Register for your free account! | Forgot your password?

Go Back   elitepvpers > MMORPGs > Cabal Online > Cabal Guides & Templates
You last visited: Today at 14:36

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



[Release] Wallhack method all Client / find Maparea pointer

Discussion on [Release] Wallhack method all Client / find Maparea pointer within the Cabal Guides & Templates forum part of the Cabal Online category.

Reply
 
Old   #1
 
Wayntressierts's Avatar
 
elite*gold: 0
Join Date: Feb 2012
Posts: 424
Received Thanks: 421
[Release] Wallhack method all Client / find Maparea pointer

For all the people who asked for it,this is my wallhack method.

This method describes how you can find out the maparea adress and pointer for your client. Its working on all clients I know and play including official servers and Mystery Cabal.


This is it step by step:

1.
Enter the Map ****** Ice

2.
Scan "Array of Bytes":

01 00 00 00 01 00 00 00 01 00 00 00 01 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 07 00 00 00 06 00 00 00 06 00 00 00 06 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 07 00 00 00 01 00 00 00 01 00 00 00 01 00 00 00 01 00 00 00 01 00 00 00 01 00 00 00

This search matrix is complex enough to bring up only one result.

3.
Take this adress and subtract 0x42804.
This should result in an adress like 0x0???020.
This is your Maparea adress. It's changing every time the client is run.

4.
Now do a 4-Byte scan for this adress.
Cheatengine will find one green pointer for this.


btw:If you are using DE/EU Fixedmain without gameguard from our sticky thread the pointer is fixedmain.exe+C7BF80


How to wallhack:
After 0x40000 bytes of map data and visual elements you'll find another 0x40000 bytes of collision map. If you clear the complete collision map (fill with zeros) you'll have a perfectly nice wallhack that gameguard does not detect.


Enjoy..


And good to see you all still around here ;-)
Wayntressierts is offline  
Thanks
77 Users
Old 09/03/2012, 01:06   #2
 
~MooSe~'s Avatar
 
elite*gold: 0
Join Date: Mar 2012
Posts: 151
Received Thanks: 13
gonna test it now and see if it work
~MooSe~ is offline  
Old 09/03/2012, 01:20   #3
 
bartbilf's Avatar
 
elite*gold: 10
Join Date: May 2008
Posts: 1,803
Received Thanks: 1,946
People who want to learn will be very happy with this. It will get more views in the release section, but it is actualy a guide for the guide section.
bartbilf is offline  
Thanks
2 Users
Old 09/03/2012, 02:17   #4



 
Acid's Avatar
 
elite*gold: 6851
The Black Market: 186/0/0
Join Date: Oct 2008
Posts: 52,122
Received Thanks: 11,067
Arrow Cabal Hacks, Bots, Cheats, Exploits & Macros -> Cabal Guides & Templates

#moved

Worth to be sticked.
Acid is offline  
Old 09/03/2012, 03:08   #5
 
1h3gam3v1ru5's Avatar
 
elite*gold: 0
Join Date: Jul 2010
Posts: 99
Received Thanks: 47
this is great. I have been trying to figure this out ever since the mcl method was patched

thanks
1h3gam3v1ru5 is offline  
Thanks
1 User
Old 09/03/2012, 08:24   #6
 
elite*gold: 0
Join Date: Jan 2009
Posts: 175
Received Thanks: 17
Quote:
Originally Posted by Wayntressierts View Post
How to wallhack:
After 0x40000 bytes of map data and visual elements you'll find another 0x40000 bytes of collision map. If you clear the complete collision map (fill with zeros) you'll have a perfectly nice wallhack that gameguard does not detect.
Sorry I don't really get this part..
nawkaz is offline  
Old 09/03/2012, 10:22   #7
 
Wayntressierts's Avatar
 
elite*gold: 0
Join Date: Feb 2012
Posts: 424
Received Thanks: 421
Quote:
Originally Posted by nawkaz View Post
Sorry I don't really get this part..
I will leave this for yourself to find out, but I can give you a hint:
Try: Browse Memory Region.
If you see this I'm sure you will know what to do

