vBulletin®
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2025 elitepvpers All Rights Reserved.