Seconded.  Maybe I missed it in one of the emails but there's been a  
ton of activity today making it difficult to keep up.

-Darren
On Apr 29, 2008, at 1:07 PM, Don Williams wrote:

> Can I get a link to fix that exploit?
> ----- Original Message -----
> From: "voogru" <[EMAIL PROTECTED]>
> To: "'Half-Life dedicated Win32 server mailing list'"
> <hlds@list.valvesoftware.com>
> Sent: 2008-04-29 12:01 PM
> Subject: Re: [hlds] New server exploit (not nuking)
>
>
>> Sorry mate, that's not me.
>>
>> I live in the United States, Not Chile.
>>
>> -----Original Message-----
>> From: [EMAIL PROTECTED]
>> [mailto:[EMAIL PROTECTED] On Behalf Of Kaspars
>> Sent: Tuesday, April 29, 2008 11:56 AM
>> To: Half-Life dedicated Win32 server mailing list
>> Subject: Re: [hlds] New server exploit (not nuking)
>>
>> looks like you are really desperate my friend :D
>>
>> Apr 29 18:33:10 pussy sshd[28148]: Invalid user nfsnobody from
>> 200.111.157.187
>> Apr 29 18:33:10 pussy sshd[28148]: Failed password for invalid user
>> nfsnobody from 200.111.157.187 port 57265 ssh2
>> Apr 29 18:33:12 pussy sshd[28155]: Invalid user aptproxy from
>> 200.111.157.187
>> Apr 29 18:33:12 pussy sshd[28155]: Failed password for invalid user
>> aptproxy
>> from 200.111.157.187 port 32977 ssh2
>> Apr 29 18:33:12 pussy sshd[28158]: Invalid user rpcuser from
>> 200.111.157.187
>> Apr 29 18:33:12 pussy sshd[28158]: Failed password for invalid user
>> rpcuser
>> from 200.111.157.187 port 57525 ssh2
>> Apr 29 18:33:14 pussy sshd[28168]: Failed password for rpc from
>> 200.111.157.187 port 57890 ssh2
>> Apr 29 18:33:15 pussy sshd[28165]: Invalid user desktop from
>> 200.111.157.187
>> Apr 29 18:33:15 pussy sshd[28165]: Failed password for invalid user
>> desktop
>> from 200.111.157.187 port 33338 ssh2
>> Apr 29 18:33:16 pussy sshd[28174]: Invalid user gopher from
>> 200.111.157.187
>> Apr 29 18:33:16 pussy sshd[28174]: Failed password for invalid user  
>> gopher
>> from 200.111.157.187 port 58160 ssh2
>> Apr 29 18:33:17 pussy sshd[28178]: Invalid user workshop from
>> 200.111.157.187
>> Apr 29 18:33:17 pussy sshd[28178]: Failed password for invalid user
>> workshop
>> from 200.111.157.187 port 33734 ssh2
>> Apr 29 18:33:20 pussy sshd[28183]: Invalid user mailnull from
>> 200.111.157.187
>> Apr 29 18:33:20 pussy sshd[28183]: Failed password for invalid user
>> mailnull
>> from 200.111.157.187 port 34115 ssh2
>> Apr 29 18:33:22 pussy sshd[28189]: Invalid user nfsnobody from
>> 200.111.157.187
>> Apr 29 18:33:22 pussy sshd[28189]: Failed password for invalid user
>> nfsnobody from 200.111.157.187 port 34375 ssh2
>> Apr 29 18:33:24 pussy sshd[28195]: Invalid user rpcuser from
>> 200.111.157.187
>> Apr 29 18:33:24 pussy sshd[28195]: Failed password for invalid user
>> rpcuser
>> from 200.111.157.187 port 34711 ssh2
>> Apr 29 18:33:27 pussy sshd[28201]: Failed password for rpc from
>> 200.111.157.187 port 35017 ssh2
>> Apr 29 18:33:29 pussy sshd[28207]: Invalid user gopher from
>> 200.111.157.187
>>
>>
>> Quoting voogru <[EMAIL PROTECTED]>:
>>> Well, that sure makes me accusing you of being a pirate a lot  
>>> easier.
>>>
>>> But I found your server anyway. It appears that this server, also  
>>> has a
>>> member who happens to be named "Kaspars".
