[Warning] Anti-cheat implemented, stop using any hack/bot (Proof inside) menu

Shout-Out

User Tag List

Page 8 of 24 FirstFirst ... 456789101112 ... LastLast
Results 106 to 120 of 357
  1. #106
    scharush's Avatar Member
    Reputation
    1
    Join Date
    Jan 2015
    Posts
    13
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by Ouariasse View Post
    100% safe mechanism to bypass self scan memory
    if (pattern is a hack pattern) {
    return no match
    } else if (pattern is unknown) {
    match1 = scan(exe());
    if (match1)
    return match1
    return scan(currentmemory());
    }

    first case is in case it's a known hack pattern we wanna bypass, we return not found.
    If they wanna check if it can find original poe memory it'll return match1 from a clean exe and last case is in case it's checking for something that is not in .exe at runtime but comes later, we just proceed as it normally would.
    Hey Quariasse, are you saying that this peace of code will make hacks such as PoEhud and Gurud's trainer undetectable?
    If so, and forgive me for my complete lack of knowledge about programming, but where do i insert this code into?
    A detailed answer would be very much appreciated, thanks in advance!

    [Warning] Anti-cheat implemented, stop using any hack/bot (Proof inside)
  2. #107
    HvC's Avatar Contributor
    Reputation
    138
    Join Date
    Jan 2015
    Posts
    324
    Thanks G/R
    0/50
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    that's pseudo code, it's a way to make code understandable for neophytes, there is no actual working and compilable version of that as far as I'm aware of.
    It's mostly there to explain the concept of a possible bypass.

  3. #108
    scharush's Avatar Member
    Reputation
    1
    Join Date
    Jan 2015
    Posts
    13
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by HvC View Post
    that's pseudo code, it's a way to make code understandable for neophytes, there is no actual working and compilable version of that as far as I'm aware of.
    It's mostly there to explain the concept of a possible bypass.
    Oh, got it. Thanks for clarifying

  4. #109
    FreadomFighter's Avatar Member
    Reputation
    1
    Join Date
    Aug 2014
    Posts
    36
    Thanks G/R
    2/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    HvC: so... is it actually (mostly) safe to use your version atm or not?
    Thanks everyone for all the work btw.

  5. #110
    HvC's Avatar Contributor
    Reputation
    138
    Join Date
    Jan 2015
    Posts
    324
    Thanks G/R
    0/50
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by FreadomFighter View Post
    HvC: so... is it actually (mostly) safe to use your version atm or not?
    Thanks everyone for all the work btw.
    It's as safe as it can be without more info of the AC, it scrambles it's own PE so that in case it does actually check executable hashes and not just names. And I'll keep implementing safety features as we know more about the AC if great people like Ouariasse give us more to work with.

  6. #111
    zzgw's Avatar Member
    Reputation
    6
    Join Date
    Mar 2008
    Posts
    31
    Thanks G/R
    0/2
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    For what it's worth, they currently embed the anti-cheat system results generated by the checks into the packet that is sent when adding items to another stack, as far as I can tell. I thought this is pretty funny.

  7. #112
    qoika's Avatar Member
    Reputation
    4
    Join Date
    Oct 2014
    Posts
    53
    Thanks G/R
    0/2
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Exilebuddy is working again, it looks they found the way:

    On January 11, 2015, patch 1.3.0.14 (1.3.0i) was deployed. This patch contained what appeared to be an unannounced cheat detection system for Path of Exile. This would be the first client-sided cheat detection system ever used in the game, so an updated build of Exilebuddy was not pushed that day, and an announcement thread was made to notify users of the downtime. When it was absolutely clear what was added to the client, and conclusive proof backing that was obtained, a second announcement was made to let users know why there would be additional downtime. We are now ready to move forward with the next version of Exilebuddy, but before we do, there's some important information for users to know.

    During our downtime, a lot of information has been posted on other forums about the cheat detection system Path of Exile now uses. We cannot comment on others' research, observations, or speculations in relation to how it might/might not affect Exilebuddy. Based on the information available to us, we've made changes to Exilebuddy necessary to provide the safest possible means of botting.

    Exilebuddy does not currently modify Path of Exile's cheat detection in any way, shape, or form.

    This will remain the case until we are forced to, but no further notifications of this will be made. However, this presents an important issue for users to understand: the continued use of any unauthorized 3rd party software developed without consideration for the new cheat detection system puts your account at additional risk. The following actions are examples of things that can result in your account being banned (at GGG's discretion):
    - Loading unauthorized modules into the Path of Exile process space [DLL injection].
    - Any Path of Exile code section modifications [Client modding].
    - Running unauthorized 3rd party software at the same time Path of Exile is running (regardless if it interacts with the client or not) that has a specific process name or window title [Known cheating programs]
    - Allocating memory in the Path of Exile process [Hooks, detours, non-module based stuff, etc...].

    As it stands, Exilebuddy is as safe as we can get it, so no other changes to improve its security can be made until the cheat detection changes (which we expect it to as time goes on). It is the user's responsibility to ensure they are not doing anything prohibited by GGG that will be detected by the cheat detection and thus result in their account being banned. We do expect ban reports to increase as a result, but we understand enough about the new system in place to ensure users Exilebuddy is as safe as possible, and there's nothing else to be changed.

