As far as i know, u will need the Items uniqueID, which is given by the server only.
U can find this ID using WPE if u let any Item change the position.
But if u now want to change this ID and let's say u are only trying to put that *hacked* Item to another position, the server just does nothing, because the Items ID is not known by him.
I think the complete ID is given by owners-ID, position, where (inventory or bank), Item-ID.
But its also an encoded ID, so if u really want to hack that u will first need to re-encode the whole packet, to know what the packet is holding.
Maybe that can be done the same way the ini-decrypt does.
Lastly the is the ciphering Code, which every time u relog changes, but if u found the way it does, u got it.
just my opinion ..