In case this is not enought I will post you a Auto-It code from my bots if i'm back home today
Wayntressierts is offline  
Thanks
2 Users
Old 09/03/2012, 12:44   #8
 
rhizzu's Avatar
 
elite*gold: 0
Join Date: Dec 2008
Posts: 246
Received Thanks: 923
good guide.
rhizzu is offline  
Old 09/03/2012, 13:14   #9
 
genesisVI's Avatar
 
elite*gold: 0
Join Date: Jul 2011
Posts: 796
Received Thanks: 434
Quote:
Originally Posted by Wayntressierts View Post
I will leave this for yourself to find out, but I can give you a hint:
Try: Browse Memory Region.
If you see this I'm sure you will know what to do

In case this is not enought I will post you a Auto-It code from my bots if i'm back home today
oh u use auto-it

pls post the code
genesisVI is offline  
Old 09/03/2012, 14:56   #10
 
Wayntressierts's Avatar
 
elite*gold: 0
Join Date: Feb 2012
Posts: 424
Received Thanks: 421
Quote:
Originally Posted by genesisVI View Post
oh u use auto-it

pls post the code
Why farm Dungeons yourself when you can AutoIt them while you sleep ?

Ok as promised here are two examples of how to use it.
One is a LUA Script Function for our Cheatengine users.
Create a little GUI with a Wallhack-button and assign my function.
Next is an AutoIt example for the people who prefer to script all kinds of stuff instead of playing themself.

The pointers in these examples are for Cabal EU/DE/IT/.. (cabalonline.com)
Feel free to adjust them to your Client.

LUA Script
for wallhacking with Cheatengine
Code:
function WallhackClick(sender)
  start=readInteger("fixedmain.exe+C7BF80")+0x40814
  for i=0,0x3ffff,4 do
    writeBytes(start+i,0)
  end
end

AutoIt Code
for scripts and bots
ofcourse this requires NomadMemory.au3 Plugin.

Code:
SetPrivilege("SeDebugPrivilege", 1)
#include <NomadMemory.au3>
Global $PID = ProcessExists('fixedmain.exe')
Global $proc=_MemoryOpen($PID)
Global $cabalmain = _MemoryModuleGetBaseAddress($PID,"fixedmain.exe")

(...)

Func _setwallhack()
   $wh=_MemoryRead($cabalmain+0xC7BF80,$proc,"DWORD")+0x40814;
   $test=_MemoryRead($wh,$proc,"DWORD")
   For $i=$wh to $wh+0x3ffff step 4
   	  _MemoryWrite($i,$proc,0,"DWORD")
   Next
EndFunc
I will not answer LUA-Script or AutoIt related questions.
Take this as proof of concept and feel free to play with it.


So guys enjoy your new toys, create nice hacks and bots
... enough spoonfeeding for today

Remember: whenever you leave the map or enter a dungeon, the collision map is back to normal. So no more WH until you re-apply.



I always wanted to post this smily..
Wayntressierts is offline  
Thanks
23 Users
Old 09/03/2012, 17:23   #11
 
elite*gold: 0
Join Date: Jan 2009
Posts: 175
Received Thanks: 17
Quote:
Originally Posted by Wayntressierts View Post
LUA Script
for wallhacking with Cheatengine
Code:
function WallhackClick(sender)
  start=readInteger("fixedmain.exe+C7BF80")+0x40814
  for i=0,0x3ffff,4 do
    writeBytes(start+i,0)
  end
end
So "fixedmain.exe+C7BF80" is the pointer address right? And "0x40814" is the green pointer address that we found after the 4bytes scan?
nawkaz is offline  
Old 09/03/2012, 18:44   #12
 
Wayntressierts's Avatar
 
elite*gold: 0
Join Date: Feb 2012
Posts: 424
Received Thanks: 421
Quote:
Originally Posted by nawkaz View Post
So "fixedmain.exe+C7BF80" is the pointer address right? And "0x40814" is the green pointer address that we found after the 4bytes scan?
Double click the green pointer to add it to your cheattable.
If you double click the adress Cheatengine resolves it as "cabalmain.exe+cXXXXX" or "fixedmain.exe+xxxxxx".
This is a little more elegant than using the plain adress...

