Register for your free account! | Forgot your password?

Go Back   elitepvpers > MMORPGs > Nostale > Nostale PServer Advertising
You last visited: Today at 09:20

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



Eastmile | Act 8.2: Bone Dragon's Lair

Discussion on Eastmile | Act 8.2: Bone Dragon's Lair within the Nostale PServer Advertising forum part of the Nostale category.

Reply
 
Old 03/24/2021, 21:02   #106
 
erixor's Avatar
 
elite*gold: 0
Join Date: Jul 2013
Posts: 409
Received Thanks: 1,067
Quote:
Originally Posted by InnoTx View Post
is it enough to delete the entire Eastmile folder to get out of this scam **** or what would you recommend now? Thank you for this important information
Since it is only active when the game is running, yes. You're not being spied on as long as your Eastmile client isn't running
erixor is offline  
Thanks
3 Users
Old 03/24/2021, 21:10   #107
 
elite*gold: 0
Join Date: Oct 2020
Posts: 4
Received Thanks: 0
Me realising I spend so many hours afk in nosville with eastmile minimised doing lots of ****
JesusIsTheOnlyWay is offline  
Old 03/24/2021, 21:11   #108


 
Kravos's Avatar
 
elite*gold: 100
The Black Market: 270/0/0
Join Date: Dec 2017
Posts: 1,031
Received Thanks: 459
@ just to be sure he doesn't miss this. I didn't know that you are allowed to promote Malware
Kravos is offline  
Thanks
2 Users
Old 03/24/2021, 21:11   #109
 
WalrossGreat's Avatar
 
elite*gold: 0
Join Date: Mar 2015
Posts: 871
Received Thanks: 1,229
Quote:
Originally Posted by InnoTx View Post
is it enough to delete the entire Eastmile folder to get out of this scam **** or what would you recommend now? Thank you for this important information
I didn't analyze all of their files, but as far as I it should be enough to just delete/turn off the game, at least for the thing with photos.
WalrossGreat is offline  
Thanks
5 Users
Old 03/24/2021, 21:26   #110
 
InnoTx's Avatar
 
elite*gold: 100
Join Date: Dec 2016
Posts: 342
Received Thanks: 82
Quote:
Originally Posted by WalrossGreat View Post
I didn't analyze all of their files, but as far as I it should be enough to just delete/turn off the game, at least for the thing with photos.
first of all thank you that you publish that. i mean i saw many things by this Community / Servers but this is fckin disgusting **** and i cant realize this that a Server with a big community doing this ... if there is more information that they go in the privacy of the players please tell it us even if this thread get delete just open a new thread if there is any kind of important thing.
InnoTx is offline  
Old 03/24/2021, 22:05   #111
 
PenguinXD's Avatar
 
elite*gold: 0
Join Date: Oct 2018
Posts: 297
Received Thanks: 215
Quote:
Originally Posted by WalrossGreat View Post
I've heard that there is some kind of "anticheat" built into this server, so I wanted to take a look. I think that my findings may be quite interesting, because as far as I see this is not publicly known information.

So basically, the anticheat installs two new recv packet handlers, one seems to reply with the heartbeat, the second one is a bit more interesting. Basically it takes a photo of all of your screens. So lets say your Eastmile client is minimized, you are watching youtube, making transfers on your bank account, no matter what else, Eastmile anticheat still can take a photo.

What will happen next? Well, the photo is stored on your drive just for a moment, just to... send it over FTP to their servers. But there comes the best part of the story. Anyone can login to the FTP server using the same credentials embedded into the anticheat and view photos of all players.

In case anyone wants to verify this information, this should be enough for you to start on:
File: EWSF.EWS
Im very shocked and thankful Walross.

That hurts all players of Eastmile in their privacy very hard.. Imagine watching **** & Eastmile knows, oh my gawd.

We are humans, we do alot of stupid things & they capture it.

I want a Votekick of this Server from this Website.

Edit : Imagine too you have nudes from your girlfriend or idk and they use it for meh..

I'm such a pervert to think about it, but i dont ******* care.

