• Log InLog In
  • Register
Liquid`
Team Liquid Liquipedia
EDT 00:15
CEST 06:15
KST 13:15
  • Home
  • Forum
  • Calendar
  • Streams
  • Liquipedia
  • Features
  • Store
  • EPT
  • TL+
  • StarCraft 2
  • Brood War
  • Smash
  • Heroes
  • Counter-Strike
  • Overwatch
  • Liquibet
  • Fantasy StarCraft
  • TLPD
  • StarCraft 2
  • Brood War
  • Blogs
Forum Sidebar
Events/Features
News
Featured News
Code S RO4 & Finals Preview: herO, GuMiho, Classic, Cure6Code S RO8 Preview: Classic, Reynor, Maru, GuMiho3Code S RO8 Preview: ByuN, Rogue, herO, Cure5[ASL19] Ro4 Preview: Storied Rivals7Code S RO12 Preview: Maru, Trigger, Rogue, NightMare12
Community News
Code S Season 1 - Classic & GuMiho advance to RO4 (2025)4[BSL 2v2] ProLeague Season 3 - Friday 21:00 CET7herO & Cure GSL RO8 Interviews: "I also think that all the practice I put in when Protoss wasn’t doing as well is paying off"0Code S Season 1 - herO & Cure advance to RO4 (2025)0Dark to begin military service on May 13th (2025)21
StarCraft 2
General
Code S RO8 Preview: Classic, Reynor, Maru, GuMiho Code S RO4 & Finals Preview: herO, GuMiho, Classic, Cure Is there a place to provide feedback for maps? Code S RO8 Preview: ByuN, Rogue, herO, Cure Code S Season 1 - Classic & GuMiho advance to RO4 (2025)
Tourneys
RSL: Revival, a new crowdfunded tournament series [GSL 2025] Code S Season 1 - RO4 and Grand Finals SOOPer7s Showmatches 2025 [GSL 2025] Code S:Season 1 - RO8 - Group B SOOP Starcraft Global #20
Strategy
Simple Questions Simple Answers [G] PvT Cheese: 13 Gate Proxy Robo
Custom Maps
[UMS] Zillion Zerglings
External Content
Mutation # 473 Cold is the Void Mutation # 472 Dead Heat Mutation # 471 Delivery Guaranteed Mutation # 470 Certain Demise
Brood War
General
Pros React To: Emotional Finalist in Best vs Light ASL 19 Tickets for foreigners BGH auto balance -> http://bghmmr.eu/ BW General Discussion Recent recommended BW games
Tourneys
[ASL19] Semifinal B [BSL 2v2] ProLeague Season 3 - Friday 21:00 CET [USBL Spring 2025] Groups cast [ASL19] Semifinal A
Strategy
[G] How to get started on ladder as a new Z player Creating a full chart of Zerg builds [G] Mineral Boosting
Other Games
General Games
What do you want from future RTS games? Stormgate/Frost Giant Megathread Beyond All Reason Grand Theft Auto VI Nintendo Switch Thread
Dota 2
Official 'what is Dota anymore' discussion
League of Legends
LiquidLegends to reintegrate into TL.net
Heroes of the Storm
Simple Questions, Simple Answers
Hearthstone
Heroes of StarCraft mini-set
TL Mafia
Vanilla Mini Mafia TL Mafia Community Thread TL Mafia Plays: Diplomacy TL Mafia: Generative Agents Showdown Survivor II: The Amazon
Community
General
UK Politics Mega-thread Russo-Ukrainian War Thread US Politics Mega-thread Elon Musk's lies, propaganda, etc. Ask and answer stupid questions here!
Fan Clubs
Serral Fan Club
Media & Entertainment
[Manga] One Piece Movie Discussion! Anime Discussion Thread [Books] Wool by Hugh Howey
Sports
Formula 1 Discussion 2024 - 2025 Football Thread NHL Playoffs 2024 NBA General Discussion
World Cup 2022
Tech Support
Computer Build, Upgrade & Buying Resource Thread Cleaning My Mechanical Keyboard How to clean a TTe Thermaltake keyboard?
TL Community
The Automated Ban List TL.net Ten Commandments
Blogs
Why 5v5 Games Keep Us Hooked…
TrAiDoS
Info SLEgma_12
SLEgma_12
SECOND COMMING
XenOsky
WombaT’s Old BW Terran Theme …
WombaT
Heero Yuy & the Tax…
KrillinFromwales
BW PvZ Balance hypothetic…
Vasoline73
ASL S19 English Commentary…
namkraft
Customize Sidebar...

Website Feedback

Closed Threads



Active: 27237 users

SCBW Bnet hacker: Watch out

Forum Index > BW General
Post a Reply
Normal
Excel Excel
Profile Blog Joined February 2010
142 Posts
May 04 2010 03:52 GMT
#1
So you have all seen the "Allah/Frost/etc.@USEast>YOU" crashgames on Bnet at one point or another if you touched BW in the last few months. While they were relatively harmless if you avoid them, one of the hackers behind these games have unfortunately found a far more devastating hack that prevents you from hosting games on Bnet forever.

A few days ago, I decided to make a game titled "Frost@USEast GTFO BNET". The very same person (Frost) then joins my game, says "U mad kid?", then crashes my SC using the lobby hack. From that point on, I noticed something very interesting: whenever I decide to host a game, 15 seconds later I would lose connection to battle.net (and everything else) for a few seconds, and SC would quit. Joining games is unaffected, but the inability to host may prevent some people from playing SC altogether (there are some people whose computers cannot DL from other hosts and must host maps themselves in order to play).

How is this accomplished? Was a permanent modification to SC made?

After some testing, I realized that Frost most likely has a bot patrolling the games and checks the host names against a "blacklist" of people. If it matches, it performs some sort of network drop hack and cause you to lose network service (not just Bnet connection!) for a brief period. Creating a new Bnet account will get around this, and so will creating passworded games, but I fear that eventually Frost will begin to prevent ALL people from hosting through some manner. What is there to be done about this menace?

In any case, if you haven't been able to host and your network connection drops on game creation, that may be the reason.
"SCREW OBSERVERS MUST HAVE MOAR ARBITERS!!!11one1" - Famous last words
Mindcrime
Profile Joined July 2004
United States6899 Posts
May 04 2010 03:57 GMT
#2
On May 04 2010 12:52 Excel Excel wrote:
Creating a new Bnet account will get around this, and so will creating passworded games, but I fear that eventually Frost will begin to prevent ALL people from hosting through some manner.


that would be pretty epic tbh
That wasn't any act of God. That was an act of pure human fuckery.
gumbum8
Profile Blog Joined December 2008
United States721 Posts
May 04 2010 03:59 GMT
#3
... What an E-ass!
but really, has anyone REALLY been far even as decided to use even go want to do look more like?
Pseudo_Utopia
Profile Blog Joined December 2002
Canada827 Posts
Last Edited: 2010-05-04 04:05:44
May 04 2010 04:04 GMT
#4
Fucking USeast is like over 50% hackers by now, so as far as I'm concerned he's crashhacking hackers which doesn't bother me too much.
But honestly I didn't notice that, I did accidentally click one of those games after a while but I couldn't tell anything changed after rebooting from the crash since I couldn't make in the first place. If he's making a modification to your SC folder tho that sucks cause it means nastier stuff could be on the way (e.g. delete replays or something)
Retired SchiSm[LighT]
L_Master
Profile Blog Joined April 2009
United States8017 Posts
Last Edited: 2010-05-04 04:07:17
May 04 2010 04:06 GMT
#5
That shit of his is pretty annyoing, its like a landmine. You don't even have to join the game for it to crash starcraft, just pass over it on the game menu.

Since I'm neurotic when I'm waiting for a game to pop up I tend to scroll up and down, but now I have to be super careful less I pass over it and crash StarCraft.

On May 04 2010 12:52 Excel Excel wrote:
Creating a new Bnet account will get around this, and so will creating passworded games, but I fear that eventually Frost will begin to prevent ALL people from hosting through some manner.


While this would really suck; I also agree that it would be a pretty epic thing to own battle net.
EffOrt and Soulkey Hwaiting!
roronoe
Profile Joined May 2009
Canada1527 Posts
May 04 2010 04:14 GMT
#6
This is pretty terrible. I've seen these games as well. While they're on USEast right now, who knows if they'll start appearing on iccup as well.
The Purgatory of Endless Depths
TheDoctor
Profile Joined August 2009
66 Posts
Last Edited: 2010-05-04 04:34:58
May 04 2010 04:22 GMT
#7
Well even more bad news.. its on US west as well, and the same sort of thing happens. Once i was in a 1v1@python play/ob game and someone came in the game and crashed everyones starcraft.

I then came online to check where host of the game was to see if he made another game by doing the /where "host name" command and it said he was in a game called something like "Frost@US WEST 324232525252525453534534534534534534534534534534534"

when he actually made a new game the host and everybody had no clue what had happened...in this case the host was able to make another game unlike the original poster description of how he is unable to create games now
A Class Rank yo
Amnesia
Profile Blog Joined September 2009
United States3818 Posts
May 04 2010 04:33 GMT
#8
Let's get R1CH to stomp his ass
Not_Computer
Profile Blog Joined January 2007
Canada2277 Posts
May 04 2010 04:34 GMT
#9
This hack is really annoying my friends. A lot of the people I play with are beginning to be affected by this. (none of them are hackers though, not that I know of at least, I've played with them for years and I know some personally) They've never disconnected in a game before and then suddenly they're dropping every other game. I've been told it actually resets your Internet connection, not just b.net and it's pretty random too.

