Yes: "StolenStar17", it's my Yahoo Messenger.
Printable View
I try win xp3, error open main, this is log :(Quote:
[22:30:07]Protection service started..
[22:30:07]Configuration: system.osName = Windows NT
[22:30:07]Configuration: system.osVersion = 5.1 (Build 2600)
[22:30:07]Configuration: system.osArchitecture = IA32
[22:30:07]Configuration: system.currentDir = C:\WINDOWS\system32
[22:30:07]Configuration: system.pid = 1504
[22:30:12]Protection service is stopped..
97d+99i main. & windows 7 x86 log fail
NSEngine-service.log
[05:50:00]Protection service started..
[05:50:00]Service::Dependency::Loading(): Error, can't get Administrator privilege.
unpacked 97d+99i main / https://mega.co.nz/#!mJgBUBzC!6vdgG3...nvcpHfKc53Qw3Y
It's work fine for me but doesn't stop sniffers or process explorers/hackers tools. Actually is not good enough for any server. Better using pinkoff or TDA with Enigma protection and manually adding some software and services stop in to the main.
I think "Process Explorer" is being used to kill the Anti-hack DLL in the Main.exe process. Seen the tutorial before, maybe it's better to add it on your Anti-hack.
Just to inform you this is not payment thread,if you searching any premium products here is not the correct place!
And if someone gonna try to promote something for money then he going against the rules that automatically means delete and infraction.
Thank you for your time. Regards,Dope
I'm not professional hacker or coder but as far as I know....
Yes, the protection dll process can be suspend and then you can continue to play with hack/cheat and etc. All most popular packet sniffers and process explorers must be in the guard. Every anti cheat must be implemented in the main.exe source code not in additional file and then it will be more difficult for the hackers to do something.
Anyway I'm not a hater, I'm just saying what I have seen and know.
If you do not kill the process(these software is not hack/ sniffers,explorers can edit the packets if they are not encrypted), there is a possibility for the cheater to suspend the .dll execution and if he/she is fast and good enough when the main.exe is started. And if it's happen and it is happen the guard doesn't work anymore and the cheaters are free to do whatever they want. I have seen this on my server when it was protected with TDA Guard which is better than this, because you can add additional hack software in the database. Actually it reading the binary of the software and do not add into the database "window names", "class names" which is pointless. There is no 100% defence against the good hackers but we have to bet only on the right defence..
Anti-Cheat with database is only prevent chicken hacker.
Real hacker can write his own hack app which can easily change "dump address", window name, .....
But I do not think that real hacker/developer/programmer (which is the same) will loose a time to hack any private MuServer bellow 200 users... even than is pointless.
Tried this and it is OK, some have problems especially with compatibility issue in Deep Freeze and the DLL uses a lot of CPU process.
can you reupload?
I hook the dll in MAIN exe with OllyDbg (simple hook
Push dll
LoadLibraryA
Jmp entry point )
But when i start the main.exe it crash after 1 secund
Quote:
[11:34:59]Protection service started..
[11:34:59]Configuration: system.osName = Windows NT
[11:34:59]Configuration: system.osVersion = 6.1 (Build 7601)
[11:34:59]Configuration: system.osArchitecture = IA32
[11:34:59]Configuration: system.currentDir = C:\Windows\system32
[11:34:59]Configuration: system.pid = 7900
and i have problem pleass help peaple sorry for my bad english
[00:44:13]Protection service started..
[00:44:13]Configuration: system.osName = Windows NT
[00:44:13]Configuration: system.osVersion = 6.1 (Build 7601)
[00:44:13]Configuration: system.osArchitecture = IA32
[00:44:13]Configuration: system.currentDir = C:\Windows\system32
[00:44:13]Configuration: system.pid = 5920
[00:44:14]Protection service is stopped..
Today i'll be make new update...
New update:
https://mega.co.nz/#!2MJRyIRR!mtzux_dXJMNjQRKT6R1rIDfCFlUBa46S1kAcwFBTBDU
What new?
- It's more stable.
- Improved heuristic system.
- DeepFreeze Compatible.
- And minor bugs fixed :)
Thanks to all :)
NightWish you can make a way to pack it to main to avoid possible bypassing( checksum) or change main.exe (anti read main process memory for get serial etc...)(anti dump memory)
you need to block the variants not the name process of 3pp it eash to bypass if you not block the variants
example: cheatengine.exe can change to cheatmaster.exe
Looks promising.
Looking forward to this project.
Update link please.
Excellent contribution,but always downloaded files are scanned that i am not going to download things as well, I know that you have a virus, it is not that you are missing the respect but it is the truth,by each contribution a scan would not other