View Full Version : How to make a detected hack undetected
howler2345
19th September 2004, 13:44
Hey everyone, if you want to make a detected hack undetected...well use the file called AIW attached to this post.
Steps
1) Download AIW
2) Extract to any folder
3) Open AIW.exe
4) Search for your hacks d3d8.dll(usually named something else)
5) Add 1 kb to the .dll
6) Have fun
This will change the md5 code for the dll completely. I havent checked to see if you get banned or anything after use...But i did check to see if it changes the md5 sum, so this program will pretty much change the fingerprint for your hack, which is what coders usually do to make their hacks undetected...only they have to edit it in the source code. Well i have found a new way. now everyone can have their own private hacks :P
-h0w13r
Kailor
19th September 2004, 13:58
lol really? does this work?
howler2345
19th September 2004, 14:28
It works in changing the md5 sum of the hack...which is also called a "fingerprint", which should make it undetected.
Blowey
19th September 2004, 14:50
could a moderator please approve this..i'd like to try..
Pwnzor
19th September 2004, 16:18
lol search google I'm sure there are a few files floating around there..
alexmanson69
19th September 2004, 16:24
so you are saying that i could use your detected 3.2 and just change the .dll file in it makeing it playable again? :D
noob-cheater
19th September 2004, 16:36
Attachment approved...
This hack rocks if it really does what howler said...
alexmanson69
19th September 2004, 17:06
I have done it to howler 3.2 and it does indeed work....I am also going to try is on other detected hacks to see if it is with all of them
I have used this method on Goodys 2.0 and Massive Overthrow and also Howler 3.2 i have played a few round with each of them and it seems they are pretty much undeteched once again...so fun :leb1::leb1:
funkymonkey
19th September 2004, 18:40
good job there again howler
gil
19th September 2004, 19:44
Please people, dont ask for approvement.
it's not like we see it and dont approve, we're just not here.
kthx.
nice proggy, seems so easy :P
stingnostung
19th September 2004, 19:51
Hey everyone, if you want to make a detected hack undetected...well use the file called AIW attached to this post.
Steps
1) Download AIW
2) Extract to any folder
3) Open AIW.exe
4) Search for your hacks d3d8.dll(usually named something else)
5) Add 1 kb to the .dll
6) Have fun
This will change the md5 code for the dll completely. I havent checked to see if you get banned or anything after use...But i did check to see if it changes the md5 sum, so this program will pretty much change the fingerprint for your hack, which is what coders usually do to make their hacks undetected...only they have to edit it in the source code. Well i have found a new way. now everyone can have their own private hacks :P
-h0w13r
what do you mean add 1kb to the .dll? sorry im not too good at follow directions heh...seems cool though, right now i use ShArkMOd 1.0 and DevMode 3.1 both work extremely well together....
gil
19th September 2004, 19:54
Hey everyone, if you want to make a detected hack undetected...well use the file called AIW attached to this post.
Steps
1) Download AIW
2) Extract to any folder
3) Open AIW.exe
4) Search for your hacks d3d8.dll(usually named something else)
5) Add 1 kb to the .dll
6) Have fun
This will change the md5 code for the dll completely. I havent checked to see if you get banned or anything after use...But i did check to see if it changes the md5 sum, so this program will pretty much change the fingerprint for your hack, which is what coders usually do to make their hacks undetected...only they have to edit it in the source code. Well i have found a new way. now everyone can have their own private hacks :P
-h0w13r
what do you mean add 1kb to the .dll? sorry im not too good at follow directions heh...seems cool though, right now i use ShArkMOd 1.0 and DevMode 3.1 both work extremely well together....
This program adds 1 kb to the dll and due to that, it changes the fingerprint :D
mic1989
19th September 2004, 20:14
This réally works?
Stoorm
19th September 2004, 20:24
Yes it does. I tried it with howler 3.3. Got only one problem. all player were enemys and i cant change the key for aimbot. But yeah its undetected. nice find howler
CHV0
19th September 2004, 20:30
When I try to run it, it says I need "comdlg32.ocx" Anybody else?
Also, can this only modifly .dll files? Or could it add data to any file?
