Emdy Subitted

Private Discussion on Helbreath Hack Development, (Do not release hacks which are talked about in here to the rest of the forum unless you write the hacks)
Post Reply
charlie
Outpost4lyfe
Posts: 3324
Joined: Sun Apr 06, 2003 12:24 am
Location: Mt GOD
Contact:

Post by charlie »

Code: Select all

These are from hb client 3.2

F1-F5-F6-F7-F8 hotkey
-----------
0044F264 8B85 14DC0600 MOV EAX,DWORD PTR SS:[EBP+6DC14] [F1]; Case 70 of switch 0044E6F0
0044EC9B 6A 01 PUSH 1 [F2]; Case 71 of switch 0044E6F0
0044ECA9 6A 02 PUSH 2 [F3]; Case 72 of switch 0044E6F0
0044F124 8D8D D4D80600 LEA ECX,DWORD PTR SS:[EBP+6D8D4] [F5]; Case 74 of switch 0044E6F0
0044F153 8D8D E0D80600 LEA ECX,DWORD PTR SS:[EBP+6D8E0] [F6]; Case 75 of switch 0044E6F0
0044F182 8D8D ECD80600 LEA ECX,DWORD PTR SS:[EBP+6D8EC] [F7]; Case 76 of switch 0044E6F0
0044F1B1 8D8D 7CD90600 LEA ECX,DWORD PTR SS:[EBP+6D97C] [F8]; Case 77 of switch 0044E6F0
---------------------------------------------------------------
0044F264 6A 00 PUSH 0
0044F266 8BCD MOV ECX,EBP
0044F268 E8 83E40300 CALL HBHACK_-.0048D6F0
0044F26D 90 NOP
0044F26E 90 NOP
0044F26F 90 NOP
0044F270 90 NOP
0044F271 90 NOP
0044F272 90 NOP
0044F273 90 NOP
0044F274 90 NOP
0044F275 90 NOP
0044F276 90 NOP
0044F277 90 NOP
0044F278 90 NOP
0044F279 90 NOP
0044F27A 90 NOP
0044F27B 90 NOP
0044F27C 90 NOP
0044F27D 90 NOP
0044F27E 90 NOP
0044F27F 75 16 JNZ SHORT H4xx0r_-.0044F297




Auto switch f1 to f2 after pressing f4
-----------------------------------------
0044F103 > 80BD A5DF0600 >CMP BYTE PTR SS:[EBP+6DFA5],4; Case 73 of switch 0044E6F0
---------------------------------------------------------------------
0044F103 >-E9 1912FBFF JMP xxxx.00400321; Case 73 of switch 0044E6F0
0044F108 90 NOP
0044F109 90 NOP
0044F10A 90 NOP
0044F10B 90 NOP
0044F10C 90 NOP
0044F10D 90 NOP
0044F10E 90 NOP
0044F10F 90 NOP
--------------------------------------------------------------
00400321 6A 00 PUSH 0
00400323 8BCD MOV ECX,EBP
00400325 E8 C6D30800 CALL xxx.0048D6F0
0040032A 6A 01 PUSH 1
0040032C 8BCD MOV ECX,EBP
0040032E E8 BDD30800 CALL xxx.0048D6F0
00400333 6A 02 PUSH 2
00400335 8BCD MOV ECX,EBP
00400337 E8 B4D30800 CALL xxx.0048D6F0



Auto switch F1 to F2 after pressing F4 then auto switch F3
---------------------------------------------------------
Part 1
-------
0044F103 > 80BD A5DF0600 04 CMP BYTE PTR SS:[EBP+6DFA5],4; Case 73 of switch 0044E6F0
-------------------------------------------------------------------------------
0044F103 >-E9 1912FBFF JMP xxxx.00400321; Case 73 of switch 0044E6F0
0044F108 90 NOP
0044F109 90 NOP
0044F10A 90 NOP
0044F10B 90 NOP
0044F10C 90 NOP
0044F10D 90 NOP
0044F10E 90 NOP
0044F10F 90 NOP

Part 2
-------
00462C0F . 51 PUSH ECX
00462C10 . 8BCF MOV ECX,EDI
00462C12 . 897424 1C MOV DWORD PTR SS:[ESP+1C],ESI
00462C16 . E8 B5DB0300 CALL HBHACK.004A07D0
------------------------------------------------------------
00462C0F -E9 26D7F9FF JMP xxx.0040033A
00462C14 90 NOP
00462C15 90 NOP
00462C16 90 NOP
00462C17 90 NOP
00462C18 90 NOP
00462C19 90 NOP
00462C1A 90 NOP

