[Warning] Anti-cheat implemented, stop using any hack/bot (Proof inside) menu

Shout-Out

User Tag List

Page 9 of 24 FirstFirst ... 5678910111213 ... LastLast
Results 121 to 135 of 357
  1. #121
    Ouariasse's Avatar Active Member
    Reputation
    34
    Join Date
    Jan 2015
    Posts
    66
    Thanks G/R
    0/15
    Trade Feedback
    3 (100%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    This is actually great that they notify users. Makes writting a bypass way easier. Won't disclose much information. Also it's funny how i didn't get flagged with all the shit i tried. Probably cause i don't maphack or use the hud.

    [Warning] Anti-cheat implemented, stop using any hack/bot (Proof inside)
  2. #122
    HvC's Avatar Contributor
    Reputation
    138
    Join Date
    Jan 2015
    Posts
    324
    Thanks G/R
    0/50
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by Ouariasse View Post
    This is actually great that they notify users. Makes writting a bypass way easier. Won't disclose much information. Also it's funny how i didn't get flagged with all the shit i tried. Probably cause i don't maphack or use the hud.
    anything interesting in the new update ?

  3. #123
    Kapsel498's Avatar Banned
    Reputation
    3
    Join Date
    Mar 2011
    Posts
    24
    Thanks G/R
    0/2
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    They are not gonna notify you anymore, it was just once next time every detected using cheats will trigger account lock.

  4. #124
    enaf3n's Avatar Elite User i like game security stuff CoreCoins Purchaser
    Reputation
    496
    Join Date
    Nov 2013
    Posts
    356
    Thanks G/R
    26/353
    Trade Feedback
    0 (0%)
    Mentioned
    3 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by HvC View Post
    anything interesting in the new update ?
    Nothing new.

  5. #125
    Ouariasse's Avatar Active Member
    Reputation
    34
    Join Date
    Jan 2015
    Posts
    66
    Thanks G/R
    0/15
    Trade Feedback
    3 (100%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    offset for new patch
    Code:
    FinalCheck                                            .text 009C7350 0000003D                   R . . . . . .
    LoadAndCommunicate                                    .text 009C7390 00000084 00000004 00000004 R . . . . T .
    CheckDebugger                                         .text 009C7420 00000098 00000000 00000000 R . . . . . .
    std::_Ref_count_base::_Get_deleter(type_info const &) .text 009C74B8 00000005 00000000 00000000 R . L . . T .
    CheckCheatThread                                      .text 009C74F0 000000DD 0000001C 00000000 R . . . . . .
    LoadAC                                                .text 009C7660 00000052                   R . . . . . .
    LoadFromEncryptedName                                 .text 009C76C0 00000078 00000000 00000004 R . . . . . .
    InitAC                                                .text 009C7740 00000263 00000004 00000000 R . . . . . .
    myHash                                                .text 009C79B0 00000022                   R . . . . . .
    Checksum                                              .text 009C79E0 00000034                   R . . . . . .
    CheckThreadEvent                                      .text 009C7A20 00000079 00000000 00000004 R . . . . . .
    CheckExceptionEvent                                   .text 009C7AA0 00000061 00000004 00000000 R . . . . . .
    getDecryptedModuleName                                .text 009C7B10 0000004D 0000000C 00000004 R . . . . T .
    getPoeHandle                                          .text 009C7B60 0000005E                   R . . . . . .
    GetSuspiciousProcessHandle                            .text 009C7BC0 00000093 0000013C 00000000 R . . . . . .
    rndbetween1and15                                      .text 009C7C60 0000004A 0000000C 00000000 R . . . . . .
    decrypt                                               .text 009C7CB0 00000061 00000020 00000000 R . . . . . .
    getFlagForAction                                      .text 009C7D20 000001A1 00000018 00000008 R . . . . T .
    check1                                                .text 009C7ED0 00000082 00000004 0000000C R . . . . . .
    check2                                                .text 009C7F60 0000004D 00000010 00000000 R . . . . . .
    check3                                                .text 009C7FB0 0000004D 00000010 00000000 R . . . . . .
    check4                                                .text 009C8000 00000052 00000014 00000000 R . . . . . .
    check5                                                .text 009C8060 0000004C 00000010 00000000 R . . . . . .
    check6                                                .text 009C80B0 00000050 0000000C 00000000 R . . . . . .
    CheckMaliciousModuleName                              .text 009C8100 000000CD 00000234 00000004 R . . . . . .
    CheckMaliciousExeName                                 .text 009C81D0 000000B3 00000138 00000004 R . . . . . .
    PatternScanner                                        .text 009C8290 000000A9 00000034 0000000C R . . . B . .
    CheckForPatternInsidePoeMemory                        .text 009C8340 00000065 00000000 00000004 R . . . . . .
    CheckForPatternInsideMaliciousProcess                 .text 009C83B0 000000DD 00000068 00000004 R . . . . . .
    CheckWindowText                                       .text 009C8490 000000C3 0000010C 00000008 R . . . . . .
    CheckForUnmappedMemorySpace                           .text 009C8560 000000AB 00000134 00000000 R . . . . . .
    The debug thread makes sure you don't see INT3 or hardware breakpoints while PoE is running.

