CRC Bypass - Tutorial with pictures

08/20/2011 16:18 Petersen890#1
Okay
since Aboelz and me cant get it work at all we decided to create a tutorial with pictures on HOW we are doing all steps... (i do the tutorial, post it on epvp and he check then which step we are doing different and maybe we can find out the mistakes we are doing OR some 1 else find a mistake) we are thankful for everyone whos trying to help us, even reading this ^^

okay lets begin:

Step 1:
Install the game. I read somewhere that we shouldnt install on Drive C:/ so im doing it on different Drive

[Only registered and activated users can see links. Click Here To Register...]

Step 2:
Im upgrading the game via Launcher and login game to see if everything working - no changes done in install folder!

[Only registered and activated users can see links. Click Here To Register...]

Step 3:
Downloading the file hacks.rar from -> [Only registered and activated users can see links. Click Here To Register...] this post
And starting rexignation 1.41 with dekaron.exe in bin folder - didnt copy anything to install folder from game !

[Only registered and activated users can see links. Click Here To Register...]

step4:
i waited 10 minutes - nothing happened except that theres a process in Task Manger

[Only registered and activated users can see links. Click Here To Register...]

step5:
I closed the process and downloaded the Bin folder from -> [Only registered and activated users can see links. Click Here To Register...]
now i opened the launcher from the downloaded bin folder and choose dekaron.exe from the original bin folder (i didnt copy the downloaded bin into game installation folder!)

[Only registered and activated users can see links. Click Here To Register...]


step6:
game opened and i logged in Kalibus and then choose server -> asray -> blades -> oread and then exit game
[Only registered and activated users can see links. Click Here To Register...]

step7:
The crc folder has been created in the original game "bin" folder it has 5191 datas and 59,0 mb!

[Only registered and activated users can see links. Click Here To Register...]

either the crc.text has been created in the downloaded bin folder 26 kb
and i copied it in the original bin folder to the CRC folder at the pict above

[Only registered and activated users can see links. Click Here To Register...]

step 8:
Copied the "Pack Manager" from Merovingian into the Data folder and unpacked it
[Only registered and activated users can see links. Click Here To Register...]

step9:
after this is done

[Only registered and activated users can see links. Click Here To Register...]

i copied the shadow.txt and Warfog.dds in the "unpacked -> data" folder

then i renamed the original data folder to dataorg and copied the unpacked data folder in the original game folder

my gamehi folder is now looking like that :

[Only registered and activated users can see links. Click Here To Register...]

the bin:

[Only registered and activated users can see links. Click Here To Register...]

the data:
[Only registered and activated users can see links. Click Here To Register...]

okay next step 10:

Change Shadow.txt the PackIO from "1" to "0" (zero)

[Only registered and activated users can see links. Click Here To Register...]


next step 11:
i copy the folder "Share lure leasted" into the original data/share folder which i unpacked before and overwrite all files
[Only registered and activated users can see links. Click Here To Register...]

step12:
Launching game with REXIG 1.41 -> same as above waited 10 mins didnt open anything but create process -.-

the loader.txt :
Quote:
[15:58:07] ===========DLL successfully injected, log start===========
[15:58:07] Initializing...
[15:58:07] Loader at 10000000
[15:58:07] Xigncode disbaled : NO
[15:58:07] Path to Xigncode emulator : C:\Dokumente und Einstellungen\Chrissi\Eigene Dateien\Downloads\Compressed\bypass\client.dll
[15:58:07] Loading C:\Dokumente und Einstellungen\Chrissi\Eigene Dateien\Downloads\Compressed\bypass\rexign.dll
[15:58:07] Calling entry point at 011D50FE
[15:58:07] Successfully loaded at 011D1000
[15:58:07] Loader done
[15:58:07] Thread 840 exited
[15:58:07] New thread 2408
[15:58:07] New thread 4092
[15:58:07] New thread 668
[15:58:08] New thread 3232
i waited till 16:10 and no line was added till then -.-

step 12 b :
launching game with the launcher from picture 5 (i copied the CRC folder i created in the downloaded bin (note: the downloaded bin isnt in the installation folder!)

