Register for your free account! | Forgot your password?

Go Back   elitepvpers > MMORPGs > Conquer Online 2 > CO2 Programming
You last visited: Today at 16:07

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



[Mini Guide]Bypassing the new added debugger detection

Discussion on [Mini Guide]Bypassing the new added debugger detection within the CO2 Programming forum part of the Conquer Online 2 category.

Reply
 
Old 07/06/2012, 01:01   #16
 
Zeroxelli's Avatar
 
elite*gold: 0
Join Date: May 2008
Posts: 1,769
Received Thanks: 1,143
Quote:
Originally Posted by _fobos_ View Post
A) Thing is, it does get loaded in the process. What function gets called to load a DLL into memory? Exactly, patch that if you don't want it loaded into memory.

B) It doesn't, since there is no use to attaching a bot to a client if you can not bot because you get restricted.

C) Wrong there, I can debug just fine, I can run Conquer thru a debugger just fine as well. And I can bot cliented just fine as well.

D) I have come to a conclusion? Seems to me you have come to the conclusion that I came to a conclusion, I simply stated that it simply wouldn't help him to get past the 1 day restriction. And the restriction being completely server sided is also false.

So now let's all get to the conclusion that telling someone he is wrong is a no go.
Make your own DLL with the same functions.
Zeroxelli is offline  
Old 07/06/2012, 01:03   #17
 
{ Angelius }'s Avatar
 
elite*gold: 0
Join Date: Aug 2010
Posts: 992
Received Thanks: 1,110
Quote:
Originally Posted by shitboi View Post
Thanks for you reply angelius... I have already figured out what needed to be done. I most debug using CheatEngine (though most of you will disagree), but i simply can't get olly to do real time debugging on Conquer. Anyways my problem is solved for now.
You welcome

Quote:
Originally Posted by IAmHawtness View Post
Works fine here, I can easily attach Cheat Engine to Conquer without doing any modifications at all.
The reason that the IsDebuggerPresent patch is needed is for when you're debugging Conquer.exe during launch. If you don't patch IsDebuggerPresent, you won't be able to launch Conquer through a debugger.
It really seemed useless to me as the process terminated either way...but that explains it and i guess i was mistaken


Quote:
Originally Posted by _fobos_ View Post
A) Thing is, it does get loaded in the process. What function gets called to load a DLL into memory? Exactly, patch that if you don't want it loaded into memory.

B) It doesn't, since there is no use to attaching a bot to a client if you can not bot because you get restricted.

C) Wrong there, I can debug just fine, I can run Conquer thru a debugger just fine as well. And I can bot cliented just fine as well.

D) I have come to a conclusion? Seems to me you have come to the conclusion that I came to a conclusion, I simply stated that it simply wouldn't help him to get past the 1 day restriction. And the restriction being completely server sided is also false.

So now let's all get to the conclusion that telling someone he is wrong is a no go.
A-I don't give a crap if its loaded into the process memory or not what i care about is to stop the threads inside that dll from being created threads that takes care of the anti-debugging shit and all i had to do is a 2 bytes patch is there anything easier than that ?

B- It does.. the bot is online for hours everyday and i never got restricted in fact spamming the server non stop with data is the only thing that got me restricted :|

C- Yeah its clear enough

D- is stupid enough to even try and replay back to it
{ Angelius } is offline  
Old 07/06/2012, 01:35   #18
 
elite*gold: 0
Join Date: Sep 2008
Posts: 490
Received Thanks: 595
Quote:
Originally Posted by { Angelius } View Post
@ _fobos_

A- By doing what i did in that video you are simply bypassing all the functions/anti-debugging techniques that the tqanp.dll contains just like its never been loaded into the process...

B- The point of this thread is to give the memory based bots that uses the debugging techniques the ability to Attach/debug conquer.exe again

C- Disabling the IsDebuggerPresent function will not do you any good and it will not let you attach or debug conquer.exe

D- seems like you have come to a conclusion that what i did in that video should stop the 1 day restriction thing... so let me correct you by saying that it has nothing to do with it, and that the 1 day restriction thing is server sided

@ shitboi

If your intention is to debug conquer.exe using something like ollydbg there is some library's/plugins that can hide the debugger for you so you don't have to do any of this.
Quote:
Originally Posted by Zeroxelli View Post
Make your own DLL with the same functions.
Bwhahaha, totally!

@ angelicus, too lazy to even press quote for that one.

A. "A- By doing what i did in that video you are simply bypassing all the functions/anti-debugging techniques that the tqanp.dll contains just like its never been loaded into the process..."
"I don't give a crap if its loaded into the process memory or not"
Contradiction there.

B) That simply does not make any sense since the same anti debugging techniques are also used in the main Conquer.exe as well not only in the DLL; which you also have to patch.
Google anti debugging techniques, you'll find some more. Next to that I find this answer again very contradicting to your answer before as well, you say " 1 day restriction thing is server sided " while here you say you run the bot for hours without getting restricted. I'm sorry but I'm not even trying here..

D) I do not understand what you mean by "replay back to it",

When I first answered in your thread I didn't even mean to be a dick, I meant to explain something to someone who asked a question, just like you should. You make false statements which I then point out, and contradict yourself in multiple answers. And I still don't mean to be a dick here, think it's nice you try though.