>>>
>>> IP: 193.46.236.246:27015
>>>
>>>
>> http://www.game-monitor.com/tf2_GameServer/193.46.236.246:27015/GIGN_Team_Fo
>>> rtress_2__tf2.gign.lv-Variables.html
>>>
>>> The sv_contact is [EMAIL PROTECTED]
>>>
>>> And your name just so happens to be Kaspars ([EMAIL PROTECTED])
>>>
>>> To show that this server, is a cracked server, this is a output of  
>>> the
>>> status command on the server:
>>>
>>> hostname: GIGN Team Fortress 2 | tf2.gign.lv
>>> version : 1.0.2.3/14 3434 secure
>>> udp/ip  :  193.46.236.246:27015
>>> map     : tc_hydro at: 0 x, 0 y, 0 z
>>> players : 31 (32 max)
>>>
>>> # userid name uniqueid connected ping loss state
>>> # 385 "russman087" STEAM_0:0:7896881 00:14 231 73 spawning
>>> # 117 "FroZen" STEAM_666:88_666  2:43:07 190 0 active
>>> # 244 "HyDE" STEAM_0:0:4411810  1:27:48 180 0 active
>>> # 367 "[GGP] tenochtitlan" STEAM_0:0:17337278 11:44 199 0
>>> active
>>> # 305 "Grenade" STEAM_666:88_666 49:01 444 0 active
>>> # 374 "Unicefs" STEAM_0:0:18971438 04:43 61 0 active
>>> # 265 "[BEBRI] BulleT" STEAM_0:1:18888365  1:06:26 44 0 active
>>> # 337 "Farnsworth" STEAM_0:1:16598480 33:39 280 0 active
>>> # 384 "Archeoptrix -V-" STEAM_0:1:8149645 00:29 691 32 active
>>> # 288 "[BEBRI] LongMan" STEAM_0:0:18860784 55:02 63 0 active
>>> # 386 "Steses" STEAM_0:0:16557404 00:13 148 76 active
>>> # 382 "Thief -V-" STEAM_0:1:223130 01:09 205 0 active
>>> # 376 "eBatas" STEAM_0:0:18646857 03:14 153 0 active
>>> # 273 "mara_spb" STEAM_0:1:18877348 59:35 142 0 active
>>> # 364 "Drept" STEAM_666:88_666 13:44 140 0 active
>>> # 338 "yang257" STEAM_0:1:16620122 33:34 442 0 active
>>> # 324 "unnamed" STEAM_666:88_666 42:05 110 0 active
>>> # 354 "Dojacek" STEAM_0:1:4573064 23:48 134 0 active
>>> # 378 "[Merc]Kato" STEAM_0:1:17449079 02:51 102 0 active
>>> # 331 "Karuse" STEAM_0:1:16652263 37:40 54 0 active
>>> # 346 "Scratch" STEAM_0:1:18647825 28:32 163 0 active
>>> # 330 "RIkkY" STEAM_666:88_666 38:17 53 0 active
>>> # 380 "[RTFM] naziic" STEAM_666:88_666 01:44 49 0 active
>>> # 339 "Sharingan" STEAM_666:88_666 32:41 35 0 active
>>> # 285 "Lazze De Luxe" STEAM_0:1:5044709 55:41 150 0 active
>>> # 361 "BonD*Tm | rePlaY" STEAM_666:88_666 16:51 46 0 active
>>> # 286 "Mighty_Fluff" STEAM_0:0:18990863 55:26 141 0 active
>>> # 340 "kiki" STEAM_666:88_666 32:37 73 0 active
>>> # 372 "Revenger" STEAM_666:88_666 07:28 157 0 active
>>> # 355 "ReaLisTic" STEAM_666:88_666 22:05 108 0 active
>>> # 381 "-=CaNtThInKoFaNaMe=-" STEAM_0:1:14115974 01:39 162 0
>>> active
>>>
>>> At 10:35 AM EST, there are 11 players on this server with the  
>>> steamid
>>> STEAM_666:88_666. Interesting!
>>>
>>> Or people can simply connect to the server, run status, and see it  
>>> for
>>> yourself.
>>>
>>> Somehow, running a hacked tf2 server, you pretty much deserve  
>>> whatever
>>> is
>>> coming to you with regards to your hacked server.