Has anyone reported it to Blizzard yet? I can't imagine the chaos if it gets out. I bet other hackers have noticed and are probably trying to duplicate it...
"Jaedong hyung better be ready. I'm going to order the most expensive dinner in Korea."
Ronald_McD
Profile Blog Joined November 2008
Canada807 Posts
Last Edited: 2010-05-04 04:37:25
May 04 2010 04:36 GMT
#10
I just went on there to see what's all the fuss about. I made a game named "Frost @USEast is g@y" and someone named "BLIZZARD" joined and kicked me from Bnet. I was able to go back on after 5 minutes though, and I can still host games.
FUCKING GAY LAGS
TheDoctor
Profile Joined August 2009
66 Posts
May 04 2010 04:39 GMT
#11
On May 04 2010 13:36 Ronald_McD wrote:
I just went on there to see what's all the fuss about. I made a game named "Frost @USEast is g@y" and someone named "BLIZZARD" joined and kicked me from Bnet. I was able to go back on after 5 minutes though, and I can still host games.


lol hahaah hero!!!!
A Class Rank yo
EleanorRIgby
Profile Joined March 2008
Canada3923 Posts
May 04 2010 04:45 GMT
#12
i expected a one liner just accusing some newb of map hack but this is interesting to say the least, what some lengths people will go to..
savior did nothing wrong
Not_Computer
Profile Blog Joined January 2007
Canada2277 Posts
Last Edited: 2010-05-04 04:47:41
May 04 2010 04:45 GMT
#13
On May 04 2010 13:36 Ronald_McD wrote:
I just went on there to see what's all the fuss about. I made a game named "Frost @USEast is g@y" and someone named "BLIZZARD" joined and kicked me from Bnet. I was able to go back on after 5 minutes though, and I can still host games.


rofl, good job!

edit:
On May 04 2010 13:45 EleanorRIgby wrote:
i expected a one liner just accusing some newb of map hack but this is interesting to say the least, what some lengths people will go to..


Ya I thought that too at first, maybe if a mod thinks this is worthy of discussion, the title could be changed to something more descriptive. (I don't mean to be backseat moderating, just a suggestion)
"Jaedong hyung better be ready. I'm going to order the most expensive dinner in Korea."
krndandaman
Profile Joined August 2009
Mozambique16569 Posts
May 04 2010 05:15 GMT
#14
--- Nuked ---
kOre
Profile Blog Joined April 2009
Canada3642 Posts
May 04 2010 05:37 GMT
#15
This is happening on USWest as well now ... wtf?
http://www.starcraftmecca.net - Founder
dimfish
Profile Blog Joined February 2010
United States663 Posts
Last Edited: 2010-05-04 05:52:26
May 04 2010 05:51 GMT
#16
I just jumped on USWest to see what's there and tried to join a game "Frost@USEast > YOU" and immediately I get a Windows application error and game crashed. Nothing permanent seems to happen, though, loaded back up and can host a game, no problem.

edit:
Nevermind, OP already pointed out the guy had to jump in his game for the worse stuff, sorry
LunarDestiny
Profile Blog Joined August 2008
United States4177 Posts
Last Edited: 2010-05-04 06:08:23
May 04 2010 06:04 GMT
#17
I play on USEast for the UMS maps. I want it funny how 40% of the people I play use multi unit control hack (BWHF detection). Why would people need multi unit control hack for UMS games???

For those Allah/Frost@USEAST games, I learned not to click on them after 8 tries.
igotmyown
Profile Blog Joined April 2009
United States4291 Posts
Last Edited: 2010-05-04 07:22:37
May 04 2010 07:11 GMT
#18
How would he attack your network connection?

He could try to find your IP and attack your port, but if he doesn't do it from within starcraft a firewall should shut it down easily.
Is he injecting code at the end of really long game names?
Is he installing something on your computer using broodwar (how?)

This is interesting.

Edit: google found this
http://www.gamethreat.net/forums/starcraft-hacking-related/42699-ickarus-will-crash-you-2.html
This Allah guy seems pretty proud of himself

So these l33t hax0rs are using pack senders to spoof battle.net messages, which allows them to create/modify game names. If you make a game name too long, it will crash the host. If battle.net didn't change their code, it also allows for code injection.
There's been more than enough information posted over the past couple of weeks to figure out how to do it if you aren't a moron (uh oh). All you need is a packet sender that can send Battle.net messages.


Since this is on the battle.net level, a client running protective software won't be able to stop their game from crashing. I don't see how this affects your network connection.

Not sure what the next part is about
The hack can be done with a simple patch that points to your new custom data, that being the game name or game info/creator name/map name.
omfghi2u2
Profile Blog Joined February 2008
United States831 Posts
May 04 2010 07:12 GMT
#19
I think the funniest hacks are when you play the UMS game tittled, "Banning game." And when you trap them, they drophack you.

But back on topic, I remember going into a game and someone came in the game and wrote in all caps, "BAN ME? I BAN YOU" and Bnet crashed.

This allah/frost guy is all over bnet.
dRaW
Profile Blog Joined January 2010
Canada5744 Posts
May 04 2010 07:23 GMT
#20
Where do you find this BWHF? The all @Useast is funny though...
I don't need luck, luck is for noobs, good luck to you though
igotmyown
Profile Blog Joined April 2009
United States4291 Posts
May 04 2010 07:30 GMT
#21
On May 04 2010 16:23 dRaW wrote:
Where do you find this BWHF? The all @Useast is funny though...


Can TL ban you for asking for hacks?
Deleted User 47542
Profile Blog Joined May 2009
1484 Posts
Last Edited: 2010-05-04 07:35:47
May 04 2010 07:34 GMT
#22
On May 04 2010 16:30 igotmyown wrote:
Show nested quote +
On May 04 2010 16:23 dRaW wrote:
Where do you find this BWHF? The all @Useast is funny though...


Can TL ban you for asking for hacks?

BWHF = brood war hack finder, not a hack.

If you google that exactly you will get it, it's a 3rd party program that analyzes replays for hacks pretty much instantly, and can load up a black list of known hackers, etc. I used it when I used to play around on bnet but those days are long gone :x It catches multi/autogather 100% of the time, but map hack is pretty much undetectable.. [unless a newer version was released in the 1-2 years I've been off bnet]
LunarDestiny
Profile Blog Joined August 2008
United States4177 Posts
May 04 2010 07:35 GMT
#23
BWHF is a replay scanner for hacks. It can not hack and most players use it to analyze their games.

http://code.google.com/p/bwhf/
LunarDestiny
Profile Blog Joined August 2008
United States4177 Posts
May 04 2010 07:39 GMT
#24
On May 04 2010 16:12 omfghi2u2 wrote:
I think the funniest hacks are when you play the UMS game tittled, "Banning game." And when you trap them, they drophack you.

But back on topic, I remember going into a game and someone came in the game and wrote in all caps, "BAN ME? I BAN YOU" and Bnet crashed.

This allah/frost guy is all over bnet.

Ironically, I think Allah made that Banning game and with extra hack speed.
MaRiNe23
Profile Blog Joined December 2006
United States747 Posts
May 04 2010 07:44 GMT
#25
What I've always wondered is..why does he keep the same game names. Like he always makes it ALLAH@USEAST or FROST@USEAST "something@USEAST". If he really wanted to annoy people he would make the game name like "1v1 python play/obs" so that people will join or some other popular UMS. Either he's dumb or he can't adjust the game name for whatever reason and always has to add "@USEAST at the end of his game name" I dunno it was always strange for me that he would keep the same game name so that ppl can just skip over his games.
We have competitive ladder, strong community, progaming in Korea going strong, perfectly balanced game..why do we need sc2? #1 ANTI-SC2 fan
L_Master
Profile Blog Joined April 2009
United States8017 Posts
May 04 2010 07:52 GMT
#26
I dunno it was always strange for me that he would keep the same game name so that ppl can just skip over his games.


Thing is, if you even gloss over them it will make SC crash, you don't even have to try and enter. But yeah, if he gave them random "real" names it would be far more annoying that it is now, where you just have to be careful where you place your cursor.
EffOrt and Soulkey Hwaiting!
EleanorRIgby
Profile Joined March 2008
Canada3923 Posts
May 04 2010 08:00 GMT
#27
On May 04 2010 16:44 MaRiNe23 wrote:
What I've always wondered is..why does he keep the same game names. Like he always makes it ALLAH@USEAST or FROST@USEAST "something@USEAST". If he really wanted to annoy people he would make the game name like "1v1 python play/obs" so that people will join or some other popular UMS. Either he's dumb or he can't adjust the game name for whatever reason and always has to add "@USEAST at the end of his game name" I dunno it was always strange for me that he would keep the same game name so that ppl can just skip over his games.


Clearly he wants to make a name from himself as an e-villian
savior did nothing wrong
anch
Profile Blog Joined June 2006
United States5457 Posts
May 04 2010 08:10 GMT
#28
On May 04 2010 14:15 krndandaman wrote:
Show nested quote +
On May 04 2010 13:33 Amnesia wrote:
Let's get R1CH to stomp his ass


Agreed.
R1CH would make him cry for his mommy.

