Couldn't you just... menu

Shout-Out

User Tag List

Results 1 to 9 of 9
  1. #1
    csin's Avatar Private
    Reputation
    1
    Join Date
    Mar 2010
    Posts
    9
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)

    Couldn't you just...

    If you know where the Warden is loaded in memory, couldn't you just use a man in the middle attack to return the data calls with info saying nothing is wrong?

    I don't know if this has been attempted, but it should be relatively simple to rip the decryption routine for the data packets it creates.

    Couldn't you just...
  2. #2
    tymezz's Avatar Member
    Reputation
    9
    Join Date
    Nov 2007
    Posts
    44
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    "Couldn't you just.."

    Yes. But its not that trivial.

    Are you asking how to do it? or if it's just possible?

  3. #3
    XTZGZoReX's Avatar Active Member
    Reputation
    32
    Join Date
    Apr 2008
    Posts
    173
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    I won't say I'm an expert on Warden, but theoretically it should be possible to forge your own packets (albeit with quite some effort required). I'm sure someone (looks at kynox) could shed some more light on the possibility of this.

  4. #4
    namreeb's Avatar Legendary

    Reputation
    668
    Join Date
    Sep 2008
    Posts
    1,029
    Thanks G/R
    8/222
    Trade Feedback
    0 (0%)
    Mentioned
    9 Post(s)
    Tagged
    0 Thread(s)
    Yes, it is possible.

  5. #5
    Xarg0's Avatar Member
    Reputation
    61
    Join Date
    Jan 2008
    Posts
    389
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    you'll have to understand how the warden packets are encrypted and decrypted,
    once you've done that you'll have to create a list of 'fine' responses, because warden will do scans according to the packets it recives from the server and it'll send pack a respons with some kind of result, it's not just a bool switch so facturing your own warden packets isn't a trivial task at all.
    And if you're encountring a warden packet you don't how to respond to you'd better be terminating the connection.
    I hacked 127.0.0.1

  6. #6
    csin's Avatar Private
    Reputation
    1
    Join Date
    Mar 2010
    Posts
    9
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    I am going to have to get an XP machine set back up in VM so I can play with this idea... It shouldnt be too hard to use Olly or IDA to watch the whole process (procedure, not process as in application process).... That is once I figure out where in the hell the warden actually loads...

    From there it should only be a matter of capturing what it returns when nothing is wrong and re-creating that response.

    I realize there is more to this then it sounds, but it would be a kewl project to work on none the less.

  7. #7
    pred.is.god's Avatar Member
    Reputation
    1
    Join Date
    Jun 2007
    Posts
    86
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by Xarg0 View Post
    you'll have to understand how the warden packets are encrypted and decrypted,
    once you've done that you'll have to create a list of 'fine' responses, because warden will do scans according to the packets it recives from the server and it'll send pack a respons with some kind of result, it's not just a bool switch so facturing your own warden packets isn't a trivial task at all.
    And if you're encountring a warden packet you don't how to respond to you'd better be terminating the connection.
    My understanding was that in addition to this the warden packets are numbered and their encryption changes every set number of packets, so if you are changing packets you have to keep track of their number, and how they are encrypted, in addition to all the above.

  8. #8
    Viano's Avatar Active Member
    Reputation
    37
    Join Date
    May 2008
    Posts
    172
    Thanks G/R
    0/1
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Instant 80 leveling hacks incoming.
    Viano

  9. #9
    BoogieManTM's Avatar Active Member
    Reputation
    52
    Join Date
    May 2008
    Posts
    193
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by pred.is.god View Post
    My understanding was that in addition to this the warden packets are numbered and their encryption changes every set number of packets, so if you are changing packets you have to keep track of their number, and how they are encrypted, in addition to all the above.
    That is incorrect. the encryption algo never changes. the keys can be shuffled, however.

    This is possible, and has been done before.

Similar Threads

  1. [Guide] What to do when you just hit 80.
    By Dark_Angel in forum World of Warcraft Guides
    Replies: 22
    Last Post: 01-10-2009, 07:23 AM
  2. Epic Flier in 5 Days~ of 5k if you just want gold.
    By undertaker/steadyarrow in forum World of Warcraft Guides
    Replies: 41
    Last Post: 04-15-2008, 03:10 PM
  3. you just got pwned!
    By aflacattack in forum Screenshot & Video Showoff
    Replies: 3
    Last Post: 01-28-2008, 01:40 AM
  4. Who of you just got banned?
    By Drako in forum World of Warcraft General
    Replies: 1
    Last Post: 05-06-2007, 08:21 PM
  5. You Just Got Mmowned!
    By Bloodpoisen in forum World of Warcraft General
    Replies: 9
    Last Post: 03-30-2007, 03:37 PM
All times are GMT -5. The time now is 12:16 AM. Powered by vBulletin® Version 4.2.3
Copyright © 2025 vBulletin Solutions, Inc. All rights reserved. User Alert System provided by Advanced User Tagging (Pro) - vBulletin Mods & Addons Copyright © 2025 DragonByte Technologies Ltd.
Google Authenticator verification provided by Two-Factor Authentication (Free) - vBulletin Mods & Addons Copyright © 2025 DragonByte Technologies Ltd.
Digital Point modules: Sphinx-based search