[Only registered and activated users can see links. Click Here To Register...]

after 1 minute : the crc.txt looking like this and the xigncode3 appears in bottom left:
[Only registered and activated users can see links. Click Here To Register...]

game opening straight after the Gamehi advert comes after game just crashes -> no errror appears (so before loading screen game crashes!)
the crc.txt looking now like this :
Quote:
[15:53:21] ===========DLL successfully injected, log start===========
[15:53:21] Image base : 00400000
[15:53:21] Target code section: from 00401000 to 00C0B000
[15:53:21] Exception handling successfully initialized
[15:53:21] Catched exception: Code C0000005 at address 00C1A44A
[15:53:21] Catched exception: Code C0000005 at address 00C1A768
[15:53:21] Client code is unpacked
[15:53:21] Initializing...
[15:53:21] Hooking CRC functions...
[15:53:21] Base address for kernel32.dll: 7C800000
[15:53:51] Initialization successful
[15:53:51] Catched exception: Code 40010006 at address 7C812AFB
[15:53:51] Catched exception: Code C0000005 at address 7C809EDA
[15:53:52] Catched exception: Code E06D7363 at address 7C812AFB
[15:53:54] Catched exception: Code E06D7363 at address 7C812AFB
[15:53:54] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:54] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:54] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:54] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:54] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:54] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code E06D7363 at address 7C812AFB
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:55] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:56] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:56] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:56] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:56] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:56] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:56] Catched exception: Code 80000003 at address 02ACF9FC
[15:53:56] Catched exception: Code 406D1388 at address 7C812AFB
[15:53:59] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:06] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:10] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:11] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:11] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:11] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:16] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:17] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:17] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:17] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:18] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:18] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:18] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:29] Catched exception: Code 80000003 at address 02ACF9FC
[15:54:39] Catched exception: Code C0000005 at address 00000000
[15:54:39] Target process is going to close
[15:54:39] =================DLL unloaded, log closed=================

so i tried another step
c: copied the Bypass folder ( rexig 1.41 ) into the game folder bin and then started the rexig launcher with dekaron.exe

the rexignation.text shows this:
Quote:
[16:00:45] ===========DLL successfully injected, log start===========
[16:00:45] Reading initial parameters...
[16:00:45] Disable Xigncode : NO
[16:00:45] Bypass CRC : YES
[16:00:45] Xigncode emulator : F:\gamehi\bin\client.dll
[16:00:45] Image base : 00400000
[16:00:45] Target code section: from 00401000 to 00C0B000
[16:00:45] Exception handling successfully initialized
[16:00:45] Thread started: 0A2C
[16:00:45] Thread exited : 0A2C
[16:00:45] Thread started: 04E0
[16:00:45] Catched exception: Code C0000005 at address 00C1A44A
[16:00:45] Thread started: 0EA8
[16:00:45] Thread started: 0B38
[16:00:45] Thread started: 0B04
[16:00:45] Thread started: 0D60
[16:00:45] Thread started: 0C0C
[16:00:45] Thread started: 0DAC
[16:00:45] Catched exception: Code C0000005 at address 00C1A768
[16:00:45] Client code is unpacked
[16:00:45] Thread 0EA8 suspended
[16:00:45] Thread 0B38 suspended
[16:00:45] Thread 0B04 suspended
[16:00:45] Thread 0D60 suspended
[16:00:45] Thread 0C0C suspended
[16:00:45] Thread 0DAC suspended
[16:00:45] Hooking CRC functions...
[16:01:15] Successful
waited till 16:15 no line added...