Show him who's the real wizard around starcraft.

would be scary as hell if R1CH is Frost's alter ego.
dum dum dum.
lgd-haze
Profile Blog Joined January 2009
Sweden547 Posts
May 04 2010 08:32 GMT
#29
Release the Krak.. R1CH!!
Flying Tushin!!
PobTheCad
Profile Blog Joined July 2006
Australia893 Posts
May 04 2010 09:49 GMT
#30
i first noticed those games on west about 1 1/2 - 2 months back
the past few weeks i noticed less of them but it may just be a time of day thing
Once again back is the incredible!
Oddysay
Profile Blog Joined October 2007
Canada597 Posts
May 04 2010 10:14 GMT
#31
blizzard are behind the hacker ! they want you to switch to sc2 !!

seriously that kinda scary people can make hack like that , battle.net security was pretty bad if you think about that .
GTR
Profile Blog Joined September 2004
51400 Posts
May 04 2010 10:16 GMT
#32
[image loading]
Commentator
infinity2k9
Profile Blog Joined January 2009
United Kingdom2397 Posts
May 04 2010 10:23 GMT
#33
On May 04 2010 16:12 omfghi2u2 wrote:
I think the funniest hacks are when you play the UMS game tittled, "Banning game." And when you trap them, they drophack you.

But back on topic, I remember going into a game and someone came in the game and wrote in all caps, "BAN ME? I BAN YOU" and Bnet crashed.

This allah/frost guy is all over bnet.


You know, there is a drophack protector. It works well and is really funny when they try it cause it warns you too or counter-drops them. One guy i had was spamming it loads of times trying to drop me and was getting really mad about it. I just use that along with BWHF and i don't tend to have much trouble with hackers thanks to it (this is on USWest).
Excel Excel
Profile Blog Joined February 2010
142 Posts
May 04 2010 10:37 GMT
#34
On May 04 2010 16:34 superbabosheki wrote:
Show nested quote +
On May 04 2010 16:30 igotmyown wrote:
On May 04 2010 16:23 dRaW wrote:
Where do you find this BWHF? The all @Useast is funny though...


Can TL ban you for asking for hacks?

BWHF = brood war hack finder, not a hack.

If you google that exactly you will get it, it's a 3rd party program that analyzes replays for hacks pretty much instantly, and can load up a black list of known hackers, etc. I used it when I used to play around on bnet but those days are long gone :x It catches multi/autogather 100% of the time, but map hack is pretty much undetectable.. [unless a newer version was released in the 1-2 years I've been off bnet]


The only undetectable hacks (map hack, resource hack) happen to be the most useful; autogather and multicommand do not really help the hacker that much in higher level games, so they can turn off the easily detectable features and still have a massive advantage.
"SCREW OBSERVERS MUST HAVE MOAR ARBITERS!!!11one1" - Famous last words
dhe95
Profile Blog Joined December 2008
United States1213 Posts
May 04 2010 11:01 GMT
#35
From Hot_Bid's R1CH quotes thread:
Sent a copy of this to hacks@blizzard, but if you catch anyone in person, direct them to this thread as this seems serious enough to warrant attention:

---------------------

There appears to be a hack circulating in SC:BW where an oversized game name is passed to bnet upon game creation. Bnet does not perform input sanitization on this value before storing it. Bnet then sends this information back to the client when the client is at the join game screen, at which point the oversized game name is added to the join game list box. When the user clicks the entry, the list box text is copied into an unchecked 128 byte buffer and a stack-based buffer overflow occurs.

On a quick glance, the return address looks possibly controllable, meaning with the right length and combination of characters, this could be exploited to execute arbitrary code on the StarCraft client.

Vulnerable code resides in battle.snp @ base + 0x237D0:

190237D0 |. 8B1D BCA20319 mov ebx,dword ptr ds:[<&USER32.SendMessa>; USER32.SendMessageA
190237D6 |. 6A 00 push 0 ; /lParam = 0
190237D8 |. 6A 00 push 0 ; |wParam = 0
190237DA |. 68 88010000 push 188 ; |Message = LB_GETCURSEL
190237DF |. 56 push esi ; |hWnd
190237E0 |. FFD3 call ebx ; \SendMessageA
190237E2 |. 83F8 FF cmp eax,-1
190237E5 |. 0F84 7D000000 je battle.19023868
190237EB |. 8D95 70FFFFFF lea edx,dword ptr ss:[ebp-90]
190237F1 |. 52 push edx ; /lParam
190237F2 |. 50 push eax ; |wParam
190237F3 |. 68 89010000 push 189 ; |Message = LB_GETTEXT
190237F8 |. 56 push esi ; |hWnd
190237F9 |. FFD3 call ebx ; \SendMessageA

As shown here, LB_GETTEXT is used to pull the string out of the listbox into edx. edx points to a stack buffer of 128 bytes. Since the string in the listbox is controlled by the attacker as no bounds checking is done on either the client or the server, a stack-based buffer overflow occurs.

My suggested immediate fix would be to limit the maximum game name / mapname and other user-controlled parameters that the battle.net server will accept as this would not require a client patch. If the user submits to bnet values of greater length than the BW client would normally allow, they can be flagged as malicious and handled accordingly. An additional suggested client-side update in the next patch would validate the game name and other parameters received from battle.net before working with them, to protect the player from 3rd party servers.

I would appreciate being informed of any updates to this issue, as if no action is taken I will make my own unofficial patch to address this bug. Thanks!


seems like R1CH already found this ages ago.
Nytefish
Profile Blog Joined December 2007
United Kingdom4282 Posts
May 04 2010 11:31 GMT
#36
^Also seems like Blizzard completely ignored him.
No I'm never serious.
TwilightStar
Profile Blog Joined August 2009
United States649 Posts
May 04 2010 12:48 GMT
#37
Holy crap, that's one of my old/good friends from east... wtf is he doing this for xD
(5)Twilight Star.scx --------- AdmiralHoth: There was one week when I didn't shave for a month.
Kentucky
Profile Joined November 2009
United States63 Posts
May 04 2010 13:44 GMT
#38
Who cares?

These people are only looking for attention and that's exactly what you give them by posting this pointless thread.

They're not clever, they're pathetic untalented unemployed retards who downloaded 1 millionth of an ounce of power over an internet game and now they're spending their time trying to annoy people because they're that desperate to get attention from someone even if it's negative attention from a stranger.

They have zero power over you, just avoid them and ignore them. Don't make their little game of annoying people fun for them by showing them how annoyed you are, just ignore it.
gumbum8
Profile Blog Joined December 2008
United States721 Posts
May 04 2010 14:05 GMT
#39
On May 04 2010 22:44 Kentucky wrote:
Who cares?

These people are only looking for attention and that's exactly what you give them by posting this pointless thread.

They're not clever, they're pathetic untalented unemployed retards who downloaded 1 millionth of an ounce of power over an internet game and now they're spending their time trying to annoy people because they're that desperate to get attention from someone even if it's negative attention from a stranger.

They have zero power over you, just avoid them and ignore them. Don't make their little game of annoying people fun for them by showing them how annoyed you are, just ignore it.


Uhm... So if he crashes everyone's computer on East, we should just ignore it and let East become a frost dessert? I'm kinda glad there was this warning, my friend only plays on East... (mac)
but really, has anyone REALLY been far even as decided to use even go want to do look more like?
Xeofreestyler
Profile Blog Joined June 2005
Belgium6768 Posts
May 04 2010 15:58 GMT
#40
I would so love it if rich would e-rape that lil scriptpunk
Graphics
rredtooth
Profile Blog Joined December 2008
5459 Posts
May 04 2010 16:14 GMT
#41
haha R1CH is like TL's big brother. "you messing with me? wait til i get big brother R1CH on you." we can't really do anything ourselves but are secure in the fact that R1CH could probably rape this kid in 5 seconds.

with that said, i hope R1CH destroys this kid too. and i hope there's a way we could watch him do it. like livestream R1CH making a game R1CH>FROST@EAST or something haha.
[formerly sponsored by the artist formerly known as Gene]
Navi
Profile Joined November 2009
5286 Posts
May 04 2010 16:28 GMT
#42
I wonder why people do shit like this.. do they find it funny? Iono, they might feel justified when people rage at them but overall its just gonna make a lot of people suffer for what will most likely be minimal entertainment.
Hey! Listen!
Shade692003
Profile Joined August 2005
Canada702 Posts
May 04 2010 16:50 GMT
#43
Being able to run arbitrary code is VERY SERIOUS. It is very possible to execute viruses from such an exploit. Pretty much the same security issue happened with warcraft 3 maps a while ago and it was a very serious threat, delaying the d2 patch developpement because Blizzard actually had to shift manpower around.
I hate the post below mine because it feels War3-ish.
arb
Profile Blog Joined April 2008
Noobville17920 Posts
May 04 2010 16:57 GMT
#44
dude sounds like a fag..
Artillery spawned from the forges of Hell
2on2
Profile Joined April 2009
United States142 Posts
May 04 2010 17:54 GMT
#45
this is such an annoyance, i started creating my own games to avoid it
zealing
Profile Blog Joined January 2009
Canada806 Posts
May 04 2010 18:07 GMT
#46
want a solution? iccup.com
Think you got lag? It took Jesus 3 days to respawn.
Ian Ian Ian
Profile Blog Joined August 2009
915 Posts
May 04 2010 18:07 GMT
#47
Yah! Sick R1CH on 'em!

Wonder if he ever did come up with a patch himself?

