| View previous topic :: View next topic |
| Author |
Message |
Saharad How do I cheat?
Reputation: -1
Joined: 24 Feb 2013 Posts: 9 Location: Earth
|
Posted: Sat Mar 02, 2013 7:19 pm Post subject: |
|
|
| Chris12 wrote: | I made scripts for Most stuff. Ammo, Energy, Hp, skill-boxes,...
But did someone here find weapon sway and spread? |
This is ussualy close to where you have ammo, ussualy an increasing float value, in rare cases its a down going value. if you do it by pointers then it wont work well in most cases. if the value is forced in you need to do that by the games instruction for that.
|
|
| Back to top |
|
 |
shakib187 Expert Cheater
Reputation: 0
Joined: 24 May 2007 Posts: 215
|
Posted: Sun Mar 03, 2013 12:11 am Post subject: |
|
|
edit:WOOOOOOOOO
Last edited by shakib187 on Mon Mar 04, 2013 8:30 am; edited 1 time in total |
|
| Back to top |
|
 |
Chris12 Expert Cheater
Reputation: 1
Joined: 27 Apr 2012 Posts: 103
|
Posted: Sun Mar 03, 2013 11:16 am Post subject: |
|
|
Thanks for the tips. If I find it, I'll share it.
@shakib187:
Cheating in multiplayer games is not endorsed here. But I'll share my findings for the singleplayer positions if I find them.
|
|
| Back to top |
|
 |
HiSaZuL Expert Cheater
Reputation: 6
Joined: 09 Aug 2011 Posts: 245
|
Posted: Mon Mar 04, 2013 3:13 am Post subject: |
|
|
I actually find it very amusing, even if I don't care anymore, all this talk of working bypasses/scripts blah blah blah... yet not a single post with actual stuff. Just a little amusing fact about this entire topic
|
|
| Back to top |
|
 |
Chris12 Expert Cheater
Reputation: 1
Joined: 27 Apr 2012 Posts: 103
|
Posted: Mon Mar 04, 2013 4:44 am Post subject: |
|
|
What are you talking about. Dark byte as well as me gave instructions on how to disable it. I thought everyone already disabled it?
I suggest you read the thread again.
Just on the previous page in my posting with the picture you can see all needed information to make a "bypass" yourself.
|
|
| Back to top |
|
 |
HiSaZuL Expert Cheater
Reputation: 6
Joined: 09 Aug 2011 Posts: 245
|
Posted: Mon Mar 04, 2013 4:58 am Post subject: |
|
|
| Chris12 wrote: | What are you talking about. Dark byte as well as me gave instructions on how to disable it. I thought everyone already disabled it?
I suggest you read the thread again.
Just on the previous page in my posting with the picture you can see all needed information to make a "bypass" yourself. |
All I saw is something decompiled into a form that I can't understand. So... Yeah... Maybe you should read what I said about scripts... meh w/e.
|
|
| Back to top |
|
 |
Chris12 Expert Cheater
Reputation: 1
Joined: 27 Apr 2012 Posts: 103
|
Posted: Mon Mar 04, 2013 6:37 am Post subject: |
|
|
I didn't want to offend you sorry <3
Well you have the address of the check, you can see how it works (if you know C). So circumventing it should be very easy.
That anticheat is very basic, and learning how to hack it yourself would be fun
But if you don't want to learn or its too hard for you then I'll post a table with the scripts if you want. Just let me know.
The easiest way (without using stealthedit) would be to hook after the function is called and return the correct hash, based on the scanned instruction
|
|
| Back to top |
|
 |
Smanettone83 Expert Cheater
Reputation: 3
Joined: 21 Feb 2011 Posts: 146 Location: Italia
|
|
| Back to top |
|
 |
HiSaZuL Expert Cheater
Reputation: 6
Joined: 09 Aug 2011 Posts: 245
|
Posted: Mon Mar 04, 2013 11:18 pm Post subject: |
|
|
| Chris12 wrote: | I didn't want to offend you sorry <3
Well you have the address of the check, you can see how it works (if you know C). So circumventing it should be very easy.
That anticheat is very basic, and learning how to hack it yourself would be fun
But if you don't want to learn or its too hard for you then I'll post a table with the scripts if you want. Just let me know.
