Defeating and Emulating INCA's nProtect GameGuard

04/12/2012 09:48 baccala#1
Defeating and Emulating
INCA’s nProtect GameGuard

Table Of Contents
1. Introduction
2. Analysis
3. Deobfuscating the Virtual Machine
4. Creating an emulator
5. Conclusion

[Only registered and activated users can see links. Click Here To Register...]

The program used in the pdf is: [Only registered and activated users can see links. Click Here To Register...]

GameGuard use Blowfish algorithms, in this page you can decrypt the Blowfish. the decryption algorithm is identical to the encryption algorithm step by step in the same order, only with the sub-keys applied in the reverse order.

[Only registered and activated users can see links. Click Here To Register...]
04/12/2012 10:48 alecz24#2
Thanks, quite a nice lecture!
04/12/2012 11:31 randommix000#3
handful
04/12/2012 11:32 Applewar#4
ow yea, thanks alot :)
04/12/2012 13:01 sedat3705#5
cabal eu ?
04/12/2012 17:26 Leon.Pet#6
Quote:
Originally Posted by sedat3705 View Post
cabal eu ?

:rolleyes: it works on all games w/ gameguard
04/12/2012 18:22 geosnuk#7
tnx i will try to learn from this ts godbless hope my tiny little brain learn it^_^
04/12/2012 22:26 sedat3705#8
how to do it with what program
04/12/2012 22:42 Acid#9
Quote:
Originally Posted by sedat3705 View Post
how to do it with what program
Read the pdf? :rolleyes:
04/12/2012 23:25 sedat3705#10
To change the gamemode values ​​which need to program
04/13/2012 00:56 bartbilf#11
@baccala: Did you post the pdf here because you think that someone would be able to make a bypass with it? Or did you manage to make it work yourself?

In any case, thanks for sharing! Gonna do some intensive reading tomorrow;D
04/13/2012 07:37 Leon.Pet#12
Quote:
Originally Posted by sedat3705 View Post
To change the gamemode values ​​which need to program
:rolleyes: if u want the program changes the codes..
Try ollydbg :D



This topic pwned me :rolleyes:

@TS
04/13/2012 15:56 『  』#13
Quote:
Originally Posted by bartbilf View Post
@baccala: Did you post the pdf here because you think that someone would be able to make a bypass with it? Or did you manage to make it work yourself?

In any case, thanks for sharing! Gonna do some intensive reading tomorrow;D
+1 for bartbilf -1 for Thread Starter!

If u search the right things in google about gameguard - u will find more infos about it.
I will spend 10.000€ on the ppl - who make a bypass whit it.
BUT! Only the ppls bevor bartbilf.
Nobody of The ppls who write thanks blablabla cant make a Bypass with it.
If u create a Packet logger u will see what the Server sents to you and what going back.
If u check "Flyff Offizial Source!" - There is the check function too!
So what is in this PDF - a docu about gg ? No rlly - just the function to send the thing back to server what anyone else saw in a source of a Game.
Make a Brainstorm:

GG Hooks all functions on ring0.
U want to emulate GG - Need to create a fake kernel - so GG hooks the fake functions - then u can watch the gg functions.
So what did u need to emulate gg?
Yes - a hooked kernel.
Whats better - Emulate GG or Hooking your own needed function?
Good Luck @all.
04/13/2012 18:38 baccala#14
Quote:
Originally Posted by K4zuj4b by View Post
+1 for bartbilf -1 for Thread Starter!

If u search the right things in google about gameguard - u will find more infos about it.
I will spend 10.000€ on the ppl - who make a bypass whit it.
BUT! Only the ppls bevor bartbilf.
Nobody of The ppls who write thanks blablabla cant make a Bypass with it.
If u create a Packet logger u will see what the Server sents to you and what going back.
If u check "Flyff Offizial Source!" - There is the check function too!
So what is in this PDF - a docu about gg ? No rlly - just the function to send the thing back to server what anyone else saw in a source of a Game.
Make a Brainstorm:

GG Hooks all functions on ring0.
U want to emulate GG - Need to create a fake kernel - so GG hooks the fake functions - then u can watch the gg functions.
So what did u need to emulate gg?
Yes - a hooked kernel.
Whats better - Emulate GG or Hooking your own needed function?
Good Luck @all.
You're the one who sold the cheats for 500kk eu server?
haha, I'm the one who wanted to sell them, and then I have been deleted from skype.
You do not know anything, put videos on youtube to screw people for money and then come and say what needs to be done?

I just want to help
04/13/2012 19:23 sedat3705#15
Do you do a video narration baccala