0x40814 stays constant. It an offset to get from the maparea adress to the collision map. You do not want to remove the trees and the mountans, you want to remove the collisions..
Wayntressierts is offline  
Thanks
5 Users
Old 09/03/2012, 19:57   #13
 
elite*gold: 0
Join Date: Jan 2009
Posts: 175
Received Thanks: 17
Super thanks!
Manage to get it to work
nawkaz is offline  
Old 09/04/2012, 01:04   #14
 
genesisVI's Avatar
 
elite*gold: 0
Join Date: Jul 2011
Posts: 796
Received Thanks: 434
Quote:
Originally Posted by Wayntressierts View Post
Why farm Dungeons yourself when you can AutoIt them while you sleep ?

Ok as promised here are two examples of how to use it.
One is a LUA Script Function for our Cheatengine users.
Create a little GUI with a Wallhack-button and assign my function.
Next is an AutoIt example for the people who prefer to script all kinds of stuff instead of playing themself.

The pointers in these examples are for Cabal EU/DE/IT/.. (cabalonline.com)
Feel free to adjust them to your Client.

LUA Script
for wallhacking with Cheatengine
Code:
function WallhackClick(sender)
  start=readInteger("fixedmain.exe+C7BF80")+0x40814
  for i=0,0x3ffff,4 do
    writeBytes(start+i,0)
  end
end

AutoIt Code
for scripts and bots
ofcourse this requires NomadMemory.au3 Plugin.

Code:
SetPrivilege("SeDebugPrivilege", 1)
#include <NomadMemory.au3>
Global $PID = ProcessExists('fixedmain.exe')
Global $proc=_MemoryOpen($PID)
Global $cabalmain = _MemoryModuleGetBaseAddress($PID,"fixedmain.exe")

(...)

Func _setwallhack()
   $wh=_MemoryRead($cabalmain+0xC7BF80,$proc,"DWORD")+0x40814;
   $test=_MemoryRead($wh,$proc,"DWORD")
   For $i=$wh to $wh+0x3ffff step 4
   	  _MemoryWrite($i,$proc,0,"DWORD")
   Next
EndFunc
I will not answer LUA-Script or AutoIt related questions.
Take this as proof of concept and feel free to play with it.


So guys enjoy your new toys, create nice hacks and bots
... enough spoonfeeding for today

Remember: whenever you leave the map or enter a dungeon, the collision map is back to normal. So no more WH until you re-apply.



I always wanted to post this smily..

tnx mate my life is easier w/ autoit
genesisVI is offline  
Old 09/04/2012, 02:50   #15
 
elite*gold: 0
Join Date: Mar 2008
Posts: 21
Received Thanks: 2
tnx 4 this wonderful post sir,,^_^
ANTEC15 is offline  
Reply


Similar Threads Similar Threads
Release New Method of [Lock N Load + SmartzWHZ Wallhack] RELEASE FREE!!
09/22/2011 - Soldier Front Philippines - 12 Replies
#removed
Release New Method of Wallhack Bypasser by sQuare02 [No Need ISO Method]
08/05/2010 - Soldier Front Philippines - 5 Replies
100% Working sa Window XP Wallhack pero FREE.. Nakuha ko lng to sa ka shop ko at eto yung gamit nya na wall... and it's 100% working in PSF... Ito ang ginagamit nmin ngayon sa cafe.. Eto nga pala yng Download Link.. sQuare02 Wallhack Bypasser.rar sQuare02 Wallhack Bypasser.rar sQuare02 Wallhack Bypasser.rar Eto rin yng Proof..



All times are GMT +2. The time now is 14:36.


Powered by vBulletin®
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2024 elitepvpers All Rights Reserved.