  6. #126
    HvC's Avatar Contributor
    Reputation
    138
    Join Date
    Jan 2015
    Posts
    324
    Thanks G/R
    0/50
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by Ouariasse View Post
    offset for new patch
    Code:
    FinalCheck                                            .text 009C7350 0000003D                   R . . . . . .
    LoadAndCommunicate                                    .text 009C7390 00000084 00000004 00000004 R . . . . T .
    CheckDebugger                                         .text 009C7420 00000098 00000000 00000000 R . . . . . .
    std::_Ref_count_base::_Get_deleter(type_info const &) .text 009C74B8 00000005 00000000 00000000 R . L . . T .
    CheckCheatThread                                      .text 009C74F0 000000DD 0000001C 00000000 R . . . . . .
    LoadAC                                                .text 009C7660 00000052                   R . . . . . .
    LoadFromEncryptedName                                 .text 009C76C0 00000078 00000000 00000004 R . . . . . .
    InitAC                                                .text 009C7740 00000263 00000004 00000000 R . . . . . .
    myHash                                                .text 009C79B0 00000022                   R . . . . . .
    Checksum                                              .text 009C79E0 00000034                   R . . . . . .
    CheckThreadEvent                                      .text 009C7A20 00000079 00000000 00000004 R . . . . . .
    CheckExceptionEvent                                   .text 009C7AA0 00000061 00000004 00000000 R . . . . . .
    getDecryptedModuleName                                .text 009C7B10 0000004D 0000000C 00000004 R . . . . T .
    getPoeHandle                                          .text 009C7B60 0000005E                   R . . . . . .
    GetSuspiciousProcessHandle                            .text 009C7BC0 00000093 0000013C 00000000 R . . . . . .
    rndbetween1and15                                      .text 009C7C60 0000004A 0000000C 00000000 R . . . . . .
    decrypt                                               .text 009C7CB0 00000061 00000020 00000000 R . . . . . .
    getFlagForAction                                      .text 009C7D20 000001A1 00000018 00000008 R . . . . T .
    check1                                                .text 009C7ED0 00000082 00000004 0000000C R . . . . . .
    check2                                                .text 009C7F60 0000004D 00000010 00000000 R . . . . . .
    check3                                                .text 009C7FB0 0000004D 00000010 00000000 R . . . . . .
    check4                                                .text 009C8000 00000052 00000014 00000000 R . . . . . .
    check5                                                .text 009C8060 0000004C 00000010 00000000 R . . . . . .
    check6                                                .text 009C80B0 00000050 0000000C 00000000 R . . . . . .
    CheckMaliciousModuleName                              .text 009C8100 000000CD 00000234 00000004 R . . . . . .
    CheckMaliciousExeName                                 .text 009C81D0 000000B3 00000138 00000004 R . . . . . .
    PatternScanner                                        .text 009C8290 000000A9 00000034 0000000C R . . . B . .
    CheckForPatternInsidePoeMemory                        .text 009C8340 00000065 00000000 00000004 R . . . . . .
    CheckForPatternInsideMaliciousProcess                 .text 009C83B0 000000DD 00000068 00000004 R . . . . . .
    CheckWindowText                                       .text 009C8490 000000C3 0000010C 00000008 R . . . . . .
    CheckForUnmappedMemorySpace                           .text 009C8560 000000AB 00000134 00000000 R . . . . . .
    The debug thread makes sure you don't see INT3 or hardware breakpoints while PoE is running.
    any new patterns it's looking for ?

  7. #127
    Sikas's Avatar Active Member
    Reputation
    69
    Join Date
    Feb 2007
    Posts
    386
    Thanks G/R
    6/2
    Trade Feedback
    1 (100%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Is the account lock right away though? So if I create an account, run it.. I should be given a warning and then banned right?

  8. #128
    MEARSHEIMER's Avatar Member
    Reputation
    1
    Join Date
    Nov 2014
    Posts
    17
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    So. Are we ****ed? or is this a bluff?

    How can I help?

  9. #129
    Ouariasse's Avatar Active Member
    Reputation
    34
    Join Date
    Jan 2015
    Posts
    66
    Thanks G/R
    0/15
    Trade Feedback
    3 (100%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    it's still the same checks, another check worth doing is rename the folder you're running your scrambled poehud from.
    don't do C:\poehud\mylittleponey.exe for your poehud, you'll be ****ed.
    What's detected :
    if the imagefile of poe changes, if there are unmapped memory (code injection), dll injection, memory modification (through scanning if it exist or doesn't), opened exe filename, loaded dll filename, folder name, window name of opened processes, if a int3 or single_step event fires inside poe, if a new thread is created from unknown base address, known signature in opened processes and i think that's it.

