Posts: 331
Threads: 84
Joined: Feb 2015
Reputation:
0
Hi! I have a samp server who's working on mysql and few days ago i saw new admins on my server. I don't know how, in my GM i don't have any commands to give admin. I verrified pAdmin] on the entire script. Even though he doesn't know /makeadmin command he removed me from the admins. How ? I don't have any user panel or something for sql injection. It is so weird. Please help !
Some ideas?
Posts: 889
Threads: 4
Joined: Mar 2013
Reputation:
0
Let me guess: you are using a downloaded and/or leaked gamemode that contains a backdoor.
Posts: 724
Threads: 14
Joined: Jul 2012
Reputation:
0
Maybe, uh, I don't know, check logs?
If you don't log commands, then there's your starting point.
Posts: 331
Threads: 84
Joined: Feb 2015
Reputation:
0
[QUOTE=rymax99;3621185]Learning how to read would be a solid start.
So.. can you help me? Tell me where are these logs... I checked server_logts and mysql_logs but you can't understand this. I don't see anything about these errors.
I am not english, i don't want a prize for that... All that matters is that you can understand me..
Posts: 6,242
Threads: 8
Joined: Jun 2008
Question is, which EDIT of Vortex are you actually using... Because really, if you've got a Vortex EDIT, then someone has tampered with it.
First things I'd do is change my passwords for everything, and then wipe out whatever "admins" have been made on the server.
The logs he'll be talking about will be the server.log, and the log file that has the commands in it.
Posts: 85
Threads: 3
Joined: Nov 2011
Reputation:
0
As Sew_Sumi said Clean out your database delete whoever is an admin on your server. Change all your passwords for database, rcon etc...
Posts: 198
Threads: 41
Joined: Aug 2013
Reputation:
0
Which edit/version are you using the your gamemode?
And it sounds like, your mysql server was hacked, or there is a command to give yourself power.
Have you changed the RCON password?
Posts: 6,242
Threads: 8
Joined: Jun 2008
Link us to the gamemode if it's on the forum, if it's on another site, it's likely to be compromised.
Posts: 331
Threads: 84
Joined: Feb 2015
Reputation:
0
It was from that menu. /changepass.. There i didn't use mysql_escape_string and that was SQL INJECTION.
Posts: 6,129
Threads: 36
Joined: Jan 2009
Oh god who ruined my gamemode with that stupid code? Which edit are you using? Did you remove Whirlpool?