05/05/2008, 04:14
|
#1
|
elite*gold: 0
Join Date: May 2008
Posts: 49
Received Thanks: 4
|
[Helping Wsuo TUT] GMS ADDRESSES
If you didn't ind what you want it or you wanted to find it manually, i'll save you some time from searching.
Quote:
Finding walls
1. Go into the cash shop and Search 4294966946 which is the value of the wall
2. Exit the cash shop and search changed value
3. Repeat those steps until you have 1 address left
4. Add that address then right click on it and click "find out what writes to this address"
5. Right click on it then click "find out what writes to this address"
6. Enter or exit the cash shop and there should be 2 addresses
7. Click on the one with 04 (04 is the offest) and click "more information"
8. It should say what the value from the pointer is, search that value 4bytes and hex
9. Click add address manually and click "pointer" and add the green address (not the value)
Add the offset, which is in the []
You now have the left wall.
To find the other walls change to offset to:
Right wall: c
Bottom wall: 10
Top wall: 8
Finding character coordinates (you will need the right and left walls)
1.Walk to the left of a map and search the left wall value
2.Walk to the right of the map and search the right wall value
3.Go to a different map and move left and right and pick the value that is still the same as your wall
4.Right click it and click "find out what writes to this address" and you should get 1 address
5.Click "more information" and It should say what the value from the pointer is then search that value 4 bytes in hex
6.Click on add address manually and click "pointer" and add the green address (not the value) add the offset which is in the [].
You now have the X character coordinate.
To find your Y coordinate add 4 to the offset you used for your X char coordinate and use it for your Y char coordinate, example: 123+4=127.
Finding Unlimited attack
1. Go to any map (don’t attack)
2. Search 0 4bytes
3. Attack 2 times
4. Search 1
5. Attack 1 time
6. Search 2
7. Attack 1 time
8. Search 3, you should now have 1 address left
9. Right click on it and click "find out what writes to this address"
10. Move and attack
11.Pick the address with a offset
12. Click on "more information" and it should say what the value from the pointer is then search that value 4 bytes in hex then
click add address manually
click pointer and then add the green address
13. Add the offset which is in the [].
Finding Tubi
1. Search 0 4bytes
2. Drop some loot
3. Search 1 WHILE picking up the loot
4. Search 0 while not picking up
5. Repeat thos steps untill you get the address.
|
By Flarry
Quote:
Note : this is only for non-leachers ( e.g : players that got old private hacks and they can't update it ) or whoever want to learn . Also you have to be good at MATH
This old things from v0.38 will help us
Now Open your CE and dxwnd then attach MS
Check your CE Extra Setting
Now login and go in a big map ( DON'T HIT OR PRESS CTRL )
stand in a safe place and DON'T MOVE then got back to your CE and Scan "0" Byte
Now attack ONCE ONLY then Scan "0" Byte again ( Next Scan )
Attack Once again and Scan "1" Byte ( Next Scan )
Attack Once again and Scan "2" Byte ( Next Scan )
Attack Once again and Scan "3" Byte ( Next Scan )
Attack Once again and Scan "4" Byte ( Next Scan )
Now as usual after we find unlimited attack address , we click " Find out what access this address " then we got in game and move and hit then get the we pointer vlaue .. But when i did this MS crashed then my computer restarted Maybe they patched this or my CE detected .
then i found another way to get the pointer by the AOB's of the real address witch GG CRC detect if its value changed .
To find its offset we Search for this AOB:
41 89 08 FF 75 0C 8B CB FF 75 08
When you find the address go to memory view and got to it then Go up 4 times you will see the offset of the unlimited attack .
Now do this :
We got the unlimited attack Pointer abd Offset , now we are going to use it to get Item X/Y :
After finding Item X Offset , we need to find Item Y .. ( by add +4 to Item X offset )
LAST we find pID offset ( by adding +10 to Item X Offset )
With this you can update all vac's that got ItemX/ItemY/pID
|
By: b6ooy
Quote:
▪ First Step:
Open up an updated engine.
▪ Second Step:
Open up maple story and attach your engine to it (recent engines usually have the auto-attach feature).
▪ Third Step:
Alt-tab out of maple story.
▪ Fourth Step:
Open up Memory View in your engine.
▪ Fifth Step :
In Memory View, right click on the red section and click on Search Memory.
▪ Sixth Step :
Select Array of Byte (AOB).
▪ Seventh Step :
Type in the AOB which corresponds to god mode : 0F 84 85 07 00 00 8B 86 58 02 and press OK.
▪ Eight Step :
Wait.
▪ Ninth Step :
You should be brought to the god mode address.
(I won't post a picture of this part because that would just spoil the tut.)
To find other addresses, instead of writing 0F 84 85 07 00 00 8B in step 7, type in the AOB corresponding to the address you are trying to find.
