Cracking SV

02/26/2007 14:48 anantasia#16
Quote:
Originally posted by Lake292@Feb 26 2007, 19:33
that new function rocks! can u pls tell me how to make it work?

<hr>Append on Feb 26 2007, 14:09<hr> im trying to follow your steps but i dont understand wht u mean with unhook...
and those first 4 steps set window hooked.... i do nothing? thats just info?

<hr>Append on Feb 26 2007, 14:33<hr> ill ask once more and tell wht im doing wrong thank u in advice

so these are your steps:
this 4 steps i didnt do anything... thats just getting pass and id if im right
/*
10003664 call dword ptr [10033390] <- set hook window
10003707 call dword ptr [10033178]
100038b5 call dword ptr [100333a0] <- get window text
100038dd call dword ptr [100333a0] <- get window text
*/

here i changed to that jump but thats 2bit operation so 6 bits left i changed with 90
0040F310 <-BP and JMP 40F31E

same
0040F34D <-BP and JMP 40F360

here i just changed
0040F489 call 4144DE

here i didnt do anything it was there written just this way
004144DE jmp dword ptr 100035b0

nop 90
100035B0 <-BP

jmp and nop
100037D4 <-BP and JMP 100037DF

this one i dont understand... u mean put there nop?
100037DD call esi <- Unhook *avoid*

jmp and nop
1000383B <- BP and JMP 10003846

this i dunno also... u mean nop to all call esi? cause there is like alot call esi
1000XXXX call esi <- Unhook *avoid*

im not great at assembly codes but i understand it a little... so if u could help me i would be very thankfull :)
** This dll still infected with Trojan.PWS.Lenmir.30 please use as your own risk **

/*
10003664 call dword ptr [10033390] <- set hook window
10003707 call dword ptr [10033178]
100038b5 call dword ptr [100333a0] <- get window text
100038dd call dword ptr [100333a0] <- get window text
*/
Above is address that call function in user32.dll. It's just info for reference

here i changed to that jump but thats 2bit operation so 6 bits left i changed with 90
0040F310 <-BP and JMP 40F31E

I'm not sure what command on this but u can change it to JMP 40F31E (2 obcode)

same
0040F34D <-BP and JMP 40F360

here i just changed
0040F489 call 4144DE
No change here just info to set break point and trace to 4144DE


here i didnt do anything it was there written just this way
004144DE jmp dword ptr 100035b0

nop 90
100035B0 <-BP

jmp and nop
100037D4 <-BP and JMP 100037DF

this one i dont understand... u mean put there nop?
100037DD call esi <- Unhook *avoid*

If u jump from above command it's will jump above 100037DD. Just for your info that why i jump this instruction code.

jmp and nop
1000383B <- BP and JMP 10003846

this i dunno also... u mean nop to all call esi? cause there is like alot call esi
1000XXXX call esi <- Unhook *avoid*

Same as above it's only change 2 jmp on countrymakeinus.dll

If u read and understand 1-6 in first post. I think u can know what i say.
02/26/2007 15:12 Lake292#17
i understand wht u mean... i do it way like u said and i dunno why it but when press start it just crashes SV i think ill rather wait for some guide :)
02/26/2007 15:37 anantasia#18
New function in gamble.

Put your bet in box number 3 just like
4-17 , 111,222,333,444,555,666 , Big , Small

it's will automate bet 3 of your coin selection.
02/27/2007 00:40 Lake292#19
is this trick working to anyone? or didnt try?
02/27/2007 09:12 anantasia#20
This SV version contain virus Trojan PWS (password stealer). Sorry I can't distribute this file or suggestion how to crack it until find way to get rid of it.

<hr>Append on Feb 27 2007, 11:02<hr> After try kill virus with DrWeb. It's can't clean infect file only delete.

After download new chinese SV version from [Only registered and activated users can see links. Click Here To Register...] date Feb 23,2007

Try unpack and scan it's still infect with Trojan.PWS.Lenmir.30.

That mean original file from 9net9 had infect with this trojan.

If anyone wanna try it. Please PM me i will send link to download to try crack your self.
02/27/2007 17:07 Botter2daMax#21
I have uploaded the latest english release. Jotti doesnt return anything but you guys can double check.


[Only registered and activated users can see links. Click Here To Register...]
02/27/2007 17:44 anantasia#22
Quote:
Originally posted by Botter2daMax@Feb 27 2007, 23:07
I have uploaded the latest english release. Jotti doesnt return anything but you guys can double check.


[Only registered and activated users can see links. Click Here To Register...]
It's seem properly if u didn't unpack it.

If you unpack it with stripper on both file scriptevessel.exe and countrymakeinus.dll

After scan with virustotal u will got trojan virus.

Older version didn't contain any virus.
02/27/2007 20:05 pokey2#23
Quote:
Originally posted by (GAME)Master@Feb 24 2007, 12:12
my cracked SV still works
same >.>
02/27/2007 21:10 Lake292#24
it works but its missing new functions
02/27/2007 23:00 fedja1337#25
well mine SV dont work and ive cracked it on the right way
i dont know whats happend but someone help me !
02/28/2007 00:39 Lake292#26
well try it on other computer... that sometimes helps and if not u did somethin wrong :rolleyes:
try to follow this guide [Only registered and activated users can see links. Click Here To Register...]
02/28/2007 02:10 Smoky#27
hey ppl ... what is the ScriptVesel ID and password ?
02/28/2007 02:45 Lake292#28
Quote:
Originally posted by Smoky@Feb 28 2007, 02:10
hey ppl ... what is the ScriptVesel ID and password ?
omg thats lame question... when u dont know whts id and pass go and buy it they will tell u...
02/28/2007 03:31 Peach#29
nice, but just for your info (all of u), theres a new bot 100x better than sv :D
02/28/2007 04:14 giacometti#30
oh, i am outdated. Which one would be better?