FU Rootkit, Bypass - Updated!

08/19/2005 11:18 Lowfyr#1
For those of you looking for dragonbotWC Aimbot, it can be found in the attachement from this topic and yes, it does work with this bypass. If you get the "New version avaliable" Msg, use the "AimUnlimitedE.rar" from the attachment
(Click Delete Registar
Click Change Date
Close Program
Your done permanently!!!)

---------------------------------------------------------
Do not touch any files in the "d33" Folder, do not rename or delete it or this bypass will not work. If you move the "Bypass.bat" File then the "d33" folder must also be moved to the same spot or the bypass will not work.
---------------------------------------------------------
I have uploaded Dragonbotv11, which apparently works for GPS (with this bypass) I don't know whether it does or not, someone posted a reply saying it does.
---------------------------------------------------------

This entire post has been edited

I'm going to start off by saying that FU Rootkit is 100% safe to use - Please don't post replys saying otherwise.

Instructions:

1. Disable any Anti-Virus programs you may have running (Norton, Kasperspy ect.)

2. Download the attachment I have posted (Bypass.zip)

3. Open Dragonbot (See the bottom of this post for instructions)

4. Open Bypass.bat

5. Type FU -pl 500
Find the numbers next to the following and write them down:

System
SMSS
CSRSS
SERVICES
LSASS
DragonBot

6. Type
fu -ph NUMBER
and press enter to hide each process, for example - if dragonbot has the number "4999" next to it, you would type
fu -ph 4999
and then press enter.
Do this for each process I have stated.
When you have finished type "EXIT" and press enter.

7. Come back to GzP Forums, Back to this thread and click the "Thanks" Button

You now have a working bypassed aimbot
[This bypass works on all versions of gunbound]

If you have any questions, just ask (even though there are 6 pages of replys, I will answer any questions posted)

Enjoy.

Edit: Instructions on how to use dragonbotWC (NOT v11):
Open Parche2
Open dragonbot, do not click the OK button
Go back to the Parche2 window, Click Pachar
A new box will open in some other language, click OK
Click OK to the ACProtect box.
A new box will open saying "Ready for action", (If you get a msg saying "New Version Avaliable", read the top of my topic.)
Click OK
Dragonbot is now open.
09/11/2005 20:06 Noobster#2
Lowfyr, dragon bot got patched few days ago, could u make it undetected again and post here? >_>
10/17/2005 23:34 legolia#3
patched dude
04/05/2006 23:33 nerrad909#4
snap i hate this 1 its got patch again
09/03/2006 17:46 lucifaitre#5
i know this doesnt work anymore, but how does one find:

Find the numbers next to the following and write them down:

System
SMSS
CSRSS
SERVICES
LSASS
DragonBot
09/22/2006 05:13 virosback#6
File: fu.zip
Status:
INFECTED/MALWARE
MD5 330b92d7baf7596cf6ead2f206c28f53
Packers detected:
PE_PATCH.ULTRAPROTECT, ULTRAPROTECT
Scanner results
AntiVir
Found Trojan/Rootkit.H, Trojan/Spy.Agent.dg.2.B, Trojan/Dldr.Ag.te.1.1.B, Heuristic/Crypted (probable variant)
ArcaVir
Found Trojan.Mooseas.A03
Avast
Found Win32:Trojan-gen. {VC}
AVG Antivirus
Found BackDoor.Generic.YRX, Collected.5.L
BitDefender
Found Trojan.Rootkit.H, Trojan.Rootkit.Agent.L, Trojan.Dragonbot.AP
ClamAV
Found Trojan.HacDef-8
F-Prot Antivirus
Found virus tool named W32/FUrootkit.B@tool, W32/Furootkit.B@tool
Fortinet
Found W32/FuRootkit.H!tr
Kaspersky Anti-Virus
Found Rootkit.Win32.Fu, Rootkit.Win32.Agent.l
NOD32
Found Win32/Rootkit.Fuzen.A, Win32/Rootkit.H, Win32/DragonBot.NAA
Norman Virus Control
Found W32/FURootkit.F, W32/FU_Rootkit.B
UNA
Found Trojan.Win32.Rootkit, Backdoor.Dragonbot
VirusBuster
Found Rootkit.Agent.N, Trojan.Furootkit.A
VBA32
Found Trojan.Win32.Rootkit.h, Trojan.Win32.DragonBot.NAA, BackDoor.Generic.1102
09/22/2006 05:15 virosback#7
Complete scanning result of "fu.zip", received in VirusTotal at 09.22.2006, 05:11:04 (CET).

Antivirus Version Update Result
AntiVir 7.2.0.16 09.21.2006 TR/Rootkit.H
Authentium 4.93.8 09.21.2006 W32/Furootkit.B@tool
Avast 4.7.844.0 09.19.2006 Win32:Fu
AVG 386 09.21.2006 BackDoor.Generic.YRX
BitDefender 7.2 09.22.2006 Trojan.Rootkit.H
CAT-QuickHeal 8.00 09.20.2006 (Suspicious) - DNAScan
ClamAV devel-20060426 09.22.2006 Trojan.HacDef-8
DrWeb 4.33 09.21.2006 Trojan.Fuzen
eTrust-InoculateIT 23.73.2 09.22.2006 no virus found
eTrust-Vet 30.3.3090 09.21.2006 no virus found
Ewido 4.0 09.21.2006 Rootkit.Agent.l
Fortinet 2.82.0.0 09.22.2006 W32/FuRootkit.H!tr
F-Prot 3.16f 09.21.2006 virus tool named W32/FUrootkit.B@tool
F-Prot4 4.2.1.29 09.22.2006 W32/FUrootkit.B@tool
Ikarus 0.2.65.0 09.21.2006 Trojan.Win32.Rootkit.H
Kaspersky 4.0.2.24 09.22.2006 Rootkit.Win32.Fu
McAfee 4857 09.21.2006 potentially unwanted program HTool-Fuzen
Microsoft 1.1560 09.22.2006 VirTool:WinNT/FURootkit.A
NOD32v2 1.1767 09.21.2006 Win32/Rootkit.Fuzen.A
Norman 5.90.23 09.21.2006 W32/FURootkit.F
Panda 9.0.0.4 09.21.2006 Rootkit/Fu.A
Sophos 4.09.0 09.22.2006 Troj/Furoot-A
Symantec 8.0 09.22.2006 Hacktool.Rootkit
TheHacker 6.0.1.075 09.21.2006 Trojan/Agent.l
UNA 1.83 09.21.2006 Trojan.Win32.Rootkit.4C4D
VBA32 3.11.1 09.21.2006 Trojan.Win32.Rootkit.h
VirusBuster 4.3.7:9 09.21.2006 Rootkit.Agent.N
10/01/2006 12:26 Unknownwho18#8
wOw........... :eek: :eek:

-is this suppose to be like that....
02/15/2008 00:17 mud0nja#9
patched one :=)