Hope he comments :D
link18
Profile Joined January 2010
Croatia65 Posts
May 04 2010 18:09 GMT
#48
Omg this is on Europe also.This happened to me yesterday when i created huntz 3v3.Frost @Useast and some msg or smthn like that.But so far i didnt notice any changes in my bw.
Skee
Profile Joined March 2010
Canada702 Posts
May 04 2010 18:25 GMT
#49
If this guy can own Bnet, he will be a true hacker.
Cambium
Profile Blog Joined June 2004
United States16368 Posts
Last Edited: 2010-05-04 18:25:44
May 04 2010 18:25 GMT
#50

On a quick glance, the return address looks possibly controllable, meaning with the right length and combination of characters, this could be exploited to execute arbitrary code on the StarCraft client.


I'm surprised Blizzard hasn't patched this BNET bug if this is true.

Far worse things could be done.
When you want something, all the universe conspires in helping you to achieve it.
reincremate
Profile Blog Joined May 2009
China2213 Posts
May 04 2010 18:28 GMT
#51
BW Bnet is pretty lame--no LL, tons of hackers ranging from in-game multi-command/autotrain hacks to drop/game-crashing hacks, the vast majority of players being of D-/E level skill, the difficulty of finding games or waiting for people to join compared to ICCup, the majority of 1v1 players shying away from maps other than Python, etc.

It doesn't make sense for anyone who knows about ICCup and who has a non-sucky internet connection to even bother with Bnet. (I have to play on Bnet most of the time due to inconsistently laggy shared internet, hence the ranting. Sorry for slightly off-topic post).

number1gog
Profile Blog Joined June 2007
United States1081 Posts
May 04 2010 18:31 GMT
#52
On May 04 2010 12:52 Excel Excel wrote:
A few days ago, I decided to make a game titled "Frost@USEast GTFO BNET". The very same person (Frost) then joins my game, says "U mad kid?", then crashes my SC using the lobby hack.

Yeah it's douchey, but I lol'd at this. You can't say you didn't ask for it.
5sz6sz7sz1a2a3a4a kwanrollllllled
d(O.o)a
Profile Blog Joined June 2008
Canada5066 Posts
May 04 2010 18:48 GMT
#53
On May 05 2010 03:28 reincremate wrote:
BW Bnet is pretty lame--no LL, tons of hackers ranging from in-game multi-command/autotrain hacks to drop/game-crashing hacks, the vast majority of players being of D-/E level skill, the difficulty of finding games or waiting for people to join compared to ICCup, the majority of 1v1 players shying away from maps other than Python, etc.

It doesn't make sense for anyone who knows about ICCup and who has a non-sucky internet connection to even bother with Bnet. (I have to play on Bnet most of the time due to inconsistently laggy shared internet, hence the ranting. Sorry for slightly off-topic post).



Uhh nobody on iccup plays 2v2v2v2 or 3v3 or 4v4 or UMS
Hi.
Archaic
Profile Blog Joined March 2008
United States4024 Posts
May 04 2010 18:54 GMT
#54
Just wondering, has anyone tried simply repatching SC to the current version?
d(O.o)a
Profile Blog Joined June 2008
Canada5066 Posts
May 04 2010 19:00 GMT
#55
On May 05 2010 03:54 Archaic wrote:
Just wondering, has anyone tried simply repatching SC to the current version?


What? It's an exploit in the way bnet works...
Hi.
Boundz(DarKo)
Profile Joined March 2009
5311 Posts
May 04 2010 19:02 GMT
#56
This hack is so old.

Also there is no such thing as anti-drophack unless the person using the drophack is using some exploited drophack with anti-package feature.
BalloonFight
Profile Blog Joined May 2006
United States2007 Posts
Last Edited: 2010-05-04 19:21:39
May 04 2010 19:08 GMT
#57
On May 04 2010 13:04 Pseudo_Utopia wrote:
Fucking USeast is like over 50% hackers by now, so as far as I'm concerned he's crashhacking hackers which doesn't bother me too much.


Yeah, and while we're at it, why don't we just stop policing neighborhoods with high crime rates? After all, residents are only committing crimes against other residents, right? It's just criminals attacking criminals, right?

Right?

...Right?

I wonder if there will ever, EVER be a thread with the word "hack" in it without a bunch of +1 posts saying things like "EVERYTIME I PLAY ON EAST PPL HACK LOL@"

I doubt it.

I'm waiting for someone with some technical knowledge to comment on this, since I don't know anything about this kind of thing. Hopefully R1CH can take a look, I'm sure he can figure anything out ;p

On May 05 2010 03:07 zealing wrote:
want a solution? iccup.com


I don't think this is a solution, only a way to run away. The guy could probably go on iccup and do it too, unless iccup uses a version of SC that can avoid this (don't think it does).

On May 05 2010 03:28 reincremate wrote:
It doesn't make sense for competitive players who don't play anything except 1v1 and 2v2 low moneywho knows about ICCup and who has a non-sucky internet connection to even bother with Bnet. (I have to play on Bnet most of the time due to inconsistently laggy shared internet, hence the ranting. Sorry for slightly off-topic post).


Fixed
prosatan
Profile Joined September 2009
Romania7775 Posts
May 04 2010 19:14 GMT
#58
yeahhhh!
go go R1CH BABYYY
U can make smth about this i am sure!
Lee JaeDong Fighting! The only church that illuminates is the one that burns.
GreEny K
Profile Joined February 2008
Germany7312 Posts
May 04 2010 19:18 GMT
#59
On May 04 2010 12:57 Mindcrime wrote:
Show nested quote +
On May 04 2010 12:52 Excel Excel wrote:
Creating a new Bnet account will get around this, and so will creating passworded games, but I fear that eventually Frost will begin to prevent ALL people from hosting through some manner.


that would be pretty epic tbh


Obviously it's not permanent if you can just make a new account and get back on, not sure what it is but he didn't hack your computer if that's what you're wondering.
Why would you ever choose failure, when success is an option.
BalloonFight
Profile Blog Joined May 2006
United States2007 Posts
Last Edited: 2010-05-04 19:22:53
May 04 2010 19:22 GMT
#60
On May 05 2010 04:18 GreEny K wrote:
Show nested quote +
On May 04 2010 12:57 Mindcrime wrote:
On May 04 2010 12:52 Excel Excel wrote:
Creating a new Bnet account will get around this, and so will creating passworded games, but I fear that eventually Frost will begin to prevent ALL people from hosting through some manner.


that would be pretty epic tbh


Obviously it's not permanent if you can just make a new account and get back on, not sure what it is but he didn't hack your computer if that's what you're wondering.


Read the thread. It can be used to execute arbitrary code.

On May 05 2010 04:02 Boundz(DarKo) wrote:
This hack is so old.

Also there is no such thing as anti-drophack unless the person using the drophack is using some exploited drophack with anti-package feature.


Since you are clearly in the know with your "soooo old" comment, perhaps you would care to elaborate for us Plebs?
tec27
Profile Blog Joined June 2004
United States3696 Posts
Last Edited: 2010-05-04 19:27:39
May 04 2010 19:24 GMT
#61
On May 04 2010 20:01 dhe95 wrote:
From Hot_Bid's R1CH quotes thread:
Show nested quote +
Sent a copy of this to hacks@blizzard, but if you catch anyone in person, direct them to this thread as this seems serious enough to warrant attention:

---------------------

There appears to be a hack circulating in SC:BW where an oversized game name is passed to bnet upon game creation. Bnet does not perform input sanitization on this value before storing it. Bnet then sends this information back to the client when the client is at the join game screen, at which point the oversized game name is added to the join game list box. When the user clicks the entry, the list box text is copied into an unchecked 128 byte buffer and a stack-based buffer overflow occurs.

On a quick glance, the return address looks possibly controllable, meaning with the right length and combination of characters, this could be exploited to execute arbitrary code on the StarCraft client.

Vulnerable code resides in battle.snp @ base + 0x237D0:

190237D0 |. 8B1D BCA20319 mov ebx,dword ptr ds:[<&USER32.SendMessa>; USER32.SendMessageA
190237D6 |. 6A 00 push 0 ; /lParam = 0
190237D8 |. 6A 00 push 0 ; |wParam = 0
190237DA |. 68 88010000 push 188 ; |Message = LB_GETCURSEL
190237DF |. 56 push esi ; |hWnd
190237E0 |. FFD3 call ebx ; \SendMessageA
190237E2 |. 83F8 FF cmp eax,-1
190237E5 |. 0F84 7D000000 je battle.19023868
190237EB |. 8D95 70FFFFFF lea edx,dword ptr ss:[ebp-90]
190237F1 |. 52 push edx ; /lParam
190237F2 |. 50 push eax ; |wParam
190237F3 |. 68 89010000 push 189 ; |Message = LB_GETTEXT
190237F8 |. 56 push esi ; |hWnd
190237F9 |. FFD3 call ebx ; \SendMessageA

As shown here, LB_GETTEXT is used to pull the string out of the listbox into edx. edx points to a stack buffer of 128 bytes. Since the string in the listbox is controlled by the attacker as no bounds checking is done on either the client or the server, a stack-based buffer overflow occurs.

My suggested immediate fix would be to limit the maximum game name / mapname and other user-controlled parameters that the battle.net server will accept as this would not require a client patch. If the user submits to bnet values of greater length than the BW client would normally allow, they can be flagged as malicious and handled accordingly. An additional suggested client-side update in the next patch would validate the game name and other parameters received from battle.net before working with them, to protect the player from 3rd party servers.