The easiest way (without using stealthedit) would be to hook after the function is called and return the correct hash, based on the scanned instruction |
Hah don't worry about offending me personally idc much about that. I guess I should have made my point clear. I was trying to say that in the form that you posted it, it was translated to something not used in ce so most people that only "dabble" in this its somewhat pointless. That's all. My main interest was to see how someone disables it. At the time i got Crysis 3 and started poking around only to hit that IC wall... fling already had a trainer and I had a table with a fairly stable lvl5 energy pointer so anything short of infinite total ammo was useless to me. I dislike no-reload options feels awkward somehow. Granted ceph weapons don't have addition ammunition so the only way to get inf ammo on them is with "noreload" or anything that prevents clip from hitting 0 ammo.
JAW gets utterly broken by any ammo options since it breaks its ammo value.
Anyway long finished with it was just waiting to see ce friendly bypass in for of a script or some such.
|
|
| Back to top |
|
 |
Chris12 Expert Cheater
Reputation: 1
Joined: 27 Apr 2012 Posts: 103
|
|
| Back to top |
|
 |
shakib187 Expert Cheater
Reputation: 0
Joined: 24 May 2007 Posts: 215
|
Posted: Tue Mar 05, 2013 8:16 pm Post subject: |
|
|
Edit: got it
|
|
| Back to top |
|
 |
HiSaZuL Expert Cheater
Reputation: 6
Joined: 09 Aug 2011 Posts: 245
|
Posted: Wed Mar 06, 2013 5:14 pm Post subject: |
|
|
| ty.
|
|
| Back to top |
|
 |
rahw How do I cheat?
Reputation: 0
Joined: 07 Mar 2013 Posts: 2
|
Posted: Thu Mar 07, 2013 8:01 pm Post subject: |
|
|
| Chris12 wrote: | I made scripts for Most stuff. Ammo, Energy, Hp, skill-boxes,...
But did someone here find weapon sway and spread? |
Hi Chris12, I was looking a long time for the Hp code but I only found 2 useless values like a percantage value of health and a float value.
Can you explain how you did find the Hp code? (or give hints)
I am doing this for learning purposes and the Hp code seems to be really difficult to me.
I am sorry if that was too much offtopic.
|
|
| Back to top |
|
 |
Chris12 Expert Cheater
Reputation: 1
Joined: 27 Apr 2012 Posts: 103
|
Posted: Fri Mar 08, 2013 5:43 am Post subject: |
|
|
I didnt find hp. I didnt search for it yet.
My table only contains energy.
But I guess Hp should be relatively near energy. Use the hex editor with float mode to look around.
Otherwise it could also be just a bool "low Hp" or "full Hp" or a integer with different stages of "low Hp".
If you found the address that gives you a health percentage you can start reversing from there. Look how that value is calculated.
|
|
| Back to top |
|
 |
rahw How do I cheat?
Reputation: 0
Joined: 07 Mar 2013 Posts: 2
|
Posted: Fri Mar 08, 2013 10:00 am Post subject: |
|
|
After looking a few lines above the energy offset I found only a float value which only changes if you get hurt. (but doesn't show the actual health thats why I didnt find anything)
For V. 1.2
| Code: | Crysis3.exe+76BE1A - 89 11 - mov [ecx],edx
Crysis3.exe+76BE1C - 8B 50 04 - mov edx,[eax+04]
Crysis3.exe+76BE1F - 89 51 04 - mov [ecx+04],edx |
"mov [ecx],edx" writes there but also writes to many other values.
But it seems to be responsable for damage calculation, if you replace it with NOP than you don't take damage. (will crash the game if you go to an other area)
I tried to cmp static registers but that didn't help until now.
Ah and thanks for the hint!
-------------
Reversing from the percentage value brought me this:
| Code: |
Crysis3.CryRealloc+3DFD54 - 76 09 - jna Crysis3.CryRealloc+3DFD5F
Crysis3.CryRealloc+3DFD56 - 8B 51 24 - mov edx,[ecx+24]
Crysis3.CryRealloc+3DFD59 - 33 D0 - xor edx,eax
Crysis3.CryRealloc+3DFD5B - 89 54 24 0C - mov [esp+0C],edx
Crysis3.CryRealloc+3DFD5F - 89 5C 24 10 - mov [esp+10],ebx |
"mov edx,[ecx+24]" is accessing something which changes everytime. If you change [ecx+24] to 00000000 or just change jna to jmp then u get infinite hp in an ugly way. (Prophet will start groan all the time until you change the jmp back to jna) And you should change the code before the level ends or you cant move in the next one.
|
|
| Back to top |
|
 |
|