Server Help

Trash Talk - Reply to announcement: Gashi Trojan

Solo Ace - Sun Feb 27, 2005 1:46 pm
Post subject: Reply to announcement: Gashi Trojan
I'm not sure how accurate the information in the announcement is, but it won't do anything for me. icon_sad.gif

wget wrote:
--21:46:24-- http://www.jigro.com/gashi/check_updates.php
=> `check_updates.php'
Resolving www.jigro.com... 70.84.53.42
Connecting to www.jigro.com[70.84.53.42]:80... connected.
HTTP request sent, awaiting response... 404 Not Found
21:46:24 ERROR 404: Not Found.

--21:46:29-- http://www.jigro.com/gashi/2.1.5/
=> `index.html'
Resolving www.jigro.com... 70.84.53.42
Connecting to www.jigro.com[70.84.53.42]:80... connected.
HTTP request sent, awaiting response... 404 Not Found
21:46:29 ERROR 404: Not Found.


http://www.jigro.com/gashi/ gives a "Removed.".
EdTheInvincible - Sun Feb 27, 2005 1:48 pm
Post subject:
thank that to MGB. he talked to the hosters and they took it down already.
Solo Ace - Sun Feb 27, 2005 1:49 pm
Post subject:
Bah, I wanted to debug it. sa_tongue.gif
Mine GO BOOM - Sun Feb 27, 2005 1:50 pm
Post subject:
Two minutes after I contacted his host, they responded and took action. I am completely amazed by their quick service, on a Sunday afternoon even.
Quote:
Hello,

Thank you for bringing this to my attention. I have removed the offending
section from the users site, and given him a warning about his activities.
If he does it again, I will not hesitate to terminate his account on the
server.

Apologies for his behaviour.

Regards,
Steve Hillier
Homerserv Server Administration

Solo Ace - Sun Feb 27, 2005 1:52 pm
Post subject:
Meh, and I thought I was fast.
CypherJF - Sun Feb 27, 2005 1:56 pm
Post subject:
I was going to say, at 10am or whatever, I clicked the link and it said it was a 404.
Pests - Sun Feb 27, 2005 5:20 pm
Post subject:
Is this the same gashi that was just a crappy looking prog with two text boxes and a button or two? I don't remember any updates or any features for that matter when I was testing.
Solo Ace - Sun Feb 27, 2005 5:28 pm
Post subject:
Obviously having a good looking GUI wasn't he point of the program, getting an exe to run on a victim's pc with an active internet connection would've been enough. sa_tongue.gif

Edit: Nasty grammar mistake. icon_confused.gif
Gravitron - Sun Feb 27, 2005 6:14 pm
Post subject:
This is the funniest thing I've seen happening in SS for the last five years. biggrin.gif

I love the stupid people who run these things without even running them through a HeX editor.


MGB, please throw me a copy of this prog, I'll put it through sterile lab testing.


To Ekted: See, the biggest threat to the game is not open source, or some nasty hacker waiting to it all with some mega cheat.
It's the retarded newbies the SSC let sysop zones and give them SSC access that later on go and run wannabe cheat-trojan programs and compromise your network by giving every retard sysop/bang/whatever access to SSC.

GG.

(Mitnick> The human factor, the weakest and easiest backdoor to get through)

Why breach continuum's protocol, encryption, etc. to make a cheat for it?
Just spread a trojan under guise of cheat, wait for dumb sysops to run it, go through start, collect free pws, earn your $200.
Dr Brain - Sun Feb 27, 2005 6:38 pm
Post subject:
Grav, what do SSC sysops have to do with this cheat?
Solo Ace - Sun Feb 27, 2005 6:44 pm
Post subject:
I wanted to debug and disassemble it, and see what it'd do if it didn't find any Continuum files. icon_sad.gif

And yeah, go ask on your office (if you work on one) to the people and ask for their system passwords, tell them they'll get a nice pen in return for it.
You'd find out 3 of 4 would actually give you their password. icon_sad.gif

Grav probably means some of the SSC sysops who are newbies themselves or who hire newbies as staff (or something like that).
Newbies who don't know how to avoid getting trojan'd but just run into the trap with a big smile.
Pests - Sun Feb 27, 2005 7:34 pm
Post subject:
If all of these recent posts was because of mine I'm not a complete idiot. Passwords changed long before this was posted or anything like that even. =/
SuSE - Sun Feb 27, 2005 8:48 pm
Post subject:
it was quick service because that guy is the guy that distributed the file sa_tongue.gif
Mine GO BOOM - Sun Feb 27, 2005 11:03 pm
Post subject:
Gravitron wrote:
I love the stupid people who run these things without even running them through a HeX editor.

Bah, hex editors are for wussies. I manually flip the switches on my computer and watch the 50,000 LED outputs to check over my downloads. What the hell is wrong with you? Looking over a hex editor for things like this does nothing. Ever heard of things like UPX, which compresses the executable? Try and figure out what the exe does when its compressed.

If you meant a software firewall like Kerio 2.14, and have it either set to deny outgoing access completely or to prompt, then yes, that is fine. Then you can go "what the hell is this program trying to access the internet for" and prevent things such as this.

Gravitron wrote:
MGB, please throw me a copy of this prog, I'll put it through sterile lab testing.

Due to the fact that the admin responded and acted so quickly, I never downloaded the file. By the time I finish contacting and typing up all the other posts/responces about contacting the host, he already acted. I am still amazed at his speed, expecially on a Sunday.
D1st0rt - Sun Feb 27, 2005 11:39 pm
Post subject:
If people didn't try to cheat, they wouldn't have any problems
Dr Brain - Mon Feb 28, 2005 12:13 am
Post subject:
I'd totally agree with you d1, if it weren't for the fact that some people download the hacks to try to stop them.

But yes, the mass majority of the downloaders deserved what they got.
Gravitron - Mon Feb 28, 2005 12:29 am
Post subject:
Compressions can be decompressed.
Encryptions can be decrypted.

And I've found some networks that are very fast to react to complaints.
It's no news to me.
Maverick - Mon Feb 28, 2005 5:21 am
Post subject:
Gravitron wrote:
See, the biggest threat to the game is not open source, or some nasty hacker waiting to it all with some mega cheat.
It's the retarded newbies the SSC let sysop zones and give them SSC access that later on go and run wannabe cheat-trojan programs and compromise your network by giving every retard sysop/bang/whatever access to SSC.

Agreed. I wonder what lousy DSB sysop runned the gashi cheat icon_lol.gif

If you need the program for testing purposes (I won't send it to unknown, unreliable people) PM me.

Still .. its sad.. those people making cheats don't know that cheats will eventually destroy the game. It has happened to subspace too, right?
Lets hope Priitk is able to finish .39 soon so all SSC zones can start using that as the only allowed client icon_cool.gif
Gravitron - Mon Feb 28, 2005 8:28 am
Post subject:
maverick wrote:
Still .. its sad.. those people making cheats don't know that cheats will eventually destroy the game. It has happened to subspace too, right?
Lets hope Priitk is able to finish .39 soon so all SSC zones can start using that as the only allowed client


Were you joking or being serious?
Because that made me feel kind of sad.
EdTheInvincible - Mon Feb 28, 2005 8:49 am
Post subject:
you can still use subspace if you want to (if a zone lets merv in, it lets vie in)
SuSE - Mon Feb 28, 2005 1:24 pm
Post subject:
no
D1st0rt - Mon Feb 28, 2005 2:10 pm
Post subject:
vip.txt
All times are -5 GMT
View topic
Powered by phpBB 2.0 .0.11 © 2001 phpBB Group