UnkownMan exploit

07/30/2007 06:59 B!@ckdice#16
could this be done with the lottery npc as well?
07/30/2007 07:15 WhiteJem#17
ahh
07/30/2007 10:15 Queen-Of-Evil#18
Quote:
Originally posted by bone-you@Jul 30 2007, 01:51
The MM hack was more of blocking packets from the client than the server.. it never finished the login sequence and I assume TQs coding job did the rest by not applying some changes to the character (whether you've done the quest or not) due to not being fully logged in. They don't have a check on whether you're logged in all the way yet or not so it let's you go around as if you are (hence why skills/profs were missing in game). It wasn't so much of editing vars as it was just not completing a sequence. The proxy just made the cheating easier after that. It sent the sequence of packets to accept the exp balls (NPC dialog request and then the "button click" packet) over and over again. You could have done it manually in game but it's easier to click one button over and over :P
Spot on, so you can confirm the Global Variables werent there, Least a few other peaple understand this basic Programming principle.
07/31/2007 08:20 WhiteJem#19
ummhmm...
08/03/2007 16:29 forrest#20
Alright, so heres what I've done thus far:

I started the unknown mans quest with a packet filter running and at each step of the quest I logged the incoming and outgoing packets. Once I was done the quest I reviewed the logged packets, and sifted through them and found what I believe to be the correct ones for each step.

Heres when I got the packets:

When I first started the quest- (I'm assuming that this was the server changing the unknown mans quest value and relaying it to my client.)

When I collected the wine from the shop boy-

When I gave the unknown man the wine- (I think that was the server sending packets to delete the wine from my inventory as well as logging that that I completed that certain step in the quest.)

Then I got a few when I gave him the DB- ( This is what really perplexed me.. My assumption is that the few that I got were the packets for letting the server know I made it to the last step of the quest, checking to make sure that the DB was in my inventory, recording the slot that it was in, (So it doesn't take more than the required number. If I had used two DB's I think I would have gotten two packets for the two different slots.) the packet that deletes the DB/DB's and finally the packets for the script that gives me the exp.

So heres what I was thinking, maybe I can just go though the quest legit, until I get to the part where the server trys to send the packet that deletes the DB in the inventory, block that packet and then send the packet that I logged, that tells the server that it successfully deleted the DB. Thus the server would think that the DB was gone and it would send the packets for exp.

Think that might work?
08/06/2007 00:30 ssj55#21
this would be sooo awesome if this worked :)
08/06/2007 01:17 swords#22
That sounds correct in theory forrest. I'm no expert in packet blah blahs... But I know its been explained many times queen, but it just seems so illegal, haha.


P.S. Any or queen... Is this how they make bots with packets? Record packets to Jump to XX spots and record packets to right click... etc etc... I never knew it was that easy, if I am right... but how would you make it in bot form that others could play it as non-proxy...?

Thanks in advance.
08/06/2007 06:46 Tw3ak#23
You guys do know that repair function without unequipt can also be defeited in a similar way :D And many others exploiting MM and unknown is only the beginning.
08/06/2007 08:41 RockTheDead#24
Hm, any new updates on this?
08/06/2007 08:58 kid4121#25
I believed the packets are encrypted to prevent sending/resend the packets again and again. The servers only take your packets if it have a right "keys".
For more secure, each db have 1 key like CD key, that you can only use it for 1 time. Once that db used, you can't use it again.
08/06/2007 09:05 SkyLighter#26
Err Doubt This Works but ill try it out when i get bored xD
08/06/2007 18:21 Hippeedood#27
Quote:
Originally posted by Queen-Of-Evil@Jul 29 2007, 11:11

****MAKE EPVP BAN ALL MEMBERS WHO SEND TQ OTHER MEMBERS DETAILS FROM HERE!!! ITS BREACH OF TRUST GUYS!****
Lol, its a hacking and cheating forum, don't preach about morals on here.
08/07/2007 03:01 geonsteelers#28
oh
02/24/2008 15:27 IAmHawtness#29
Does anyone know what kinda "Variables" Queen Of Evil is talking about ?
02/24/2008 18:57 IAmHawtness#30
Quote:
Originally Posted by IAmHawtness View Post
Does anyone know what kinda "Variables" Queen Of Evil is talking about ?
Bump'dddd