[Release] Driver for MHS Debugger, etc

Hacking WolfTeam

Moderators: g3nuin3, SpeedWing, WhiteHat, mezzo, Explicit

[Release] Driver for MHS Debugger, etc

Postby dareth » Sun Apr 26, 2009 11:33 pm

Driver(.sys) for use with MHS debugger, etc. Enable debugging/dissambling without detection. Works great with MHS 'open for debug' function, etc on wolfteam & other games as well. Only for Windows XP x86, may work in Vista 'test mode'(not safe mode) or sign cert.

How to?
Just run driver with any loader before any debug session.

http://www.qooy.com/files/11IIIFJQ/xxx.zip
dareth
Sir Hacks-A-Lot
 
Posts: 32
Joined: Sun Mar 15, 2009 3:10 pm

Postby liqmysaq » Mon Apr 27, 2009 12:35 am

can you explain whats found plz? Xema is a worm and Artemis is a keylogger...

http://www.virustotal.com/analisis/412c ... a42470949d
User avatar
liqmysaq
I Know Your Poop
 
Posts: 538
Joined: Tue Jan 01, 2008 2:02 am

Postby dareth » Mon Apr 27, 2009 1:03 am

Online scanners sucks. Report about the wormy thing is a crap. It's a rootkit driver coded in C+ that simply function to hide debuggers by SSDT hook, nothing extra. Almost all rootkit technology are recognize as malware, etc. due to it's nature. Even GameGuard, a rootkit too, is also detected by some antivirus.

I would rather place a .exe instead of a .sys in the zip file if there's bad intention. Or I could simply pack it to avoid detection. See? Overall's a straight forward thing for a coder to understand.
Now, it's up to you guys & I won't appreciate any worm or keylogger enquiries but shorter replies like thanks.
dareth
Sir Hacks-A-Lot
 
Posts: 32
Joined: Sun Mar 15, 2009 3:10 pm

Postby L. Spiro » Mon Apr 27, 2009 5:21 am

You should probably explain to me (probably via PM) what exactly it does, in technical terms (probably).


L. Spiro (Probably)

[Edit]
I skipped over your second post as I was in a hurry to get to work.
After reading it, I can guess what it does.
This should be codable via L. Spiro Script, should it not?
[/Edit]
Last edited by L. Spiro on Mon Apr 27, 2009 7:15 am, edited 1 time in total.
Our songs remind you of songs you’ve never heard.
User avatar
L. Spiro
L. Spiro
 
Posts: 3129
Joined: Mon Jul 17, 2006 10:14 pm
Location: Tokyo, Japan

Postby liqmysaq » Mon Apr 27, 2009 6:44 am

dareth wrote:Almost all rootkit technology are recognize as malware, etc. due to it's nature. Even GameGuard, a rootkit too, is also detected by some antivirus.
i assumed it was just stuff to make it undetected and all, i figured they were false positives cuz it was only 1 scanner found each. just wanted to make sure. usually with Xema and Artemis u get alot of results if its real, not just 1. the other stuff i know is with the rootkit, thats y i didnt ask about them. thx for the reply.
User avatar
liqmysaq
I Know Your Poop
 
Posts: 538
Joined: Tue Jan 01, 2008 2:02 am

Postby qjqqyy » Mon Apr 27, 2009 6:39 pm

oh liqmysaq u r back!
Made by speedwing

Image
qjqqyy
Been Around More
 
Posts: 396
Joined: Wed Mar 18, 2009 4:12 pm
Location: Singapore GMT+8

Postby ihavenone » Mon Apr 27, 2009 8:46 pm

wow both liq and l.spiro comeback here to post?

is it because ppl starting to hack game again?
well i noe why i came because too many ppl hack again wanted to stop though can u help me?
Give that man a bypass he uses it an gets patched. Teach the man to MAKE bypass they can make it 4 life!Image
mezzo wrote:1) Use the "search" function at the top of your screen.
People don't like to answer a question 100 times over.
Check to see if it wasn't answered before.

2) If you make a new thread, give it a topic that means something.
"read this", "click here", "?" are NOT good topics.

3) Please post in the relevant section of the forum. If it's game related, post it
in the subsection for that game. If there is no section for that game, post it in the online or offline section.

4) The tutorial section is a place to post tutorials, NOT for requesting them.

5) Making crap posts for the sake of increasing your post count is frowned upon.
You're not making yourself popular by doing so, so please don't.

6) Don't beg for stuff, it gets old real fast.
(people have been banned for this)

7) Signatures are sweet, but try to keep them nice and tidy :-)
Nobody wants to see a 1920x1200 screenshot below a one line post..

8) The private section is just that. It is private. Trusted people that have
contributed and released things will get invited.
L.Spiro will change your access should you be allowed.
Read the info here.
(at this point read 5 and 6 again, DON'T BEG!)

9) Don't post warez !! Seriously !

10) Listen to L.Spiro, he's lord and master.

Enjoy your stay !!
ihavenone
NULL
 
Posts: 126
Joined: Sun May 04, 2008 1:18 pm

Postby liqmysaq » Mon Apr 27, 2009 9:56 pm

lol i was never gone, just had nothing to post or say. when i do have something.. i say it. most the hacks i have right now are for use with cheat engine cuz MHS doesnt work with rakion which i am playing right now. if/when it does then ill release stuff. it just seems wrong to post cheat engine hacks on the MHS forum.. ya know?
User avatar
liqmysaq
I Know Your Poop
 
Posts: 538
Joined: Tue Jan 01, 2008 2:02 am

Postby JB Gzn » Tue Apr 28, 2009 1:44 am

no.. hacks are hacks ^^, you could post an lssave and say it needs to be used be an uce... gives CompMStr's tool some use too :D
Image
ImageImage

famous wrote:What's worth the price is always worth the fight


famous wrote:Every second counts cause there's no second try
User avatar
JB Gzn
Pro++
 
Posts: 1985
Joined: Sun Jan 27, 2008 7:56 pm
Location: Unknown, please use a pointer.

Postby lohit » Thu May 07, 2009 3:20 pm

ehh. ima test on gameagurd. im working on a program that bypasses mhs from gamegaurd.
Image
User avatar
lohit
Been Around
 
Posts: 229
Joined: Mon Feb 11, 2008 1:29 pm


Return to WolfTeam

Who is online

Users browsing this forum: No registered users and 0 guests