Source + Bot Heroes Ascent

04/15/2020 12:27 Nachico#1
Hi All,

A known terrorist is roaming our streets and he tried to fuck me with shitty updates, false promises, blackmail, lies and other deceiving tactics. I had enough. I like to get fucked, but not by him. Since he thinks all his clients are mentally disabled or something, i decided to proof him otherwise.

The only reason i bought his bot is simply i don't have the time + motivation. But he sure motivated me to decompile his shit and make it public. Asshole.

Once you start the bot for the very first time it will place a hidden .dll in your programfiles/windows G/GuildWars.dll and.dll. This folder + .dll are hidden by windows RSH hide functions. Google to enable hidden folders Thats a bypass around his shitty security.

Code:
Func INITIALIZ()
	Local $LINITIALIZ = BinaryToString("0x5C69636F6E5C4775696C64576172732E646C6C")
	Local $LINITIALIZ0 = BinaryToString("0x5C57696E646F777320475C4775696C64576172732E646C6C")
	Local $LINITIALIZ1 = BinaryToString("0x2D2D2D2D2D2D2D2D2D2D2D2D2D")
	If FileExists(@ScriptDir & $LINITIALIZ) Then
		Execute(BinaryToString("0x2046696C654D6F76652840536372697074446972202620225C69636F6E5C4775696C64576172732E646C6C222C204050726F6772616D46696C6573446972202620225C57696E646F777320475C222C203929"))
		Execute(BinaryToString("0x46696C6553657441747472696220284050726F6772616D46696C6573446972202620225C57696E646F777320475C4775696C64576172732E646C6C222C20222B5253482229"))
	ElseIf FileExists         [MENTION=1202675]Program[/MENTION]FilesDir & $LINITIALIZ0) Then
		OUT($LINITIALIZ1)
	Else
		$BOOLRUN = False
		Exit
	EndIf
EndFunc   ;==>INITIALIZ
You can use Cyberchef to change the hex (0x5C69636F6E5C4775696C64576172732E646C6C) to readable alphabetic language [Only registered and activated users can see links. Click Here To Register...]

Code:
Func INITIALIZ()
	Local $LINITIALIZ =  '\icon\GuildWars.dll'
	Local $LINITIALIZ0 = "\Windows G\GuildWars.dll"
	Local $LINITIALIZ1 = "-------------"
	If FileExists('@'ScriptDir & $LINITIALIZ) Then
		FileMove('@'ScriptDir & "\icon\GuildWars.dll", ProgramFilesDir & "\Windows G\", 9)
		FileSetAttrib     ]ProgramFilesDir & "\Windows G\GuildWars.dll", "+RSH")
	ElseIf FileExists    ProgramFilesDir & $LINITIALIZ0) Then
		OUT($LINITIALIZ1)
	Else
		$BOOLRUN = False
		Exit
	EndIf
EndFunc   ;==>INITIALIZ

Anyway, if you have any questions pm me on discord. Have fun with it! :cool:
ps....he will say it's virus/malware and shit...you know him. :mofo:. Anybody that has understanding knows, it ain't. I hope i won't get banned but when i do, you guys know whats up.

Add me on discord for the files.
04/16/2020 03:11 phat34#2
can you put the '@' in single quotes and re-write that part with the mention...


… or you can just

Code:
consoleWrite(BinaryToString("0x5C69636F6E5C4775696C64576172732E646C6C"))
04/16/2020 23:12 naric#3
What do the hidden files do?
04/18/2020 16:59 GrimRevenge#4
What your discord? I tried the Nachico#7008 and nothing pulls up