DONT WATCH MY GF PICS :c xd (no i didn't open those when i had eastmile running)
PenguinXD is offline  
Thanks
1 User
Old 03/24/2021, 22:42   #112

 
VSalu's Avatar
 
elite*gold: 184
Join Date: Aug 2012
Posts: 101
Received Thanks: 87
Hello EPVP community.

We will try to explain in a correct and brief way what is happening due current riots happened around here.

Yes. We have systems in place to fight illegal programs, which allow us to block any rogue applications or any attempt to modify any process in the game to take advantage of it. In addition, this system took screenshots for a few seconds before the automatic ban occurred, to make checks manually, but **only in strictly necessary cases where an automatic ban occurs, and only while the game remained open**.

No. We do not store these captures to steal your personal data such as passwords, conversations, etc. We use this method where we take screenshots so that we can compare it to a list of cheat apps and have Eastmile free of cheats.

The total number of accounts affected by this has been less than 30, many of them owned by the same owner, so the percentage of affected players has been infimum, given that there are a total of almost 17,000 accounts, around 3,000 total active accounts (with activity on the last month), and only less than 30 of them have been affected, and all of them from an automatic ban for the use of illegal programs that modify the Eastmile client.

We do not like to allow players cheating in our game where others take their time and effort to support and donate on the server, in addition to players who decide to stay in Eastmile creating the community that we have achieved over all these years, we all know that there have been moments better and worse, but we have always moved on, and it is precisely because we really care about our community and that we can continue to move forward together.

If you are a player like any other, you should not have any concern, since the only objective of this system (Anti-cheat) has been to be able to have, as we said above, a space free of cheats since the privacy of any normal user has never been compromised at Eastmile with this system. We give our word that only users who have tried to break or take advantage of something in the game, their privacy has been compromised ONLY for the aforementioned functionality to be able to block them from our game as indicated by the Game Rules and maintain a fair game from cheating.

Since we understand that this functionality may concern some users although they would only be affected if they use illegal programs within the game, we have permanently deactivated this system permanently, as well as eliminated all content from the compromised FTP server.

We also understand that suddenly finding out about this from third parties without any type of context has put you on alarm, but that system was used very rarely for very special cases, and all the players who are in Eastmile every day can confirm that you have not had absolutely no problems with this issue and your privacy has not been compromised, so you can rest assured.

We would appreciate your understanding that we are not trying to steal your files, record your screen, steal bank details, steal passwords, view conversations, etc. or do anything that could harm you. Your safety is paramount to us, as well as appreciating your efforts within the game in which we take care to prohibit players who illegally use cheats to take advantage. This is a small project and we have tried with this system to ensure playability for all users. We are just trying to keep this game going against a group that is (still) doing their best to destroy it.

In addition, the people who have had access to the storage of these screenshots have done so illegally, hacking our client to get the encrypted private credentials of the FTP server to which only Salu had access. Part of the NosWings team has used this as a marketing strategy to harm their current biggest competition on the eve of the opening of their server, a rather dirty strategy on their part, even probably knowing that we have never done or would do anything that would harm our users, they have decided to give the dirtiest image possible of this situation.

Having said this, we sincerely thank the players who continue to support the server and make it a great community, compared to the small group of users who have recently entered the community Discord channels only to create discomfort, create hoaxes and sow chaos. thinking that they can act without impunity, taking advantage of the situation to discredit our work and step on the trust that the players and the team have mutually placed in Eastmile.



@ If you need any of our source codes or anything, do not hesitate to ask me for it.
VSalu is offline  
Old 03/24/2021, 22:52   #113
 
elite*gold: 0
Join Date: Oct 2020
Posts: 4
Received Thanks: 0
Maybe letting the players know that you have such a system that take screenshots even if they just need to worry about it when they are indeed using cheats would been nice.
If this didn't got exposed you would still use such a system without telling anyone that you have it, taking screenshots of someone else desktop still highly illegal regardless of doing it as a security system.
JesusIsTheOnlyWay is offline  
Old 03/24/2021, 22:52   #114
 
erixor's Avatar
 
elite*gold: 0
Join Date: Jul 2013
Posts: 409
Received Thanks: 1,067
Quote:
Originally Posted by VSalu View Post
Hello EPVP community.

