|
You last visited: Today at 23:12
Advertisement
Could version 1655 be vulnerable to hacker?
Discussion on Could version 1655 be vulnerable to hacker? within the Eudemons Online forum part of the MMORPGs category.
07/18/2024, 17:00
|
#1
|
elite*gold: 0
Join Date: Oct 2007
Posts: 558
Received Thanks: 206
|
Could version 1655 be vulnerable to hacker?
There is one thing that made me a little worried about version 1655, two administrators reported that their VPS was hacked, something I had never heard of in the classic version.
They reported that the VPS files were encrypted... And both happened in the same period.
The servers that were hacked were thunder online and Elitedemons.
What could have happened?
|
|
|
07/18/2024, 18:15
|
#2
|
elite*gold: 0
Join Date: Jul 2023
Posts: 91
Received Thanks: 9
|
simply the files has backdoors lol
|
|
|
07/19/2024, 11:42
|
#3
|
elite*gold: 480
Join Date: Nov 2009
Posts: 274
Received Thanks: 445
|
classic version much worse
|
|
|
07/19/2024, 17:48
|
#4
|
elite*gold: 0
Join Date: Oct 2007
Posts: 558
Received Thanks: 206
|
Why would the classic version be worse? ?
|
|
|
08/07/2024, 19:39
|
#5
|
elite*gold: 0
Join Date: Jan 2017
Posts: 6
Received Thanks: 0
|
Welcome
|
|
|
08/08/2024, 00:59
|
#6
|
elite*gold: 0
Join Date: Apr 2009
Posts: 782
Received Thanks: 458
|
The reason is simple:
1- The "1655" is a custom chinese server, same as the Paladin, just updated from the 2006 leaked codes;
2 - No one wants a fully working eudemons server out there, the chineses keep the things working for themselves only (also, neither of them use those custom bins, they just sell it and later steal files and shutdown the servers) actually they builds things on c# and since its a crime to run the servers on china, they try to put it on places other than there.
3 - Since the codes are too old, for the case of the classic versions, there are a lot of ways to exploit the doors, even if you change it the servers have no encryption, so its easy to force a packet through the doors and exploit some packages to shutdown the server (yeah there is a packet to do that inside the original versions).
And for the last: Yeah, believe on Windows Firewall System when it says 'this file contains a virus, similar to a backdoor' cuz it really has a backdoor ^^
|
|
|
08/19/2024, 02:01
|
#7
|
elite*gold: 0
Join Date: Oct 2007
Posts: 558
Received Thanks: 206
|
Another hypothesis is for the simple reason that the site is hosted on the VPS itself... This also creates vulnerability... taking into account port access.
|
|
|
08/24/2024, 15:59
|
#8
|
elite*gold: 0
Join Date: Apr 2009
Posts: 782
Received Thanks: 458
|
From what i could analise by deciphering the last version server.dat of eudemons and using a proxy do access the oficial servers, (this next part is already known by the community on conquer at last), TQ uses a single account server for a certain amount of game servers, the IP address in the server.dat is only the accountserver ip, and when the connection is authenticated the accountserver repplies with the game ip using the MsgConnect, this prottects a bit the game servers... so you guys can follow some simple steps to prevent it:
1 -> AccountServer separated from the GameServer VPS (yeah, two VPs to handle things);
2 -> WebSite can be set in a shared service, so you dont need to handle the site on same machine as account or game server;
3 -> If possible, changing the cipher keys is important to prevent some well known bots.
4 -> using API to acess the database of account server (like Canyon project does) but for this one you would need to build a custom accountserver to comunicates with the binaries.
Security the host from DDOS attacks and already known tricks...
But again, nothing of it matters if the Source has a backdoor... That's the case of Chinese 1655 -non oficial binaries- servers... Unfortunatelly.
|
|
|
09/18/2024, 09:19
|
#9
|
elite*gold: 0
Join Date: Oct 2023
Posts: 4
Received Thanks: 0
|
Yes, you need an engine plug-in to perfectly prevent bug farming, database deletion, 2 billion servers, materials, and all kinds of problems
|
|
|
 |
Similar Threads
|
[RELEASE] Version 1655 Engine (Celebrity Hall/Divine Fire Statue)
11/14/2025 - EO PServer Guides & Releases - 68 Replies
Status : tested 21/10/2022 Version 1655 Engine
https://www.elitepvpers.com/forum/attachments/eo- pserver-guides-releases/341344d1666318424-release- version-1655-celebrity-hall-divine-fire-statue-213 233253.jpg
Update : (Still using 1654 database cuz its same)
Celebrity statue
Divine fire statue
Pk Statue
Legion Fixed
|
[RELEASE] Translated AccountServer for version 1655
07/23/2025 - EO PServer Guides & Releases - 4 Replies
Hello All,
I translated the Account server for server files version 1655.
Hopefully there will be less problems to start new servers.
Enjoy
Download Translated Account Version
|
Version 1655 soul.exe is irrelevant
02/22/2025 - EO PServer Guides & Releases - 4 Replies
I realized that soul.exe in version 1655 is irrelevant, because it uses the dat files that are in the client's root folder, for example 1771.dat.
I believe we can analyze the encryption of these data and thus be able to log in without the need for logintools.
https://www.elitepvpers.com/forum/attachment.php? attachmentid=357111&stc=1&d=1713022696.jpg
|
Cheatengine and version 1655
05/02/2024 - EO PServer Guides & Releases - 0 Replies
I noticed that in version 1655 cheatengine works, especially when it comes to speed...
What would be the best configuration to solve this problem?
Currently I am using this configuration and it gives some DC to those who are not using cheatengine.
开启行走加速& #21028;断=1
当玩家行走封& #21253;结构异常大 0110;多少次时踢Ç 79;线=6
当玩家行走封& #21253;速度异常大 0110;多少次时踢Ç 79;线=6
限制加速等级= 5
|
[RELEASE] All GM/PM Commands version 1655
11/03/2023 - EO PServer Guides & Releases - 3 Replies
thanks to nomercyskin1 , ive manage to get look inside msg exe and locate the command that available to use for 1655 version
see attachment for description of these command
Only char with name or can use this
MSG command (insert command without "/")
|
All times are GMT +1. The time now is 23:15.
|
|