    During our downtime, we've made some new tools to help assist us with future client updates. Unfortunately, we need to be extra careful with each patch from here on out to try and avoid releasing an update that causes the bot to be detected by the cheat detection. As a result, each patch will most likely see additional downtime, but we'll try to have EB up and running as soon as possible. When there are cheat detection updates, or other changes that affect the bot, we'll most likely not talk about it unless it's something entirely new and users need to be made aware of it.

    Users must now rename Exilebuddy.exe/ExilebuddyBETA.exe to another random name of their choice to run Exilebuddy. We're sorry for this inconvenience, but it is now necessary with the cheat detection system in place. Since Exilebuddy supports command line arguments, and users have various programs and scripts in which they need to know the exe name, we cannot generate a random name at runtime and relaunch the bot.

  8. #113
    HvC's Avatar Contributor
    Reputation
    138
    Join Date
    Jan 2015
    Posts
    324
    Thanks G/R
    0/50
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by qoika View Post
    Exilebuddy is working again, it looks they found the way:
    If I'm not mistaken exilebuddy was allready external all they needed to do is to change the executable name / file...

  9. #114
    mareot's Avatar Member
    Reputation
    1
    Join Date
    Jan 2015
    Posts
    2
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Ok so if i understand correctly the path of exile anti cheat is reading computer process and it basicly can detect all your opened progrmas ? But anti cheat is not sending your process data to the GGG servers it just compares your process with anti cheats database ? What will happen if anti cheat tries to read process but it cant read it because i blocked it will that get me flagged ?
    Or maybe what will happen if i dont block anti cheat but anti cheat tries to read my process and returns found nothing in process, will that get me flagged aswell ?

  10. #115
    qNxX's Avatar Member
    Reputation
    3
    Join Date
    Jan 2015
    Posts
    19
    Thanks G/R
    13/2
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Would copying the memory buffer to a distinct process and reading memory from there help the security at all?

  11. #116
    HvC's Avatar Contributor
    Reputation
    138
    Join Date
    Jan 2015
    Posts
    324
    Thanks G/R
    0/50
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by qNxX View Post
    Would copying the memory buffer to a distinct process and reading memory from there help the security at all?
    No, open handles aren't currently checked, there's actually no point in doing this since it's not the ReadProcessMemory that's detected it's writing to it and/or commonly used hack names more accurately a hash of the name of an program it compares the crc32 of the program and the one it has on it's blacklist if the crcs match at at least 90% you are flagged, if you write to the memory in a certain specific way (eg: maphack) you are flagged. This is it.

  12. #117
    yumee's Avatar Member
    Reputation
    1
    Join Date
    Apr 2008
    Posts
    15
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by HvC View Post
    if you write to the memory in a certain specific way (eg: maphack) you are flagged. This is it.

    does that mean if I only use poehud for the itemalert and overlay (mobs, strongboxes, exiles, etc) I'm safe(ish)? since I'm not writing anything to the memory (I think?)

  13. #118
    HvC's Avatar Contributor
    Reputation
    138
    Join Date
    Jan 2015
    Posts
    324
    Thanks G/R
    0/50
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    There are forks that currently don't write to memory (eg i2um1s or mine) Those are as safe as we can get at the moment.

  14. #119
    yumee's Avatar Member
    Reputation
    1
    Join Date
    Apr 2008
    Posts
    15
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    new patch just went live (1.3.0k), just FYI guys

  15. #120
    irgoto's Avatar Member
    Reputation
    1
    Join Date
    Jan 2015
    Posts
    3
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Just logged in and seen this.. only tried it out for a few mins lol, i used this just for particals and mobs that was all



Page 8 of 24 FirstFirst ... 456789101112 ... LastLast

Similar Threads

  1. [Selling] Warden disabler (use any hack you want)
    By Beaving in forum Diablo 3 Buy Sell Trade
    Replies: 6
    Last Post: 06-19-2012, 06:50 AM
  2. Any Hack/Bot Crashes WoW Upon Attaching
    By Faulen in forum WoW Bots Questions & Requests
    Replies: 5
    Last Post: 01-25-2011, 09:07 PM
  3. Replies: 23
    Last Post: 12-12-2008, 10:14 AM
  4. Stop using hacks/Any Programs..
    By Tayo in forum World of Warcraft Bots and Programs
    Replies: 94
    Last Post: 10-15-2006, 10:34 PM
All times are GMT -5. The time now is 09:36 AM. Powered by vBulletin® Version 4.2.3
Copyright © 2025 vBulletin Solutions, Inc. All rights reserved. User Alert System provided by Advanced User Tagging (Pro) - vBulletin Mods & Addons Copyright © 2025 DragonByte Technologies Ltd.
Google Authenticator verification provided by Two-Factor Authentication (Free) - vBulletin Mods & Addons Copyright © 2025 DragonByte Technologies Ltd.
Digital Point modules: Sphinx-based search