Register for your free account! | Forgot your password?

You last visited: Today at 15:39

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



InsanityFlyff Bypass

Discussion on InsanityFlyff Bypass within the Flyff Hacks, Bots, Cheats, Exploits & Macros forum part of the Flyff category.

Reply
 
Old   #1



 
+Yazzn's Avatar
 
elite*gold: 420
Join Date: Jan 2012
Posts: 1,082
Received Thanks: 1,000
InsanityFlyff Bypass

Code:
	memcpy((LPVOID)0x480F21, (const void *)"\x90\x90\x90\x90\x90\x90", 6);
	memcpy((LPVOID)0x480F90, (const void *)"\x90\x90\x90\x90\x90\x90", 6);
	memcpy((LPVOID)0x480FFF, (const void *)"\x90\x90\x90\x90\x90\x90", 6);
	memcpy((LPVOID)0x481079, (const void *)"\x90\x90\x90\x90\x90\x90", 6);
Bypasses their "mega" check for QueryPerformanceCounter and WSASend/WSARecv hooks by replacing the exitprocess call with NOP.
+Yazzn is offline  
Thanks
2 Users
Old 12/28/2012, 01:21   #2

 
Flyff_Service's Avatar
 
elite*gold: 0
Join Date: Oct 2008
Posts: 680
Received Thanks: 337
You could also NOP the CreateThread call which creates this check thread.
Flyff_Service is offline  
Old 12/28/2012, 19:02   #3
 
xMootie's Avatar
 
elite*gold: 0
Join Date: Feb 2012
Posts: 208
Received Thanks: 486
Quote:
Originally Posted by Yazzn (: View Post
Code:
	memcpy((LPVOID)0x480F21, (const void *)"\x90\x90\x90\x90\x90\x90", 6);
	memcpy((LPVOID)0x480F90, (const void *)"\x90\x90\x90\x90\x90\x90", 6);
	memcpy((LPVOID)0x480FFF, (const void *)"\x90\x90\x90\x90\x90\x90", 6);
	memcpy((LPVOID)0x481079, (const void *)"\x90\x90\x90\x90\x90\x90", 6);
Bypasses their "mega" check for QueryPerformanceCounter and WSASend/WSARecv hooks by replacing the exitprocess call with NOP.
ExitProcess? Seriously, what are the "geniuses" at InsanityFlyff thinking? Guess they finally went Insane...

Watch them change the call to use the standard library "exit" function and get bypassed again just as easily.
xMootie is offline  
Thanks
4 Users
Old 12/28/2012, 21:35   #4
 
elite*gold: 0
Join Date: Nov 2012
Posts: 367
Received Thanks: 436
Found that **** before too, i thought flyff is jus ****** coded(well it is) but its jus insanityflyff
Fremo.. is offline  
Thanks
1 User
Old 12/29/2012, 14:20   #5
 
ChinkyCheek's Avatar
 
elite*gold: 0
Join Date: Feb 2010
Posts: 22
Received Thanks: 1
Kind of new with this, what is NOP?
Sorry if this is a bothersome question from a newbie like me!
ChinkyCheek is offline  
Old 12/30/2012, 04:05   #6
 
xMootie's Avatar
 
elite*gold: 0
Join Date: Feb 2012
Posts: 208
Received Thanks: 486
Quote:
Originally Posted by ChinkyCheek View Post
Kind of new with this, what is NOP?
Sorry if this is a bothersome question from a newbie like me!
\x90.
xMootie is offline  
Old 12/30/2012, 08:35   #7
 
ChinkyCheek's Avatar
 
elite*gold: 0
Join Date: Feb 2010
Posts: 22
Received Thanks: 1
And what do we use to edit this? and edit which file/s? :|
Forgot to include it into my last post. (Hex Editor or?)
ChinkyCheek is offline  
Old 12/30/2012, 11:30   #8



 
+Yazzn's Avatar
 
elite*gold: 420
Join Date: Jan 2012
Posts: 1,082
Received Thanks: 1,000
Quote:
Originally Posted by Flyff_Service View Post
You could also NOP the CreateThread call which creates this check thread.
Yes but then you can't interrupt it whenever you want.

Quote:
Originally Posted by XorLethal View Post
ExitProcess? Seriously, what are the "geniuses" at InsanityFlyff thinking? Guess they finally went Insane...

Watch them change the call to use the standard library "exit" function and get bypassed again just as easily.
As you will see in the code below you could just hook QPC, WSASend, etc 5 bytes later and reconstruct the overwritten opcodes or use hot patching or fake the IAT or (...)


Conclusion: The guys from InsanityFlyFF don't know what they're doing.
+Yazzn is offline  
Thanks
1 User
Old 12/30/2012, 20:01   #9
 
xMootie's Avatar
 
elite*gold: 0
Join Date: Feb 2012
Posts: 208
Received Thanks: 486
By the way, you might want to look into hooking other functions to modify or read packet data. If you use the functions below, you won't need to reverse the encryption routine.

void CClientSock::Send(char* lpData, DWORD dwDataSize, DPID dpidTo)

- Just send it data for easy packet sending, no encryption necessary

CBuffer* CClientSock::Fetch(DWORD dwBytes)

- Detour call and use return to read packet data decrypted.

Note that both methods are non-static member functions, thus you need to find the address of g_DPlay(global non-static object), which can be obtained by hooking its initialization between the entry point and WinMain().
xMootie is offline  
Thanks
1 User
Old 01/01/2013, 22:35   #10
 
elite*gold: 1
Join Date: Oct 2010
Posts: 265
Received Thanks: 48
Could some1 build a Bypass , dunno what I have to do haha
xBleak is offline  
Old 01/31/2013, 06:01   #11
 
elite*gold: 0
Join Date: Jun 2012
Posts: 6
Received Thanks: 0
can i ask what if the function of this code?
naomiclark is offline  
Reply


Similar Threads Similar Threads
S> Insanityflyff
08/28/2011 - Flyff Trading - 3 Replies
Suche Chars/eq/perin/ip auf Insanity flyff, zahle mit psc :D
[S] InsanityFlyff
08/23/2011 - Flyff Trading - 2 Replies
Hey Leute, ich bin auf der Suche nach Perins/Gegenstände auf dem PrivatServer Insanity Flyff. Bezahlt wird per PSC/Ukash. Falls jemand dort spielt und noch was verkaufen will -> PN oder hier im Thread. Im Übrigen suche ich Asylum oder Baku Sachen!! -> Lvl 250-300 Zahle Imba und bin deshalb nur auf der Suche nach GUTEM Equip mit Hammer Awakes.
[B] Ipoints auf InsanityFlyFF [S] PSC
02/28/2011 - Flyff Trading - 16 Replies
Hey leute, Ich biete euch einen Insanity FlyFF Account mit 2500 Ipoints. Der Account mehr als 150$ Wert. Ich werde ihn aber für ein bestimmten Betrag an PSC verkaufen. http://img6.imagebanana.com/img/d6yngfbh/thumb/Unb enannt.png Bietet einfach hier im Topic oder einfach ne PN senden MfG Edit leute: Die iPoints sind auf 2500 gestiegen!! Altes screen rausgenommen und neues eingefügt.



All times are GMT +1. The time now is 15:39.


Powered by vBulletin®
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2025 elitepvpers All Rights Reserved.