Hackshield Disconnection

08/03/2013 05:27 drlunar#1
I'm trying, have been trying rather, to complete my hackshield bypass.
I've gone through and through, but I don't understand what's causing the disconnection.
I took care of the main protection callbacks.

My guess is it's the heartbeat, though the client still seems to be receiving a request.

I've tried generating a heartbeat on Service 13, but my efforts were in vain.
I don't know how to generate a valid heartbeat, I was using moby's source though as stated I failed.

I'd like to know whether I can get by the disconnection without emulating a heartbeat, can I modify the response or something?

I've tried simply NOT loading HS, but the client black-screens, as if crucial data wasn't booted into the client.

I tried taking care of the HS error-report within the client, and the client seems to kill itself for some odd reason.
I tried detouring the exit calls, but nada, which makes no sense.

Any suggestions/methods would be nice.
08/05/2013 22:59 ​Tension#2
The disconnect is not produced by the client it comes from the server.
I think there is no other way, you have to emulate the heartbeat.
And if i remember correctly HS uses several types of heartbeat...
You just need to filter them out and analyze the way how they are sent to the server.
08/06/2013 00:54 meak1#3
1. Emulate Hackshield
2. Just bypass Hackshield - Make Ur hack invisible - undetected
3. I think u can bypass those Hackshield checks but its hard way to go, same for 1.

I guess 2. is best to go

to 1/3. - U need rly much reverse experience, i was rly far but i have no time

Just do 2. ;D
08/06/2013 01:53 ​Tension#4
Quote:
Originally Posted by meak1 View Post
1. Emulate Hackshield
2. Just bypass Hackshield - Make Ur hack invisible - undetected
3. I think u can bypass those Hackshield checks but its hard way to go, same for 1.

I guess 2. is best to go

to 1/3. - U need rly much reverse experience, i was rly far but i have no time

Just do 2. ;D
1) He just needs to bypass the main checks and emulate the heartbeat creating a full emulator of Hackshield would be time wasting.

2) I think he wants to create a full bypass to be able to debug the client then this point wont work.

3) He already did but bypassing "only" the checks wont help him hes going to be disconnected
08/06/2013 06:18 meak1#5
Quote:
Originally Posted by Ten$ion View Post
1) He just needs to bypass the main checks and emulate the heartbeat creating a full emulator of Hackshield would be time wasting.

2) I think he wants to create a full bypass to be able to debug the client then this point wont work.

3) He already did but bypassing "only" the checks wont help him hes going to be disconnected
1. i just told 3 ways. I didnt said it will be easy...

2. i can debug clients with hackshield... and mainly u can use pserver and create searchpattern.... - searchpattern = Function address pointer - search if u dont know -.-#

3. y he already did wrong, i wrote - that he can bypass all Checks, if he would bypass them all, he wont disconnect...

Mainly i just wrote what he can do to bypass... i didnt told that 'HE CAN'