Openkore: packet tokenizer: unknown switch: 16CF

Created on 8 Feb 2017  ·  745Comments  ·  Source: OpenKore/openkore

Anyone know how to fix this?
untitled
I used Gravindo RO - Indonesia
and here the ragexe
https://drive.google.com/open?id=0B3UcfHfBZfh2MGNoVVNjODFzMlU
i tried a lot method over googling for exctracting packet but i have no luck, all failed..
Look like they encrypted the ragexe.exe, please help me thank you..

Most helpful comment

Instead of trying to decrypt the login packet, you can just make delphine to do it for you.

It's not worth to bot though. You will ended up getting banned.

All 745 comments

Ok we face almost the same problem here. :D I try to calculate and understand how this work. Let me try and wait all the masters here.

sshot-8

any one can encoded password?
i think wrong in Function password_salted_md5 and secureLoginHash..

@ilfan14 can i get your code sir? maybe i can try to fix it..

@ilfan14 can you send me the file to

how to handle the 16cf?
share pls?

i need your config 1st and i try to analyze..

On Feb 10, 2017 1:21 PM, "Eongs" notifications@github.com wrote:

@ilfan14 https://github.com/ilfan14 can you send me the file to


You are receiving this because you commented.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-278867225,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYfWhseE3klAc4BIlxy5fk9QK4ySftc1ks5rbAHYgaJpZM4L7abP
.

same issue , i think its a kind of new servertype, ,they also hidden master number, donno if im right or not

How to solve 16cf please?

I haven't have the solution yet... Because of that i ask for the same too.

On Feb 10, 2017 9:46 PM, "orgmatileg" notifications@github.com wrote:

How to solve 16cf please?


You are receiving this because you commented.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-278959194,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYfZAG3qiY3EvVNB9v_Dl5BYunDWLi86ks5rbHhagaJpZM4L7abP
.

16CF is not a valid RO packet switch. This usually means the sever settings are wrong or that the server has some kind of shield. It could also mean that a previous packet had an incorrect length in recvpackets.

Then how do we solve this problems... Can you give me the solution?

On Feb 10, 2017 10:13 PM, "lututui" notifications@github.com wrote:

16CF is not a valid RO packet switch. This usually means the sever
settings are wrong or that the server has some kind of shield. It could
also mean that a previous packet had an incorrect length in recvpackets.


You are receiving this because you commented.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-278970514,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYfZAEek_x95Tc77TVY2nGqjNY0sjV_jks5rbH6MgaJpZM4L7abP
.

the solution is easy to say !!!!!! , 
`decrypt those 20 bytes 16CF packet`
but hard to do ..........

@lututui yes.. the server have new shield like i said in the top.. can you help me?

Seems the 20 bytes are encrypted by idRO's Dephine protection, this kind of problem existed since 2010 I think http://forums.openkore.com/viewtopic.php?f=56&t=8587&start=70

@ilfan14 can u send me what extraxtor did u use to bypass that 16cf so I can try to help encode that md5 password? Thank you

Instead of trying to decrypt the login packet, you can just make delphine to do it for you.

It's not worth to bot though. You will ended up getting banned.

@spyware293 nice bro, can you give me the file?? please please please

Nice can you share the file to me too...

On Feb 13, 2017 9:55 AM, "kancielz" notifications@github.com wrote:

@spyware293 https://github.com/spyware293 nice bro, can you give me the
file?? please please please


You are receiving this because you commented.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-279283061,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYfZAFWy6wA7qobKS6cqP5C1KLvSjEOuks5rb8YfgaJpZM4L7abP
.

@spyware293
can u post how to make delphine do de encrypt ? thanks in advanced

The delphine plugin, yes?
I just saw a slight in that sources and the forum link on the plugin file,
seems it's the solution. (Can 't test yet)

On Feb 13, 2017 9:30 AM, "spyware293" notifications@github.com wrote:

Instead of trying to decrypt the login packet, you can just make delphine
to do it for you.

https://camo.githubusercontent.com/0f470fa0cb81b20a6bdb653d5ab7c030439231e0/687474703a2f2f692e696d6775722e636f6d2f335744764d694b2e706e67

It's not worth to bot though. You will ended up getting banned.


You are receiving this because you are subscribed to this thread.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-279280357,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AD1K4NY_DiHm0mluGKR7SDYyNuT6H1WTks5rb8BigaJpZM4L7abP
.

@spyware293 how u do that?
teach pls?

@k1nt4r0 @Eongs @kancielz it already stated "Instead of trying to decrypt the login packet, you can just make delphine to do it for you."

instead begging to spoon-feed, why don't we just try from clue that he said _(delphine.pl)_. and post n ask for some help, if there's (obviously) any prob or stuck.

other ppl, does it hardly, struggle for many many hours to solve prob like this, do you even think??? their contribution, their effort, their spent time and u all just like... "give me the code pls, share the code pls, send me the code pls" WOW, ur life so ez man...

lol bro, can u read my post?
i said "teach pls?"
i know the plugin, and i ask about the decrypt lol

dont judge a book from the cover
i try to bypass it from the first cbt
and until now i didnt get it, so i ask a help to decrypt cause i never did it before

i search already from google, but the my openkore got error
so, i ask how to do it cause he got it already

I think he refer to Idro's delphine protection

"make delphine to do it for you."
Probably he's using X-Kore that's how netredirect.dll work

@spyware293 nice bro, can you share the file??

seriuously? delphine key again?
ok. i'll try it

@spyware293 please kindly share your way to enable delphine.pl in the meantime i'll search for older forum answers

@spyware293 can you share how to make delphine work for this server ? or a guide ... thx b4
Well im clueless about delphine ...
this is what i got so far ... can you tell me which part i do wrong

delphine

@rundumb how to use delphine.pl?

@spyware293 just one question.. how you inject ragexe.exe with your RPE/WPE to sniff packet??

please learn from this old forum
hopefully this is can help you guys
http://dwarna-ro.blogspot.co.id/p/cara-buat-togelkey-idro.html

@hendra814 i did but all of those link dead

@hendra814 i tried it already, but i got nothing

@Edops edit _sys.txt_ in control folder, enable da plugin there.
_loadPlugins 3_
or
_loadPlugins 2_ and write the plugin name in _loadPlugins_list_

i got new problem ... wtf ... please help me senpai
delphine2

zzz
already enable delphine plugins, still stuck at 16CF code, where did i do wrong?

so from what i learn

  1. enable plugins on sys.txt
  2. create 2 txt files on tables "delphine-data.txt" & "delphine-key.txt" (which i don't know what to write inside
  3. run start.exe (?)
    CMIIW

and @hendra814 any link to the video mentioned?

@Edops (2.) please refer to the full manual. you should put something on them.

lol spyware was being hated by almost ppl in idro.
now ppl in idro pleased to him about bot. loooool

note: try to re-encrypt the packet in 'another' way, and do all your knowledge.

@Lilori oh the irony :))

I once creating those "togel" key back in 2010(?) for my people. let me try this method once more.

@spyware293 would you mind elaborating on what you meant by let the delphine do the work,
my assumption would be you linked the delphine (in ragexe/dll) to openkore (either the dll or the exe) and executes a function from within the dll/exe
or
you used some sort of XKore Poseidon method?
or
you meant the delphine.pl plugin?

one lil problem here, remapped data capture from injecting the "exe" and data capture from sniff ,

anyone ?

@528custom well the link is outdated and mostly the file is gone from 4shared, and there's no vid to help too, so i'm still clueless what to do with that .txt file *sadlife

believe me, if you guys share anything works on this thread, remember, every people on this planet can also access this thread :)

@michaelaw320 You can hook the ws2_32.dll inside ragexe and redirect the login packet to openkore.
Alternatively, you can use xkore but you need to hide it from mfc90g.dll because it scan other process modules that contain perl and xstools.