We will try to explain in a correct and brief way what is happening due current riots happened around here.

Yes. We have systems in place to fight illegal programs, which allow us to block any rogue applications or any attempt to modify any process in the game to take advantage of it. In addition, this system took screenshots for a few seconds before the automatic ban occurred, to make checks manually, but **only in strictly necessary cases where an automatic ban occurs, and only while the game remained open**.

No. We do not store these captures to steal your personal data such as passwords, conversations, etc. We use this method where we take screenshots so that we can compare it to a list of cheat apps and have Eastmile free of cheats.

The total number of accounts affected by this has been less than 30, many of them owned by the same owner, so the percentage of affected players has been infimum, given that there are a total of almost 17,000 accounts, around 3,000 total active accounts (with activity on the last month), and only less than 30 of them have been affected, and all of them from an automatic ban for the use of illegal programs that modify the Eastmile client.

We do not like to allow players cheating in our game where others take their time and effort to support and donate on the server, in addition to players who decide to stay in Eastmile creating the community that we have achieved over all these years, we all know that there have been moments better and worse, but we have always moved on, and it is precisely because we really care about our community and that we can continue to move forward together.

If you are a player like any other, you should not have any concern, since the only objective of this system (Anti-cheat) has been to be able to have, as we said above, a space free of cheats since the privacy of any normal user has never been compromised at Eastmile with this system. We give our word that only users who have tried to break or take advantage of something in the game, their privacy has been compromised ONLY for the aforementioned functionality to be able to block them from our game as indicated by the Game Rules and maintain a fair game from cheating.

Since we understand that this functionality may concern some users although they would only be affected if they use illegal programs within the game, we have permanently deactivated this system permanently, as well as eliminated all content from the compromised FTP server.

We also understand that suddenly finding out about this from third parties without any type of context has put you on alarm, but that system was used very rarely for very special cases, and all the players who are in Eastmile every day can confirm that you have not had absolutely no problems with this issue and your privacy has not been compromised, so you can rest assured.

We would appreciate your understanding that we are not trying to steal your files, record your screen, steal bank details, steal passwords, view conversations, etc. or do anything that could harm you. Your safety is paramount to us, as well as appreciating your efforts within the game in which we take care to prohibit players who illegally use cheats to take advantage. This is a small project and we have tried with this system to ensure playability for all users. We are just trying to keep this game going against a group that is (still) doing their best to destroy it.

In addition, the people who have had access to the storage of these screenshots have done so illegally, hacking our client to get the encrypted private credentials of the FTP server to which only Salu had access. Part of the NosWings team has used this as a marketing strategy to harm their current biggest competition on the eve of the opening of their server, a rather dirty strategy on their part, even probably knowing that we have never done or would do anything that would harm our users, they have decided to give the dirtiest image possible of this situation.

Having said this, we sincerely thank the players who continue to support the server and make it a great community, compared to the small group of users who have recently entered the community Discord channels only to create discomfort, create hoaxes and sow chaos. thinking that they can act without impunity, taking advantage of the situation to discredit our work and step on the trust that the players and the team have mutually placed in Eastmile.



@ If you need any of our source codes or anything, do not hesitate to ask me for it.
Not gonna lie, this is total bullshit.

You cannot justify having MALICIOUS code that can run on any of your player's client. Even if it's "only 30 people" (tbh, kinda hard to believe, but yeah ok), you're still collecting personnal data, whether you use it or not is none of player's concern.

About the fact that NosWings "hacked" your client or whatever, just using ghidra or any other tool does the job, the function can be found and the id/passwords have a simple XOR on them. Wow. Much protection. Anyone with malicious intent could have accessed your ftp and I don't know what else.

Blaming NosWings when you are the server stealing data because "gneugneu, we don't want cheaters" is bullshit. Ban the players, fine. Don't take screen captures that might contain sensitive data such as private conversations or credentials.