>>>
>>> I don't think you deserve to benefit from information on these lists
>>> when
>>> you didn't even pay for the game, and I don't think you have any  
>>> room to
>>> talk about whining about your hacked server, getting hacked.
>>>
>>> - voogru.
>>>
>>> -----Original Message-----
>>> From: [EMAIL PROTECTED]
>>> [mailto:[EMAIL PROTECTED] On Behalf Of Kaspars
>>> Sent: Tuesday, April 29, 2008 10:25 AM
>>> To: Half-Life dedicated Win32 server mailing list
>>> Subject: Re: [hlds] New server exploit (not nuking)
>>>
>>> Maybe thats because of people in this damn country doesn't give a  
>>> sh**
>>> in
>>> supporting the developers and buying the game? Probably you just  
>>> won't
>>> understand it anyway...
>>>
>>> Quoting voogru <[EMAIL PROTECTED]>:
>>>> Uhm, no.
>>>>
>>>> The reason why I am asking is I have not seen a .lv server that was
>>> not
>>>> a
>>>> cracked/pirated TF2 server.
>>>>
>>>> - voogru.
>>>>
>>>> -----Original Message-----
>>>> From: [EMAIL PROTECTED]
>>>> [mailto:[EMAIL PROTECTED] On Behalf Of Kaspars
>>>> Sent: Tuesday, April 29, 2008 10:02 AM
>>>> To: Half-Life dedicated Win32 server mailing list
>>>> Subject: Re: [hlds] New server exploit (not nuking)
>>>>
>>>> Does it matter? Let me guess, you're gonna crashtest my server and
>>> in
>>>> case u
>>>> succeed, you will welcome everyone to your server, right? It's not
>>> gonna
>>>> happen, puppy!
>>>>
>>>> Quoting voogru <[EMAIL PROTECTED]>:
>>>>> What's your server IP?
>>>>>
>>>>> - voogru.
>>>>>
>>>>> -----Original Message-----
>>>>> From: [EMAIL PROTECTED]
>>>>> [mailto:[EMAIL PROTECTED] On Behalf Of
>>> Kaspars
>>>>> Sent: Tuesday, April 29, 2008 8:56 AM
>>>>> To: Half-Life dedicated Win32 server mailing list
>>>>> Subject: Re: [hlds] New server exploit (not nuking)
>>>>>
>>>>> I already did so...
>>>>>
>>>>> dunno about the command, maybe it works in some
>>>>> specific situations, however it crashed my server every
>>>>> time. The command is executed from client console when
>>>>> I haven't joined any team, the server output before
>>>>> crash is following:
>>>>>
>>>>> ------- SERVER SOUNDSCAPES -------
>>>>> - 6: 2fort.Indoor
>>>>> - 5: 2fort.OutdoorFort
>>>>> - 4: 2fort.OutdoorPond
>>>>> - 2: 2fort.Underground
>>>>> - 3: 2fort.Underground2
>>>>> - 12: Badlands.Inside
>>>>> - 13: Badlands.Outside
>>>>> - 14: Badlands.OutsideInterior
>>>>> - 8: Dustbowl.Indoors
>>>>> - 7: Dustbowl.Outdoors
>>>>> - 20: Granary.Inside
>>>>> - 19: Granary.Outside
>>>>> - 16: GravelPit.Inside
>>>>> - 15: GravelPit.Outside
>>>>> - 18: Hydro.Inside
>>>>> - 17: Hydro.Outside
>>>>> - 1: tf2.general_ambient
>>>>> - 0: tf2.respawn_room
>>>>> - 9: Well.DeepInside
>>>>> - 10: Well.Inside
>>>>> - 11: Well.Outside
>>>>> -------- SOUNDSCAPE ENTITIES -----
>>>>> ./srcds_run: line 346: 20996 Illegal instruction
>>>>> $HL_CMD
>>>>> Add "-debug" to the ./srcds_run command line to
>>>>> generate a debug.log to help with solving this problem
>>>>> Tue Apr 29 15:44:56 EEST 2008: Server restart in 10 seconds
>>>>> Tue Apr 29 15:44:57 EEST 2008: Server Quit
>>>>>
>>>>> Quoting "1nsane ." <[EMAIL PROTECTED]>:
>>>>>> It didn't seem to crash my server but you can use
>>>>> Neph's plugin to
>>>>>> disable
>>>>>> this one as well:
>>>>>> "ncp sv_soundscape_printdebuginfo" should do
>>> the
>>>> trick
>>>>>>
>>>>>> On Tue, Apr 29, 2008 at 8:21 AM, Kaspars
>>>>> <[EMAIL PROTECTED]> wrote:
>>>>>>
>>>>>>> I have tested it only on TF2... if you are able to
>>>>> test it on other
>>>>>> games,
>>>>>>> please share your results
>>>>>>>
>>>>>>> Quoting Ronny Schedel
>>> <[EMAIL PROTECTED]>:
>>>>>>>> Does it affect only TF2 servers or all Source
>>>>> based games?