@spyware293 Thanks for all the clue. You're my inspiration :D

@spyware293 please share config ^_^

@spyware293 I see, responses like this are the responses that makes github healthy
I'm wondering what is the function prototype that you called from ws2_32.dll, did you disassembled it?

what sniffer do you guys use to sniff?

Try Wireshark.
Hmm can't get alive link for rPE.

On Feb 13, 2017 3:24 PM, "Edops" notifications@github.com wrote:

what sniffer do you guys use to sniff?


You are receiving this because you commented.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-279321709,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AD1K4J-TmYv67DXvutTdjxCuE3cTc_Hvks5rcBNGgaJpZM4L7abP
.

@spyware293 can u help me how to hook dll inside exe?

is it wireshark ? @spyware293

@cydh just found the link for rPE , maybe usefull

http://www.mediafire.com/download.php?tiinj0tkz0t

@banaspati @cydh why use rPE? WPE works fine.

delphhh

I'm getting rusty since I haven't botting for a long time.
anyone can explain to me whats wrong with those errors? I know I'm missing some keys (254/256) but the errors in yellow are unusual.

how? my wpe can read the ragexe.exe but when i input id and password it not record anything sir

@k1nt4r0 I think you forgot the play button mate.

i did, but got nothing sir

@k1nt4r0 start over. you targeted wrong ragexe.

untitled
untitled2
untitled3
untitled4

this is the step sir

untitled4

this is the last pic, sorry double post, the not uploaded

let me get this straight.

  1. I don't know how it must be formatted.
  2. There are only very plenty of bots. as @spyware293 said, you'll ended up getting banned.

anyway, use these packets, tell me if it's working. if not, you might want to wait.
http://pastebin.com/ZpPFvY4z

@cydh is rPE ok? I can upload mine if you want to.

uh guys i'm newbie and i cant even understand how to use delphine. if its about sniffing the rage.exe i can already do it but the step before sniffing and after snipping make me confused.CAn anyone kindly help me :3 sry for broken english

@banaspati downloaded, I'll try this.
@528custom, I'll try banaspaty's one first. and gonna test use ur snippets too.

@528custom
aa

a step closer guyss . u guys are awesome !!

@serverlegend do you have errors like me? (Conflicts for key xx)
2 keys missing are easy.

@528custom is it ok if i have error like this? "tables\delphine-key.txt is in unknown format"

delphine-key is empty at the moment :')

@528custom maybe, but i so confused broh. can you help me?

@noobforce no, it's not ok 😃

I'm gonna try one more time.

@528custom I'm facing this error. Anyone facing same problem with me?

capture

@andibanget how can u get the last 2 key of delphine?

@andibanget check your config, you are using smith_'s plugin.

@528custom is it applied to mine too?

@noobforce no, you are using delphine plugin right from openkore.

smith_'s plugin is pulling keys from websites.

@528custom sir how is the last 2 data of delphine? how can we find it?

@528custom hey sir would u pls upload ur current WPE and delphine, been googling yet i cant find download link for those 2
thanks

@528custom so i need to change the delphine plugin not the one from smith_'s right?

@andibanget no u have to choose only one, either delphine or smith_ if u are using delphine, remove the smith_'s config

waiting for @cydh to crack delphine ...

i've trying using manual method, using mapper.pl

still cant find the right key

yup, will ended banned

static two way authentication method

@noobforce Ok I almost lost now, so sorry for the noob question. How to remove the smith_'s config? Thanks Sir.

@almarior _berani kotor lebih baik_ right?

@528custom oh wait, almost all of it conflict, do you know how to avoid this?
capture

_berani kotor_ makes us learning 😄

image
anyone got unknown switch 0751?

@noobforce no atm.
@oanggg looks like still wrong password.

@528custom hahah berani kotor lebih baik , you can fix it?

and i have no idea what to fill delphine-data.txt

i tried tutorial on google but every link is lost and every one of them is outdated.

@shinryuuken u can take the link got share by @528custom above..its pastebin

teach me how to get delphine-key

@musicaa the delphine plugin it's already in OpenKore what-will-become-2.1 package, but it's not activated by default. For wPE or rPE just google it deeper, there is a few link still up.

I just can't find delphine-data-mapper and delphine-key-formatter video on this link : http://dwarna-ro.blogspot.co.id/p/cara-buat-togelkey-idro.html , anyone can provide the files please?

@archinoz ah i think it got switched, i use that on delphine-key,txt

thanks

Anyone has link to download WPE? i tried using rPE but it detected and cannot run with rage exe, already try to hide it using HideToolz still detected. Now im just using wireshark and only can get half of key.

@justdoitright lenght 66 ?

Here's the link :
rPE
WPE

rename the file extension to *.zip after download it..

@andi1089 re upload, banned by gugle, LOL

@almarior It's just only about few minutes lol
I uploaded it directly into my NAS. Here the link :
rPE

WPE

change the file extension to *.zip after download, the link expires tomorrow.

yesyesyes

got the complete keys, new packets coming (?). can someone get the new recvpackets? or is it wrong server configuration? looks like a legit RO packets to me.

@528custom u got complete delphine-data.txt?

@k1nt4r0 yes, but without new recvpackets/server configuration, it's a waste.

@528custom I think you need recvpackets from @ilfan14

how u got the complete delphine-data.txt?

@528custom same as me but, u got 076F meanwhile i got 0751.
@k1nt4r0 https://www.dropbox.com/s/od09sshaknxa3vr/delphine-data.txt?dl=0

anyone have hidetools program work for win7? can i get a link.. thx before

@528custom pake program apaan aja gan

are we in the same configuration?

[Indonesia - idRO: CHAOS - Classic]
ip 202.93.25.81
port 6900
master_version 12
version 2
serverType idRO
secureLogin 1
secureLogin_type 0
secureLogin_requestCode
secureLogin_account 0
serverEncoding Western
addTableFolders idRO
charBlockSize 144
charDeleteDateType 1

@528custom
[Indonesia - idRO: CHAOS]
ip 202.93.25.81
port 6900
master_version 12
version 2
patchserver patchragnarok.gravindo.id
patchpath /patch02
serverType idRO
secureLogin 1
secureLogin_type 0
secureLogin_requestCode
secureLogin_account 0
serverEncoding Western
storageEncryptKey 0x050B6F79, 0x0202C179, 0x00E20120, 0x04FA43E3, 0x0179B6C8, 0x05973DF2, 0x007D8D6B, 0x08CB9ED9
addTableFolders idRO
charBlockSize 144
charDeleteDateType 1

@528custom mine is
[Indonesia - idRO: CHAOS]
ip 202.93.25.81
port 6900
master_version 12
version 2
patchserver patchragnarok.gravindo.id
patchpath /patch02
serverType idRO
secureLogin 1s
secureLogin_type 0
secureLogin_requestCode
secureLogin_account 0
serverEncoding Western
storageEncryptKey 0x050B6F79, 0x0202C179, 0x00E20120, 0x04FA43E3, 0x0179B6C8, 0x05973DF2, 0x007D8D6B, 0x08CB9ED9
addTableFolders idRO
charBlockSize 144
charDeleteDateType 1

im still stuck in "packet tokenizer: unknown switch: 16CF"

how to modification this :(

We need a new recvpackets OR a right server configuration.
@lututui can you help us a bit? needed a hand for this.

recvpackets.txt

my recvpackets, dunno if its true

every files is encrypted

thx sir
but i still got this
untitled

screenshot_3

anyone have a hide tools program work for win7? can i get a link...

@k1nt4r0 can i have ur complete delphine data?

ro

still stuck here,

@k1nt4r0 can you share your delphine key and delphine data

i think not yet
its say 254/256
and got mising keys 33 b8 like bluewhite99

@k1nt4r0 oh ok broh, delphine key make me drunk

@k1nt4r0 well what about ur ss in top?u already bypass delphine right

@gsenpai u can't use hidetoolz for that.

@k1nt4r0 @serverlegend wrong encoded password.