-=CoNnEcToR=-
19th September 2004, 20:49
Attachement is infected by virus: VirTool.Win32.Allinwon
phonix28888
19th September 2004, 21:07
okay i tested it , too. with coldfire 8.0 on an official server.
it worked
hard times for pb
but we have to wait...maybe silent-ban....
Edit: ...okay...look realy like virus
importdrinker
19th September 2004, 21:26
Attachement is infected by virus: VirTool.Win32.Allinwon
my virus scans don't pick up anything.....
Are there any 2.1 compatable detected h4cks that are really worth digging up and using with this or would it be better to just use it to change the fingerprint on the current ones im using?????
phonix28888
19th September 2004, 21:36
my virus scans don't pick up anything.....
first i got problems with my scanner...doesnt work. but know i have set my system back to yesterday an scann the file....nothing.
which scanner do u use? @-=CoNnEcToR=-
-=CoNnEcToR=-
19th September 2004, 22:00
The best one there is: Kaspersky.
barry_white
19th September 2004, 22:05
Kaspersky Online Virus Scanner:
AIW.exe
You're clean!
Kaspersky Anti-Virus has not detected any viruses at this time in the file you submitted.
3y3w4nn4ch34t
19th September 2004, 22:06
If you google you would see that AIW is a trojan tool. It can wrap existing trojans to make then undetectable by av scanners. It wont harm your system, after all PB is nothing more than a viris scan (for cheats).
1000 posts :rambo:
JohnBLucky
19th September 2004, 22:11
Yep, I don't show anything with AVG or HouseCall. But 3y3w4nn4ch34t's post makes sense. The program would "add some trash" to existing files to make them seem changed and not detectable. It's the same thing we're trying to do with the hacks.
aaocheater
19th September 2004, 23:04
so you are saying that i could use your detected 3.2 and just change the .dll file in it makeing it playable again? :D
OMFG!!! Whos ass is that in your Picture??~?~!??! I drewled and looked at it for 15 min
Attachement is infected by virus: VirTool.Win32.Allinwon
Macafee Ditected this for me as well, but my other computer with Norton Antivirus didnt... ****ed up since Norton Is the leading ANtivirus in the world
If you google you would see that AIW is a trojan tool. It can wrap existing trojans to make then undetectable by av scanners. It wont harm your system, after all PB is nothing more than a viris scan (for cheats).
1000 posts :rambo:
LOL ohh yeah, thats awsome!! so I can add shit to my Keyloggers and it wont be ditectable? I thought AV's Looked for Similar Codings as well rather than FInger Print
I Feal a Cold cold day for Punkbuster... Cold COld day......
SO this tool you can edit any DLL's and make things unditectable for any game hacks like Gunboun, Priston Tale, Etc... ???
Probly wont work in AAOM since it doesnt use Dll
-=CoNnEcToR=-
20th September 2004, 00:22
ok, then its because it edits the dll in maybe a "bad"-way. Thats why my virusscan picks it up and maybe because I have pro version, who knows :chinese:
aaocheater
20th September 2004, 00:39
ok, then its because it edits the dll in maybe a "bad"-way. Thats why my virusscan picks it up and maybe because I have pro version, who knows :chinese:
Nah i think its cuz I havnt Updated my Virus Defenitions in my Other computer thats using Norton 2004
stingnostung
20th September 2004, 03:11
So could i basical do this to a undected hack to make it undected for a long time?
importdrinker
20th September 2004, 03:48
So could i basical do this to a undected hack to make it undected for a long time?
in theory, yes... we'll have to see about the results through trials... no guarantees in life... cept death and taxes...
_SShadow
20th September 2004, 04:14
Okay, I just scanned with up-to-date Mcafee Antivirus 8 Pro. No infected files found.
CarbonKid
20th September 2004, 05:40
lol someone do this to evil hack and see if it works :P
Pwnzor
20th September 2004, 06:53
This seem's like a really good thing at the momment.. But I'm thinking it wouldnt have been such a good idea in a few week's-month's when PB figures a different way of detection. And knock's the Cheating Community on their arses. And everyone will have to wait for month's till the expert coder's figure out how PB detected, and Fix it.. But have fun what's done is done might as well use it..
anuj
20th September 2004, 07:23
whoa.
I hate to do it, but what do you suppose this would do to MH?
