How to do an bypass for priv server.

02/26/2010 19:39 OmegaArma#1
THIS METHOD WILL NOT WORK ON: OFFICIALS/EP3/EP4 SERVERS!
Hi, in this tutorial i will show you how to do a bypass(its working on 90% noob cabal severs).

Ok, first you need resource editor like ResHacker, when you download it do this (on example of Cabal

Zaan):

1. Open cabalmain.exe that you have in patch from Cabal Zaan, click version info>1>2057, copy ONLY VERSION that is window on right.
2.Open a clean cabalmain.exe(if you dont have it, download it from link in this thread), click version>
info>1>2057, delete ONLY VERSION from right window and paste VERSION info that you copied from cabalmain.exe from cabal zaan.

Yup, thats everything, next click compile script and choose file>save, happy cheating :)

Screen:[Only registered and activated users can see links. Click Here To Register...]

[Only registered and activated users can see links. Click Here To Register...]

Little update:

Sometimes cabalmain.exe is packed, download Die 0.64, check cababalmain.exe, and if file is packed with PECompact 2.xx download this:[Only registered and activated users can see links. Click Here To Register...]
Unpack cabalmain.exe. copy version, paste it in to your cabalmain.exe and you are ready to go:)
If its packed with UPX download latest PE Explorer(it have UPX unpacker inbuild) open cabalmain.exe with PE Explorer, check version in unpacked.exe and You should know what is next ;)

FOR ELITE/UNLIMITED Cabal You need cabalmain.exe from Ep3

-------------------------------------------------------------------------------------------------
Little update :awesome:

Here you have small application that will unpack cabalmain's packed with Themida 1.8.xx.

[Only registered and activated users can see links. Click Here To Register...]

[Only registered and activated users can see links. Click Here To Register...]

But be carefull with this file, VirusTotal says that this file is infected with Backdoor/Huigezi.2007.awqs/Virus.Win32.Neptunia/Dropper.Win32.Mnless.GEN, but as for me i working good:awesome:

--------------------------------------------------------------------------
Update for AS Cabal:)

Ok, for this you will need OllyDBG with OllyDump plugin, and lot of patience:awesome:
Ok, at first run ollydbg, run AS launcher, and now quickly (in olly window) click on file>attach,[1]
and search on the list of process like :cabalstart.bat:ZUrufot
or libvorbis.dll:SKlmqWGqP, or something like that.
REMEMBER!! You have to be very quick, when olly will attach to proces, select Plugins>Ollydump>Dump[2]
and select name for the file,[3] when you save it you can turn off olly and copy the version of file you just created.
Now paste it in your cabalmain.exe and boom! You have your own bypass on AS cabal:awesome:

Current cabalmain.exe version:

FILEVERSION 1,0,0,1213
VALUE "FileVersion", "1.0.0.22"

And your internal.txt should look like on this screen:
[Only registered and activated users can see links. Click Here To Register...]

[Only registered and activated users can see links. Click Here To Register...]
[Only registered and activated users can see links. Click Here To Register...]


1.[Only registered and activated users can see links. Click Here To Register...]


2.[Only registered and activated users can see links. Click Here To Register...]


3.[Only registered and activated users can see links. Click Here To Register...]

--------------------------------------------------------------------------
Update molebox 2.x unpacker script.
[Only registered and activated users can see links. Click Here To Register...]
[Only registered and activated users can see links. Click Here To Register...]


Ok, folks, use this when cabalmain.exe is packed with molebox 2.x packer.
First, download plugin&script, unpack it, copy scritpt, filen.exe and mbunpack.dll to your cabal folder, copy plugin to \ollydbg\plugins\.
Now launch olly, click yes when window pop up, next click plugins>ODBGcript>[Only registered and activated users can see links. Click Here To Register...]>select Molebox 2.x Unpacker and OEP Finder by Cherry.osc>click yes, now wait till unpacking will be done, and if you dont have unpacked cabalmain.exe in !unpacked! folder simply dump cabalmain.exe process save it, drop in to reshacker and you have your version:awesome:
All credit goes to Cherry

Little update, DiE 0.64 [Only registered and activated users can see links. Click Here To Register...]
02/26/2010 20:50 bebe02009#2
good:)
02/26/2010 20:57 OmegaArma#3
Quote:
Originally Posted by bebe02009 View Post
omega very noob
Why? many ppl dont know that, and they are spamming my email for bypass'es on lot of servers.
So why you are saying that i'm noob?
02/26/2010 21:58 fear-x#4
so if i do this? i can use any hacks..basicly i have bypass? ;]
02/26/2010 22:17 OmegaArma#5
Quote:
Originally Posted by fear-x View Post
so if i do this? i can use any hacks..basicly i have bypass? ;]
Yup, exactly :)
02/26/2010 22:42 youngvegas#6
hey i did this an everything goes good until i get to loading screen wen its about to complete an get to log in screen an it crashes
02/27/2010 00:56 mrpsycho#7
why cabal zaan for your example of all servers...

/sigh
02/27/2010 01:30 OmegaArma#8
Quote:
Originally Posted by mrpsycho View Post
why cabal zaan for your example of all servers...

/sigh
Why not? That was only an example..

/sigh >.>

Quote:
(its working on 90% noob cabal severs).
02/27/2010 10:37 xXxXDarknessXxXx#9
that works for cabal chronicle?elite?any 1 try?
02/27/2010 11:39 quevagabond#10
so this just works on some ps with very own anticheat system, not some with xtrap or gameguard??
my cabalmain appears like this: This file is non-standard resource lay-out... it has probably been compressed by EXE compressor. So? Would u mind giving out solutions?
02/27/2010 14:06 OmegaArma#11
Quote:
Originally Posted by quevagabond View Post
so this just works on some ps with very own anticheat system, not some with xtrap or gameguard??
my cabalmain appears like this: This file is non-standard resource lay-out... it has probably been compressed by EXE compressor. So? Would u mind giving out solutions?
That means cabalmain.exe is packed with file compressor, you can unpack it, but at first you must know what compresor they used.
Hmmm, download Hex editor, open cabalmain.exe with it and search on the same beginning for words like: Themida, PEC2x, UPX! or something like that, then post here what you find
And yes this will bypass x-trap.

Quote:
Originally Posted by xXxXDarknessXxXx View Post
that works for cabal chronicle?elite?any 1 try?
This will work on any ep2 priv server:)
02/27/2010 14:45 Pupix#12
Quote:
Originally Posted by OmegaArma View Post
This will work on any ep2 priv server:)
elite is ep3
02/27/2010 16:22 quevagabond#13
To omega, i tried all three keywords but only same result: string not found
02/27/2010 18:15 HellSpider#14
Ah don't look for any hex strings, that's a fail. To find out the packer do this:

1) Download Die 0.64 (DetectItEasy).
2) Analyze the file with DiE.
3) (Optional) If DiE says nothing found post the file here and I'll take a look on it :).
02/27/2010 20:06 quevagabond#15
well since i dont know well about Die so i just try almost everything.
Compiler:Micro Vi C++
Heuristic: nothing found
OEP finder v.01: not found
FSG 2.0: not packed by FSG 2.0
Peid signatures 0.15: nothing detected
unpack infor: nothing found
Vera 0.15: Themida error
Btw can someone tell me how to upload my cabalmain.exe properly to this forum. tks in advance
[Only registered and activated users can see links. Click Here To Register...] here is the link of the patch.