New codes
----------
00400321 6A 00 PUSH 0
00400323 8BCD MOV ECX,EBP
00400325 E8 C6D30800 CALL HBHACK.0048D6F0
0040032A 6A 01 PUSH 1
0040032C 8BCD MOV ECX,EBP
0040032E E8 BDD30800 CALL HBHACK.0048D6F0
00400333 -E9 D8ED0400 JMP HBHACK.0044F110

0040033A 51 PUSH ECX
0040033B 8BCF MOV ECX,EDI
0040033D 897424 1C MOV DWORD PTR SS:[ESP+1C],ESI
00400341 E8 8A040A00 CALL H4xx0r_-.004A07D0
00400346 6A 02 PUSH 2
00400348 8BCD MOV ECX,EBP
0040034A E8 A1D30800 CALL H4xx0r_-.0048D6F0
0040034F -E9 C7280600 JMP H4xx0r_-.00462C1B



Cast while runing
-----------------
00462BF5 50 PUSH EAX
00462BF6 897424 1C MOV DWORD PTR SS:[ESP+1C],ESI
00462BFA E8 D1DB0300 CALL HelGame_.004A07D0
00462BFF FF15 64124B00 CALL DWORD PTR DS:[4B1264]; WINMM.timeGetTime
00462C05 8D4C24 18 LEA ECX,DWORD PTR SS:[ESP+18]
00462C09 8985 74D30600 MOV DWORD PTR SS:[EBP+6D374],EAX
---------------------------------------------------------------------------
00462BF5 EB 12 JMP SHORT HelGame_.00462C09
00462BF7 90 NOP
00462BF8 90 NOP
00462BF9 90 NOP
00462BFA E8 D1DB0300 CALL HelGame_.004A07D0
00462BFF FF15 64124B00 CALL DWORD PTR DS:[<&winmm.timeGetTime>]; WINMM.timeGetTime
00462C05 8D4C24 18 LEA ECX,DWORD PTR SS:[ESP+18]
00462C09 8985 74D30600 MOV DWORD PTR SS:[EBP+6D374],EAX
Girlfriends are dedicated hookers.
delinquent
&lt;3 bd long time
Posts: 869
Joined: Fri Nov 14, 2003 12:08 am
Location: binarys underpants
Contact:

Post by delinquent »

LoL 3.2?
<img src='http://deli.lazyslacker.com/stupidnigga.jpg' border='0' alt='user posted image' /><br><a href='http://deli.lazyslacker.com' target='_blank'>http://deli.lazyslacker.com</a><br>Don't ban me, ban the idiot!
emdy
Regular
Posts: 62
Joined: Sun Nov 09, 2003 6:19 pm

Post by emdy »

delinquent wrote:LoL 3.2?
LOL yeah..
been in my hard drive for years.. :lol:
binarydata
DBfiller
Posts: 3816
Joined: Fri Oct 31, 2003 5:30 am
Location: San Diego CA, USA
Contact:

Post by binarydata »

dun mean you cant map
<img src='http://img88.exs.cx/img88/2290/7666.jpg' border='0' alt='user posted image' />
delinquent
&lt;3 bd long time
Posts: 869
Joined: Fri Nov 14, 2003 12:08 am
Location: binarys underpants
Contact:

Post by delinquent »

ZzzZZZz HB Dead BD :P
<img src='http://deli.lazyslacker.com/stupidnigga.jpg' border='0' alt='user posted image' /><br><a href='http://deli.lazyslacker.com' target='_blank'>http://deli.lazyslacker.com</a><br>Don't ban me, ban the idiot!
binarydata
DBfiller
Posts: 3816
Joined: Fri Oct 31, 2003 5:30 am
Location: San Diego CA, USA
Contact:

Post by binarydata »

delinquent wrote: ZzzZZZz HB Dead BD :P
thank you captain ovbious
<img src='http://img88.exs.cx/img88/2290/7666.jpg' border='0' alt='user posted image' />
delinquent
&lt;3 bd long time
Posts: 869
Joined: Fri Nov 14, 2003 12:08 am
Location: binarys underpants
Contact:

Post by delinquent »

No problem citizen!
<img src='http://deli.lazyslacker.com/stupidnigga.jpg' border='0' alt='user posted image' /><br><a href='http://deli.lazyslacker.com' target='_blank'>http://deli.lazyslacker.com</a><br>Don't ban me, ban the idiot!
Post Reply