Hey guys, I found this epic guide that has not been released yet on MMOwned and I thought I'd share this with the community. This will work 100% On Private Servers and yet to be tested on retail if I get a hold of a retail account I will test this I'm almost 100% Sure it works on retail though. yes, I'm almost 100% sure!!!!
Okay, let's Begin!
You will need the software/program called OllyDBG
You will need OllyDbg
Let's say that we have the char named Shocker.
Go to the 0076AC93 * should be MOV EAX, [DWORD DS: ECX +14 C] there. As far as I've investigated, it seems to be stored in EAX a character with some flags of attempting to enter the game, something like this: Banned, Marked as rename, can not login Until complete update.
We breakpoints at this one:
wow we Alt Tab (by the way, it would be to give the Video Settings to be windowed, as the breakpoints will block you and you can not give wowul alttab) and click Enter World of char that you want known, then and give in OllyDbg, PPE's should be 0076AC93 * (because it stopped at our breakpoints). Right click / Follow in dump / Memory address (ECX to take us at 14, where flags are saved):
Select a DWORD (4 bytes first), right click / binary / edit:
Modify the second byte of the 4x xx (xx4xxxxx. So if we had, say, 00 million, will have 00.4 million)
Now press F9, open wow, and a box will appear asking you to name change.
Type in the name, Press okay and Voila!!
Addresses for every patch:
2.4.2.8278 --- 0076AC93
2.4.3.8606 --- 0046F4E3
3.0.3.91 --- 00471299
3.0.9 --- 00471B69
3.1.1 --- 007AD159
3.1.2 US --- 007C1929
3.2.2 adress it is 0047C6F9
3.3.5a adress is 004d9c32
Also the command is bit different from the TBC one - MOV EAX,DWORD PTR DS:[ECX+14C].
Credits: Shockeru from Hackpedia - Index page