Lazz
20th September 2004, 07:31
will you still get nailed by CDC? after doing this?
barry_white
20th September 2004, 07:52
whoa.
I hate to do it, but what do you suppose this would do to MH?
I think MH cannot connect to the new server's software in AA. But I could be wrong.
anuj
20th September 2004, 08:08
Yeah, I completely forgot about that.
Does this tool only add 1kb? Maybe you could use it on the AAO system files to make their MD5 match PB scans. Then you could use AAOM on the .u and still match the MD5. Only a theory, though.
edit -
In case you can't tell, the programs not working for me right now. I'm looking for comdlg32.dll.
Pwnzor
20th September 2004, 08:30
LOL why don't people use google? It's free and quick.. Here's a link for comdlg32.dll for all you who don't have it...
http://www.dll-files.com/dllindex/dll-files.shtml?comdlg32
anuj
20th September 2004, 08:39
LOL why don't people use google? It's free and quick.. Here's a link for comdlg32.dll for all you who don't have it...
http://www.dll-files.com/dllindex/dll-files.shtml?comdlg32
...
I did use google. I got the file too. Thanks for assuming I'm retarded, though.
Unless you're talking to someone else, in which case disregard teh post.
octo
21st September 2004, 02:26
So if two of us take the AIW thing and modify the same DLL, would we not have the same "fingerprint"?
alexmanson69
21st September 2004, 14:40
OMFG!!! Whos ass is that in your Picture??~?~!??! I drewled and looked at it for 15 min
Macafee Ditected this for me as well, but my other computer with Norton Antivirus didnt... ****ed up since Norton Is the leading ANtivirus in the world
LOL ohh yeah, thats awsome!! so I can add shit to my Keyloggers and it wont be ditectable? I thought AV's Looked for Similar Codings as well rather than FInger Print
I Feal a Cold cold day for Punkbuster... Cold COld day......
SO this tool you can edit any DLL's and make things unditectable for any game hacks like Gunboun, Priston Tale, Etc... ???
Probly wont work in AAOM since it doesnt use Dll
Its My GirlFriends Ass TY :classic: :classic:
Trypsin
21st September 2004, 15:11
So if two of us take the AIW thing and modify the same DLL, would we not have the same "fingerprint"?
You might. But you don't have to add exactly 1kb. Just throw in a semi-random number to be sure your checksum is different from the rest.
I have a question, however: To make, say, thermite final be undetected again, do I only have to modify the .dll, or also thermite.exe and other files?
UHU
21st September 2004, 15:22
Ok guys im german so u musst writte plz for me that i can understand!
I downloaded this AIW but what musst i do now?
Stoorm
21st September 2004, 22:27
look for ure Private Msg´s. u got one
mic1989
21st September 2004, 23:48
Yup, maybe howler can give us answer if this works foR other hacks too
aaocheater
22nd September 2004, 06:31
I tried this Thing on Thermite Final, and it says, "Invalid DLL" and it closes the Eviilhack Whats wrong?
Loucifer
22nd September 2004, 16:51
Orginal poster has a good idea, Just didnt expand on it, Maybe some of the hack makers should start a libary an hold some of thier releases in check we have a lot working at this time an a few kept back for a rainy day would not be a bad idea at all..
howler2345
22nd September 2004, 23:34
Orginal poster has a good idea, Just didnt expand on it, Maybe some of the hack makers should start a libary an hold some of thier releases in check we have a lot working at this time an a few kept back for a rainy day would not be a bad idea at all..
I already have a few held back :) , and i am not sure which hacks this works on...i think it might only work if the coder didnt put any code in their hack so you have to have the exact dll file size and everything. but its still good for hacks that were good in the past and you would like to bring them back to life :P
Simon^Vallore
23rd September 2004, 03:58
how do i check the md5 hash ?
howler2345
23rd September 2004, 06:46
look for a proggy on google
DelfinoM
23rd September 2004, 07:20
Whats the point of making new hacks now, if all you do is change the fingerprint with the program and its undetected :P
CarbonKid
23rd September 2004, 08:56
new options.. new source causing havok for Pb many many options
importdrinker
23rd September 2004, 09:03
Whats the point of making new hacks now, if all you do is change the fingerprint with the program and its undetected :P
why climb a mountain when u can look at the pictures the last guy took???