P.S: Oh, I see you have emptied your FTP folder, it's still online though

Good thing is you can upload anything you want! That's op safety in there

erixor is offline  
Thanks
14 Users
Old 03/24/2021, 22:55   #115
 
XV50's Avatar
 
elite*gold: 0
Join Date: Sep 2019
Posts: 379
Received Thanks: 168
#QUOTE

Well, in my opinion (and i think i share it with alot other people)
Having a Anti-Cheat is a great thing, everyone should have it.
Still you are doing something wrong. While you take a fkn screenshot of the Desktop of other people (and you could at any time, because i also reversed some other dll's also understood the EW DLL) is a highly forbidden thing as you take a sneak into others privacy.
On a bad moment, many people are using PayPal, and need to see their Password because they maybe typed it wrongly. U'd see that.
Maybe someone logged in into their Bank Account and has invisible letters off. U'd see that.
Maybe someone has a intense call via Skype/Discord using a Camera with his/her girl-/boyfriend. U'd see that.

I am very ashamed that u took it this far.
Eastmile should be stopped as this is a CRIME
XV50 is offline  
Thanks
10 Users
Old 03/24/2021, 23:04   #116

 
FI0w's Avatar
 
elite*gold: 50
Join Date: Jul 2014
Posts: 1,699
Received Thanks: 1,165
Quote:
Originally Posted by VSalu View Post
Hello EPVP community.

We will try to explain in a correct and brief way what is happening due current riots happened around here.

Yes. We have systems in place to fight illegal programs, which allow us to block any rogue applications or any attempt to modify any process in the game to take advantage of it. In addition, this system took screenshots for a few seconds before the automatic ban occurred, to make checks manually, but **only in strictly necessary cases where an automatic ban occurs, and only while the game remained open**.

No. We do not store these captures to steal your personal data such as passwords, conversations, etc. We use this method where we take screenshots so that we can compare it to a list of cheat apps and have Eastmile free of cheats.

The total number of accounts affected by this has been less than 30, many of them owned by the same owner, so the percentage of affected players has been infimum, given that there are a total of almost 17,000 accounts, around 3,000 total active accounts (with activity on the last month), and only less than 30 of them have been affected, and all of them from an automatic ban for the use of illegal programs that modify the Eastmile client.

We do not like to allow players cheating in our game where others take their time and effort to support and donate on the server, in addition to players who decide to stay in Eastmile creating the community that we have achieved over all these years, we all know that there have been moments better and worse, but we have always moved on, and it is precisely because we really care about our community and that we can continue to move forward together.

If you are a player like any other, you should not have any concern, since the only objective of this system (Anti-cheat) has been to be able to have, as we said above, a space free of cheats since the privacy of any normal user has never been compromised at Eastmile with this system. We give our word that only users who have tried to break or take advantage of something in the game, their privacy has been compromised ONLY for the aforementioned functionality to be able to block them from our game as indicated by the Game Rules and maintain a fair game from cheating.

Since we understand that this functionality may concern some users although they would only be affected if they use illegal programs within the game, we have permanently deactivated this system permanently, as well as eliminated all content from the compromised FTP server.

We also understand that suddenly finding out about this from third parties without any type of context has put you on alarm, but that system was used very rarely for very special cases, and all the players who are in Eastmile every day can confirm that you have not had absolutely no problems with this issue and your privacy has not been compromised, so you can rest assured.

We would appreciate your understanding that we are not trying to steal your files, record your screen, steal bank details, steal passwords, view conversations, etc. or do anything that could harm you. Your safety is paramount to us, as well as appreciating your efforts within the game in which we take care to prohibit players who illegally use cheats to take advantage. This is a small project and we have tried with this system to ensure playability for all users. We are just trying to keep this game going against a group that is (still) doing their best to destroy it.

In addition, the people who have had access to the storage of these screenshots have done so illegally, hacking our client to get the encrypted private credentials of the FTP server to which only Salu had access. Part of the NosWings team has used this as a marketing strategy to harm their current biggest competition on the eve of the opening of their server, a rather dirty strategy on their part, even probably knowing that we have never done or would do anything that would harm our users, they have decided to give the dirtiest image possible of this situation.

Having said this, we sincerely thank the players who continue to support the server and make it a great community, compared to the small group of users who have recently entered the community Discord channels only to create discomfort, create hoaxes and sow chaos. thinking that they can act without impunity, taking advantage of the situation to discredit our work and step on the trust that the players and the team have mutually placed in Eastmile.