@shinryuuken used you recvpackets, nothing.

anyway, how to make console shows everything like you guys? like sendPackets and everything?

@528custom in config.txt

debug 1
debugPacket_unparsed 1
debugPacket_received 1
debugPacket_ro_sent 1

@528custom "Alternatively, you can use xkore but you need to hide it from mfc90g.dll because it scan other process modules that contain perl and xstools." i just try what @spyware293 said.. but i cant find a hide tool program work for win7

to get the right encoded password need to complete the delphine-data.txt right?

@gsenpai you can change dll file to hide it from ragnarok. follow this http://tkc-community.net/forum/index.php?topic=9324.0

I cannot find rage.exe or ragnarok process in WPE, already tried to run as admin still not find it. anyone has idea to fix this?

guys only 1 left missing key ... what do i wrong ?

delphine 3

@rundumb bro can you share your delphine bro

@rundumb what delphine-data are you using?

i'm used from the delphine auto generate it's make error unknown switch 0000

@hendra814 @serverlegend i use @528custom file and i change it a little bit

i got same unknown switch 0000

delphine 4

untitled
i got this ~_~"

For those who doesn't know how to sniff :

  1. use smsniff and wpe
  2. start recording packets
  3. try to login 100+times (just use a fake id/random id-password)
  4. restructure the pair.

CF 16 15 37 E4 85 from smsniff
DC 01 14 00 F3 96 from wpe

CF 16 15 37 F2 F6 from smsniff
DC 01 14 00 E5 E5 from wpe
and so on.

ANYWAY, i'm too lazy for digging this problem. will wait for the gurus/until tomorrow lol.
I'm starting to doubt this method hahaha.

will share the complete delphine-data once you all know how to do it.

@k1nt4r0 PM me in discord.. fast..

can anyone who play in Gravindo upload the Ragnarok.exe and Ragexe.exe who still detect "Playing Ragnarok Online" in Discordapp.
because discordapp cannot detect i'm playing RO. and my Ragexe.exe extract recvpackets.txt have size more than 40mb and still have problem in 16CF.
thanks before.

Packet Tokenizer: Unknown switch: 0751
any suggestion sir?

my problem delphine-data like this anyone can help?? sorry bad english
000err

Xkore 1 works just rename xstools.dll, netredirect.dll, perl512.dll and edit some src openkore so it can compile

can show the way sir?

@RaynV how bro?

@RaynV which file in src to edit for xstools.dll and perl512.dll, I only found netredirect.dll

EDIT : I can't found perl512.dll in my latest OK

omg i cant sleep

i cant sleep as well ,

shit this puzzle thing

roaarrr... im still stuck in "packet tokenizer: unknown switch: 16CF", even after do thingi like delphine key etc etc,
@k1nt4r0 can i have your config.txt/server.txt/recvpackets.txt coz its really confusing.. i wanna learn the diff, thanks b4

@cydh any progress?

Sorry of it's rude to ask, but we desperately need help @kLabMouse @lututui @itsrachelfish

The rPE/WPE cannot be injected. XD

On Feb 14, 2017 8:09 AM, "528custom" notifications@github.com wrote:

@cydh https://github.com/cydh any progress?

Sorry of it's rude to ask, but we desperately need help @kLabMouse
https://github.com/kLabMouse @lututui https://github.com/lututui
@itsrachelfish https://github.com/itsrachelfish


You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-279575571,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AD1K4ILClAiGFMO83W2efTBxiW86jLlzks5rcP6ugaJpZM4L7abP
.

Hi, how is the problem here, is there a solution for this?

@wildan48 mine still got nothing sir.
still error and cant login

@RaynV how sir? still waiting clue to do like u said :D

@cydh why you can't inject it with WPE, mine works fine

today, they upgraded their GG's.
glhf.

is this use key again? i think not, not that far.. hahaha

after today patch
untitled

and after patch today, WPE ___detected____, cant get through ... hmm

@wildan48 , what do you mean by detected?

@justdoitright i can't injected WPE to Ragexe.exe

just want to know is mandatory to use 2 type of program 1 for sniffing packet like smartsniff and 1 for packet extractor like WPE or rPER to get full key data? or we can use only one of it?

Anyone has link to download smartsniff?

im using wireshark not smartsniff. you can try it too https://www.wireshark.org/download.html

gravindo change their antibot back to the beginning, you can use xkore 1 now

@serverlegend
use xkore, with rename dll file?
how about recvpackets?
same like shinryukeen shared?

xkore works again

@RaynV can u teach me ?

@satria5 you just need bypas, inject the client for xkore 1

@satria5 can u teach me bro ? im need bypas for xkore 1

teach me plis

can i get link to download xkore 1?. thx

@serverlegend : could you tell which dll need to change to bypass xkore? i tried to change xstools.dll but openkore cannot run, it seem need to change lot of file to compile it.

@serverlegend
oke thank you for the clue.

@serverlegend i try to inject but netdirect still detect it...did u mean i must bypass the netdirect so i can run the bot?how did u do that bro...enlight me please :D

@serverlegend bro can teach me how to inject client for xkore1?

  1. xkore still listen 2351 port ? or maybe 6900 just like server port ? so i have to re-hex the netredirect.dll
  2. still, 1 million dollar question how to inject the client ? btw the client u mean is ragexe? how to inject server side ? or its just bypassed ? in rageexe or mfc90g or where ?

sorry iam totally crushed hahah

anyone ?

im trying to use xkore 1 but seems it detected by ragexe (hackshield). Anyone can give a clue what dll or file need to rename/change to bypass it? Or any other way to hide it from ragexe like hide tools?

why i keep having unable to inject netredirect.dll , i search whole forum , still got no response , i tried re hex too ,but same result , i tried run as admin ,still fail , anyone can enlight me ?

@dalvian
I think we need to hide/rename it, because gravindo intercept whatsoever. But it seems cant do manually. We need tools, maybe someone kindly share download link for tools. If we lucky someone will compile every steps to make kore works again.

@RaynV need the clue bro, because the openkore the exe cannot start with start.exe. maybe we need to change something in src folder?

you can new download openkore

@acesfz what do you mean new download openkore?
could you explain hehe

this step, can bypass detected start.exe, without using hidetoolz
but can't to inject NetRedirect.dll

sketch

any someone can clue this step to inject pls.

OriginalWSASendProc = (MyWSASendProc)
HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"WSASend", (PROC)MyWSASend);

OriginalWSASendToProc = (MyWSASendToProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"WSASendTo", (PROC)MyWSASendTo);

OriginalWSARecvProc = (MyWSARecvProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"WSARecv", (PROC)MyWSARecv);

OriginalWSARecvFromProc = (MyWSARecvFromProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"WSARecvFrom", (PROC)MyWSARecvFrom);

OriginalSendProc = (MySendProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"send", (PROC)MySend);

OriginalSendToProc = (MySendToProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"sendto", (PROC)MySendTo);

OriginalRecvProc = (MyRecvProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"recv", (PROC)MyRecv);

OriginalRecvFromProc = (MyRecvFromProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"recvfrom", (PROC)MyRecvFrom);

OriginalConnectProc = (MyConnectProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"connect", (PROC)MyConnect);

OriginalSelectProc = (MySelectProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"select", (PROC)MySelect);

OriginalWSAAsyncSelectProc = (MyWSAAsyncSelectProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"WS2_32.DLL", (PSTR)"WSAAsyncSelect", (PROC)MyWSAAsyncSelect);

OriginalGetProcAddressProc = (MyGetProcAddressProc)
        HookImportedFunction( GetModuleHandle(0), (PSTR)"KERNEL32.DLL", (PSTR)"GetProcAddress", (PROC)MyGetProcAddress);

i think this process will lead us to connect (hooking WS2_32.DLL)

for bypassing, it is use mhook ?

im still trying to hide xkore from hackshiled, this is same as WPE or rPE, we need to change dll file so is not detect from hackshield. Change it is easy rename dll file (probably NetRedirect.dll and XSTools.dll) but when we rename it, it will causing error openkore. We also need change function in source to integrate with this.