I would appreciate being informed of any updates to this issue, as if no action is taken I will make my own unofficial patch to address this bug. Thanks!


seems like R1CH already found this ages ago.

Thats not the same thing. This hack sends a certain amount of specific packets to a target person that results in their client crashing. It does not depend on them viewing the game in the lobby.

On May 05 2010 04:02 Boundz(DarKo) wrote:
Also there is no such thing as anti-drophack unless the person using the drophack is using some exploited drophack with anti-package feature.

There is indeed such a thing as an anti-drophack. Pretty much all drophacks rely on the fact that BW will crash or desync if sent certain malformed packets. Therefore, to develop an anti-drophack, one must simply block/handle those packets and make sure the client doesn't crash.
Can you jam with the console cowboys in cyberspace?
WaZuP
Profile Blog Joined July 2009
Germany487 Posts
May 04 2010 19:35 GMT
#62
On May 04 2010 13:33 Amnesia wrote:
Let's get R1CH to stomp his ass


this :D

luckily i just use iccup and are prevented by such thing by the AH
Kimaker
Profile Blog Joined July 2009
United States2131 Posts
May 04 2010 19:38 GMT
#63
I tried joining one of those games awhile back, and strangely, whenever I start up BW since then, nothing happens, except it reset my resolution to 600x800. I then have to reopen the game, occasionally several times, before the game actually launches.

Does anyone else have this sort of problem?
Entusman #54 (-_-) ||"Gold is for the Mistress-Silver for the Maid-Copper for the craftsman cunning in his trade. "Good!" said the Baron, sitting in his hall, But Iron — Cold Iron — is master of them all|| "Optimism is Cowardice."- Oswald Spengler
Reborn8u
Profile Blog Joined January 2010
United States1761 Posts
Last Edited: 2010-05-04 22:08:07
May 04 2010 21:29 GMT
#64
Sounds like he has a bot to spot you then an irc bot network to flood your ip with bad packets in whats called a DOS or Denial of Service attack. I've seen this before on console games like halo I actually have met people who have done this recently and they confirmed my suspicions. This is actually a felony, it's pretty sad how far people go to cheat lmao. I recommend switching your router or modems ip# afterwards. You may be able to stop this kind of attack by using your nat properly or through a proxy server, it's been around for 20 years.. basically if i have a bot attach it to some torrents, as people d/l them they get infected with this trojan. It doesn't harm the host, what it does is "check in" whenever that computer has an active internet connection to an irc bot. Once you get hundreds or thousands of these bots on computers all over the world you can have them all bombard a target ip# with bad packets or ip packets that have spoofed return addresses. Each bot is only using a tiny fraction of the computers bandwidth theve infected sp they go unnoticed by the infected. The network of the target ip gets eaten up by all the bad packets and if your modem or router get backed up enough they will reset. Basically there is so much crap clogging your connection that the good stuff can't get through fast enough. I'm going to dig up the link to a much better explanation of this, I'll post it as soon as i find it. There have been large attacks used to blackmail websites such as gambling sites, when they get enough bots they can hold a site down for days with these kind of attacks. I believe there was a bot network brought down by the FBI that numbered in the millions, the guilty were caught when they attempted to collect their ransom. This is a bit of a generalization but this should give you the gist of it. This is what it sounds like to me. For the record I HAVE NEVER DONE ANYTHING LIKE THIS, I know about it because almost 15 years ago I was a little nerd and hung out with tons of brilliant nerds and it was pretty common back then because people were so naive when it came to computers. But then I discovered breasts and fell out of the nerd loop. Nowadays so many people have anti virus that it is a bit more difficult to get huge bot networks going.
The reason i suspect this is the culprit is because you said you loose all network service, that's a major tell tail sign of this type of attack. It probably subsides pretty quick because he's simply changing targets.
:)
DreaM)XeRO
Profile Blog Joined December 2008
Korea (South)4667 Posts
May 04 2010 21:35 GMT
#65
omfg. bweast
<3
cw)minsean(ru
OPSavioR
Profile Joined March 2010
Sweden1465 Posts
May 04 2010 21:56 GMT
#66
iccup wont let that happen!
i dunno lol
Reborn8u
Profile Blog Joined January 2010
United States1761 Posts
Last Edited: 2010-05-04 22:45:27
May 04 2010 22:06 GMT
#67
This is a better description Steve Gibson describes DOS attacks
I highly recommend everyone checks out Steve Gibson's security now series, the man is extraordinarily brilliant!
Here is something that will scare the crap out of you courtesy of Steve Gibson.
video of steve gibson after his site was attacked
:)
blahman3344
Profile Blog Joined March 2009
United States2015 Posts
Last Edited: 2010-05-04 22:35:00
May 04 2010 22:25 GMT
#68
man...some guys on bnet are jsut total jerks =_=

im gonna try this and see what happens...

edit: waited about 5 minutes, nothing happened =\
I like haikus and / I can not lie. You other / brothers can't deny
L_Master
Profile Blog Joined April 2009
United States8017 Posts
May 04 2010 22:30 GMT
#69
Hmm, just went there today and didn't see any of the FROST@USEAST>YOU games. Wonder why he stopped?
EffOrt and Soulkey Hwaiting!
igotmyown
Profile Blog Joined April 2009
United States4291 Posts
May 04 2010 22:34 GMT
#70
On May 05 2010 04:22 BalloonFight wrote:
Show nested quote +
On May 05 2010 04:18 GreEny K wrote:
On May 04 2010 12:57 Mindcrime wrote:
On May 04 2010 12:52 Excel Excel wrote:
Creating a new Bnet account will get around this, and so will creating passworded games, but I fear that eventually Frost will begin to prevent ALL people from hosting through some manner.


that would be pretty epic tbh


Obviously it's not permanent if you can just make a new account and get back on, not sure what it is but he didn't hack your computer if that's what you're wondering.


Read the thread. It can be used to execute arbitrary code.


Code injection means arbitrary code using whatever SC/battle.net uses. If you use code injection into php, you get php code. I'm skeptical that you can use SC code to install arbitrary programs onto a computer.


The oh so cool hacker forum mentions something about a dlist, so they're probably adding names onto a continuously running list to either continually attack their bnet account or their internet connection. I'm going to assume the majority of their wannabe shenanigans is done by downloading this battle net packet sender and using their limited coding skills to achieve their narrow results.
Excel Excel
Profile Blog Joined February 2010
142 Posts
Last Edited: 2010-05-04 23:05:13
May 04 2010 23:04 GMT
#71
Code injection means arbitrary code using whatever SC/battle.net uses. If you use code injection into php, you get php code. I'm skeptical that you can use SC code to install arbitrary programs onto a computer.


When shit gets executed from a stack/heap/etc. in overflows, bad things happen. It is literally "arbitrary" code, as in, EVERYTHING. Php and SQL injections are much more limited than overflow exploits.

Also, I thank Reborn8u for being one of the very few people who actually read the thread .
"SCREW OBSERVERS MUST HAVE MOAR ARBITERS!!!11one1" - Famous last words
Kenpachi
Profile Blog Joined August 2009
United States9908 Posts
Last Edited: 2010-05-04 23:15:09
May 04 2010 23:10 GMT
#72
I remember this happening before. the game name was Zynastor's New Drophack!
And, that Frost might not be Frost and some random bnet spoofer. that isnt a new hack. thats been out for about 5 months and it drops everyone in lobby by spamming "____ HAS JOINED THE GAME"
Its like you flooding cept its in the Lobby. wait network connection? well fuck..
not sure why you guys think USEast is funny. Frost@USWest might not be Frost@USEast. I use to call myself Grimmjow@World because i owned all Grimmjows (and still do) except the one on iccup..
Nada's body is South Korea's greatest weapon.
Pokebunny
Profile Blog Joined June 2008
United States10654 Posts
May 04 2010 23:14 GMT
#73
I'm actually interested to see if this guy can take over all of bnet.
Semipro Terran player | Pokebunny#1710 | twitter.com/Pokebunny | twitch.tv/Pokebunny | facebook.com/PokebunnySC
Kenpachi
Profile Blog Joined August 2009
United States9908 Posts
Last Edited: 2010-05-04 23:17:50
May 04 2010 23:15 GMT
#74
On May 05 2010 08:14 Pokebunny wrote:
I'm actually interested to see if this guy can take over all of bnet.

A guy tried and got jailed man not saying any names
just thinking about him makes my heart pump.
Nada's body is South Korea's greatest weapon.
Ian Ian Ian
Profile Blog Joined August 2009
915 Posts
May 04 2010 23:28 GMT
#75
On May 05 2010 08:15 Kenpachi wrote:
Show nested quote +
On May 05 2010 08:14 Pokebunny wrote:
I'm actually interested to see if this guy can take over all of bnet.

A guy tried and got jailed man not saying any names
just thinking about him makes my heart pump.


lol what?