>>>>>>>>
>>>>>>>>
>>>>>>>>
>>>>>>>>> there is another command that crash the
>>> server
>>>>> and should be
>>>>>> blocked
>>>>>>> -
>>>>>>>>> sv_soundscape_printdebuginfo
>>>>>>>>> Quoting Nephyrin Zey : I already published
>>> a
>>>>> simple plugin to fix
>>>>>>>>> this. We made it public and
>>>>>>>>> resolved it :-P
>>>>>>>>> - Neph
>>>>>>>>>
>>>> _______________________________________________
>>>>>>>>> To unsubscribe, edit your list
>>> preferences, or
>>>>> view the list
>>>>>>>>> archives, please visit:
>>>>>>>>>
>>>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>>>>>>>>
>>>>>>>>>
>>>>>>>>> Links:
>>>>>>>>> ------
>>>>>>>>> [1] mailto:[EMAIL PROTECTED]
>>>>>>>>>
>>>> _______________________________________________
>>>>>>>>> To unsubscribe, edit your list
>>> preferences, or
>>>>> view the list
>>>>>>> archives,
>>>>>>>>> please visit:
>>>>>>>>>
>>>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>>>>>>>>
>>>>>>>>
>>>>>>>>
>>>>>>>>
>>> _______________________________________________
>>>>>>>> To unsubscribe, edit your list preferences, or
>>>>> view the list
>>>>>> archives,
>>>>>>> please visit:
>>>>>>>>
>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>>>>>>
>>>>>>>
>>>>>>> _______________________________________________
>>>>>>> To unsubscribe, edit your list preferences, or view
>>>>> the list archives,
>>>>>>> please visit:
>>>>>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>>>>>>
>>>>>> _______________________________________________
>>>>>> To unsubscribe, edit your list preferences, or view
>>>>> the list archives,
>>>>>> please visit:
>>>>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>>>>
>>>>>
>>>>> _______________________________________________
>>>>> To unsubscribe, edit your list preferences, or view the list
>>>> archives,
>>>>> please visit:
>>>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>>>>
>>>>>
>>>>> _______________________________________________
>>>>> To unsubscribe, edit your list preferences, or view the list
>>>> archives,
>>>>> please visit:
>>>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>>>
>>>>
>>>> _______________________________________________
>>>> To unsubscribe, edit your list preferences, or view the list
>>> archives,
>>>> please visit:
>>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>>>
>>>>
>>>> _______________________________________________
>>>> To unsubscribe, edit your list preferences, or view the list
>>> archives,
>>>> please visit:
>>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>>
>>>
>>> _______________________________________________
>>> To unsubscribe, edit your list preferences, or view the list  
>>> archives,
>>> please visit:
>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>>
>>>
>>> _______________________________________________
>>> To unsubscribe, edit your list preferences, or view the list  
>>> archives,
>>> please visit:
>>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>
>>
>> _______________________________________________
>> To unsubscribe, edit your list preferences, or view the list  
>> archives,
>> please visit:
>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>
>>
>> _______________________________________________
>> To unsubscribe, edit your list preferences, or view the list  
>> archives,
>> please visit:
>> http://list.valvesoftware.com/mailman/listinfo/hlds
>>
>
>
>
> _______________________________________________
> To unsubscribe, edit your list preferences, or view the list  
> archives, please visit:
> http://list.valvesoftware.com/mailman/listinfo/hlds


_______________________________________________
To unsubscribe, edit your list preferences, or view the list archives, please 
visit:
http://list.valvesoftware.com/mailman/listinfo/hlds

Reply via email to