hey @randualas can you tell me how to bypass detected start.exe? i mean the exact step because its been long since i played RO lol like 2002? and before i was a heavy botter now it seems changing considerably but i think i manage to tweak the netdll but cant pass the ragexe got the msg like this program cant run with start/wxstart.x

realize or not, in here only @spyware293 , @oanggg , @RaynV , and @serverlegend only who can done it.
but u guys wont share it, how to do, and just give a clue that not all can understand it.

just want to share some clue.
Based on comment above "xkore 1" can use for this. Please search here (http://openkore.com/index.php/Main_Page) what is "xkore 1" means .
Make sure you already change it to xkore 1, run openkore wait until it says to run ro, and then run your ro.
You will ended by error pop up says ro cannot run with openkore run in same time (this name hackshield). Now we need to find a way to bypass this. Probably by change name of NetRedirect.dll and XSTools.dll but when rename it to other will end up error running openkore. Let's find it together to bypass this. Or someone that already done it can share. Thanks

well ive done with the netredirect dll but when im trying to realign path of xstool i failed, im not really a decoder or a programer im just trying to make sense to it lol and now im still trying to find the path which load the xstool so we can literally change it, i guess thats the only clue i need been searching in src folder but not good and been trying to work this with another angle like editing the mf90g maybe but like i said im not really a coder so still need time to work the logic

@justdoitright as i know, when u run the start.exe with xkore 1 on ur config
the start.exe will need netdirect.dll and xstools too

but if u change the name, u also need to change the other connected file.
like translation.pm, and the other in the src.
i do the step 1 by 1 but still got error

as i got from the clue, u need to edit the hex from inside the dll to make it undetectable by ragnarok GG, but the problem is it need skill on it
and its hard

Yes that's true, just some people understand what they talking about in here.. i still don't get what mean "inject Netredirect.dll to ragexe.exe" . I try using extreme inject (u can googling for it) for inject netredirect.dll to ragexe.exe, but when i run OK and RO, it still "unable to inject netreditect.dll" . I try rename netredirect.dll to vnetredirect.dll and configure in xkore.pm.. but result is same.. i'm newbie, sorry for bad english

@CadisEtramaDRaizel yes, change xstools.dll will need to change other file too (mostly from src folder). You can try to find "xstools" with notepad++ in all file your openkore folder and starting to change one by one and compile it (run openkore). Not sure how much need to change and which file need to change, i'm also not sure if this will works either :P

Make sure to run openkore first and then your ro not ro first and then openkore when you activate xkore.

i try to get bypass without xkore
as i got from sniffer, OK will receive an encrypted packet from server like
DC01 => 946B
and when we OK send the username and password to server the OK should get a packet like
DD01
but the password should be salted to get the correct respond from server

i need a help from someone who understand about this, how to make the OK send the right packet to server?

cause i giveup on xkore mode, im not good on it ~_~

@ k1nt4r0 so you do delphine key way? could you please share delphine data you get? i only have data from packet sniffer cause my WPE and rPE cannot detect ragexe program. Maybe i can try using your data.

hallo .. just to remind, if use xkore, ragexe protect by guard, u can bypass or inject .dll but he have client hash, its hard need to more in.
so

  1. make xkore cant detect by guard,
  2. inject .dll and bypass client hash
  3. make openkore to bypass client hash to server

@nebulacyber man how about some link of guides , its hard when all link were deads

@justdoitright u have discord?

@nebulacyber i understand what u mean, but i need to know how to do it?
cause as i know to did it u need the program for editing, and how to do it?
i really dont understand how to do it cause i dont have a knowledge about it.

@k1nt4r0 yes, please invite mine (justdoitright) in discord.

@k1nt4r0 @justdoitright how to invite friends at discord.

give me your discord tag

@k1nt4r0 #6691

cant find haha :s

@k1nt4r0 #1647

@k1nt4r0 give me ur discord ...

jegrek#9326

[Network::Receive] Network::Receive::idRO (mode: new)
[Network::Send] Network::Send::idRO (mode: new)
Connecting (202.93.25.81:6900)... connected
Secure Login...
Sent packet : 01DB [ 2 bytes] [Login Code Request]

now after 0000 i got 6B94 packet tokenizer lol i think ill take a break a bit

yeah same with me bro @CadisEtramaDRaizel then what to do with these things? :D

Waiting Ragnarok Client to connect on (localhost:6901)
Proxying to [Indonesia - idRO: Chaos]
Connecting (202.93.25.81:6900)... connected
Packet Tokenizer: Unknown switch: 6B94
Client disconnected
Disconnecting (202.93.25.81:6900)...disconnected
Waiting Ragnarok Client to connect on (localhost:6901)

using Xkore 3 still error 6B94 i wonder where did i do wrong
i mean Xkore3 is Xkore 1's brother right

someone using openkore before could tell me how to solve encrypted password?

hi every-nyan

i think u all has make data-key with wrong structur

i got link of folder with all tool what we need inside
delphine data formater and example for raw rpe and smsniff data, also the video
but im still downloading, i hope the video is the tutorial using that tools :dancer:

Anyone have correct server settings?

Probably my charblocksize wrong

^do you encounter problem like packet tokenizer?
if not which delphine code you use lol im stuck in password encryption

time to slow down lol i cant think more advance need some sleep
at a time like this i miss revemu lol anyone really active in old day shud know what is it

Works again after using servertype iro_classic

@RaynV how you inject NetRedirect.dll ?? give some clue. thx

@oqhadev do you have the delphine-data-formatter and video tutorial? may I have the link please? thank you

@RaynV how to handle 6c87?

@RaynV did you use delphine plugin bro? how to bypass the gg btw.

@RaynV amazing

Error Again
as

yeah we need to bypass that packet, but how? @serverlegend

@RaynV awesome, how to config in your server.txt?

i has error T_T

image

@RaynV can help with wrong password?
i always get the wrong password, pls help.

sir @RaynV must we edit the ragexe.exe or just let it be?

if you are just showing off , better dont post man loll , same with
@serverlegend ,
dont you guys realise they are showing off alot yet no teaching , why beg
them ?
On Thu, 16 Feb 2017 at 06:51, RaynV notifications@github.com wrote:

Works again after using servertype iro_classic

https://camo.githubusercontent.com/6e7fdf3cdf359033ca88ad8b134e897a247934ec/687474703a2f2f692e696d6775722e636f6d2f71774b546841342e706e67


You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-280180885,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYjh_Qua_00036CvBhWeo704SBt1vgQbks5rc4-AgaJpZM4L7abP
.

@dalvian yeah, u right :s

@dalvian who showing off man , i got error same with you bro.. i use recvpacket iRO classic it's just need delphine data and delphine key only now

@serverlegend , @RaynV please help guide us, step by step what you're working with.
so we're can connect too, same as you.
please post guide at this forum http://forums.openkore.com/viewforum.php?f=13

Thanks.

q31
mine is like this,can someone give me the right step perharps..

yes we need delphine-data and key now @serverlegend i check on google, but link was dead for the delphine formatter

@gudangbinder if you pay him without know how to make it work is pointless, if the dev patch the RO again, the bot will not work and you need another configuration which mean more money.

@gudangbinder everyone does need...

@oanggg u already bypass it?

Anyone has deplhine data from wpe and sniffer? I just have data from sniffing, not know if it can work with wpe data that taken separately.

which one delphine data could be insert in delphine-data.txt from sniffer bro @justdoitright maybe you can screenshot the exact data.