next try:
renamed the bin folder from game to binorg

and copied the downloaded bin folder in the game folder and started the launcher from pict 5 again -.-
same as above without copieing
crash after advert from gamehi
crc.txt ->
Quote:
[16:06:08] ===========DLL successfully injected, log start===========
[16:06:08] Image base : 00400000
[16:06:08] Target code section: from 00401000 to 00C0B000
[16:06:08] Exception handling successfully initialized
[16:06:08] Catched exception: Code C0000005 at address 00C1A44A
[16:06:09] Catched exception: Code C0000005 at address 00C1A768
[16:06:09] Client code is unpacked
[16:06:09] Initializing...
[16:06:09] Hooking CRC functions...
[16:06:09] Base address for kernel32.dll: 7C800000
[16:06:38] Initialization successful
[16:06:39] Catched exception: Code 40010006 at address 7C812AFB
[16:06:39] Catched exception: Code C0000005 at address 7C809EDA
[16:06:40] Catched exception: Code E06D7363 at address 7C812AFB
[16:06:45] Catched exception: Code E06D7363 at address 7C812AFB
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:45] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code E06D7363 at address 7C812AFB
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:46] Catched exception: Code 406D1388 at address 7C812AFB
[16:06:50] Catched exception: Code 80000003 at address 02CAF9FC
[16:06:57] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:01] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:01] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:02] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:02] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:07] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:07] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:07] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:08] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:08] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:08] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:09] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:20] Catched exception: Code 80000003 at address 02CAF9FC
[16:07:26] Catched exception: Code C0000005 at address 00000000
[16:07:26] Target process is going to close
[16:07:26] =================DLL unloaded, log closed=================

Anything i did wrong?
or any other ideas?
i dunno why my rexig doesnt work and blaaaaaa my head is fucking me lol im trying since 4 days now and NOOOOOOOOOTHING!!! Q_Q

thx for everyone who read this or even trying to help!
08/20/2011 16:30 Cabello#2
WTF you are doing, and WTF you are trying to do?
08/20/2011 16:34 Petersen890#3
O_O

what you mean skeptiks?
im trying to get the damn ass bypass working Q_Q

im doing it totally wrong or whut? lol
08/20/2011 16:44 Aboelz#4
Well thats how i do my thing aswell...just like petersen,


One note is, i did differ in one thing, but its not like it make any changes tho.

That was after the unpacking is done. I open up unpacking/data/ then i take out the unpacked files (or share folder, yes i happen to unpack share only sometimes to see if that helps). Then i take the original packs and save them somewhere else. And i replace them with the unpacked ones, this way i do not have to create a new map folder named data. But its not like that makes any changes at all tho...



And Skeptiks, you seem to have the answer for us both :S would you please explain what step we are doing wrong??? :(
08/20/2011 16:59 hackers121#5
done press packselect?
08/20/2011 17:25 Petersen890#6
Quote:
Originally Posted by hackers121 View Post
done press packselect?
what you mean? packing the files in the data folder again?

/if so ya i tried it, i open the pack manager click on data and pack selected it says scanning files and then the programm dont respond anymore ;)

i have to pack the files again? i thought about it earlier but in all tuts no 1 ever mentioned it so i didnt try it anymore

BTW: when i use the rexignation launcher on the gloab_unpacked_a7_v1001 data in the bin folder i downloaded and then changed witht he orignal bin in game folder, its the only time it opens the launcher opens for me with rexignation, i can even log in an account and choose server
then its loading the map and on 1/2 of loading screen my game just crashes -.-
08/20/2011 17:29 Jactation#7
"i open the pack manager click on data and pack selected it says scanning files and then the programm dont react anymore"

It did it to me.. i left it for 10mins and it says no changes and packed it :)
08/20/2011 17:36 Aboelz#8
Ok lets see...so unpacking it, you edit ur csv file, then you repack it and replace the edited pack4 ( share) with the old pack4??? Is that how you guys do it? Becuse i tried once and i remember it didnt help :/
08/20/2011 17:48 Jactation#9
I think im putting my CRC folder in the wrong place.. I put mine in BIN? is that were its ment to go?

Because my bypass for Xigncode doestn work -.-'
08/20/2011 17:54 Petersen890#10
yes thats right there it has to be lol
08/20/2011 18:09 Jactation#11
Dude mines woking lol! horraaaay..

