This site is a testing version, but all data is shared with the live forum.


Raised This Month: $ Target: $400
 0% 

D-FENS - Patch for upload/download server file exploit. (Updated 05-10-2010)


Post New Thread Reply   
 
Thread Tools Display Modes
Mindfreakz0r
Junior Member
Join Date: Jun 2009
Location: Estonia
Old 01-07-2010 , 14:47   Re: D-FENS - Patch for upload/download server file exploit. (Updated 11-29-2009)
Reply With Quote #101

I am not sure what it allowed him to do. When I found the plugin I just deleted it. I only know that with tha newest metamod my server is crashing... ALOT. First I thought that this was the root of the problem but it doesnt seem to be... still crashing after it. Downgraded to 1.7 and it seems to be stable now.
__________________
Counter-Strike Source and Team Fortress 2 Mega Servers and a awesome community - wedontcare.org Our servers
Mindfreakz0r is offline
lolekk1
Junior Member
Join Date: Jan 2010
Old 01-07-2010 , 16:32   Re: D-FENS - Patch for upload/download server file exploit. (Updated 11-29-2009)
Reply With Quote #102

Im having trouble intalling dfens, could someone help me?

Im running a CS:S server with Linux. I have MM 1.8.

In my addons folder I have the folder "dfens". Inside of this folder, I have "bin" which has two files:

dfens_original_mm18.dll
dfens_mm_i486_og.so

My VDF file is named "dfens.vdf" and is located in the "addons/metamod" folder. My dfens.vdf has this in it:

Code:
"Metamod Plugin"
{
    "alias"        "D-FENS"
    "file"        "addons/dfens/bin/dfens"
}
----------------------
Im pretty sure I screwed something up. As you can tell I renamed the files so that they would be undercase. Also, should my metaplugins.ini file have anything regarding dfens in it?

Last edited by lolekk1; 01-07-2010 at 16:34.
lolekk1 is offline
TESLA-X4
Senior Member
Join Date: Dec 2008
Location: $Recycle.Bin
Old 01-08-2010 , 02:05   Re: D-FENS - Patch for upload/download server file exploit. (Updated 11-29-2009)
Reply With Quote #103

Quote:
Originally Posted by lolekk1 View Post
Code:
"file"        "addons/dfens/bin/dfens"
Change it to this:
Code:
"file"        "addons/d-fens/bin/dfens_mm_i486_og.so"
TESLA-X4 is offline
lolekk1
Junior Member
Join Date: Jan 2010
Old 01-08-2010 , 03:49   Re: D-FENS - Patch for upload/download server file exploit. (Updated 11-29-2009)
Reply With Quote #104

Worked like a charm. Thanks.
lolekk1 is offline
devicenull
Veteran Member
Join Date: Mar 2004
Location: CT
Old 01-08-2010 , 13:18   Re: D-FENS - Patch for upload/download server file exploit. (Updated 11-29-2009)
Reply With Quote #105

Send me a copy of the "new" plugin if you still have it.
__________________
Various bits of semi-useful code in a bunch of languages: http://code.devicenull.org/
devicenull is offline
Hipster
SourceMod Donor
Join Date: Jun 2009
Location: Florida
Old 01-08-2010 , 18:29   Re: D-FENS - Patch for upload/download server file exploit. (Updated 11-29-2009)
Reply With Quote #106

Quote:
Originally Posted by lolekk1 View Post
@ Hipster and Mindfreakz0r

Let me guess, it allowed him to kick users from the server correct?
He had rcon, so it allowed him to do pretty much anything. :p But yes, he did kick and ban a bunch of people.

Quote:
Originally Posted by devicenull View Post
Send me a copy of the "new" plugin if you still have it.
Sent.
Hipster is offline
ltgenkd
AlliedModders Donor
Join Date: Sep 2008
Old 01-09-2010 , 06:18   Re: D-FENS - Patch for upload/download server file exploit. (Updated 11-29-2009)
Reply With Quote #107

Can I use this on L4d server running:
Windows OS
Metamod:Source version 1.8.0-dev
Build ID: 688:c291a9099016-dev
Loaded As: Valve Server Plugin
Compiled on: Nov 24 2009
Plugin interface version: 15:14
SourceHook version: 5:5
http://www.metamodsource.net/
AND
SourceMod Version Information:
SourceMod Version: 1.3.0-dev
SourcePawn Engine: SourcePawn 1.1, jit-x86 (build 1.3.0-dev)
SourcePawn API: v1 = 4, v2 = 3
Compiled on: Nov 23 2009 05:43:16
Build ID: 2865:f3551d6b1300-dev
http://www.sourcemod.net/
?
IF so how should my .vdf look like ?

Thanks
ltgenkd is offline
xiNSANE
New Member
Join Date: Jan 2010
Old 01-09-2010 , 15:06   Re: D-FENS - Patch for upload/download server file exploit. (Updated 11-29-2009)
Reply With Quote #108

Tested on a Windows Machine its working and log files too BUT after restarting the server the server will crash and it will say srcds.exe is no longer working and a message box is coming with Data Execution Prevention (DEP) your plugin does have a bug fix it please.

Thanks.

Last edited by xiNSANE; 01-09-2010 at 15:29.
xiNSANE is offline
Kigen
BANNED
Join Date: Feb 2008
Old 01-09-2010 , 18:55   Re: D-FENS - Patch for upload/download server file exploit. (Updated 11-29-2009)
Reply With Quote #109

Quote:
Originally Posted by xiNSANE View Post
Tested on a Windows Machine its working and log files too BUT after restarting the server the server will crash and it will say srcds.exe is no longer working and a message box is coming with Data Execution Prevention (DEP) your plugin does have a bug fix it please.

Thanks.
Solution: Turn off DEP for SRCDS.exe, SRCDS isn't meant to run with DEP on.

-------------------

Now this is one of the more funny plugins I've seen uploaded through the upload exploit.

http://www.kigenac.com/exploit/file/boomstick.smx

The exploiter thought it would be smart to limit it so that only he could use it. So he does a Steam ID check. But we can obviously do a little debugging and get that Steam ID.

So here is a another exploiter's info.

Name: sonicsight
Steam ID: STEAM_0:0:24095642
IP address: 99.19.56.63 *static it appears*

Enjoy.
Kigen is offline
-999-
SourceMod Donor
Join Date: May 2009
Location: IA
Old 01-09-2010 , 23:29   Re: D-FENS - Patch for upload/download server file exploit. (Updated 11-29-2009)
Reply With Quote #110

Do any of these linux binaries work with l4d2? I've tried dfens_mm_i486_l4d.so, even tried the ob version, in either case I get
Code:
           [01] <ERROR>
           [02] SourceMod (1.4.0-dev) by AlliedModders LLC
           [03] SDK Tools (1.4.0-dev) by AlliedModders LLC
           [04] BinTools (1.4.0-dev) by AlliedModders LLC
My D-FENS.vdf has
Code:
"Metamod Plugin"
{
    "alias"        "D-FENS"
    "file"        "addons/D-FENS/bin/dfens_mm_i486_l4d.so"
}
which should be correct.
Trying to load it gives
Code:
Failed to load plugin addons/D-FENS/bin/dfens_mm_i486_l4d.so (vstdlib_i486.so: cannot open shared object file
-999- is offline
Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 05:26.


Powered by vBulletin®
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
Theme made by Freecode