@justdoitright my wpe can't detect ragexe.exe process

just for info, i encounter a warpbot at morroc yesterday.

means someone can do this, but how exactly?

ga ada makan gratis bro @dalvian, gw ga bisa bot, tapi gw menghargai mereka. paling ngga dikasih clue? bersyukur atuh, mereka ga punya tanggung jawab ato kewajiban apa2 buat share sama sekali. walopun mungkin ada yang niatnya sombong tapi paling ngga dapet remah siapa tau berhasil :p

belajar programming bertahun2, programmer juga butuh makan, lazim kalo dibayar. toh botter juga untung berlipat kali ganda. sekali lagi, untung berlipat kali ganda. ulangin sekali lagi deh, untung berlipat kali ganda.

@RaynV
Dude, can you tell how compile src files ?

bro if you can do this i think you can skip the game guard

https://www.youtube.com/watch?v=jtCZOQT7LFI

@serverlegend u mean just hide the process ?

yeah try hide wxstart/start.exe process from task manager

ahhhh VB!!! why i didnt think of that lol this is old trick for modkore before openkore born lol
well ill try but im still busy, im still doubt it can really hide detection from rag exe because that only does vanish it doesnt really conceal it

conclusion!!
i need coder help or at least someone who familiar with this
if we solve this i think we can logged in
0> 94 6B 62 59 26 28 14 44 75 96 0E 55 D9 E6 BA 2F .kbY&(.Du..U.../
16> 17 0E 6C 27 .

where you found that code?

yes and i assume we just need to fine whatever value that intergrating those 6B94 into recvpackets

any clue for undetected ragexe.exe at wpe?

who have new delphine-data?
or who have trick for bypass/hide wpe/rpe?

@serverlegend i have wpe for detect ragaxe and play

can you share bro @thanatos123

@serverlegend add my discord

arhi#2888

i already add u arhi @thanatos123

<servicetype>indonesia</servicetype>
<servertype>primary</servertype>
<hideaccountlist></hideaccountlist>
<passwordencrypt></passwordencrypt> <===== pusing saya semoga ada yg bisa kasih wangsit
<extendedslot></extendedslot>
<connection>
    <display>Indonesia Server</display>
    <desc>None</desc>
    <address>202.93.25.81</address>
    <port>6900</port>
    <version>2</version>
    <langtype>6</langtype>
    <registrationweb>http://ragnarok.gravindo.id</registrationweb>
    <aid>
        <admin>100001</admin> <admin>102593</admin> <admin>102587</admin> <admin>102603</admin>
    </aid>
</connection>

Please add my discord too, cocobienak#8907

anyone who want to sell how to bypass this bot ? please contact me ( line : ardian95 ) or just reply my post i'll contact you .. thanks

do you use xkore 1 bro @CadisEtramaDRaizel ?

(EN) newbie here, just wanna see how everything's works out
(ID) nubitol nitip sendal disini ya

@thanatos123
that's wpe can detect ragexe?

want to share key that i get from sniffing. Im using wireshark to get this.
http://pastebin.com/dejMKDr7

This only half of key that we need, 1/2 of it from WPE or rPE. I cannnot get it because my WPE and rPE detect by gameguard after update last time. Anyone want to share worked WPE? i can help to get data.

Can you send me the revpacket.txt bro..

On Feb 16, 2017 6:51 AM, "RaynV" notifications@github.com wrote:

Works again after using servertype iro_classic

https://camo.githubusercontent.com/6e7fdf3cdf359033ca88ad8b134e897a247934ec/687474703a2f2f692e696d6775722e636f6d2f71774b546841342e706e67


You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-280180885,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYfZAGb5Vju0-ZjhIIPovX9GR2u5BE7Uks5rc4-AgaJpZM4L7abP
.

@justdoitright bro can you give your discord

@justdoitright
me too.. need wpe/rpe for find half of delphine-data.

here is my discord justdoitright#1647

@justdoitright accept bro

@satria5 bro punya discord ga

aaa

Nickelodeon#1875 add pls

@serverlegend ane juga udah sampe situ gan , cuma bingugn masukin recvpacketnya yang mana

@rioA im trying all angle i can think of lol, Xkore 1-3 manage to get xkore3 on but still stuck on encrypted password thing because when i login via xkore3 proxy it shutdown my client
and xkore 0 i tried to include the 6B94 hexes or maybe its 946B? then add random value it showing that the value incorrect shud be bla bla bla so i think as long as we knew the value for those hexes we are good to go
thing is im not really learnt coding im just good at reading and processing lol so unless there's good teacher the logic would still be far behind real actual coder

@serverlegend can you pls try use those program and in login screen (before typing id pass) then sniff it and after typing id pass sniff end when in game , i need to see the result lol
or could you send the program for me

Samuel#4693 please add me too

@CadisEtramaDRaizel add me schullzz#5499

iam going crazy try to bypass

invite me if can, oanggg#9023 :)

@oanggg i invite u already, just need to approve

bikin wa grup sekalian

jegrek

9326

@serverlegend
satria#9865

lol all the packets began with 94 6B i got the feel that they using their tag #dontforgettobehappy tag as their own login encryption because i rarely seen 946B hex

ya jadi intinya gimana om tolong jelasin plss...
🗡

gan, izin ikutan ya.. tolong add dong discord ane kancil #4735 @serverlegend @satria5 @jegrek

@CadisEtramaDRaizel it's sniff just from wireshark i think

Invite guys Xboyz#1414

@serverlegend
What is your discord bro?

invite nativeblue#8949

invite aceone#7472

Invite me on Discord Edops#1554

@CadisEtramaDRaizel same as 16CF i think, refer to @lututui comment:

16CF is not a valid RO packet switch. This usually means the sever settings are wrong or that the server has some kind of shield. It could also mean that a previous packet had an incorrect length in recvpackets.

i'm sure 6B94 its NOT valid/native RO packet switch... (too)

invite me on Discord #3185

i got unknown switch F4E2, anyone got same error?

add mine too please #3989 thanks

add me to bro #1559 thanks

add please #0501

@serverlegend what ur discord?

@oanggg sadly while im really eager to solve it i dont have a pair of eyes of a coder hahaha but many test aside im sure our problem are either recvpackets or wrong server setting esp servertype or master version lol but i dont have a way to determining it as i tried the sniffer program all didnt work and all extractor in openkore/github sites arent work either

add my please 34nk#7448

invite me too on discord #8545 :dancing_men:

ew . it seems mess at here .
since 2007 i think OK will be succed over RO Bot .
its seems right now other develop still fighting with it . and counterback .
so far i know is there any plugins you can use .
its "Delphine"
so can i get the new OK with delphine plugins ? i'm glad if i can help with something in this discussion .
if any discord channel avail for better communication i would like to join smash my brain into the monitor. and see what's going on . really mess.

@vanilla1405 you can join here https://discord.gg/aJvBC but lot of us use indonesian language.

invite me #1984

invite me nyoo#1402

invite me please # 0163 thanks

invite me #3279 thanks

invite me too #5941 thanks

invite me thanks #1839

invite me please #2462

Please add me Please rifer #4684

invite me please #3753 thanks

@skoyer21 could you invite me to the discord group too please?

Samuel#4693

invite me too yantoleo#0277
thanks..

Invite me guys renzoku#8185

please someone invite me too, gokillzz#6590 thank you in advance.

i don't know whether this is sad or funny... so many comments but still failure, those who already succeed won't give certain clue so that we are learning/working toward the same direction..sigh..

https://github.com/OpenKore/openkore/issues/433#issuecomment-280535834
feel sad bro, its such a hassle for this classic old games that already launch over 10years..

well, its about someone's "periuk nasi"

On Fri, Feb 17, 2017 at 9:58 AM, baluap notifications@github.com wrote:

i don't know whether this is sad or funny... so many comments but still
failure, those who already succeed won't give certain clue so that we are
learning/working toward the same direction..sigh..


You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-280535834,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYgnH838PgEH8x4lGTPD0oEsjUWl8I72ks5rdQzfgaJpZM4L7abP
.

indeed, i just remembering to old dark days how i used to pay 200.000 IDR for boting my character a month. lul

invite me in discord group please,
shadowfoxs#3412 thanks

@all pls dont spam discord id, here isn't place to share id Discord,respect the participate in it.

