Jump to content

[Share]Crash Exploit L2OFF


Anarchy

Recommended Posts

and also, if 154+ amped or a patch doesnt get released, and people just start changing authd ports to block apex, ill release a dll file that will work with any antibot, and any server, changed ports or not... that will crash it...

 

also u guys need to go crash more servers! my favorite server needs more players ;o

Link to comment
Share on other sites

Xmmm, good one, but this will work with client antibot patch too? Most servers in order to keep hlapex away (and bots), use a system patch, they don't simply change the ports (hlapex works in a range of ports for those who don't know). I'm still curious for the GM Shop exploit (i hope it will work as you say ;) ). We have just to sit down and wait right down :P

[me=killer_007] is having fun crashing newbie servers like a 10 years old child atm XD[/me]

Link to comment
Share on other sites

I got a code for crashing L2J server and the fixes for that packet i only got them as i know so be aware cuz  my favorite server need ppl too :D sorry if i shut down ur server :D:D ;D ;D

Link to comment
Share on other sites

pff if u think my favorite server is l2j that ur mistaken... -beep- l2j i wouldnt play that shit if the last server alive was an l2j server.. buggy ass laggy piece of shit...

 

anyway... killer_007... hlapex has a flaw with the way it differnciates the authd connection from the l2server connection, it hooks ws2_32.connect and checks the port of the address header sent to it, if the port is 2106, 2222 or 5001-4, then it treats the connection as an authd connection and returns to the normal connect function, if its any other port then it detects it as an l2server connection and replaces the ip in the header to 127.0.0.1, checks if apex is still running, and then returns to the normal connect, which then connects to apex which then proxies to the server which enables it to view/send packets, so yeah... and i just gave every server owner that reads this an explanation of how to block apex, but nevermind because its on PP anyway...

 

also the GM Shop exploit is 100% dependant on the server... not only that its easy to fix just by taking out the items that are exploitable lol... which is why im probably not going to release it...

Link to comment
Share on other sites

pff if u think my favorite server is l2j that ur mistaken... -beep- l2j i wouldnt play that shit if the last server alive was an l2j server.. buggy ass laggy piece of shit...

 

anyway... killer_007... hlapex has a flaw with the way it differnciates the authd connection from the l2server connection, it hooks ws2_32.connect and checks the port of the address header sent to it, if the port is 2106, 2222 or 5001-4, then it treats the connection as an authd connection and returns to the normal connect function, if its any other port then it detects it as an l2server connection and replaces the ip in the header to 127.0.0.1, checks if apex is still running, and then returns to the normal connect, which then connects to apex which then proxies to the server which enables it to view/send packets, so yeah... and i just gave every server owner that reads this an explanation of how to block apex, but nevermind because its on PP anyway...

 

also the GM Shop exploit is 100% dependant on the server... not only that its easy to fix just by taking out the items that are exploitable lol... which is why im probably not going to release it...

 

Anarchy i wasnt talk about YOUR favorite server .... I was talking about ALL servers not ur.....

Link to comment
Share on other sites

pff if u think my favorite server is l2j that ur mistaken... -beep- l2j i wouldnt play that shit if the last server alive was an l2j server.. buggy ass laggy piece of shit...

 

anyway... killer_007... hlapex has a flaw with the way it differnciates the authd connection from the l2server connection, it hooks ws2_32.connect and checks the port of the address header sent to it, if the port is 2106, 2222 or 5001-4, then it treats the connection as an authd connection and returns to the normal connect function, if its any other port then it detects it as an l2server connection and replaces the ip in the header to 127.0.0.1, checks if apex is still running, and then returns to the normal connect, which then connects to apex which then proxies to the server which enables it to view/send packets, so yeah... and i just gave every server owner that reads this an explanation of how to block apex, but nevermind because its on PP anyway...

 

also the GM Shop exploit is 100% dependant on the server... not only that its easy to fix just by taking out the items that are exploitable lol... which is why im probably not going to release it...

 

Anarchy i wasnt talk about YOUR favorite server .... I was talking about ALL servers not ur.....

ahhh okey xD either way l2j sucks ^_^ i dont waste my time trying to find exploits there... i find it much more entertaining punching holes in the ego of l2off owners that think they are untouchable because they use amped..
Link to comment
Share on other sites

Hm...in my server theres a smthing liek a louncher, which automaticaly closes all kind of stuff(etc. walker,bot,hlplex). How can I bypass a -beeeeep- louncher,witch has some packets in it, couse u can't just log-in by l2.exe

PS:  server is www.bfdr.eu

PPS: Anarchy, nice exploit. Never though,that l2off can be killed by some packets,lol. ^_^

Link to comment
Share on other sites

Guest Thanos47

i have start to learn about l2off ... i hope i would make it to be a off dev too .

L2off i have try to open it or check wtf have i cant its very hard,in my opinion,java its easyest think i know :P

Link to comment
Share on other sites

We are going off topic this topic is about Crash Exploit plz dont go off topic  :-[ :-[ :P :P :P i went off topic too before sorry about that.

Link to comment
Share on other sites

If you wish to cause more dmg, press the auto button than the send... when i did this (i left it to auto till server disconnected me) the login and NPC server also got owned (that server had 2, a rpg and one pvp...). Try it :P

Link to comment
Share on other sites

i can assure u that was a coincidence... the authd ("login server") and then l2server are linked only by a tcp connection... which means one can not crash the other... putting the packet on auto wont do anything more than send it more times... may make it d/c u faster because more memory gets overwritten by the overflow... but thats about it... also, the npc server will get owned because when the l2server crashes, the l2npc follows.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.



×
×
  • Create New...