[Idea] Response Server

02/24/2011 21:35 Thiesius#1
I was thinking (yea difficult task I know) and there is a little thing that comes to my mind. Would you guys be interested in some sort of Response Server?
Let me explain and take a look at the picture.

Basic overlook:
1) All hackshield messages about detection and such stuff will be filtered out of the engine-hackshield flow.

2) EagleNT will be intercepted during loading and the engine will get the message "Everything loaded successfully".

3) The server sends HackShield state request. Request is intercepted and redirected to the response server. Response server generates correct response (HackShield state, Memory CRC, file CRC and so on) and sends the response back. The packet is passed back to engine -> and it's sent to server (Everything is fine).

Picture:
[Only registered and activated users can see links. Click Here To Register...]

Image copy in the attachment.

Possibilities:
I took this picture during the test a while ago.

[Only registered and activated users can see links. Click Here To Register...]

So the possibilities:
- Hooks and all engine modifications are working again. Even the engine.exe file mods.
- You can use any version of Cheat Engine.
- In-game debugging.
- I don't know
02/24/2011 21:39 Fremo.#2
Mh,cool idea :D
02/24/2011 22:02 meak1#3
u just need to change one address in engine and u can use CE and ollydbg but u get kicked after 10minutes because the CRC... i know that u bypassed it

And what u wanna say with ur thread? that u have something what no other have? and why so late? u bypassed it before some years and why now that thread?
02/24/2011 22:18 RunzelEier#4
meaki nicht böse werden,
thiesius fragt ob daran interesse besteht.
ich glaube er möchte diesen server aufsetzen
02/24/2011 22:42 Zogga#5
Wie ihr euch hier alle gegenseitig anmöst..:P
02/24/2011 22:48 Thiesius#6
Quote:
Originally Posted by meak1 View Post
u just need to change one address in engine and u can use CE and ollydbg but u get kicked after 10minutes because the CRC... i know that u bypassed it

And what u wanna say with ur thread? that u have something what no other have? and why so late? u bypassed it before some years and why now that thread?
What I have created long time ago was a CRC bypass (Doesn't work anymore -> they added too many checks around). But that was working only till the server requested the CRC hash of the hooked regions anyways.
02/25/2011 08:20 meak1#7
yes i think many ppl interested in those things because in other games with hackshield its the same, just one address to change and all works fine but after some minutes or hours CL

in internet it exist hackshield bypass but the ehscv.dll not added to see how the function look like =/

i think u only need to find the self crc in ehscv.dll change them and nop the jump to the engine hackshield messages =D but as i said duno how to find them without ingame debugging, My English is best pls vote.
02/25/2011 19:08 nidecker2#8
Quote:
Originally Posted by meak1 View Post
My English is best pls vote.
:handsdown::handsdown::handsdown::handsdown:
02/27/2011 16:29 DerKleineDarky#9
Quote:
Originally Posted by nidecker2 View Post
:handsdown::handsdown::handsdown::handsdown:
could you just leave this forum, please?
i'm sorry to tell you, but you are just annoying. oh and by the way, nazist is spelled narzist (with r) and dont have anything to do with nazis, just to let you uneducated kid know.
02/27/2011 17:37 KillerExtreme#10
------/\
-----/||\
----/ || \
-----.||
-----.||



GOOD POST
02/27/2011 18:18 Thiesius#11
Quote:
Originally Posted by meak1 View Post
yes i think many ppl interested in those things because in other games with hackshield its the same, just one address to change and all works fine but after some minutes or hours CL

in internet it exist hackshield bypass but the ehscv.dll not added to see how the function look like =/

i think u only need to find the self crc in ehscv.dll change them and nop the jump to the engine hackshield messages =D but as i said duno how to find them without ingame debugging, My English is best pls vote.

The potential of HackShield is mostly unused by game developers (They don't know how to send packets properly or idk).

The HackShield does a self-check. If there is something wrong it will inform the engine "anti-hack" function.

Upon server request it can also include the information about current status - this part is virtualized in the Themida section (As far I remember atm the KalOnline requests the state of hackshield on every packet).

Anyways the server can request the CRC of engine code section and generated CRC is sent to server (any part of code) -> this the reason why your hooks are detected even though you ignore the hackshield messages.
03/05/2011 16:16 Thiesius#12
So, are you guys interested in this?
I just don't want to waste my time.

What is done:
HackShield response mechanism:
What is remaining:
Connection interface.
Clientside hooks.
03/05/2011 20:26 syntex#13
just code it and dont release it , its not worth it most people wont invest time to improve it or help you they just want to leech.

its simple people think you can reach shit in like 2 minutes , they dont see the work behind it.

your project is really intressting, and you already posted alot of informations and thoughts which I like.
03/05/2011 20:57 Fremo.#14
Quote:
Originally Posted by Thiesius View Post
So, are you guys interested in this?
I just don't want to waste my time.

What is done:
HackShield response mechanism:
What is remaining:
Connection interface.
Clientside hooks.
167 Posts
167 Thanks

^lol.

Well lets what you will do :P Release or not :3

@syntex
Yes,the leeching thing is gay.Check out DBGHELP thread...1.000+ Downloads and some hundred thanks.
03/05/2011 23:16 RunzelEier#15
leeching is not just about not giving thanks.

its about wanting evering served.
99% of the kal section wants to make 2clicks and then it should work.
and if it doesn't work they start whining.