@vanilla1405 u can download the latest Openkore at https://github.com/OpenKore/openkore/archive/master.zip
after finish open it, openkore/tree/master/plugins/needs-review/
u will find plugins delphine in it.

Im tired using xkore1.. stuck at inject netdirect.dll.. anyone can give me a clue? Thanks for help..
discord id: #1559

invite me too BangAsoy#9476 please.. Thanks yoy

add me too to the group
vladimir123#7556

please invite me too
reigant#4169

@randualas Tokenizer 6B94, what should we do next sir??

do delphine

how we do delphine @jegrek teach us..

Maybe for xkore 1 u can try used win x86, because hidetoolz or something like that just support win x86.. anyone have hidetoolz for win x64?

use hidecon to hide xkore

@RaynV i got the error message that i cant load the driver when i type the command hidecon -ld.. do you know why this happened?

@iqbalpetet for win 7 x64 and above, you need to make the windows under TEST MODE so it can disabled driver signature enforcement and you can load the ioport3.sys for hidecon.

  1. open CMD and type bcdedit.exe -set loadoptions DDISABLE_INTEGRITY_CHECKS
  2. then type bcdedit.exe -set TESTSIGNING ON
  3. reboot

after reboot you will see the Test Mode label on the right bottom on your desktop

to enable it again:

  1. bcdedit.exe -set loadoptions ENABLE_INTEGRITY_CHECKS
  2. bcdedit.exe -set TESTSIGNING OFF
  3. reboot

@skoyver21 add group discord dong bro #9299

@yantoleo still unable get the test mode features after following the steps that you've told me.. any help?

@iqbalpetet what OS you use and can you share the capture screen of the error?

@yantoleo win7 x64. there's no error while im typing your command in my kernel, even it shows me the success message. but when i reboot my OS it didnt came with TEST MODE label on the right bottom of my desktop.

capture

@iqbalpetet http://en.miui.com/thread-237673-1-1.html
make sure its on test mode and you have the ioport3.sys put on your system32 drivers folder

@yantoleo still didnt get the solution yet i've tried to do all methods from those thread but it still wont endup with test mode features.

@yantoleo
helpme,
why everytime i run hidecon it just blink cmd a second and close itself? can u provide link for hidecon to download?

@iqbalpetet press F8 before boot up, is there any boot from test mode shown up?
i just try on my win 7 x64 and it works..

@forgivethisleecher you cannot directly run from the exe files, try to put (ex: D:\hide\hidecon.exe) on a location then run a CMD, type manually to your drive location D:\hide. after that type the command like > hidecon -ld
image

@yantoleo yes i've tried that one too, but the thing is it when im hit the disable the bla bla it still wont show the test model text on the right bottom of my desktop, and when i tried to use hidecon it still unable to load the driver. :((

@yantoleo can you share ioport3.sys file bro?

easy to bypass.. but still fail to inject

inject is easier but i cant share it here. People from gravindo watching this conversation

Why i keep getting unable to inject net blablabla ? I did the hidecon process already , this making me crazyy

@RaynV mind to pm me the way?
thanks..

@RaynV can u teach me how? My email [email protected]

@RaynV me too, or you can send me a direct message thru discord, here's my id gokillzz#6590

@RaynV can you share by discord bro? add me ariojusuf#3035

@RaynV can invite my discord bro? my discord aceone#7472

@RaynV addme victoriokhomas#0483

@RaynV

help me dude, end my headache please
send to winlife7.[email protected]
thanks

@RaynV can u teach how to inject ...

@yantoleo

thanks dude, now i try it

Bro pls teach me how to inject this thing , my discord schullzz#5499
@RaynV

sadlife when hidecon cant run in win 10 lol

oh yeah someone please invite me to discord lol, oh yeah ragexe only check once when the program started actually now the real problem is how to inject the netredirect because im not sure why it fail to inject again after yesterday i success to do it

@RaynV please teach me how to sir, my email is [email protected]
thanks a lot :D

@RaynV pls teach me how to inject my email [email protected]
thanks bro

same here bro @RaynV email me [email protected] thanks

please teach me how to sir @RaynV , my email is [email protected]
thanks a lot :D

@RaynV invite my discord pls arhi#2888 or my email [email protected]

@RaynV please add me [email protected]
Vortex

1839

succes load hidecon driver
and then im hide rpe
but ragexe still detect rpe
sadly stuck here

@RaynV teacth too broo [email protected]

please teach me how to sir @RaynV , my email is info.[email protected]
thanks a lot :D

someone invite my discord pls #8545

someone invite my discord please shodar#0821

need the new delphine data.txt
anyone can share?

do we still need to find recvpackets if we succeed to inject the netdirect.dll?

no need

@serverlegend iam new in learning bot can you help me to figure what should i do i really need a teacher to guide me solve this problem please email me thanks [email protected]

i think i can inject manual netredirect.dll use this https://www.solidfiles.com/v/xqwXMnrKmznZm

whats your discord ? @serverlegend , cant find ragexe process tho

@serverlegend i tried your program and it said success to inject, but on start.exe it was say unable to inject.

urang#6987

@serverlegend can u teach me what first I must to do? accept on discord bro, thanks anyway

@rioA bro netredirect.dll it must inject to start.exe right not to ragexe

i tried to inject start.exe and it was not responding bro.. @serverlegend

@serverlegend openkore want to inject netredirect.dll to ragexe , you cant inject net redirect.dll to openkore because netrerirect.dll is already inside openkore folder.

@serverlegend could you add me on discord? I want to ask a little bit
Samuel#4693

bypass already have, but inject netrediect to rageexe not yet..can some clue for this???

ssbot
ini gmn lagi gan, delphine data nya udah 256/256

wuihh uda dapet delphine-data nya, bole share bro? @pestolaer

delphine-data.txt

ini delphine datanya tapi ya hasilnya masi kaya ss di atas

hasil nya di gw kok masih 00 00 00 gitu ya bro @pestolaer

@rioA delphine data cuma berlaku 1 jam bro, kata orang sih

untitled
ini aja masih gagal

itu uda pake delphine bro? stuck encode nya lg ya..

udah pake itu, iye stuck di encode

someone invite my discord pls #6039

solved ya ?

not yet

how to record the key with wpe?? if turn on wpe the ragexe.exe is not detected.. if use proxifier packet data is different...

please invite my discord #5008

bro @serverlegend accept invite an ane di discord dong ada yg mau gw tanyain dikit.

What extractor did you guys use to extract the recvpackets?

@rioA yang mana bro

now i have unknown packet 952A after send secure login, anyone can help?

hello... anyone can help me?? i try hidecon but failed to load driver... how to load the hidecon driver?

hi gais..
help me finding the right way how the md5 encryption formula.
with this
pasword:asdf
salt:aaaaaaaaaaaaaaaa
i know the hash result
64XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX

so far already try this but fail:
md5(md5($pass)): 5259ee4a034fdeddd1b65be92debe731
md5(md5(md5($pass))): 30e8f073f388469e0193300623691a36
md5($pass.$salt): b007bdaffaaa7d3d252922c484348435
md5($salt.$pass): 9427a4ee271f26f529418f5a5a5ef7a4
md5($salt.$pass.$salt): 4950930a496fdcb5f07dc50cd4eef0b1
md5($salt.md5($pass)): 8c900a25202a9ab4ce0a605dd25ac116
md5(md5($salt).$pass): 5432aa294dea97b01500593db6f0a123
md5($pass.md5($salt)): a2cbdfd01df69c43f1d72201ee6642a2
md5(md5($salt).md5($pass)): ed6fbfdc1a9e52497fa4ca83ec629ac7
md5(md5($pass).md5($salt)): 0e85be343af975d8b37e69f0b77c73f0

help me so i can solve this issue step by step

hi VeteranRO

i think the md5 result is in binary

$md5->digest
Return the binary digest for the message. The returned string will be 16 bytes long.

for now, i'm testing using bcrypt as hash. bcrypt accept 16 bytes salt. but i'm not sure. because regarding @spyware293's post. we only need delphine to crack the encryption.

anyway, how can you get the has result ?
please add my discod @degodd
i'm still trying to get the right hash too.
it would be helpful if we can continue this conversation on discord.

hi degodd..

yes i know its 16 bytes long.
bcrypt? is it md5 based? tell me more

how i get the result? its so tricky procedure.. well its gonna be my new project.
I tried to make "a handler" for every security code, even when the server change the switch etc.