[+]Credits
-Kaspersky, for the use of his engine (=.=")
-ataranlen, for the AOB list included below.
-tmockingbird (aka Tim), me for the tutorial.
[+]AOBs :
AntiLoot v1 - EAX - 0048ED02 - 50 FF 15 0C 47 77 00 85
AntiLoot v2 - EAX - 0048ED09 - 85 C0 75 1D 83 4D FC FF
AntiLoot v3 - EAX - 0048ED10 - 75 1D 83 4D FC FF 39 5D
AntiLoot v4 - ZF[x][x] - 0048ED12 - 75 1D 83 4D FC FF 39 5D
CRC - jmp - 0045D3A4 - 8B 7D 0C 83 FF 10 0F 82
CRC Scripts - Dark Sight 1 622C13 - 75 0B 8B 03 8B CB FF 50
CRC Scripts - Dark Sight 2 622c20 - C7 45 EC FF FF FF 80 8B
CRC Scripts - Demi - mov eax, [773E7C] - 00773E7C - 34 52 C6 2F 00 00 00 00
CRC Scripts - Demi final - 00517A40 - 8B 40 04 89 8B 98 03 00
CRC Scripts - Demi jmpX - 00517A3A - 8D 83 90 03 00 00 8B 40
CRC Scripts - Demi jmpY - 00517A43 - 89 8B 98 03 00 00 89 83
CRC Scripts - FMIV - 0048ED02 - 50 FF 75 DC 8D 45 CC 50
CRC Scripts - FMIV 2 48e9f4 - 23 C2 8B 40 04 8B D0 83
CRC Scripts - FMIV 3 48ED09 - 50 FF 15 0C 47 77 00 85
CRC Scripts - FMIV 4 - 0048ed03 - FF 75 DC 8D 45 CC 50 FF
CRC Scripts - FMIV 5 - 0048ed06 - 8D 45 CC 50 FF 15 0C 47
CRC Scripts - Full God Mode 1 63588A - 0F 85 85 07 00 00 8B 86
CRC Scripts - Full God Mode 2 - 6356015 -
CRC Scripts - Pin Unrandomizer - 005E3515 - 03 C2 80 38 0A 73 07 80
CRC Scripts - Shadow Partner 1 620dd4 - 0F 84 7A 04 00 00 83 7D
CRC Scripts - Shadow Partner 2Tb 621254 - 39 BB 8C 03 00 00 75 0A
CRC Scripts - Swear 1 451d0a - 74 1C 80 3F 00 75 DE 33
CRC Scripts - Swear 2 451d28 - 8B C6 EB 02 33 C0 5F 5E
CRC Scripts - Tubi 1 48837d - 75 37 83 7C 24 0C 00 75
CRC Scripts - Tubi 2 4883b6 - 33 C0 5E C2 08 00 55 8B
CRCaddres - EIP - 0045D39F - 8B 45 10 56 57 8B 7D 0C
CSeaxX - EAX[X value were you want everything to be] - 00669177 - 89 03 8B 7D 10 85 FF 74
CSeaxY - EAX[Y value were you want everything to be] - 006691DC - 89 07 8B 5D 14 85 DB 74
DarkSight v1 - EAX - 00622C11 - 85 C0 75 0B 8B 03 8B CB
DarkSight v2 - ZF[x][ ] - 00622C13 - 75 0B 8B 03 8B CB FF 50
DarkSight v3 - EAX -00622C1C - 85 C0 74 07 C7 45 EC FF
DarkSight v4 - ZF[x][ ] - 00622C1E - 74 07 C7 45 EC FF FF FF
DeathSoundUnlimited - ZF[x][x] - 00620C38 - 75 13 8B 46 B4 33 D2 39
DupeX - EIP - 00668111 - 89 BE 14 01 00 00 EB 0E
FakeMissGodMode - ZF[X][x] - 006358D4 - 0F 84 86 04 00 00 8B 8E
FastAttack v1 - EAX[0-9] 00430693 - 8B 04 81 89 83 18 02 00
FastAttack v2 - EAX[0=Fastest] - 004316C1 - 7F 03 6A 02 58 83 F8 0A
FastAttack v3 - ZF[x][x] - 004316D3 - 7E 61 83 C0 0A 21 75 0C
FastAttack v4 - EAX - 004316D5 - 83 C0 0A 21 75 0C 89 45
Fly v1 - ZF[x][ ] - 00665AA3 - 0F 84 B4 00 00 00 FF B6
FlyUp - ZF[x][ ] - 00665B65 - 0F 84 E4 01 00 00 8B CE
FreezeSpinMesos - ZF[x][x] - 00490567 - 74 19 51 51 8B CC 89 65
Glide v1 - CF[x][x] - 00665A5C - 72 20 8B 86 80 01 00 00
