Register for your free account! | Forgot your password?

Go Back   elitepvpers > MMORPGs > Conquer Online 2
You last visited: Today at 03:40

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



Injection, crypt/decrypt and IP packets

Discussion on Injection, crypt/decrypt and IP packets within the Conquer Online 2 forum part of the MMORPGs category.

Reply
 
Old   #1
 
elite*gold: 0
Join Date: Mar 2006
Posts: 64
Received Thanks: 15
Here are some interesting things I think. If any of you has answer, feel free to post, or PM me if you think this is not public discussion (no noob PM pls). Mod, move my topic if I'm not in the right forum
1/ Is injection (through a dll and modifyed loader) in CO2 encrypted/decrypted packets possible ? About encryption and decryption of CO2 packets, I'd like to speak with unknowone, if possible.
2/ About decrypted packets : editing ./Socket.h, ./server.dat, ./ini/fuse.ini and all others ini or dat files like Armor, Common, ItemAdd, ItemType, LevelExp, ProgressHP/MP/Xp, res.dat, etc, modifying values of such variables as hereunder should be possible through injection ?
ActionID
BodyType=%d
BornAction=%d
Delay=%d
DieDelay=%u
DisableThreadLibraryCalls
Effect=%s
EffectId%d=%s
EffectIndex=%s
Index%d
ItemDefault
ItemFlash
ItemUse
Jump
Ko
KoShowRecord
Level=%d
LevelUp
MaxLife=%d
Transform%d
XpSkillType%d

And many others that are available to modify.
Seems like there is sort of dbg protection in routines:
\.\NTICE
\.\SICE
\.\SIWDEBUG
\.\SIWVID
Though, not hard to find a bypass.

3/ Some other functions can be used by hooking wininet API:
InternetQueryDataAvailable
InternetSetFilePointer
InternetSetStatusCallback
InternetWriteFile

And many others (too much to report here) through Kernel32 API.
Anyone can help (I mean those who knows what I'm talking about !) ?
H47cH is offline  
Old 03/11/2006, 18:05   #2
 
elite*gold: 0
Join Date: Mar 2006
Posts: 64
Received Thanks: 15
I'm very surprised none can answer at any questions ...
Nobody at all ?
H47cH is offline  
Old 03/11/2006, 18:20   #3
 
tsu's Avatar
 
elite*gold: 0
Join Date: Jan 2006
Posts: 2,534
Received Thanks: 51
Check with some of the programmers / LVL 2 of epvp CO forum.
Like, Ultimation, unknownone, Hojo (?), chocoman4k, Ultima (?)
There are for sure more of them, but these are the ones I could think of right now.
tsu is offline  
Old 03/12/2006, 14:49   #4
 
elite*gold: 0
Join Date: Apr 2005
Posts: 970
Received Thanks: 17
Er, its not very clrear on exactly what your asking for?

But yes, most of the list things can be found in memory, most will likely by DMA protected, and even getting your hands on those values is mostly pointless, unless your building a bot and want the information or something...

Please re word some of your questions.

I think you mean is DLL hooking posible to fine the encryption decption method? or find the encrypted or decrypted packets

Well yes you can, this is how COpac works with DLL injections I believe. You will probably want to chocoman4k about that not unknownone, although hes also a clever little cookie...

Well, laters :P
Hojo is offline  
Old 03/12/2006, 19:05   #5
 
elite*gold: 0
Join Date: Jul 2004
Posts: 980
Received Thanks: 46
Quote:
Originally posted by H47cH@Mar 10 2006, 17:38
Here are some interesting things I think. If any of you has answer, feel free to post, or PM me if you think this is not public discussion (no noob PM pls). Mod, move my topic if I'm not in the right forum
1/ Is injection (through a dll and modifyed loader) in CO2 encrypted/decrypted packets possible ? About encryption and decryption of CO2 packets, I'd like to speak with unknowone, if possible.
2/ About decrypted packets : editing ./Socket.h, ./server.dat, ./ini/fuse.ini and all others ini or dat files like Armor, Common, ItemAdd, ItemType, LevelExp, ProgressHP/MP/Xp, res.dat, etc, modifying values of such variables as hereunder should be possible through injection ?
ActionID
BodyType=%d
BornAction=%d
Delay=%d
DieDelay=%u
DisableThreadLibraryCalls
Effect=%s
EffectId%d=%s
EffectIndex=%s
Index%d
ItemDefault
ItemFlash
ItemUse
Jump
Ko
KoShowRecord
Level=%d
LevelUp
MaxLife=%d
Transform%d
XpSkillType%d

And many others that are available to modify.
Seems like there is sort of dbg protection in routines:
\.\NTICE
\.\SICE
\.\SIWDEBUG
\.\SIWVID
Though, not hard to find a bypass.