Takes awhile to load the game though :P like 4mins but meh.. no lag at all. Holy shit im over the moon.

these are my logs


LOADER.txt.
--------------
[16:58:47] ===========DLL successfully injected, log start===========
[16:58:47] Initializing...
[16:58:47] Loader at 014E0000
[16:58:47] Xigncode disbaled : NO
[16:58:47] Path to Xigncode emulator : C:\Documents and Settings\"""\Desktop\""""\client.dll
[16:58:47] Loading C:\Documents and Settings\"""""\Desktop\""""""\rexign.dll
[16:58:47] Calling entry point at 015450FE
[16:58:47] Successfully loaded at 01541000
[16:58:47] Loader done
[16:58:47] Thread 2344 exited
[16:58:47] New thread 4032
[16:59:24] Process is going to close (This is were i closed the client)
[16:59:24] =================DLL unloaded, log closed=================

Rexignation.txt
----------------
[16:58:47] ===========DLL successfully injected, log start===========
[16:58:47] Initializing...
[16:58:47] Loader at 014E0000
[16:58:47] Xigncode disbaled : NO
[16:58:47] Path to Xigncode emulator : C:\Documents and Settings\"""""\Desktop\"""""\client.dll
[16:58:47] Loading C:\Documents and Settings\""""""\Desktop\"""""\rexign.dll
[16:58:47] Calling entry point at 015450FE
[16:58:47] Successfully loaded at 01541000
[16:58:47] Loader done
[16:58:47] Thread 2344 exited
[16:58:47] New thread 4032
[16:59:24] Process is going to close (ended client)
[16:59:24] =================DLL unloaded, log closed=================


Ill see if i can post a video of me hacking :P
Just gotta find fraps :3
08/20/2011 18:14 Aboelz#12
Quote:
Originally Posted by bobo1235 View Post
Dude mines woking lol! horraaaay..

Takes awhile to load the game though :P like 4mins but meh.. no lag at all. Holy shit im over the moon.

these are my logs


LOADER.txt.
--------------
[16:58:47] ===========DLL successfully injected, log start===========
[16:58:47] Initializing...
[16:58:47] Loader at 014E0000
[16:58:47] Xigncode disbaled : NO
[16:58:47] Path to Xigncode emulator : C:\Documents and Settings\"""\Desktop\""""\client.dll
[16:58:47] Loading C:\Documents and Settings\"""""\Desktop\""""""\rexign.dll
[16:58:47] Calling entry point at 015450FE
[16:58:47] Successfully loaded at 01541000
[16:58:47] Loader done
[16:58:47] Thread 2344 exited
[16:58:47] New thread 4032
[16:59:24] Process is going to close (This is were i closed the client)
[16:59:24] =================DLL unloaded, log closed=================

Rexignation.txt
----------------
[16:58:47] ===========DLL successfully injected, log start===========
[16:58:47] Initializing...
[16:58:47] Loader at 014E0000
[16:58:47] Xigncode disbaled : NO
[16:58:47] Path to Xigncode emulator : C:\Documents and Settings\"""""\Desktop\"""""\client.dll
[16:58:47] Loading C:\Documents and Settings\""""""\Desktop\"""""\rexign.dll
[16:58:47] Calling entry point at 015450FE
[16:58:47] Successfully loaded at 01541000
[16:58:47] Loader done
[16:58:47] Thread 2344 exited
[16:58:47] New thread 4032
[16:59:24] Process is going to close (ended client)
[16:59:24] =================DLL unloaded, log closed=================


Ill see if i can post a video of me hacking :P
Just gotta find fraps :3

Mate would you tell us all the steps you made? Did you do as me and petersen is doing it? If you look at the tutorial..or whta steps did you change?
08/20/2011 18:28 Jactation#13
But yeah. i did what you guys did. But put the:

Client.dll
laucher.exe
loader.log
rexign.dill
vashj.xem

Into a folder on the desktop then run it.. it works perfectly for me -.-..
08/20/2011 18:32 Aboelz#14
Iv tried doing like you but i got no idea why its not working for me and UGH... 600x400? tht must be annoying as hell...got no idea how to change that, if i figure out ill come back to ya on that one lol.

And how about rexig.log, you also put it on desktop right? The only thing left in ur bin was CRC folder correctly?
08/20/2011 18:37 Petersen890#15
Quote:
Originally Posted by bobo1235 View Post
But yeah. i did what you guys did. But put the:

Client.dll
laucher.exe
loader.log
rexign.dill
vashj.xem

Into a folder on the desktop then run it.. it works perfectly for me -.-..
this is the Bypass folder lol the one u can download here in 1 thread -.- Q_Q
im going crazy