@ If you need any of our source codes or anything, do not hesitate to ask me for it.
Imagine calling a FTP Connection secure. You can Sniff Username/Password because its plaintext.
FI0w is offline  
Thanks
2 Users
Old 03/24/2021, 23:05   #117
 
erixor's Avatar
 
elite*gold: 0
Join Date: Jul 2013
Posts: 409
Received Thanks: 1,067
Quote:
Originally Posted by FI0w View Post
Imagine calling a FTP Connection secure. You can Sniff Username/Password because its plaintext.
Imagine having credentials client side*
erixor is offline  
Thanks
4 Users
Old 03/24/2021, 23:06   #118

 
Blowa's Avatar
 
elite*gold: 48
Join Date: Jan 2010
Posts: 647
Received Thanks: 1,789
Quote:
Originally Posted by VSalu View Post
Hello EPVP community.

We will try to explain in a correct and brief way what is happening due current riots happened around here.

Yes. We have systems in place to fight illegal programs, which allow us to block any rogue applications or any attempt to modify any process in the game to take advantage of it. In addition, this system took screenshots for a few seconds before the automatic ban occurred, to make checks manually, but **only in strictly necessary cases where an automatic ban occurs, and only while the game remained open**.

No. We do not store these captures to steal your personal data such as passwords, conversations, etc. We use this method where we take screenshots so that we can compare it to a list of cheat apps and have Eastmile free of cheats.

The total number of accounts affected by this has been less than 30, many of them owned by the same owner, so the percentage of affected players has been infimum, given that there are a total of almost 17,000 accounts, around 3,000 total active accounts (with activity on the last month), and only less than 30 of them have been affected, and all of them from an automatic ban for the use of illegal programs that modify the Eastmile client.

We do not like to allow players cheating in our game where others take their time and effort to support and donate on the server, in addition to players who decide to stay in Eastmile creating the community that we have achieved over all these years, we all know that there have been moments better and worse, but we have always moved on, and it is precisely because we really care about our community and that we can continue to move forward together.

If you are a player like any other, you should not have any concern, since the only objective of this system (Anti-cheat) has been to be able to have, as we said above, a space free of cheats since the privacy of any normal user has never been compromised at Eastmile with this system. We give our word that only users who have tried to break or take advantage of something in the game, their privacy has been compromised ONLY for the aforementioned functionality to be able to block them from our game as indicated by the Game Rules and maintain a fair game from cheating.

Since we understand that this functionality may concern some users although they would only be affected if they use illegal programs within the game, we have permanently deactivated this system permanently, as well as eliminated all content from the compromised FTP server.

We also understand that suddenly finding out about this from third parties without any type of context has put you on alarm, but that system was used very rarely for very special cases, and all the players who are in Eastmile every day can confirm that you have not had absolutely no problems with this issue and your privacy has not been compromised, so you can rest assured.

We would appreciate your understanding that we are not trying to steal your files, record your screen, steal bank details, steal passwords, view conversations, etc. or do anything that could harm you. Your safety is paramount to us, as well as appreciating your efforts within the game in which we take care to prohibit players who illegally use cheats to take advantage. This is a small project and we have tried with this system to ensure playability for all users. We are just trying to keep this game going against a group that is (still) doing their best to destroy it.

In addition, the people who have had access to the storage of these screenshots have done so illegally, hacking our client to get the encrypted private credentials of the FTP server to which only Salu had access. Part of the NosWings team has used this as a marketing strategy to harm their current biggest competition on the eve of the opening of their server, a rather dirty strategy on their part, even probably knowing that we have never done or would do anything that would harm our users, they have decided to give the dirtiest image possible of this situation.

Having said this, we sincerely thank the players who continue to support the server and make it a great community, compared to the small group of users who have recently entered the community Discord channels only to create discomfort, create hoaxes and sow chaos. thinking that they can act without impunity, taking advantage of the situation to discredit our work and step on the trust that the players and the team have mutually placed in Eastmile.