Also, talking about weird games. Today there's a DL ONLY: Crash RPG:Soulburn game being hosted on east. When you enter the game, all the slots are empty and you dl from nobody :o
Chairman Ray
Profile Blog Joined December 2009
United States11903 Posts
May 04 2010 23:35 GMT
#76
Yeah I have had problems with him as well. It crossed my mind that it could be Blizzard just trying to get people switched to SC2, but that's highly unlikely.
Reborn8u
Profile Blog Joined January 2010
United States1761 Posts
Last Edited: 2010-05-04 23:38:18
May 04 2010 23:37 GMT
#77
Is this worth it? This guy could be looking at 10 years in prison if he gets caught? WTF is he thinking? I just laugh at them.... your risking 10 years of your life for what? It's sad when people think they are smart for doing something like this when they in fact are abysmally retarded! The kid in that link was also forced to pay 37k in restitution, how long do you think he'll be getting his paychecks docked after he gets out to pay that? I'm sure he's gonna find a good job after a 10 year prison stay.
If you want to taunt frost try getting on Bnet after setting your computer connection up through an anonymous proxy. If his attack no longer works it is because he can no longer detect your ip. Just your proxied Ip, which will probably be some huge server he can't possibly overload. So you will be free to tell him the penalties of his actions and make him feel very smart I'm sure.
:)
tbrown47
Profile Joined August 2009
United States1235 Posts
May 05 2010 00:01 GMT
#78
Maybe Frost@USEast IS R1CH!

dun dun dunnnnnnnnn

probably not though, LoL
just here
PhailSoBaller
Profile Blog Joined July 2009
United States281 Posts
May 05 2010 00:02 GMT
#79
On May 04 2010 19:16 GTR wrote:
[image loading]


Just gonna go out and say, that card would be fucking broke if it was real. Holy shit the imbalance of that card.
Ballins a habbit i want it i grab it
Marimokkori
Profile Blog Joined October 2009
United States306 Posts
May 05 2010 00:06 GMT
#80
On May 05 2010 08:35 Chairman Ray wrote:
Yeah I have had problems with him as well. It crossed my mind that it could be Blizzard just trying to get people switched to SC2, but that's highly unlikely.


Well some people have said this has been going on for quite a while, so maybe it isn't blizzard trying to get people to sc2, although the thought reminds me of the mass mass mass starcraft / diablo 2 bans blizzard nailed people with for using programs that had been floating around b.net for years. This took place 1-2 weeks before a new WoW expansion was released.

So if it were blizzard trying to open up StarCraft 2 a bit, I think they'd just throw out mass bans again?
A little nonsense now and then is relished by the wisest men
Reborn8u
Profile Blog Joined January 2010
United States1761 Posts
May 05 2010 00:16 GMT
#81
It could be because there was a software update for Bnet that detected 3rd party software that coincided with the wow release. If its not just a Bnet disconnect and as he said in the OP, he looses his internet connection all together it is a DOS attack(Denial of Service), which is a felony and I think it is absurd to even discuss blizzard doing that!
:)
Excel Excel
Profile Blog Joined February 2010
142 Posts
May 05 2010 02:18 GMT
#82
On May 05 2010 09:02 PhailSoBaller wrote:
Show nested quote +
On May 04 2010 19:16 GTR wrote:
[image loading]


Just gonna go out and say, that card would be fucking broke if it was real. Holy shit the imbalance of that card.


"Sumonning[sic] Wizard".

LOL.
"SCREW OBSERVERS MUST HAVE MOAR ARBITERS!!!11one1" - Famous last words
NapKiN16
Profile Joined June 2009
Canada95 Posts
May 05 2010 02:46 GMT
#83
yea this hacker is gettin even worse now, basically if u host any public game on east or west now its gonna get fucked over by the hacker and mess the game up, basically can really only do private on west and east now... lameeeeeeeeeeeeeeee
ForGotteNNapKiN NapKiN[AoV]
funnybananaman
Profile Joined April 2009
United States830 Posts
May 05 2010 03:34 GMT
#84
What a bitch.. i want to see this for myself.
Hopefully this can get fixed by blizzard or SOMEONE, i'd hate to see the east and west gateways go down permanently
L_Master
Profile Blog Joined April 2009
United States8017 Posts
May 05 2010 04:07 GMT
#85
yea this hacker is gettin even worse now, basically if u host any public game on east or west now its gonna get fucked over by the hacker and mess the game up, basically can really only do private on west and east now... lameeeeeeeeeeeeeeee


I just played a few games on East and definitely wasn't experiencing this problem. Thank God. I like my battlenet for times when I just wanna goof off and not ladder seriously and just relax.
EffOrt and Soulkey Hwaiting!
Lightwip
Profile Blog Joined April 2010
United States5497 Posts
May 05 2010 04:10 GMT
#86
Who really uses bnet except for shits and giggles anyways?
If you are not Bisu, chances are I hate you.
EPO
Profile Joined August 2009
Canada341 Posts
May 05 2010 04:54 GMT
#87
On May 05 2010 13:10 Lightwip wrote:
Who really uses bnet except for shits and giggles anyways?


Well i do
XDawn
Profile Blog Joined February 2004
Canada4040 Posts
May 05 2010 05:09 GMT
#88
Can we get R1CH on this case already rofl
Use it or lose it
Not_Computer
Profile Blog Joined January 2007
Canada2277 Posts
May 05 2010 06:03 GMT
#89
On May 05 2010 13:10 Lightwip wrote:
Who really uses bnet except for shits and giggles anyways?

I use it for shits and giggles... but hackers ruin the giggles and I'm just left with shits

Though most of my gaming time is spent on EVE Online Lots of shits and giggles there
"Jaedong hyung better be ready. I'm going to order the most expensive dinner in Korea."
Excel Excel
Profile Blog Joined February 2010
142 Posts
May 05 2010 17:15 GMT
#90
On May 05 2010 13:10 Lightwip wrote:
Who really uses bnet except for shits and giggles anyways?


No one on iCCup plays UMS (observer games), Melee, FFA, or anything besides Fighting Spirit/Andromeda/Python. You also cannot host 1v1/TvB games.
"SCREW OBSERVERS MUST HAVE MOAR ARBITERS!!!11one1" - Famous last words
Reborn8u
Profile Blog Joined January 2010
United States1761 Posts
May 05 2010 17:22 GMT
#91
[image loading]
:)
Purind
Profile Blog Joined April 2004
Canada3562 Posts
May 05 2010 21:12 GMT
#92
On May 05 2010 09:02 PhailSoBaller wrote:
Show nested quote +
On May 04 2010 19:16 GTR wrote:
[image loading]


Just gonna go out and say, that card would be fucking broke if it was real. Holy shit the imbalance of that card.


It looks pretty trash to me. It requires a tribute and neither of it's effect generate advantage. The summon itself is a -1, or a +0 at best if revived through Call of the Haunted, and both of it's effects are +0. It seems like any deck that would consider running it has alternatives that can do the job better and be more consistent. I don't wanna turn this into a Yugioh thread so if you wanna discuss this further, I'll take it up in PM

Back on topic, I've noticed last night that US West was swarmed with SARAH @ BLIZZARD > U or some such. Seems like he changes the name every so often, but it's pretty obvious. It also disrupted a play/obs game I was joining. I guess it's OK as ICCUP has a pretty decent number of play/obs games, but it sucks because non ICCUP is where I fulfill my ums needs. And really, playing ums like "5v3 insane comp stomp x-peRtZ oNlY" is only fun with bnet pubs, and is kinda unfair in an environment where the likelihood of having better than D+ players is very very high
Trucy Wright is hot
LunarDestiny
Profile Blog Joined August 2008
United States4177 Posts
May 05 2010 22:09 GMT
#93
Dammit, this game name "moogle>all" does the same thing...
goswser
Profile Blog Joined May 2009
United States3519 Posts
May 05 2010 22:13 GMT
#94
hrm I played a game on useast yesterday and nothing happened, I must just have been lucky I guess. I remember when I used to play Dota a bit some guy hosted games called 1v1 Dota @ Useast or something and then when you joined there was gay porn as the picture instead of the map. These people piss me off.
say you were born into a jungle indian tribe where food was scarce...would you run around from teepee to teepee stealing meat scraps after a day lazying around doing nothing except warming urself by a fire that you didn't even make yourself? -rekrul
3FFA
Profile Blog Joined February 2010
United States3931 Posts
May 05 2010 22:25 GMT
#95
On May 06 2010 07:09 LunarDestiny wrote:
Dammit, this game name "moogle>all" does the same thing...