flagtag
23rd September 2004, 11:35
hey there's only one question i've got about this. what do i do with the win32-trojan-gen? :))))
JohnBLucky
23rd September 2004, 19:04
We do not allow or discuss the making of viruses or trojans on this site. Yes, there are some features of the program posted that were made specifically for making trojans, but do not talk about them here. For all intents and purposes, the only thing this program does is change the distinct fingerprint of hacks, allowing some detected hacks to be undetected again.
howler2345
25th September 2004, 10:26
there was one other one that you had to pay for...so i had to search for a new one that i could use for you guys to do this :P
bigg-boy
25th September 2004, 19:58
I have one bigg question= Can you use this on the same hack over and over. OK say i use it and 2 weeks go by can i use it again on same hack and 2 more weeks go by and use it again doing this over and over will the hack still keep working and can pb ever catch us doing this or is this the program weve all been waiting for... :P :P
r4v3n(rof+
26th September 2004, 06:44
hey im gettign a error saying "Failed to laod 'commonDialog'from comdlg32.ogx
any htoughts
plus does this work for rtcw hacks
hidddenpookie
27th September 2004, 10:08
just finished adding 1 kb to massive overthrow... and played with it for 5 rounds..and all went good..... hopefully i wont get silent banned :( crosses fingers*
-=CoNnEcToR=-
27th September 2004, 12:56
hey im gettign a error saying "Failed to laod 'commonDialog'from comdlg32.ogx
any htoughts
plus does this work for rtcw hacks
Download comdlg32.ogx again. Google it.
Heads
27th September 2004, 13:17
*EDIT* Sorry ment to put this in ET Forum Admin can delete
phonix28888
27th September 2004, 17:53
if that program makes trojans undeceted by anti-virus software. who say that there is no trojan in?
just a question^^;
EDIT:
i make an online scann (http://www.kaspersky.com/scanforvirus)
thats it:
"Attention!
Kaspersky Anti-Virus has detected a virus in the file you have submitted.
Scanned file: AIW.rar
AIW.rar - archived by RAR
AIW.rar/AIW.exe - infected by VirTool.Win32.Allinwon "
But PestPatrol Pest Info - VirTool.Win32.Allinwon says:
Virus Creation Tool: A program designed to generate viruses. Even early virus creation tools were able to generate hundreds or thousands of different, functioning viruses, which were initially undetectable by current scanners.
so itself isn't a virus but....
PB-Punker
27th September 2004, 22:42
It works and its nice good looking out Howler
bigg-boy
30th September 2004, 02:16
hey i asked the question can you use this over and over for a hack or is once all you get!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
gil
30th September 2004, 02:28
sure, why not ? :D
itsmemario
5th October 2004, 02:08
ok, so let me get this straight...
do i run AIW on the hack file, the .dll of the hack, or both?
also, i have a hack that has no .dll,so if do i use AIW on that program will it still change the fingerprint so it doesnt get dectected?
itwasfunny
7th October 2004, 22:46
also, i have a hack that has no .dll,so if do i use AIW on that program will it still change the fingerprint so it doesnt get dectected?
????
for what fingerprint it change?
+1 kb = new fingerprint
+2 kb is another one??
gil
7th October 2004, 23:34
+1 kb = new fingerprint
+2 kb is another one??
hehehe... its not "modes"
You use it once, it adds 1kb and you have a new fingerprints.
You use it AGAIN, and it add again (which is ANOTHER) 1kb and then you have a new fingerprints (sum added, 2kb).
3y3w4nn4ch34t
7th October 2004, 23:41
When you add/subtract bytes it will change the MD5. You can add as many bytes as you like with AIW. You dont have to add just 1. :bandit:
PT_PT
8th October 2004, 11:48
WowW!
If i put XXXXXXX bytes and more any ppl have add this bytes,
I have a private fingerprint?
Solar_Custom
10th October 2004, 02:29
Yes my friend! But this is the real question...Some hacks have no .dll so do we use the AIW on the .exe?
3y3w4nn4ch34t
10th October 2004, 02:32
Yeah just use it on the exe. :)
itwasfunny
10th October 2004, 14:48
Very nice, all hacks are undetactable
itwasfunny
16th October 2004, 19:16
How can This Change the fingerprint???