@ If you need any of our source codes or anything, do not hesitate to ask me for it.
So, in your opinion, cheaters does not deserve the same privacy as normal user? Good point, that's not how it works, maybe in your kid world, but everyone deserve the same privacy/security concerns.
I don't think taking a screenshot of the ENTIRE desktop of any user that would use cheat software of any kind is normal.
But this is not the only problem, the problem is that your files were containing a direct access (aka credentials) to the FTP (plain text protocol) where you upload the screenshots that your software captured as @ said, anyone with some reverse engineering skills could see that and would trigger and gain access to your own FTP server.
Even thought this is not right at all, you did not even warn your users about that thing that you are doing


If you can't secure your users correctly.


Again from your says, someone that reverse engineered is more illegal than you, taking pictures of people's desktop without their consent? That's bullshit, what you are doing completely against your user's privacy and security.


Last thing, yes, I used this as "marketing" if you call it so, we care about our user's privacy and security, whatever they did, even thought they try to cheat (and trust me, a lot of people tried to cheat in Open Beta).


But I see no competition in your server, the only two servers that I see as a competition are the official server and NosByte,
Official server is just official and maintained by professionals even thought they are doing shit
NosByte, despite that we had some different goals with Elendan, Elendan is still someone that I believe skilled enough to manage a good project
Your server lags, crash, seems to be badly game-designed and balanced but whatever, that's your server and we have different definition of what a good project is, user security is apart of that "good project" criteria that we have.
Blowa is offline  
Thanks
20 Users
Old 03/24/2021, 23:11   #119
 
elite*gold: 0
Join Date: Feb 2018
Posts: 27
Received Thanks: 11
I've got an anticheat idea, we kill all the cheaters (effective 100%). If you don't cheat you don't need to be scared as we just kill the cheaters.

You will think that killing people is illegal but I just killed 30 users and we have almost 3k of them still active!

Also people is using this as a marketing call-to-action, they are all very bad. Remember that they got the information that I am a murderer by spying my phone
PepBDev is offline  
Thanks
5 Users
Old 03/24/2021, 23:16   #120
 
XV50's Avatar
 
elite*gold: 0
Join Date: Sep 2019
Posts: 379
Received Thanks: 168
Quote:
Originally Posted by Blowa View Post
So, in your opinion, cheaters does not deserve the same privacy as normal user? Good point, that's not how it works, maybe in your kid world, but everyone deserve the same privacy/security concerns.
I don't think taking a screenshot of the ENTIRE desktop of any user that would use cheat software of any kind is normal.
But this is not the only problem, the problem is that your files were containing a direct access (aka credentials) to the FTP (plain text protocol) where you upload the screenshots that your software captured as @ said, anyone with some reverse engineering skills could see that and would trigger and gain access to your own FTP server.
Even thought this is not right at all, you did not even warn your users about that thing that you are doing


If you can't secure your users correctly.


Again from your says, someone that reverse engineered is more illegal than you, taking pictures of people's desktop without their consent? That's bullshit, what you are doing completely against your user's privacy and security.


Last thing, yes, I used this as "marketing" if you call it so, we care about our user's privacy and security, whatever they did, even thought they try to cheat (and trust me, a lot of people tried to cheat in Open Beta).


But I see no competition in your server, the only two servers that I see as a competition are the official server and NosByte,
Official server is just official and maintained by professionals even thought they are doing shit
NosByte, despite that we had some different goals with Elendan, Elendan is still someone that I believe skilled enough to manage a good project
Your server lags, crash, seems to be badly game-designed and balanced but whatever, that's your server and we have different definition of what a good project is, user security is apart of that "good project" criteria that we have.
Given the fact that his text says almost "we need to handle cheaters differently". Injecting a DLL into the Client.exe makes you a professional hacker which is worth taking a screenshot of your desktop of.
I see.
XV50 is offline  
Reply


Similar Threads Similar Threads
EC Official Injector, Official Injector by Cyclops
09/12/2009 - WarRock Hacks, Bots, Cheats & Exploits - 2 Replies
Official Injector by Cyclops Alright so this morning i decided to make EC an official injector! xD http://i25.tinypic.com/2eyl18p.jpg Download: Download the injector here. Virustotal:



All times are GMT +1. The time now is 09:20.


Powered by vBulletin®
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2025 elitepvpers All Rights Reserved.