3/ Some other functions can be used by hooking wininet API:
InternetQueryDataAvailable
InternetSetFilePointer
InternetSetStatusCallback
InternetWriteFile

And many others (too much to report here) through Kernel32 API.
Anyone can help (I mean those who knows what I'm talking about !) ?
to 1 injection is posible but the encryption is well known so no injection is necesarry to decrypt or encrypt packets

to 2 all the stuff is server side so there is no effect when you modify it
and the protctions are realy no problem

to 3 i dont know what you want^^ if you ask how to hook and use those there are hooking tutorials and the MSDN is very helpful^^
Ultima is offline  
Old 03/13/2006, 14:31   #6
 
elite*gold: 0
Join Date: Mar 2006
Posts: 64
Received Thanks: 15
Thanks for all your replyies and sorry if it wasn't clear.
Though, Ultima answered mostly what I wanted to know.
H47cH is offline  
Old 03/13/2006, 23:27   #7
 
elite*gold: 0
Join Date: Apr 2005
Posts: 970
Received Thanks: 17
Quote:
Originally posted by H47cH@Mar 13 2006, 14:31
Thanks for all your replyies and sorry if it wasn't clear.
Though, Ultima answered mostly what I wanted to know.
D=

Ultima pwned me
Hojo is offline  
Reply


Similar Threads Similar Threads
Decrypt lineage packets
01/23/2010 - Lin2 Exploits, Hacks, Bots, Tools & Macros - 5 Replies
Hi. i leave the lineage world, and i want to do a contrivution: how to decrypt lineage packets. Sorry, but i put it in spanish, my first lenguage (i speak english too bad), if anyone want, he can tranlate to english. Hola. En primer lugar, me despido. Dejo el lineage 2 creo que para siempre. No he estado mucho en este foro, pero he aprendido mucho. En segundo lugar publico el codigo de un sniffer que empece, pero nunca acabe Esta escrito en c#, en concreto voy a publicar la parte...
[Release] Password Generator with Decrypt/Crypt Function
12/24/2009 - Coding Releases - 22 Replies
http://img5.imagebanana.com/img/njd74q36/Preview.P NG http://www.abload.de/img/nfobuttonsnln.png Hallo Evper, nach ca 2 Stunden Arbeit ist aus einem kleinen Tool etwas umfangreicheres geworden. ~ Passwort Generation mit auswähnbaren Kriterien ~ Cryptet das Pw automatisch und kopiert es in die Zwischenablage ~ Decrypt Funktion mit dabei
Decrypt packets
11/28/2009 - Kal Online - 3 Replies
Hi can any one give some hints how to decrypt incomming kall packets (int kal)?
Decrypt packets
07/29/2008 - General Coding - 11 Replies
Using programs like WPE/rPE you get the packets of the game but many times they are encrypteds... so how can decrypt them? what need to learn or to start to look for?. Thx.
Help with packets decrypt.
05/08/2008 - Lineage 2 - 0 Replies
Hi. I was trying to decrypt l2 login packets but i need help. I tried decrypting with blowfish key ";5.]94-31==-%xT!^ BA 00 13 12 F9 B2 43 5B 3B BF BB 31 51 71 CF 25 71 12 FE 69 2C 2A 5F 62 5E 65 EC 6F 02 B5 D1 4D A7 A9 64 B0 ED CA 3D 88 17 67 16 D4 8D C9 A3 6A 7E 42 B5 0D F6 6E 3F F2 CC 91 B6 49 BF AB 0B 31 20 43 A2 68 94 32 9C 36 48 4A D7 30 B1 CE 4B D0 EF E9 03 2C 24 E1 E4 83 24 EC F1 0E C4 C2 AC 58 0D F5 75 27 45 74 44 33 2A 25 72 86 C7 8E 81 D7 56 6A D4 A6 05 0B 43 2C C2 E1 06 FB 5E 22...



All times are GMT +1. The time now is 03:41.


Powered by vBulletin®
Copyright ©2000 - 2026, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2026 elitepvpers All Rights Reserved.