Glide v2 - ZF[x][ ] - 00665A75 - 77 07 33 FF 89 7D F0 EB
Gravity - CF[x][x] - 006667C1 - 72 5E DD 45 0C DC 1D E8
ILuvMesos - ZF[x][ ] - 00490567 - 74 19 51 51 8B CC 89 65
ImagePersonFreeze - ZF[x][x] - 00620C1E - 74 4D FF 74 24 0C 8B CE
InvisibleCharacter v1 - EAX - 00622C2E - 85 C0 74 04 83 65 EC 00
InvisibleCharacter v2 - ZF[x][ ] - 00622C30 - 74 04 83 65 EC 00 83 BB
Item Vac - CRC jmp - 0048ED09 - 50 FF 15 0C 47 77 00 85
Item Vac - EIP - 0048ED02 - 50 FF 75 DC 8D 45 CC 50
JumpSound - ZF[x][ ]/[x][x] - 00665D18 - 0F 84 AB 00 00 00 68 71
LagHack v1 - EAX - 0066554C - 85 C0 74 0B 8B 06 6A 1E
Levitate - ZF[x][x] - 006668AC - 0F 84 D5 01 00 00 83 C1
MeleeGodMode v1 - EAX - 00635888 - 85 C0 0F 85 85 07 00 00
MeleeGodMode v2 - ZF[X][ ] - 0063588A - 0F 85 85 07 00 00 8B 86
MemoryLoot v1 - ZF[x][x] - 0048ED52 - 74 09 53 8D 4D E4 E8 6C
MemoryLoot v2 - ZF[x][x] - 0048F5A8 - 74 0C 56 8D 4D E8 E8 16
MemoryLoot v3 - ZF[x][x] - 00490F2E - 74 09 56 8D 4D EC E8 90
MesoDrop - EAX[Any amount under 50k in hex] - 00662562 - 89 86 BC 00 00 00 7D 46
NoBlink v1 - ZF[x][x] - 00622BE1 - 74 27 8B CF E8 30 09 E2
NoDrop v1 - EAX - 0048F0D5 - 85 C0 53 56 57 89 4D C0
NoDrop v2 - ZF[x][x] - 0048F0DD - 0F 84 DC 04 00 00 BB C8
NoJump v1 - EAX - 00667C8D - 85 C0 0F 84 E4 00 00 00
NoJump v2 - ZF[x][x] - 00667C8F - 0F 84 E4 00 00 00 DD 40
OneHitGodmode v1 - EAX - 00622B1D - 85 C0 0F 85 E5 05 00 00
OneHitGodmode v2 - ZF[x][ ] - 00622B1F - 0F 85 E5 05 00 00 89 7D
PersonImage - EAX[0-15] - 00620C26 - 50 E8 2A F4 E0 FF 8B 86
Pingou - ZF[x][x] - 0043165E - 0F 8E D2 00 00 00 21 75
RangeAttack - EIP - 00517A34 - 8B 8B 90 03 00 00 8D 83
Ranged Demi 1 - 006c3078 - 55 8B EC 83 C4 F4 9B D9
Ranged Demi 2 - 6691DE - 8B 5D 14 85 DB 74 58 FF
Ranged Demi 3 - 00669172 - E8 01 9F 05 00 89 03 8B
Ranged Demi 4 - 006691D7 - E8 9C 9E 05 00 89 07 8B
Ranged Demi 5 - 669179 - 8B 7D 10 85 FF 74 5E FF
SSeaxX - EAX[X coordinate were you want everything] - 006654B7 - 89 45 0C E8 C6 57 EC FF
SSeaxY - EAX[Y coordinate were you want everything] - 006654DD - 89 45 0C E8 A0 57 EC FF
ShadowPartner - ZF[x][ ] - 00620DD4 - 0F 84 7A 04 00 00 83 7D
SpeedWalk - ZF[x][ ] - 0066627B - 0F 84 82 00 00 00 FF B6
Swear v1 - ZF[x][ ] - 00451C72 - 74 1B FF 74 24 0C 33 C0
TheSorc3r3r'sSuckLeftVac - CF[x][ ] - 00667FD4 - 73 66 8B BF 10 01 00 00
TheSorc3r3r'sSuckRightVac - CF[x][ ] - 00668051 - 0F 86 83 00 00 00 8B BF
Tubi - ZF[x][x] - 0048837D - 75 37 83 7C 24 0C 00 75
UnlimitedAttack v1 - nop - 00631B3D - 8B 8B 70 0E 00 00 83 F9
UnlimitedAttack v2 - ECX[0] - 00631B43 - 83 F9 64 8D 83 70 0E 00
Unrandomizer - EAX - 006C317D - 25 FF 7F 00 00 C3 CC CC
|
By: Tmocky
CREDITS: FLARRY, Tmocky, b6ooy
The only credits that go to me is my effort for helping wsuo.....
|
|
|