Sending Packets

12/08/2010 18:13 No0oB#151
i creatd a little page to show u what i mean ^^
its just an testpage to show you...
the page should look much better... and the tables too xD

atm u can add testdata to the pw int table (but not remove it ^^")

link: [Only registered and activated users can see links. Click Here To Register...]
12/08/2010 19:57 BuBucekTop#152
maybe some wiki-style ? free trak hosting, imho, will be the best solution..
12/09/2010 13:40 Interest07#153
This does look like a pretty cool idea. I can prolly host it.
12/09/2010 15:43 blackmorpheus#154
Hmm i'm putting a breakpoint on 62f320, but it doesn't seem to get called at all.
Could it perhaps be 60e310 ? That's showing exactly the stuff..
12/09/2010 16:22 Interest07#155
Yeah its been 0x60E310 on PWI for quite a while
12/09/2010 17:28 blackmorpheus#156
Thanks, this is how i fixed it with a bit of c++ and asm,which seems much faster/shorter than your code :P

Do you have an idea on how to get all the id's from mobs/items/players in a player's area?

Also i could write a C++ version of the encrypt function if you like, you could make a stand-alone bot then :D

PHP Code:
char buffer[32];
DWORD sendFunction = 0x60e310;
DWORD *base0 = (DWORD *)0xa5b90c;

void SendPacket(char * pkt, int len)
{    
    
DWORD ptr2 = *(DWORD *)(*(DWORD *)0xa5b90c + 0x20);    
    
__asm{
        
push len
        push pkt
        mov ecx
,ptr2
        call sendFunction
    
}    
}

void AttackTarget()
{
    const 
int len = 3;
    
buffer[0] = 3;
    
buffer[1] = 0;
    
buffer[2] = 0;
    
SendPacket(buffer, len);
}

void DropGold(int amount)
{    
    
int am = amount;
    const 
int len = 6;
    
buffer[0] = 0x14;
    
buffer[1] = 0x00;
    
memcpy(buffer + 2,&am,4);    
    
SendPacket(buffer,len);    
} 
12/10/2010 15:32 louco89#157
Tanks for this Interest07, i'm trying to convert autoit to delphi, when i done some work i post here :D


Example:

12/12/2010 02:24 penipu81#158
in this function : Func pickUpItem($uniqueItemId, $itemTypeId, $pid)
how to find id $uniqueItemId ?
12/12/2010 14:39 SunB#159
After using some action object, things work perfectly but after using about 4-5 times, the game client becomes not responding. Any recommendation for that? :(
12/14/2010 06:14 ericthow#160
do you have perfect world - legend of mermaid bot? (my-en) please give me.. please~~
12/15/2010 16:42 maniack88#161
hi interest07, how do i find packet for
  • toggle fly
  • fly until certain altitude
  • go to location

all the packet i believe its available from your fly wq, but it quite different from this send packet.. appreciate if you could make a function for those action.. thx in advance:mofo:
12/16/2010 14:18 Interest07#162
Quote:
Originally Posted by maniack88 View Post
hi interest07, how do i find packet for
  • toggle fly
  • fly until certain altitude
  • go to location

all the packet i believe its available from your fly wq, but it quite different from this send packet.. appreciate if you could make a function for those action.. thx in advance:mofo:
The source code for the Fly WQ bot is provided, so you should be able to reconstruct how to do those things. Toggling fly mode is a matter of using your flyGear, there's even an example of that somewhere in this thread.

Flying until a certain altitude is 'moving by packets', for which an explanation is linked to in the first post.

Go to location uses actionstructs, which is also linked to in the first post.
12/19/2010 16:19 natas420#163
Thanks for sharing all the great information in this thread, it has helped me to learn a lot.
12/21/2010 06:24 alienpw#164
wow, this thread is wonderful.
I tried to port the code to vb6, and got no luck.
VirtualAllocEx seems to work fine, but CreateRemoteThread function always return 0.

I'm wondering if I put the right realBaseAddress & SendPacketFunctionAddress.
Coz the realBaseAddress I got from WQBot is different from the BaseAddress I use to get Player HP info and such.
12/21/2010 08:27 Interest07#165
when you get the base address for player HP, what offsets do you end up with?

its probably [[baseAddress + 0x20] + 0x4C0 (i think this one is it)]
with realBaseAddress it would be
[[[reaslBaseAddress + 0x1C] + 0x20] + 0x4C0]

that would explain why theyre different


Does perfect world crash when your createRemoteThread returns 0?