Lol I saw that just earlier today on battle.net(right before I saw this after months of skipping over it after thinking it was map hack or something but realized it hadn't been locked)but I didn't even join and the hack doesn't affect Macs at all ^^. Just another reason why I don't want a Windows computer.
"As long as it comes from a pure place and from a honest place, you know, you can write whatever you want."
LunarDestiny
Profile Blog Joined August 2008
United States4177 Posts
May 06 2010 00:18 GMT
#96
On May 06 2010 02:22 Reborn8u wrote:
[image loading]

6star for a 2700atk pretty good effect card. Nunchuck fuck right there.
LarJarsE
Profile Blog Joined August 2009
United States1378 Posts
May 06 2010 00:32 GMT
#97
there is a game name open called Frost@UsEast > YOU..

i clicked it and starcraft crashed completely. I could make games fine after.
since 98'
zealing
Profile Blog Joined January 2009
Canada806 Posts
May 06 2010 00:36 GMT
#98
On May 06 2010 09:32 larjarse wrote:
there is a game name open called Frost@UsEast > YOU..

i clicked it and starcraft crashed completely. I could make games fine after.


lol that just reminded of me of peter griffin and the "don't touch" button.
Think you got lag? It took Jesus 3 days to respawn.
laLAlA[uC]
Profile Blog Joined May 2009
Canada963 Posts
May 06 2010 01:54 GMT
#99
I should create a game called Frost vs Moggle vs Alalh or something and see how fast I get raped.
I'm an old man now
StorrZerg
Profile Blog Joined February 2008
United States13918 Posts
May 06 2010 02:39 GMT
#100
On May 06 2010 09:36 zealing wrote:
Show nested quote +
On May 06 2010 09:32 larjarse wrote:
there is a game name open called Frost@UsEast > YOU..

i clicked it and starcraft crashed completely. I could make games fine after.


lol that just reminded of me of peter griffin and the "don't touch" button.


lol so did i
Hwaseung Oz fan for life. Swing out, always swing out.
Excel Excel
Profile Blog Joined February 2010
142 Posts
May 06 2010 23:53 GMT
#101
I'm still getting DoS'd. Looks like this is gonna last until his bot gets nuked.
"SCREW OBSERVERS MUST HAVE MOAR ARBITERS!!!11one1" - Famous last words
heaven-
Profile Joined February 2010
United States361 Posts
May 07 2010 00:19 GMT
#102
As the words of the all wise Katt Williams... "You Shouldnt have been talking shit"
The road to success is dotted with many tempting parking places.
SoManyDeadLings
Profile Blog Joined April 2010
Canada255 Posts
May 07 2010 01:49 GMT
#103
The fact is, as long as the hacker doesn't make it too obvious, maphack is 100% undetectable on bnet.

So BWHF and wDectector are completely useless in that regard.

Just play on iccup.
wsrgry
AmIGoingToGetBanned
Profile Joined May 2010
United States19 Posts
Last Edited: 2010-05-07 02:31:22
May 07 2010 02:26 GMT
#104
Lol this fucker is going down I am disconnecting my comp from the internet the moment I click on that game. Bitch it's a fucking show down.

Will post results, also will taunt him with my own games, let's see how this goes. Awwww he isn't on I guess I'll just wait in the room and dc my internet in case an internet thug comes in and does what he did to OP.

[image loading]
Allah
Profile Joined May 2010
United States1 Post
May 07 2010 02:52 GMT
#105
@AmIGoingToGetBanned: Your game doesn't exist. East or west.

To clarify some of the misconceptions about this hack, please view the following post:

http://www.gamethreat.net/forums/starcraft-hacking-related/42784-allahs-genocide-video-4.html#post741823
DERKA DERKA MOHAMMED JIHAD
Excel Excel
Profile Blog Joined February 2010
142 Posts
May 07 2010 03:42 GMT
#106
On May 07 2010 11:52 Allah wrote:
@AmIGoingToGetBanned: Your game doesn't exist. East or west.

To clarify some of the misconceptions about this hack, please view the following post:

http://www.gamethreat.net/forums/starcraft-hacking-related/42784-allahs-genocide-video-4.html#post741823


I should clear something up here:
-I acknowledged in the OP that my disconnections are not directly caused by the dropgames. In fact, I never mentioned the scenario as being caused by the dropgames.

The real problem here is that this Frost script kiddie somehow found a way to "blacklist" people from bnet. He DoS's anyone on his blacklist who makes a game. It looks for the game creator data and performs the attack if it matches a blacklist entry, presumably.

Sad to see that Allah was banned instantly, would be interesting to see if he claims affiliation with other droppers or not.
"SCREW OBSERVERS MUST HAVE MOAR ARBITERS!!!11one1" - Famous last words
3FFA
Profile Blog Joined February 2010
United States3931 Posts
Last Edited: 2010-08-01 19:24:02
August 01 2010 16:51 GMT
#107
Sorry to bump but I found out which channel Frost Goes to if it matters at all.
Its op SCT/clan A14 a lot of people there know him.
"As long as it comes from a pure place and from a honest place, you know, you can write whatever you want."
OhThatDang
Profile Joined August 2004
United States4685 Posts
August 01 2010 17:36 GMT
#108
Aha I think its better not knowing what channel he comes from regardleSs if you're gonna provoke him or not...run awayyy
troi oi thang map nai!!!
ReiKo
Profile Blog Joined September 2007
Croatia1023 Posts
August 01 2010 18:21 GMT
#109
Okay people, as I really don't like these so called "Battle.Net hackers". As for me, I have years of experience with computer networks as I work with company that has strict requirements about that sort of stuff.

Anyways, when I seen this post I did leave my SC2 for a bit to investigate this whole issue for a moment. But as I noticed that some people got nailed by this "hacker", I did prepare myself for this close encounter. Basically all I did was change my IP via proxy, firewalled my self in with Windows + another firewall (not Zone Alarm if anyone was curious ) and blocked all unnecessary ports (did leave ones for StarCraft Battle.Net, web browser and etc - all other things went close and would not open without my confirmation.

I made new account on US East SC1 server because I forgot my old one. I did search for games that had that name or similar but couldn't find any. After that I made game which said "Allah and discers FU". Waited for 15 minutes and noone showed up.

Called it a day and went next day into action but this time in different time as this "Frozen" maybe is not online or his bot is not active on certain times when most of USA people sleep. This time I got lucky, first after 5 minutes some guy pop's up but then he just went out like he was a spy or something or is just scared but anyways, 3-4 minutes after that guy named FFriends (maybe like Frost's Friends/friend or whatever). He asked me if I want to be droped, I responded by "Yeah man, pretty please". After that he just said: "wait a sec sucker", I waited for 5 more minutes with him in room waiting but nothing happened. After that he just went out of the game. I don't know if this was just someone pulling a prank or it was a real guy but I will try until I find that infamous "Frost" guy you were talking about.
muse5187
Profile Blog Joined September 2009
1125 Posts
August 01 2010 18:55 GMT
#110
it's not a ddos attack lol. its called astat attack and it forces you to do /stats on him until you are temp banned for flooding.
SaRa.Hybrid
Profile Joined August 2010
United States1 Post
August 04 2010 00:53 GMT
#111
I Know This Guy.Hes The One That Stole My Friend`s SC2 Key.I Hope He Dies.
IM THE ANNOYINEST MAN(kid 9 year old)THATS GONNA USE ALL THE HACKS 1 BYE 1 INTILL I CAN DO SOMETHING ABOUT HIM!!!!WE NEED PEACE WHOS WITH ME!!!!!!(eVERYONE)YAAAAAAAA!!!!!!!!!!!!!!!!!!!!!!LET KILL THAT BITCH!!!!

User was banned for this post.
Hi Im SaRa. I Have Both Starcraft I, BW, And Starcraft II.
3FFA
Profile Blog Joined February 2010
United States3931 Posts
August 10 2010 02:31 GMT
#112
4 days ago my computer got hacked and I realized I hadn't had much anti-virus stuff so now I got norton and symantec on it. Maybe I really shouldn't have made like 20 games with the name "FROST@USEAST=GAY"
"As long as it comes from a pure place and from a honest place, you know, you can write whatever you want."
muse5187
Profile Blog Joined September 2009
1125 Posts
August 10 2010 15:24 GMT
#113
On August 10 2010 11:31 3FFA wrote:
4 days ago my computer got hacked and I realized I hadn't had much anti-virus stuff so now I got norton and symantec on it. Maybe I really shouldn't have made like 20 games with the name "FROST@USEAST=GAY"


Yeah those two will protect you! Go use avast or kaspersky. I also doubt some kid that uses other peoples .dll's hacked you.
trackd00r
Profile Blog Joined November 2009
Chile284 Posts
August 10 2010 17:59 GMT
#114
I saw this some weeks ago @ East.
I don't really remember if I joined of of those games, but I can remember that I would lose connection every 5 minutes after I rejoin B.net. It was around the same days I saw those hosts, I clicked on them but never joined though

Once I remember hack where a long game name was too longs and that would make the game crash to the main screen :S, even if you click it and don't join :/
''They put signs, but I can't read''
funnybananaman
Profile Joined April 2009
United States830 Posts
August 31 2010 18:57 GMT
#115
On east right now and apparently he's still at it -_-
although my starcraft doesn't crash from his games, just if i try to join it says "unable to join selected game" and the map info is blank. Maybe cause i have a mac and his hack isn't compatible or some shit? haha
PrincessLeila
Profile Joined October 2004
France170 Posts
August 31 2010 19:17 GMT
#116
On August 02 2010 03:21 ReiKo wrote:
Okay people, as I really don't like these so called "Battle.Net hackers". As for me, I have years of experience with computer networks as I work with company that has strict requirements about that sort of stuff.

Anyways, when I seen this post I did leave my SC2 for a bit to investigate this whole issue for a moment. But as I noticed that some people got nailed by this "hacker", I did prepare myself for this close encounter. Basically all I did was change my IP via proxy, firewalled my self in with Windows + another firewall (not Zone Alarm if anyone was curious ) and blocked all unnecessary ports (did leave ones for StarCraft Battle.Net, web browser and etc - all other things went close and would not open without my confirmation.


AFAIK, it's a buffer overflow attack. The name is too long for its buffer, and it can :
- crash your Starcraft process
- let some arbitrary machine code run on your PC (= bad)

Changing your IP and blocking ports with firewall will do nothing... I think running SC in a sandbox is the only way to be safe.

I could be wrong though...
TriniMasta
Profile Joined December 2009
United States1323 Posts
August 31 2010 19:59 GMT
#117
On August 02 2010 01:51 3FFA wrote:
Sorry to bump but I found out which channel Frost Goes to if it matters at all.
Its op SCT/clan A14 a lot of people there know him.

