Gaming Community
Forum
 
Go Back   D3scene > Hot Games > WoW forum > WoW Private Server Info & Help
Register Blogs Live view Downloads Marketplace FAQ Members List Social Groups Calendar Search Today's Posts Mark Forums Read

The Risks of hosting a public server, and how you can protect yourself

This is a discussion on The Risks of hosting a public server, and how you can protect yourself within the WoW Private Server Info & Help forum part of the WoW forum category; This guide will be based on personal experiences so if you want something added to the guide you are weary ...


Welcome on D3scene.com! Make sure to register - it's free and very quick! You have to register before you can post and participate in our discussions with 70000 other registered members. Downloads, user profiles and some forums can only be seen by registered members. After you create your free account you will be able to customize many options, you will have the full access to new hacks, latest cheats and last but not least will see no advertisements at all. We would love to see you around in our community!
Closed Thread
 
LinkBack Thread Tools Display Modes
  #1  
Old 01-02-2008, 03:41 PM
Omnicide's Avatar
Member

 
Join Date: Dec 2007
Posts: 38
Thanks: 0
Thanked 0 Times in 0 Posts
Reputation: 3
Rep Power: 2
Omnicide is an unknown quantity at this point
The Risks of hosting a public server, and how you can protect yourself

This guide will be based on personal experiences so if you want something added to the guide you are weary about. post the topic and i will add it.

Public Server General Risks

So you have created a public server, and your first few customers are flocking in. You do not know these people, but at this stage, your just happy having them here, that is what blinds you from this point i would like to make.

Those people have an established connection to your computer. They are allowed through the router, and now you are close to being completely vunerable to attack, if one was a hacker. You may be thinking to yourself, "oh crap im screwed" , this shouldnt be the case, because some handy tools can help keep your players, your server, and most importantly, YOU safe from harm.

Password Inspection and Changing

If you are using antrix or MaNGOS, make your MySQL password something no one would guess, including numbers and letters, and atleast 9 characters long. That should ensure temporary safety to brute force attacks. Also, you should change the password often. (once a week) This also goes for your username and password on your router and Computer.

Firewall and Antivirus

These two things will be your primary tools to defending your computer. You are foolish to be without both of them. But only some are recommendable for this occasion.

Firewalls are your last resort before a hacker can get into your computer and corrupt and change your data. Make sure you have one with limitation options preferably options that allow you to block an IP and protect open ports.

Some recommended Firewalls are:

ZoneAlarm -
http://www.zonealarm.com

Norton Personal Firewall - http://www.symantec.com

McAfee Firewall - http://www.mcafee.com

An Antivirus is your clean up tool. If your hacker gets in and implants his programs to do his bidding, this is your only way to clean up what he has dumped on your harddrive.

Some recommended Anti-virus's are:

Norton Internet security -
http://www.symantec.com

AVG - http://www.grisoft.com

Nod32 - http://www.eset.com

Kaspersky - http://www.kaspersky.com

These are great for picking up known viruses, i suggest using more than one.

With these tools you should be well armed for battle against a hacker. But if you want a little more protection, i suggest looking into a router.

Router Protection - The Ultimate Firewall

A router is a supreme solution to keeping your computer safe from malicious attacks. The main reason they are near bulletproof. Nothing can get through without ports being open.

On routers their are a few default ports that are always open. for example port 80 for internet browsing. but if you want people to connect to your computer. Lets say play on your private server, you will have to open more ports (3 to be exact) for them to be able to connect. This leaves those ports vunerable for attack. but thats 3 ports out of 99999. So the hacker would have to know what hes hacking before he could get inside (or he would do a port scan which is what piggy told me earlier).

So there, this limits the hackers possibilities to virtually none if he wasnt attacking your private server. But in this thread we will pretend he is, and at this point in the game. You would be hijacked. So lets continue to find out what we can do to keep those people out.

How To Respond To an Attack, and What You Should Do.

So lets say this hacker got through, made it into your mySQL database, banned all your GMs, made himself one, and enlisted a few more to help his cause. You would be just about ready to give up, rolling on the floor sucking your thumb knowing your computers going down slowly. Dont panic, this is what you can do to protect yourself.

Using Antivirus and Firewall protection, as well as the command prompt. We can find the person connected to your computer's IP, Block it from your computer, delete his virus he probably left to get back in, and in the end save your computer!

Here is the battle plan.

The Battle Plan - A Defensive Alternative

So the hacker because GM on your server and probably banned you and took away your powers. Dont fear, you won't forget, you have GUI control over the mySQL database. when you see him enter your realm. quickly make a GM account. get on the server, and before he kicks and bans you, do a .playerinfo. at the bottom of the blue message, it will display his IP. write it down, this part is vital.