@RaynV can you pm or mail me how to inject the netredirect. already bypass, but i cannot inject the netredirect. thx. my email [email protected]

@serverlegend invite gw juga ish ke discord starlest#8443

@serverlegend add me to discord bithetmu #4665

Just Share..

delphine-key.txt

hello @randualas may i can have your discort or any chat program.. i want to discuss something to you,,

@randualas please add me at discord Vortex

1839

@randualas Hi. I've used your delphine-key and somehow i got 256/256. so thank you for sharing.

but the new problem came up, i don't know why. does anyone experience this?
untitled

it said the recvpackets might be wrong, the problem is I already used @lututui recvpackets from [https://github.com/OpenKore/openkore/issues/403] now i'm stuck again.. :| and i don't know what the problem is.

P.S. I've already tried to manually extract the recvpackets too

anyone can write perl fluently here ?

@jarnski can you guide me how to load delphine.txt

@randualas invite me on discord and teach me how to get the key ^_^
stoner#9045

i just want to ask,
should i put delphine 1 on my config.txt and how tou get delphine data automaticaly without using WPE/rpe.
need help to by pass with OK, kindly help me by email to [email protected]
Thanks

@RaynV invite my discord pls BangAsoy#9476 or my email [email protected]

@RaynV invite my discord want to ask about netredirect stoner#9045 or email [email protected]

@degodd add me on discord Somay#8195
i`ve right hash.. maybee you can check it

@hendra814 have discord? add me bithetmu#4665

by the way, now rPE and WPE can inject to memmory of ragexe ... congrat Gravindo..
may can use wireshark or other. any can info pls, to capture packet. thx

Cara mengatasi unable inject netredirect.dll gimana sih padahal udah pake admin+hide? clue please yg bisa, tks

hmm i got the delphine data but still have packet b901

http://pastebin.com/RZka9Leu

when i use your delphine data @schullzz12
this message appear >> incoming data in the left buffer

@schullzz12 too many conlict packets, dude
translation table have just one rule: key's must not be duplicated.
its like gravido change the packet every several time

@thesilk do you mean my code is expired already?

@schullzz12 what OS do you applied? win 7/810 32/64bit?
how do you get it? rPE wPE wireshark or sniff??
sorry too many question
i just need more clue ^_^ to find by myself and share it here
thanks

@gracksan 7/64 wpe and wireshark

@schullzz12 invite my discord want to ask about the key stoner#9045 or email [email protected]

@schullzz12 i think so
but even it is not, you should check furthur.
im not sure if delphine's way could solve this problem, anw

_*guys, please dont spam this forum with asking for someone discord._

@thesilk yap , i think all the solution in the internet cant solve this problem . If it so easy to find then gravindo would give us another problem easily

Belum ada yg work ya botnya?

@deca2708 lol funny guy

im a serious guy, botting is life <3 wont you say so?
botting is an art, even though 1 billion z is only $0.5/ 50rb/milyar kita masi ngebot?
kenapa?

ada yg bisa email bot yg udah jadi?
pengen oprek tapi mentok WPE mentok frame work not support
sory bisa english

danangsetiadi.[email protected]
tq

after applying delphine, added delphine-data and delphine-key
this is what im encountering right now, any suggestion?
https://snag.gy/g6oXtK.jpg

aaaaa
how fastest way to copying text inner the circle?? for copying its fast but to long for editing again if we must write 100 pair of packet...

Can you share the wrp/rpe software and smart sniff... Mine error...

On Feb 20, 2017 11:59 PM, "phinokio" notifications@github.com wrote:

[image: aaaaa]
https://cloud.githubusercontent.com/assets/18745388/23134671/413aa4d2-f7c8-11e6-93b9-a57c4cc13441.JPG
how fastest way to copying text inner the circle?? for copying its fast
but to long for editing again if we must write 100 pair of packet...


You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-281131555,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYfZAFA1qzaSqME5BHLnuKOzv98S9XCVks5recZwgaJpZM4L7abP
.

just share, nite all.. nice dream.. :)
delphine-key.txt

@randualas mas tulung email no hp sampean ya ke [email protected] suwun kulo rantosi email njenengan

@randualas with your delphine key, im encountered this https://snag.gy/LvFN1Q.jpg

@phinokio
i think u can use delphine-data-formater/macro

for ur old question : i see PB player has using proxifier and squid to using rpe/wpe
wpe/rpe inject to squid not proxifier
i want to try , but now server get maintenance

and in yout last coment, u already bypass wpe to ragexe
can u teach me how to do it?email [email protected]

@joinside badhe ngersakke nopo? kok nyuwun email kalian noHP. menawi wonten perlu, di bahas wonten mriki mawon.
matursuwun.

upload delphine-data formatter please... All link at dwarna blog was dead... Thanks

Need recvpackets, or modified ragexe

On Feb 21, 2017 9:09 AM, "xboyz91" notifications@github.com wrote:

upload delphine-data formatter please... All link at dwarna blog was
dead... Thanks


You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-281225382,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYtOm6ElXFX_at8ZaHbfgMzxVy7sp2Tqks5rekdWgaJpZM4L7abP
.

@randualas Delphine ne niku di apakne ora mudeng mas kulo namung op warnet pingin belajar ten njenengan

sry guys.. i am not a programer. i play iDRO since fenrir lytod but i try to learn bot since 2010. i stuck here. it still stuck at packet tokenizer please add me #9328

can i get link download hidecon ?

today update
sandbox not working anymore
and when u capture packet with wpe/rpe ragexe getting error, and u only get dc 01

is any one can get the new data ? "01DC" pair with "6BA1" ? @RaynV ,can u get the data ?

we should detach anti-cheat module from rageexe, and bypass the crc check

anyone here have an experience and knowledge to do that, @spyware293 maybe

sketch 8

will be challenge to solve system of protection gravindo.... 🔢

@oqhadev the keys is hidetoolz use in windows xp... i use that for hide wpe.. for proxifier its just work to cheat dont work for record packege...

@all
in ragexe before maintenance the packet is complete but its still cant connect... whats wrong??

@randualas
i was add you at discord... please accept..

can you all share hidetoolz link? i can get the hidetoolz program...

@phinokio can u show me the new data, "01DC" pair with "6BA1" ? just a pair but complete

aaaaa
haha... 😅

add my discord bro to the group, my id : luqiman #2770

this situation make me sick man...

@fanadol lol!! Make me sleepy to.. i can't sleep last night to.. haha..

add my discord too adi.raka #2050

@VeteranRO are you solved to get function API?

image
anyone banned too?

sama gan kena smua gannn

does anyone have a link download WPE pro that still works? sorry if OOT

@RaynV phew, so gravindo really doing it... like as spyware said, u will getting banned... btw what ur bot doing, vending or farming, may i know?

@randualas can you give me your discord? i want to ask you about WPE/RPE

@RaynV lol, now the time to share the bot? :))

@RaynV maybe you can share now :+1:

@RaynV share please ur inbox kaskus full

Share to me too okay... Let's see if it work for me :D

On Feb 23, 2017 11:48 AM, "redsplanet" notifications@github.com wrote:

@RaynV https://github.com/RaynV share please ur inbox kaskus full


You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-281893768,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYfZAJEuNnoJKjqIJMAKWan9INiX8N02ks5rfQ-ZgaJpZM4L7abP
.

