What's new

WHAT HAPPENED? - Explaination

ExO

Admin
5,119
2014
1,639
While this was luckily a very short downtime considering the certain stances, I'm sure some of you noticed. EmuCoach was acting up, nothing was showing up (posts, etc), and was inaccessible for a limited time as I locked the forum until I could figure out the situation.

We are now running on a backup from monday morning, meaning all members & posts within monday to friday are lost, but luckily it is not a lot. I could save members as they weren't compromised, but I don't want to risk it, in case the hacker infected some of the tables.

While we are speaking, I have most likely found the vulnerability, and I am securing things on a higher level to avoid this from happening again.

Best Regards,
ExO.
 

madmax765

Silver Supporter
Veteran Member
129
2014
3
Location
3Rd. Rock from the sun
Ya i seen that... I clicked a few times and it took me to another web site a pop a pictures and a screaming sound. Just glad you are back up and running with little lost. Welcome Back
 

Mr. Satan

Admiral Squatbar
Mythical User
Head Moderator
Gold Supporter
MoP Premium
Superior Member
1,012
2016
196
Location
World Martial Arts Championships
Ya i seen that... I clicked a few times and it took me to another web site a pop a pictures and a screaming sound. Just glad you are back up and running with little lost. Welcome Back

Thankfully we had a backup of the site and database. It turns out another site was hacked in a very similar way, and that site was also a emulation site.
We're not sure how they got in, but ExO is now making sure the site is secured so this doesn't happen again.
 

ExO

Admin
5,119
2014
1,639
I'm still figuring out the last puzzles. I might have fixed the vulnerability, but seems like he/she has decrypted my password and have hacked me on different sites. Still working on resolving it.
 

madmax765

Silver Supporter
Veteran Member
129
2014
3
Location
3Rd. Rock from the sun
Bad thing is, It's some 12 year old kid some where lol, who is grounded to his room for the week. I know when my server keep getting hacked one week. They some how logged into my server and added a user and changed my password.... Had to look for a hack on line to hack there p/w on my server... Then happen again. And had to turn up the security level even higher.... And for the user.. forget there name sorry... One how made the v1 patch program. It did work OK for me after adding a venerable to the bat file to run java 8. I know that post was lost in the roll back. But just to let you know its good :D maybe add a read me file with it too :D I still need jave 7 to compile files for Aion server. Well i hope everyone has a good weekend
 
Last edited:

Mr. Satan

Admiral Squatbar
Mythical User
Head Moderator
Gold Supporter
MoP Premium
Superior Member
1,012
2016
196
Location
World Martial Arts Championships
Bad thing is, It's some 12 year old kid some where lol, who is grounded to his room for the week. I know when my server keep getting hacked one week. They some how logged into my server and added a user and changed my password.... Had to look for a hack on line to hack there p/w on my server... Then happen again. And had to turn up the security level even higher.... And for the user.. forget there name sorry... One how made the v1 patch program. It did work OK for me after adding a venerable to the bat file to run java 8. I know that post was lost in the roll back. But just to let you know its good :D maybe add a read me file with it too :D I still need jave 7 to compile files for Aion server. Well i hope everyone has a good weekend

That would be me, I made the bug patcher, and don't worry about forgetting my name :p
But could you write that out for me so I can just copy+paste it into the text file? I don't really know much about that stuff, I'm still a bit new to program development, but more specifically, Java.

Which also, I'll be re-posting that thread sometime soon, I just have to get on my school laptop because that's where the program is.
 

ExO

Admin
5,119
2014
1,639
Bad thing is, It's some 12 year old kid some where lol, who is grounded to his room for the week. I know when my server keep getting hacked one week. They some how logged into my server and added a user and changed my password.... Had to look for a hack on line to hack there p/w on my server... Then happen again. And had to turn up the security level even higher.... And for the user.. forget there name sorry... One how made the v1 patch program. It did work OK for me after adding a venerable to the bat file to run java 8. I know that post was lost in the roll back. But just to let you know its good :D maybe add a read me file with it too :D I still need jave 7 to compile files for Aion server. Well i hope everyone has a good weekend

Yeah it's very unfortunate, but it seems like a shell was uploaded to the server through a vulnerable plugin, and as I download the file backups it ended up on my PC, which means that he had my password from that shell/trojan. All details have been changed though.
 
Top