With that IP in hand you are now ready to launch your defensive manuaver. Bring up your firewall, and pray it can block IP's. if it can, put in his IP, if it requires a network LAN IP, open up command prompt (start > Run >CMD) and type in ipconfig, your lan IP will be the Ip address shown, then either wait for him to DC from your server, or kill the connection with a .killbyaccount command. now he will be barred from your system without any means of getting back in. His IP is blocked (Be careful, this only works with STATIC IPs).

The hacker, however, could of deployed a few viruses for him to gain entry again. (examples include backdoor.trojan or a RAT program). use a few antiVirus's to scan for them. use more than one however, most antivirus's dont pick up everything.

When your done the clean up. You are now safe from the hacker. For now. And I guarantee he will try to attack again, just remain smart, remember the battle plan. and know how to use your tools effectively to get that low life back out of your computer.


Note: your computer is never going to be 100% safe. so make a public server at your own expense. Thank you for reading my guide, I hope it has given you an Idea on how to protect yourself.

If you see an error in the guide please point it out and I will fix it the best I can (please dont flame)

FAQ and reader concerns and personal issues

This is a section to help readers with there personal experiences and concerns. I will try to give the best answer I can so i can keep the ******* members safe.

Q: Will Blizzard ban me?
A: Probably, if they ever find out, but I highly doubt they will while doing legal things.

Q: Can you teach me how to make a private server plz?
A: No, this guide merely points out the risk of running one, and how to protect yourself.

Becareful and have fun on your servers!
D3scene
Welcome to D3scene - probably the best location for all Gamers.

To participate in our friendly environment you have to register. After completing registration you will have full access to all threads and features. We care about members and try to make your stay as pleasant as possible. We are unique with the following feature for members - you will not see a single Advertisement!


The best: registration is completely free. It will not cost you a single penny or harm you in any way. You will lose nothing except 1 minute of your time. So why not register? We would be happy to see you around!
  #2  
Old 01-02-2008, 04:27 PM
Zyphrus's Avatar
zMapper

 
Join Date: Aug 2007
Location: Sweden
Posts: 945
Thanks: 6
Thanked 0 Times in 0 Posts
Reputation: 213
Rep Power: 4
Zyphrus has a spectacular aura aboutZyphrus has a spectacular aura aboutZyphrus has a spectacular aura about
Worth a +Rep, thanks
  #3  
Old 01-02-2008, 07:53 PM
DoGgY's Avatar
Techno addict

 
Join Date: Jun 2007
Location: Canada, Québec
Posts: 1,563
Blog Entries: 2
Thanks: 5
Thanked 1 Time in 1 Post
Reputation: 916
Rep Power: 7
DoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to behold
thanks to copy paste an original thread that is sticked to this forum .. doesn't worth a to steal it and repost .. cmon you can do better

And your giving no credits !!!

Original thread: http://www.d3scene.com/forum/wow-pri...-creation.html

Any mod can close this thread pls ... already have one and this is stealing info to make rep on a sticky thread on this forum ..

Last edited by DoGgY; 01-02-2008 at 07:55 PM.
  #4  
Old 01-02-2008, 08:36 PM
Omnicide's Avatar
Member

 
Join Date: Dec 2007
Posts: 38
Thanks: 0
Thanked 0 Times in 0 Posts
Reputation: 3
Rep Power: 2
Omnicide is an unknown quantity at this point
Oh yea i forgot the credits >_>
  #5  
Old 01-02-2008, 09:33 PM
DoGgY's Avatar
Techno addict

 
Join Date: Jun 2007
Location: Canada, Québec
Posts: 1,563
Blog Entries: 2
Thanks: 5
Thanked 1 Time in 1 Post
Reputation: 916
Rep Power: 7
DoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to beholdDoGgY is a splendid one to behold
Quote:
Originally Posted by Omnicide View Post
Oh yea i forgot the credits >_>
Still already have it posted and stickied
  #6  
Old 01-02-2008, 09:34 PM
Ganom's Avatar
Ex-Staff

 
Join Date: Aug 2007
Location: No where, but somewhere
Posts: 1,040
Thanks: 13
Thanked 0 Times in 0 Posts
Reputation: 536
Rep Power: 5
Ganom is a glorious beacon of lightGanom is a glorious beacon of lightGanom is a glorious beacon of lightGanom is a glorious beacon of lightGanom is a glorious beacon of lightGanom is a glorious beacon of light
Send a message via MSN to Ganom Send a message via Yahoo to Ganom
closed, due to request.
D3scene
Welcome to D3scene - probably the best location for all Gamers.

To participate in our friendly environment you have to register. After completing registration you will have full access to all threads and features. We care about members and try to make your stay as pleasant as possible. We are unique with the following feature for members - you will not see a single Advertisement!


The best: registration is completely free. It will not cost you a single penny or harm you in any way. You will lose nothing except 1 minute of your time. So why not register? We would be happy to see you around!
Closed Thread

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off



All times are GMT +1. The time now is 03:45 PM.

Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.3.0 ©2009, Crawlability, Inc.
vBulletin style developed by Transverse Styles