THIS ONLY ADD SPACE IN DLL.
But i play ganja with my own fingerprint!
gil
16th October 2004, 19:57
I didnt understand what you meant by "space":
1. Space, the key... It does change the fingerprint cuz also a SPACE=1 bit. ugh, space is a letter.
2. Space=size? them that all the point of this thing. to change the size of the file and then it becomse a all different file.
itwasfunny
16th October 2004, 20:40
lol sorry Space=size
sdesde
17th October 2004, 04:38
It add's empty bytes @ the end of the program. Those don't disturb the execution of the program/dll, they just increase the filesize.
MD5 Hash is unique, no file has the same MD5. MD5 is not based on filenames but on the file content. When you add an empty byte, the content changes, and the md5 changes ;)
Grtz
Sde
itwasfunny
17th October 2004, 15:00
nice :)
[ Mod Edit - Warned For Spam ]
CheteXx
21st October 2004, 20:25
i have a some problem with that AIW stuff, i add a Kb to an dll file and then i want to load the exe and its says injection failed :s
another problem when i add a kb to the exe, and i want to load the exe, it starts in msdos and doesnt anything :s
pls help
tamimego
22nd October 2004, 03:14
make sure u add exzactly 1024 not 1kb thats probly y
gameplayer1987
22nd October 2004, 04:25
If i use aiw on the eh unificial 2.1, since it is just a exe. Does it make it undetceted or do i need to some how use it on the dll.
UberNoober
31st October 2004, 14:45
Hmm when i open it i get the following error message:
"Component 'comdlg32.ocx' or one of its dependencies not correctly registered: a file is missing or invalid
Whats up with that?
towlie
31st October 2004, 18:55
heh sweet i got my own ganja hack :)
btw if i change the dll and exe name (and disassmeble and edit the exe to search for the new dll) the md5 will change too?
D(_)S
31st October 2004, 22:32
Gil, you seem to be 'the one' to ask this question of... and sorry if it is off topic... I want to use this program to make my hack undetected etc.. problem is I got banned way back when PB fist came on scene and I just thought that I would not be able to hack ever again, I just recently re-installed up to 2.2... now I have noticed ppl hacking and cheating, and makes me mad that I can not... I have tried to D/L so many hacks that are supose to work.. but every one so far says needs windows 2000 or XP I am still using win98se any suggestions??? Please help I want to kill once again :) Thanks in advance
!¿PwnZ?¡
2nd November 2004, 18:08
When I try to run it, it says I need "comdlg32.ocx" Anybody else?
Also, can this only modifly .dll files? Or could it add data to any file?
Same here. Downloaded it and it gives an error..
rrr
2nd November 2004, 18:42
Hi all,
I have just discovered this thread, I'm so left out :classic:. Anyway I wanna ask does this tool work with the latest PB update? I hope it does then I can continue playing :)
Thanks.
:.edit.:If I push a few kb's, will it work again in the new PB updated version?
phk
3rd November 2004, 09:56
I used the AIW and add like 100kb in the evilconfig.exe
EH 2.1
After play for a while i got banned :-(
ScriptLog: HC::TM() MY USERNAME is joining the server.
ScriptLog: HC::TM()
ScriptLog: HC::TM() KICK NOTIFICATION: MY USERNAME has been kicked for an undefined reason: YOU HAVE BEEN PERMANENTLY BANNED FROM THIS GAME SERVER VIA PUNKBUSTER ... GLOBAL PUNKBUSTER GUID BAN 9CB283D0
Guess it is not work ( THE AIW)
D(_)S
5th November 2004, 01:27
I think you have to add at least 1028 to the file in order for the file size/fingerprint as it were to be altered...
I think...
As I have no hacks that work in Win98SE to try it out on :(
If anyone has a hack that works with current version of AAO and for Win98SE
E-mail it to me or something....
Then I will test out extensivly...
Thanks
J
DevilNeverCry
5th November 2004, 18:11
this works too in 3V!LK!LL3R?
Amaroo
5th November 2004, 22:51
this works too in 3V!LK!LL3R?