Fail bump is obviously fail. And this helps the OP (if he still even reads this) how?

User was temp banned for this post.
정명훈 FIGHTING!!! Play both T and P.
vOddy
Profile Joined July 2009
Sweden402 Posts
August 31 2010 20:03 GMT
#118
Just hosted a game named Frost/Allah SUCKS ASS

=)
"You generate awesomeness. It just flows from you."
Sarcean
Profile Joined June 2010
United States18 Posts
August 31 2010 20:52 GMT
#119
Just saw a game named "Frost@USEast > You 2.0", caused the Blizzard opening scenario to start up and closes the games list if you highlight it on the list. It will then cause a fatal error when attempting to join another game, you must restart StarCraft to be able to join games. Don't know if it's been posted, thought I'd let it be known either way.
Ocular
Profile Joined August 2010
Canada141 Posts
August 31 2010 21:03 GMT
#120
What's USEast?? Lol.
In the land of make believe you are mine, in the land of make believe I'm doing fine...
-xpeh-
Profile Joined July 2009
Ukraine86 Posts
Last Edited: 2010-08-31 22:09:34
August 31 2010 21:50 GMT
#121
Where can i download this lobby hack? Just as proof of concept..
prosatan
Profile Joined September 2009
Romania7775 Posts
August 31 2010 21:55 GMT
#122
On September 01 2010 05:52 Sarcean wrote:
Just saw a game named "Frost@USEast > You 2.0", caused the Blizzard opening scenario to start up and closes the games list if you highlight it on the list. It will then cause a fatal error when attempting to join another game, you must restart StarCraft to be able to join games. Don't know if it's been posted, thought I'd let it be known either way.

i saw that either!!
it shows that blue blizzard screen and i have to exit sc
strange
Lee JaeDong Fighting! The only church that illuminates is the one that burns.
Headlines
Profile Blog Joined April 2007
United States482 Posts
September 01 2010 01:20 GMT
#123
Do you guys believe that this guy might secretly be employed by Blizzard to do their dirty work for them? Is it strange that this sort of hack hasn't been as common until Starcraft 2?
A14[LinK]
Profile Joined March 2011
United States1 Post
March 06 2011 08:44 GMT
#124
Hello all,
I am the founder of Clan A14. I have just recently come across this thread and noticed some talk about this Frost@useast nooB AKA- skeptic@useast being from my clan... Well I assure you he is not.. I have monitored him for quite some time and have found him to be nothing more than your standard ddos punk... Your connectiOns are safe... Unplug your router for 24 hrs and let your IP reset or do it through your ISP... and the ddos attack will end.. This poor lifeless child has nothing better to do I suppose.. But nevertheless , if he messes with you just load his channel for about 24 hours like I did and he will stop... Hope you read this Frost, I would love to see you again!
Sorry to bump, just wanted to clear A14's name of such child play.
Born to fight.. Trained to kill.. Ready to die.. But never will!
2Pacalypse-
Profile Joined October 2006
Croatia9489 Posts
March 06 2011 10:24 GMT
#125
ahhh Bnet... the number one source for entertainment!
Moderator"We're a community of geniuses because we've found how to extract 95% of the feeling of doing something amazing without actually doing anything." - Chill
B.I.G.
Profile Blog Joined August 2010
3251 Posts
March 06 2011 10:59 GMT
#126
that guy frost sounds to me like a 40 year old virgin
a7choi
Profile Joined January 2011
United States1664 Posts
March 06 2011 11:59 GMT
#127
this is why everyone should play on iccup
Black[CAT]
Profile Blog Joined July 2010
Malaysia2589 Posts
March 06 2011 12:03 GMT
#128
I'd pound him to the ground and destory his computers if I found his location. Pussy.
You mean ESPORTS isnt a synonym for SC2? ¯\_(ツ)_/¯ -Proud owner of a Filco Majestouch 2 with Cherry Blue Switches- BW or SC2? Why not both?
gryffindor
Profile Joined November 2009
United States524 Posts
March 06 2011 12:04 GMT
#129
Is that bump worth it?
i got blisters on me fingers
Sawamura
Profile Blog Joined August 2010
Malaysia7602 Posts
March 06 2011 15:48 GMT
#130
*nuclear launch detected at frost home yes ?
BW/KT Forever R.I.P KT.Violet dearly missed ..
LightningStrike
Profile Joined February 2011
United States14276 Posts
March 06 2011 15:59 GMT
#131
I think forst is gone to be honest with you or he just stop making games but either way he was annoying with his hacks and i feel sorry for the opening poster losing the ability to host for a while but still forst is a person who just wants attention that's all :\
May the next light shine/Former #1 Alliance LoL fan/ Current Teamliquid LoL Fan
Taekwon
Profile Joined May 2010
United States8155 Posts
Last Edited: 2011-03-06 16:18:06
March 06 2011 16:17 GMT
#132
...Do people still play Bnet?
lol jk, watch out guys
▲ ▲ ▲
Sicktanick
Profile Joined September 2010
Sweden40 Posts
March 06 2011 17:20 GMT
#133
On March 07 2011 01:17 Taekwon wrote:
...Do people still play Bnet?
lol jk, watch out guys

Im only on there to play 2v2v2v2 BGH + Asia is more active then iccup
2Pacalypse-
Profile Joined October 2006
Croatia9489 Posts
March 06 2011 17:38 GMT
#134
On March 07 2011 01:17 Taekwon wrote:
...Do people still play Bnet?
lol jk, watch out guys

BGH is where it's at... Holla!
Moderator"We're a community of geniuses because we've found how to extract 95% of the feeling of doing something amazing without actually doing anything." - Chill
SolaR-
Profile Blog Joined February 2004
United States2685 Posts
March 06 2011 17:46 GMT
#135
I'm going to find him and then I'm going to eat him.
Normal
Please log in or register to reply.
Live Events Refresh
Online Event
04:00
May Mayhem: Playoffs
Clem vs ShoWTimE
herO vs MaxPax
Liquipedia
[ Submit Event ]
Live Streams
Refresh
StarCraft 2
RuFF_SC2 240
PattyMac 19
StarCraft: Brood War
Leta 524
Noble 257
Sharp 95
NaDa 83
Icarus 8
Dota 2
monkeys_forever702
NeuroSwarm143
League of Legends
JimRising 617
Counter-Strike
Stewie2K116
Super Smash Bros
Mew2King1214
Other Games
summit1g9696
WinterStarcraft532
ViBE206
Sick86
Trikslyr80
Organizations
Other Games
gamesdonequick811
StarCraft 2
ESL.tv145
Blizzard YouTube
StarCraft: Brood War
BSLTrovo
sctven
[ Show 13 non-featured ]
StarCraft 2
• practicex 48
• davetesta33
• AfreecaTV YouTube
• intothetv
• Kozan
• IndyKCrew
• LaughNgamezSOOP
• Migwel
• sooper7s
StarCraft: Brood War
• BSLYoutube
• STPLYoutube
• ZZZeroYoutube
Dota 2
• Ler50
Upcoming Events
GSL Qualifier
4h 15m
Sparkling Tuna Cup
5h 45m
WardiTV Invitational
6h 45m
Percival vs TriGGeR
ByuN vs Solar
Clem vs Spirit
MaxPax vs Jumy
Anonymous
9h 45m
BSL Season 20
10h 45m
TerrOr vs HBO
Tarson vs Spine
RSL Revival
12h 45m
BSL Season 20
13h 45m
MadiNho vs dxtr13
Gypsy vs Dark
Wardi Open
1d 6h
Monday Night Weeklies
1d 11h
Replay Cast
2 days
[ Show More ]
The PondCast
3 days
Replay Cast
3 days
Replay Cast
4 days
Road to EWC
5 days
SC Evo League
6 days
Road to EWC
6 days
Liquipedia Results

Completed

Proleague 2025-05-14
2025 GSL S1
Calamity Stars S2

Ongoing

JPL Season 2
ASL Season 19
YSL S1
BSL 2v2 Season 3
BSL Season 20
China & Korea Top Challenge
KCM Race Survival 2025 Season 2
NPSL S3
Heroes 10 EU
PGL Astana 2025
Asian Champions League '25
ECL Season 49: Europe
BLAST Rivals Spring 2025
MESA Nomadic Masters
CCT Season 2 Global Finals
IEM Melbourne 2025
YaLLa Compass Qatar 2025
PGL Bucharest 2025
BLAST Open Spring 2025
ESL Pro League S21

Upcoming

Rose Open S1
CSLPRO Last Chance 2025
CSLAN 2025
K-Championship
Esports World Cup 2025
HSC XXVII
Championship of Russia 2025
Bellum Gens Elite Stara Zagora 2025
2025 GSL S2
DreamHack Dallas 2025
IEM Cologne 2025
FISSURE Playground #1
BLAST.tv Austin Major 2025
ESL Impact League Season 7
IEM Dallas 2025
TLPD

1. ByuN
2. TY
3. Dark
4. Solar
5. Stats
6. Nerchio
7. sOs
8. soO
9. INnoVation
10. Elazer
1. Rain
2. Flash
3. EffOrt
4. Last
5. Bisu
6. Soulkey
7. Mini
8. Sharp
Sidebar Settings...

Advertising | Privacy Policy | Terms Of Use | Contact Us

Original banner artwork: Jim Warren
The contents of this webpage are copyright © 2025 TLnet. All Rights Reserved.