GunZ 2008 unmask admin_wall pls help
Could someone help about unmasking admin_wall..
I saw threads about unmasking gunz 2008 runnable (admin_wall)
but when I try to copy their codes, asm edits, it turns fails...
pls help..
here are the threads I've visited: http://forum.ragezone.com/f245/admin...client-694273/
http://forum.ragezone.com/f245/july-...unmask-712535/
Re: GunZ 2008 unmask admin_wall pls help
Code:
0042E1D1 |. 6A 00 PUSH 0
0042E1D3 |. E9 88311F00 JMP 00621360 //codecave jump
0042E1D8 |> 8D8D F4FEFFFF LEA ECX,[LOCAL.67]
0042E1DE |. 51 PUSH ECX
0042E1DF |. 8995 F8FEFFFF MOV DWORD PTR SS:[LOCAL.66],EDX
0042E1E5 |. E8 76F6FFFF CALL 0042D860
0042E1EA |. 8B4D FC MOV ECX,DWORD PTR SS:[LOCAL.1]
0042E1ED |. 83C4 0C ADD ESP,0C
0042E1F0 |. E8 F9911400 CALL 005773EE
0042E1F5 |. 89EC MOV ESP,EBP
0042E1F7 |. 5D POP EBP
0042E1F8 \. C3 RETN
CodeCave :
00621360 /> \50 PUSH EAX
00621361 |. 53 PUSH EBX
00621362 |. 51 PUSH ECX
00621363 |. 52 PUSH EDX
00621364 |. 57 PUSH EDI
00621365 BF 3CC76600 MOV EDI,OFFSET 006AA314
0062136A |. BA 00006F00 MOV EDX,OFFSET 006F0000
0062136F |. 29C9 SUB ECX,ECX
00621371 |> 8A040F MOV AL,BYTE PTR DS:[ECX+EDI]
00621374 |. 3C 00 CMP AL,0
00621376 |. 74 06 JE SHORT 0062137E
00621378 |. 88040A MOV BYTE PTR DS:[ECX+EDX],AL
0062137B |. 41 INC ECX
0062137C |.^ EB F3 JMP SHORT 00621371
0062137E |> B0 20 MOV AL,20
00621380 |. 88040A MOV BYTE PTR DS:[ECX+EDX],AL
00621383 |. 41 INC ECX
00621384 |. B0 3A MOV AL,3A
00621386 |. 88040A MOV BYTE PTR DS:[ECX+EDX],AL
00621389 |. 41 INC ECX
0062138A |. B0 20 MOV AL,20
0062138C |. 88040A MOV BYTE PTR DS:[ECX+EDX],AL
0062138F |. 41 INC ECX
00621390 |. 01CA ADD EDX,ECX
00621392 |. 29C9 SUB ECX,ECX
00621394 |. 89E7 MOV EDI,ESP
00621396 |. 83C7 20 ADD EDI,20
00621399 |> 8A040F MOV AL,BYTE PTR DS:[ECX+EDI]
0062139C |. 3C 00 CMP AL,0
0062139E |. 74 06 JE SHORT 006213A6
006213A0 |. 88040A MOV BYTE PTR DS:[ECX+EDX],AL
006213A3 |. 41 INC ECX
006213A4 |.^ EB F3 JMP SHORT 00621399
006213A6 |> 88040A MOV BYTE PTR DS:[ECX+EDX],AL
006213A9 |. 66:C705 FEFF6 MOV WORD PTR DS:[6EFFFE],325E
006213B2 |. 5F POP EDI
006213B3 |. 5A POP EDX
006213B4 |. 59 POP ECX
006213B5 |. 5B POP EBX
006213B6 |. 58 POP EAX
006213B7 |. 68 FEFF6E00 PUSH OFFSET 006EFFFE
006213BC \.^ E9 17CEE0FF JMP 0042E1D8
Re: GunZ 2008 unmask admin_wall pls help
Quote:
Originally Posted by
mhmd135
Spoiler :
Code:
0042E1D1 |. 6A 00 PUSH 0
0042E1D3 |. E9 88311F00 JMP 00621360 //codecave jump
0042E1D8 |> 8D8D F4FEFFFF LEA ECX,[LOCAL.67]
0042E1DE |. 51 PUSH ECX
0042E1DF |. 8995 F8FEFFFF MOV DWORD PTR SS:[LOCAL.66],EDX
0042E1E5 |. E8 76F6FFFF CALL 0042D860
0042E1EA |. 8B4D FC MOV ECX,DWORD PTR SS:[LOCAL.1]
0042E1ED |. 83C4 0C ADD ESP,0C
0042E1F0 |. E8 F9911400 CALL 005773EE
0042E1F5 |. 89EC MOV ESP,EBP
0042E1F7 |. 5D POP EBP
0042E1F8 \. C3 RETN
CodeCave :
00621360 /> \50 PUSH EAX
00621361 |. 53 PUSH EBX
00621362 |. 51 PUSH ECX
00621363 |. 52 PUSH EDX
00621364 |. 57 PUSH EDI
00621365 BF 3CC76600 MOV EDI,OFFSET 006AA314
0062136A |. BA 00006F00 MOV EDX,OFFSET 006F0000
0062136F |. 29C9 SUB ECX,ECX
00621371 |> 8A040F MOV AL,BYTE PTR DS:[ECX+EDI]
00621374 |. 3C 00 CMP AL,0
00621376 |. 74 06 JE SHORT 0062137E
00621378 |. 88040A MOV BYTE PTR DS:[ECX+EDX],AL
0062137B |. 41 INC ECX
0062137C |.^ EB F3 JMP SHORT 00621371
0062137E |> B0 20 MOV AL,20
00621380 |. 88040A MOV BYTE PTR DS:[ECX+EDX],AL
00621383 |. 41 INC ECX
00621384 |. B0 3A MOV AL,3A
00621386 |. 88040A MOV BYTE PTR DS:[ECX+EDX],AL
00621389 |. 41 INC ECX
0062138A |. B0 20 MOV AL,20
0062138C |. 88040A MOV BYTE PTR DS:[ECX+EDX],AL
0062138F |. 41 INC ECX
00621390 |. 01CA ADD EDX,ECX
00621392 |. 29C9 SUB ECX,ECX
00621394 |. 89E7 MOV EDI,ESP
00621396 |. 83C7 20 ADD EDI,20
00621399 |> 8A040F MOV AL,BYTE PTR DS:[ECX+EDI]
0062139C |. 3C 00 CMP AL,0
0062139E |. 74 06 JE SHORT 006213A6
006213A0 |. 88040A MOV BYTE PTR DS:[ECX+EDX],AL
006213A3 |. 41 INC ECX
006213A4 |.^ EB F3 JMP SHORT 00621399
006213A6 |> 88040A MOV BYTE PTR DS:[ECX+EDX],AL
006213A9 |. 66:C705 FEFF6 MOV WORD PTR DS:[6EFFFE],325E
006213B2 |. 5F POP EDI
006213B3 |. 5A POP EDX
006213B4 |. 59 POP ECX
006213B5 |. 5B POP EBX
006213B6 |. 58 POP EAX
006213B7 |. 68 FEFF6E00 PUSH OFFSET 006EFFFE
006213BC \.^ E9 17CEE0FF JMP 0042E1D8
sorry
it is not working on me...
when I used /admin_wall [text] command
the announcement will be
Administrator: (not the original text will be displayed)
even though I edit my message.xml
3000 = Administrator $2: $1