Doesn't matter...PB is checking hooks also...not just fingerprints.
killalot
6th November 2004, 00:39
Does anyone know if it works on AAOM. I added 1024 bytes to the exe. Havent been kicked yet.
vikshanker
6th November 2004, 01:33
same. i accidentally left the zoom mod changed on aaom and i had previously added the 1024...
i friggin flipped when i hit 'z' and my m16 zoomed into sniper mode... i was so freaked about gettin kicked
making test account and enabling more options for testing :nervous: :nervous: :nervous:
bdawg750
11th November 2004, 23:21
as far as ur reply about win98, i searched thru many databases and as far as i can tell none work on win98 platform. sorry.
WildCardsClan
12th November 2004, 03:21
Hmm...wonder why my Norton Antivirus is detecting this as a Trojan Horse....
Dawgster
12th November 2004, 08:38
Doesnt work any more.
aptiva
12th November 2004, 09:38
[B][I]sooo juz to git this rite ...and ask a question , change the .dll file ... how do i no which one to change seeing as u said [its usually renamed something different] u no wut orig file size of the said .dll is/was that needs imported into AIW.exe?
stone001
12th November 2004, 22:31
HI!
Same here with trojan warning while unpacking: my OfficeScan Antivirus says it has found Trojan.Virtool.Allinwon trojan and advices to delete source file!
3y3w4nn4ch34t
13th November 2004, 05:25
All this has already been covered if you would search the forums. Its used to make trojans undetected thats why AV scans pick it up. It doesnt contain a viris itself. Regardless, AIW doesnt work anymore to make undetected hacks because PB is scanning for hooks not fingerprints.
brightb
13th November 2004, 12:07
so...? duz it work?????
3y3w4nn4ch34t
13th November 2004, 12:18
so...? can u read????? It works, but your hack will still be detected.
AIW doesnt work anymore to make undetected hacks because PB is scanning for hooks not fingerprints.
Jappower
10th December 2004, 16:53
Can You Give Me The AIW.exe :D
BLUEBERRY
11th December 2004, 13:45
Can You Give Me The AIW.exe :D
You can download it on First Page !
Jappower
11th December 2004, 15:40
oke thanks! (a)
itwasfunny
11th December 2004, 15:44
This dont work, because only changefingerprint, and pb is detecting hook.
fudlilman
22nd December 2004, 01:42
....trojan :ninja:
machinegunn3r
23rd December 2004, 14:33
Great program, used it with an older version of AAOM and it works great! :D
gameplayer1987
24th December 2004, 07:55
....trojan :ninja:
I dont think it is. I think you are wrong.
exkaliber
25th December 2004, 16:06
its infected with a trojan horse!!!!!!!!!!1
PLAYA
2nd January 2005, 16:08
hmm i tryed this whit panses rtcw hack v1.71 nvidia version!!
but it detected me again after 3 or 4 minits!!!!!!!!
looolz
PLAYA
2nd January 2005, 17:38
yes i've read it and i know that this programm dont work no more but i wus thinking maybe can som1 help me out and make the hack on a other way undetected again!!!!!
you have been kicked via pb (for 2 minutes)...VIOLATION (PB HACK) #131005
loool
dukementality@gmx.net
gil
2nd January 2005, 18:57
@PLAYA,
next time edit your post instead of double posting, thanks.
Destroy77
10th January 2005, 21:08
i get norton popping up saying trogan horse found unable to reapair
Malcavian
11th January 2005, 05:58
indeed
http://home.wanadoo.nl/bvandeaar/aiw.jpg
T0m
11th January 2005, 07:10
i get norton popping up saying trogan horse found unable to reapair
if you would bother to read the rest of the thread, this has already been covered. MUltiple Times.
And it doesnt even matter, this method to make hack undetecyted does nto work anymore.
This thread should be closed or delted becuase there is too many noob who dont read and think this still works. Its really anoying.
Destroy77
11th January 2005, 08:26
StroudMaster. why dont you take your four legged green thing and ram it up your ass
3y3w4nn4ch34t
11th January 2005, 17:51
Destroy77 warned for flaming, that puts him over the 25 point mark. Goodbye.
And stroudmaster is right, read the damn thread. Everything is explained.......how its NOT a trojan and how it doesnt work anymore.
Closed.
vBulletin® v3.8.4, Copyright ©2000-2009, Jelsoft Enterprises Ltd.