    Sadly because of the feature of this antihack and how often GGG updates I don't think i'll maintain a patcher publicly, only private if i do ever make one.
    Last edited by Ouariasse; 01-19-2015 at 11:49 PM.

  10. #130
    FrankTheCrazy's Avatar Member
    Reputation
    11
    Join Date
    Nov 2008
    Posts
    122
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by Ouariasse View Post
    it's still the same checks, another check worth doing is rename the folder you're running your scrambled poehud from.
    don't do C:\poehud\mylittleponey.exe for your poehud, you'll be ****ed.
    What's detected :
    if the imagefile of poe changes, if there are unmapped memory (code injection), dll injection, memory modification (through scanning if it exist or doesn't), opened exe filename, loaded dll filename, folder name, window name of opened processes, if a int3 or single_step event fires inside poe, if a new thread is created from unknown base address, known signature in opened processes and i think that's it.

    Sadly because of the feature of this antihack and how often GGG updates I don't think i'll maintain a patcher publicly, only private if i do ever make one.

    At this point people just want to know if the memread only version is safe and AFAIK the answer is yes*

    *for now

  11. #131
    enaf3n's Avatar Elite User i like game security stuff CoreCoins Purchaser
    Reputation
    496
    Join Date
    Nov 2013
    Posts
    356
    Thanks G/R
    26/353
    Trade Feedback
    0 (0%)
    Mentioned
    3 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by FrankTheCrazy View Post
    At this point people just want to know if the memread only version is safe and AFAIK the answer is yes*

    *for now
    Yes, for now, it isn't being detected. However, as it stands, the capability is certainly there within the anti-cheat to detect it in the future.

  12. #132
    Ouariasse's Avatar Active Member
    Reputation
    34
    Join Date
    Jan 2015
    Posts
    66
    Thanks G/R
    0/15
    Trade Feedback
    3 (100%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    For people who pm'd me i think i answered everyone.
    For those asking me to write a bypass : I won't release a public patcher because of :reasons:
    I think reversing it publicly was enough already and if you want to maphack that badly either make your own patcher or hire/ask a dev to do it for you.
    Everything to work with the current AC is here.

  13. #133
    gep666's Avatar Member
    Reputation
    1
    Join Date
    Dec 2013
    Posts
    3
    Thanks G/R
    0/0
    Trade Feedback
    1 (100%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    so if u play on another account/steam account but on the same PC and u get caught using cheats do they ban both of your accounts or just the one using the cheats ?

  14. #134
    crazyden85's Avatar Member
    Reputation
    1
    Join Date
    Mar 2014
    Posts
    29
    Thanks G/R
    3/0
    Trade Feedback
    1 (100%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    both (10 boths)

  15. #135
    mareot's Avatar Member
    Reputation
    1
    Join Date
    Jan 2015
    Posts
    2
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by HvC View Post
    No, open handles aren't currently checked, there's actually no point in doing this since it's not the ReadProcessMemory that's detected it's writing to it and/or commonly used hack names more accurately a hash of the name of an program it compares the crc32 of the program and the one it has on it's blacklist if the crcs match at at least 90% you are flagged, if you write to the memory in a certain specific way (eg: maphack) you are flagged. This is it.
    What would happen when anti cheat tries to find (hash of the name of an program) crc32 of the program and founds nothing in the memory, no programs running. Will that get me flagged aswell ?

Page 9 of 24 FirstFirst ... 5678910111213 ... LastLast

Similar Threads

  1. [Selling] Warden disabler (use any hack you want)
    By Beaving in forum Diablo 3 Buy Sell Trade
    Replies: 6
    Last Post: 06-19-2012, 06:50 AM
  2. Any Hack/Bot Crashes WoW Upon Attaching
    By Faulen in forum WoW Bots Questions & Requests
    Replies: 5
    Last Post: 01-25-2011, 09:07 PM
  3. Replies: 23
    Last Post: 12-12-2008, 10:14 AM
  4. Stop using hacks/Any Programs..
    By Tayo in forum World of Warcraft Bots and Programs
    Replies: 94
    Last Post: 10-15-2006, 10:34 PM
All times are GMT -5. The time now is 12:04 AM. Powered by vBulletin® Version 4.2.3
Copyright © 2025 vBulletin Solutions, Inc. All rights reserved. User Alert System provided by Advanced User Tagging (Pro) - vBulletin Mods & Addons Copyright © 2025 DragonByte Technologies Ltd.
Google Authenticator verification provided by Two-Factor Authentication (Free) - vBulletin Mods & Addons Copyright © 2025 DragonByte Technologies Ltd.
Digital Point modules: Sphinx-based search