Here is guid to edit 3 version of agentking from
You must using Hexedit and follow step from this guide to change value from
RED color to
GREEN color.
AgentKing_1 323584 Byte, DLL 217088 Byte
at AgenKing.exe
1)40f872 jne 410a18 < no code
find at offset F86B
e8 6d c8 01 00 85 c0
xx xx xx xx xx xx
change to
e8 6d c8 01 00 85 c0
90 90 90 90 90 90
2)40fa4d jne xxx < no code
find at offset FA45
0F 84 C9 03 00 00 85 FF
xx xx xx xx xx xx
change to
0F 84 C9 03 00 00 85 FF
90 90 90 90 90 90
3)40fa82 jne 40fd1c < no code
find at offset F878
e8 78 de 00 00 83 c4 08 85 c0
xx xx xx xx xx xx
change to
e8 78 de 00 00 83 c4 08 85 c0
90 90 90 90 90 90
4)40fa8e jne 40fd1c < no code
find at offset FA88
39 1d 70 b6 44 00
xx xx xx xx xx xx
change to
39 1d 70 b6 44 00
90 90 90 90 90 90
at CountrymakeinUS.dll
5)10003d60 set unhook < change to ret
find at offset 3D60
a1 10 3f 05 10 50
change to
c3 10 3f 05 10 50
6)1000546b jne 1000549c < je 1000549c
find at offset 546B
75 2f a1 c4 05 04 10
change to
74 2f a1 c4 05 04 10
----------------------------------------------------
AgentKing_2 323584 Byte, DLL 204800 Byte
at AgentKing.exe
1)40F872 jne 410a18 < no code
find at offset F86B
e8 6d c8 01 00 85 c0
xx xx xx xx xx xx
change to
e8 6d c8 01 00 85 c0
90 90 90 90 90 90
2)40fa4d jne 40fe14 < no code
find at offset FA45
0F 84 C9 03 00 00 85 FF
xx xx xx xx xx xx
change to
0F 84 C9 03 00 00 85 FF
90 90 90 90 90 90
3)40fa82 jne 40fd1c < no code
find at offset F878
e8 78 de 00 00 83 c4 08 85 c0
xx xx xx xx xx xx
change to
e8 78 de 00 00 83 c4 08 85 c0
90 90 90 90 90 90
4)40fa8e jne 40fd1c < no code
find at offset FA88
39 1d 70 b6 44 00
xx xx xx xx xx xx
change to
39 1d 70 b6 44 00
90 90 90 90 90 90
at CountrymakeinUS.dll
5)10003384 je 1000338f < jmp 1000338f
find at offset 33F6
74 09 8b 15 24 99 04 10
change to
eb 09 8b 15 24 99 04 10
6)10005220 set unhook < change to ret
find at offset 5220
a1 24 99 04 10 50
change to
c3 24 99 04 10 50
7)100054dd jne 1000554f < je 1000554f
find at offset 54DD
75 70 a1 5c 99 04 10
change to
74 70 a1 5c 99 04 10
-------------------------------------------------------------
AgentKing_3 824KB, DLL 536KB
at AgentKing.exe
1)
10001012:
push 10000000
push 100047b0
push 02
jmp 10001047
find
8b c6 5e c3
90 90 90 90 90 90 90 90 90 90 90 90 90 90
change to
8b c6 5e c3
68 00 00 00 10 68 b0 47 00 10 6a 02 eb 27
--------------------------
2)
10001047:
call dword ptr [10032394]
jmp 10001086
find
c7 01 e8 23 03 10 c3
90 90 90 90 90 90 90 90
change to
c7 01 e8 23 03 10 c3
ff 15 94 23 03 10 eb 37
--------------------------
3)
10001086:
push ffffffff
jmp 10001bf1
find
c6 06 80 5e c3
90 90 90 90 90 90 90 90 90 90
change to
c6 06 80 5e c3
68 ff ff ff ff e9 61 0b 00 00
--------------------------
4)
10001bf1:
call 7c80239c
ret 000C
find
83 E1 03 F3 AA 5F 5B C2 0C 00
90 90 90 90 90 90 90 90
change to
83 E1 03 F3 AA 5F 5B C2 0C 00
e8 a6 07 80 6c c2 0c 00
--------------------------
5)
10003555:
push 00000000
jmp 10001012
find
C2 04 00 90 90 E9 BD B8 02 00
90 90 90 90 90 90 90 90 90 90
change to
C2 04 00 90 90 E9 BD B8 02 00
68 00 00 00 00 e9 b3 da ff ff
--------------------------
6)
10003F77:
jmp 10003555
find
33 c0 5b 8b e5 5d
c2 0c 00 90 90
change to
33 c0 5b 8b e5 5d
e9 d9 f5 ff ff