Anyway I have seen enough of this thread, it's clear you do not like to be told you're wrong.
_fobos_ is offline  
Old 07/06/2012, 02:19   #19
 
{ Angelius }'s Avatar
 
elite*gold: 0
Join Date: Aug 2010
Posts: 992
Received Thanks: 1,110
Quote:
Originally Posted by _fobos_ View Post
Bwhahaha, totally!

@ angelicus, too lazy to even press quote for that one.

A. "A- By doing what i did in that video you are simply bypassing all the functions/anti-debugging techniques that the tqanp.dll contains just like its never been loaded into the process..."
"I don't give a **** if its loaded into the process memory or not"
Contradiction there.

B) That simply does not make any sense since the same anti debugging techniques are also used in the main Conquer.exe as well not only in the DLL; which you also have to patch.
Google anti debugging techniques, you'll find some more. Next to that I find this answer again very contradicting to your answer before as well, you say " 1 day restriction thing is server sided " while here you say you run the bot for hours without getting restricted. I'm sorry but I'm not even trying here..

D) I do not understand what you mean by "replay back to it",

When I first answered in your thread I didn't even mean to be a ****, I meant to explain something to someone who asked a question, just like you should. You make false statements which I then point out, and contradict yourself in multiple answers. And I still don't mean to be a **** here, think it's nice you try though.

Anyway I have seen enough of this thread, it's clear you do not like to be told you're wrong.
You are not a **** you are a saint... now i'm going to finish watching my movie before i read the whole thing and change my mind about you.
{ Angelius } is offline  
Old 07/06/2012, 04:23   #20
 
Zeroxelli's Avatar
 
elite*gold: 0
Join Date: May 2008
Posts: 1,769
Received Thanks: 1,143
Easy there tiger, this forum isn't here for people to have spite. If you have a problem with someone, you should take it to PM and keep out of the public's eye. That goes for everyone.
Zeroxelli is offline  
Old 07/06/2012, 09:44   #21
 
elite*gold: 0
Join Date: Jan 2007
Posts: 118
Received Thanks: 20
My private proxy is working fine when my client is loaded via cogen hook method. How I wish I am an assembly literate so that I can explore on that olydbg or CE things and help in my own little way lol...
xmen01235 is offline  
Old 07/06/2012, 12:12   #22
 
elite*gold: 0
Join Date: Dec 2011
Posts: 1,537
Received Thanks: 785
Quote:
Originally Posted by xmen01235 View Post
How I wish I am an assembly literate so that I can explore on that olydbg or CE things and help in my own little way lol...
Maybe go learn asm?
I don't have a username is offline  
Old 09/06/2012, 20:20   #23
 
elite*gold: 20
Join Date: Aug 2005
Posts: 1,734
Received Thanks: 1,001
Good job, +thanks. I can now actually use the newer OllyDBG to go through the file.
tanelipe is offline  
Reply


Similar Threads Similar Threads
Bypassing GameGuard Guide
10/02/2011 - Rappelz - 36 Replies
Hey there! The simple fact that you are willing to read this tutorial shows that you are at least interested in making your own hacks/bypasses. I will walk you guys through the general idea behind the PostMessage bypass and its sourcecode. Here is a list of tools that you will probably need (so look for a copy of these programs): -Microsoft Visual C++ (any version will do, I myself use 6.0) -Microsoft Visual Basic (just to save the hassle and to be able to setup a GUI real...
Debugger detection wtf?
02/15/2010 - General Coding - 12 Replies
Hi alle zusammen, Dieser Thread richtet sich an Leute, die Ahnung von Windows Internals und am besten PEB, Debuggerdetection, NT etc. haben (an alle Linuxer, ihr könnt hier aufhören zu lesen, falls ihr nicht vorhabt, etwas mit Windows zu machen ;)) Keine Angst, da es sich bei mir um einen 64bitler handelt, geht es vorläufig (!) nicht in den ring0. Mein Problem ist eine äußerst nervige Debuggerdetection beim Spiel S4 League. Ich dachte erst, sie kommt evtl. durch Themida, aber es scheint...
[Request] Guide about Instruction changing without debugger
12/17/2009 - Cabal Online - 0 Replies
Hello, for the ones who know about it... Is there another way I could get the current EIP (instruction pointer) on a running process (attached, for example, with MHS and without any live debugger), so I could pause the execution of that given process, get the EIP, and then trace back (manually) execution up to an instruction I wanted to change its behavior? Well, probably while tracing back the execution I could get caught by instruction jumps (given an address, many many jumps could have...
[Guide] Bypassing the Chat Filter
11/23/2009 - Mabinogi Hacks, Bots, Cheats & Exploits - 6 Replies
Hello people :D As you all know I'm working on my bot, but during my 10 minute brake I decided to post this... Bypassing the Chat Filter is incredibly easy and requires no mods. First I write the following text down: (happy) then I copy it. Once you have that text copied you can say things like: I'm tired of all these god da(happy)mn mother fu(happy)cking snakes on this god da(happy)mn mother fu(happy)cking plane! Never say: fuck(happy)ing because other people will see ***(happy)ing and...



All times are GMT +1. The time now is 16:09.


Powered by vBulletin®
Copyright ©2000 - 2026, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2026 elitepvpers All Rights Reserved.