Register for your free account! | Forgot your password?

Go Back   elitepvpers > MMORPGs > Archlord
You last visited: Today at 08:01

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



[RESEARCH] Packets Etc.

Discussion on [RESEARCH] Packets Etc. within the Archlord forum part of the MMORPGs category.

Reply
 
Old   #1
 
elite*gold: 0
Join Date: May 2009
Posts: 8
Received Thanks: 0
Exclamation [RESEARCH] Packets Etc.

Okay guys -
This post will be updated as I come across new and exciting ways to mess with the game. Please try to replicate my results and conclusions, as well as contribute your own theories and findings. Whilst there is no reason for you leeching scumbags to read this thread, those of you that want some starting blocks to start your own research may find this useful.

WORK IN PROGRESS
Just like the Cooldown method, the client collects a different packet encryption on login- So these wont be a constant method.

---------------------------------------------------------------------------------
Player Positioning- WALKTHRUWALLS
Pos (1) (2) (3)
• Pos 1 = X
• Pos 2 = Z
• Pos 3 = Y
(The X and Y may be switched, though I am sure the 2nd numerical is the Z-axis)

By editing the packets sent when we issue the client command to move, we can effect the overall destination of the character. This on its own is nothing special, but lets not forget something very important..

BY FILTERING THE PACKET, WE CAN SET A LOCATION TO RUN TO.. REGARDLESS OF OBSTACLES. What does this mean? Well yeah we can run through walls using this workaround. Always handy.

Method:
Type /fps into chat.
Check your top right- We'll have a few values popup.

Server Time:
Position:
GrassDraw? <--- Who cares? ha

Take a look at this packet I sniffed from issuing a move command.
Packet size = 40

B1 28 00 3D 01 00 00 4E C4 7D D1 AE 50 36 63 8B E3 15 83 FC 14 6E A1 14 C1 D0 61 E6 F7 26 64 67 7D 24 A6 F9 CA 38 AF BF

Ive already determined in other posts that B1 28 defines that packet as a Client command.

3D in space of the 4th byte represents the TIMER on the packet. (This will always be different- disregard this byte and make sure you never MODIFY in a filter)

Note: the LAST byte of the packet seems to ALWAYS be same. I will call this the movement function for now, but I dont have a clue what it really shows

Bytes 16-23 and 24 to 39 are what we want to look at.
Unfortunately half way through writing this, Ive hit daily server maintenance.. OH DEAR!

Basically, by recording the packet of your desired location, you can set a filter to search B1 28 ..... (and even put in your movement function byte in slot 40. and THEN, when the filter is turned on you should run through all obstacles INCLUDING WALLS, HOUSES, WATER ETC to reach that destination. The fun begins when you turn the filter off halfway through that movement, and gain full control of your players movement whilst in a "secret" spot.


Other Testing:
Record yourself clicking an inaccessible spot on your mini-map - Can you use this method to get there? How does the game determine how the environment blocks your movement- clicking far away seems to put your "move cursor" on the closest obstacle.
My theory is that further research into the 16-39 BYTE section of the packet will allow us to create an XYZ coord hack (of sorts)

--------------------------------------------


PK PACKETS
- Research the packet recieved for PKing a player- Then get his loot off the ground ;]

MORE TO COME- I HAVE AN EXAM! EEEEEEK
Pandarrrz is offline  
Old 05/07/2009, 18:23   #2
 
elite*gold: 0
Join Date: Nov 2008
Posts: 30
Received Thanks: 2
has this even been tested?
illeatyourbaby is offline  
Reply


Similar Threads Similar Threads
Godswar research
01/16/2010 - General Gaming Discussion - 4 Replies
maybe somebody can do something with this: so far i know the gold amount u require to upgrade your items is client side, so u can just get the address from cheat engine and deal with it, dont forget to firstdeposit your money in the bak so you wont use ur own money every time you upgrade or even try to upgrade an item, this will temporaly change it id as an example: the SPEAR item id is 0578 in hex and 1400 un dec so once u have send the packet for the upgrade stuff using "1400 item id"...
Research into inSro
06/14/2009 - SRO Private Server - 27 Replies
Well I was wondering if this inSro was a fake or real thing so I decided to ask one of their Admins(Matt). On their site there is a Customer Support Chat 27/7 online here is the conversation(im Justin btw): Firstly I asked him is there any screenshots of ingame Matt: Not releasing them yet. Justin: why not? Matt: Because our devs are not ready to release them yet? O.o Justin: i see hmmm
I did my CRC research...
12/28/2008 - Dekaron - 20 Replies
I compared the old no crc's to the regular files and realized I need to fully unpack the .exe. Can someone send me the unpacker file. I remember back in the day we used a text file to fully extract the .exe within Olly. Can someone give me that file? If so I think I can make the no_crc.
NosTale Research
12/16/2008 - Nostale - 12 Replies
Well I'm doing some research on this game. I'll post my status here as soon as I'll find something new. --------------- NosTale --------------- Packet Encryption : Ok there are different encryptions. The one used for the recv-stream (packets from server) was just cracked by me lolz. Although as soon as you get ingame the whole encryption changes.
[Research] Droprates
01/10/2008 - EO PServer Hosting - 6 Replies
Ok well I've been messing around with drop rates trying to get them as good as possible. What I am doing currently to test them is I added a new drop rule (cq_dropitemrule) and changed it so 3 different monsters all used that monster class. Currently for these tests I will be using cg_dropitemrule chance of 100,000,000. All statistics are drop_item_chance in cq_monstertype I am not sure if it makes much of a difference but I have explode_item_chance1 10 explode_item_chance2 30...



All times are GMT +1. The time now is 08:02.


Powered by vBulletin®
Copyright ©2000 - 2026, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2026 elitepvpers All Rights Reserved.