@randualas not yet, but it lead to correct direction..
seems like everyone in here not helping at all.
back in the old days, i know how the password encoded,
its md5(salt.pass) but now everything changes..

@VeteranRO before the last patch yesterday, I also use the md5 (salt.pass) I obtained from tRO, but now useless. and I go back to analyze mcf90g.dll but stop at "ARImpRec" could not load. but I will try again, who knows there is a way out.
can you upload again file from spyware293 in the last comment ur post "back in the old days" pls. cause i didnt have user and id at the forum. thx.

@VeteranRO , you miss the encryption

whirlpool ?

maybe this:
login key: 4c6e725D40627e5144667a55587a6649, before MT 28/2.
mfc90g.dll use pack "Themida" n "Borland Delphi"

what is that?

so,what's the solution. im still the same at packet tokenizer state. im new in program and still learning
need suggestion or helping. thx be4

@k1nt4r0 cyclic redundancy check. obtained from the data packets

uhh, its too deep for me haha

@andi2204 token 6BA1xxxx..... pengalihan, hrs ada key buat rubah dia jd dc01.
recvpackets sdh sesuai jgn dirubah.
6BA1xxxx ..... diversion token, there must be a key for changing into DC01.
recvpackets is appropriate should not be changed.

hufffttt keynya taruh dimana dan seperti apa?masih bingung bener gw....>.<

receive - idro.pm
untuk coding maaf tidak bisa membantu

ini kan gw udah download baru openkore dari github.
apa aja yg gw harus lakukan serta step2 nya? so i can connect with gravindo RO server...please kind to explain it to me
or you can sent screen shoot the step to [email protected]

thx be4

@andi2204 tidak perubahan besar, cukup sedikit nambahkan baris perintah di idro.pm
untuk menerjemahkan packet yang datang agar OK bisa sesuaikan dan kirim kembali.
logikanya begini:
smartsniff : 6BA1 >>> krn terdapat di network kita
wpe : DC01 >>> krn inject ws32_32.dll dlm ragexe
terima:
client <----------------mfc90g.dll(Netredirect OK dipake) <--------------server
DC01 <--------------- 6BA1 (dlm mfc90g terjadi proses paket dgn advapi.dll,kirim ke client dgn netredirect)

kirim
client ------------------------------------------->server
DD01

@SanQiBa openkore receive 01DD but reply with 006A
how to fix it?

@k1nt4r0, @SanQiBa how to get DC 01 packet?

wpe can't find ragexe process, and rpe give an error on ragexe after attach and try login

@k1nt4r0 kesalahan login error krn OK terima packet yang 6BA1(dolo CF16).
Ok harus terima secure login paket DC01. butuh key + code untuk rubah jd DC01

@ohmangga saya terjemahkan hasil yang kalian beri data "delpine_key.txt"
semua sama keynya, dan saya bandingkan hasil dr unpack mfc90g.dll. fix sama.

krmn patch baru, mfc90g.dll dikembalikan ke tgl 14/2 , saya pikir wpe kembali berfungsi.

@SanQiBa can u send to me unpacked mfc90g.dll.

I getting confused with all of discussion here. honestly i left things all about RO Bot/Openkore since 2009 and have no idea what is delphine and other weird words mentioned you guys here.
Is anyone can give me some website to learn from? I tried to download latest open core version on this github and use my old config and macros, and absolutely i cant even connect to IDRO Gravindo server.

@SanQiBa , waiting your contribution for next maintenance , hope u still share . good job !!!

wpe masih berfungsi dengan baik setelah patch 24/2

@smorron wpe nya diapain bro? gw lagi ngotak ngatik nih baru banget buka openkore lagi. Ada kontak pribadi gak biar enak tanya2nya?

@SanQiBa maksudnya key yg ini4c6e725D40627e5144667a55587a6649 ??
atau delphine key?

tapi punya saya secure login nya bisa kirim secure login dgn normal tapi gk tau salah apa gk
soalnya packet yg sent secure login di servertype sma recvpacket lama saya ganti jadi 6b94
tapi setelah lewat secure login nya, malah wrong password

berarti di servertype perlu coding baru untuk masukin key+password biar kebaca sbg md5?

@k1nt4r0 bro boleh minta config nya username sama password nya hapus aja boleh?

@c4c1n6kr3m1
yes i miss the encryption! so that's why i ask here how is the correct encryption formula?

this is what i think the way client - server communicate each other.

  1. client send initial packet to server after its connect to server
    client --> server: 04 02 8E A4 XX XX (20)
  2. server respond by sending SALT KEY to client.
    server --> client: A1 6B 62 59 6B B7 22 29 9E B3 26 80 EF 9F 15 48 0F F0 5A 38
    (16 byte salt key:6B B7 22 29 9E B3 26 80 EF 9F 15 48 0F F0 5A 38)
  3. client respond by SENDING LOGIN PASSWORD THAT IS ENCRYPTED WITH SALTED MD5.
    client --> server: DD 01 02 00 00 00 XX(24) YY(16) 0C
    which:
    XX(24) is the username
    YY(16) is the ENCRYPTED MD5 ---->this is the problem. i don't know the current formula
  1. the server receive the given encrypted MD5 packet from client and do the login checking.
    so how the server do the checking??
    the noob(or cupu hehe) will say the encrypted MD5 will be Decrypted since its Encrypted.. hmm its wrong!!
    the server wont do the DECRYPTION!! because MD5 encryption is one way encryption.
    so how? its by comparing the given MD5 vs MD5 generate by the server.
    if its equal it means login is correct
    then the server send this switch key
    server --> client: 69 00 4F 00 XX XX .... CHAOS...

here is where my project stuck.
generating MD5 string packet
salt: 6B B7 22 29 9E B3 26 80 EF 9F 15 48 0F F0 5A 38
pass:1234
MD5(salt.pass) used to be the formula in generating the MD5 but its failing..
somehow i can produce this for comparison.
salt: 61 61 61 61 61 61 61 61 61 61 61 61 61 61 61 61
pass:asdf
the encryption result: 64 XX XX XX....
i just give you the first byte, if someone here can give me the complete encryption
then he knows the formula and i will cooperate with him by sharing my project to him.
someone say its not MD5 function but bcrypt function which i don't think its the function.
since openkore still using MD5.

To all of you guys whos blabing about recvpakets, i will give u hint.
recvpackets problem can be solve by entering the switch manually..
if the server change the login switch like CF 16 now the switch is 94 6B
open your recvpakets write this at the end of the line.
6B94 20 20 0 or 6B94 20 20 1

@SanQiBa i don't understand what your post about client - netredirect.dll(xkore) - server thing? make it clear please!
xkore is in the middle between client and server communication right.
what r u trying to say? there is mfc90g.dll handling the packet to?

@andi2204 idro.pm add something like this
'6BA1' => ['secure_login_key', 'x2 a*', [qw(secure_key)]] this is just example i haven't try it yet.

mfc90g.dll pack with themida v2.4 its the main problem which block us to do wpe, xkore and dual login.

@VeteranRO same here, struck when sending username and password

@VeteranRO, you misunderstand .
the 2nd step is encrypted
i'm not talking about the reply ( 3rd step )

@k1nt4r0 hopefully we can overcome this issue

@c4c1n6kr3m1 you mean the salt packet which is send from server is encrypted?

for anyone who likes to try to generate the login formula, please go to
this perl online editor. https://www.jdoodle.com/execute-perl-online

and add this initial script that i make with the formula md5(salt.password):

! /usr/bin/perl

use Digest::MD5 qw(md5 md5_hex md5_base64);

my $password = 'asdf';
my $salt = 'aaaaaaaaaaaaaaaa';
my $encryptedMd5 = md5_hex($salt.$password);

print("Result is " .$encryptedMd5 ."\n");

Result is 9427a4ee271f26f529418f5a5a5ef7a4

the correct Result should be 64******** --> generated by Ragexe

if any of you guys get the formula. contact me a.s.a.p directly

@VeteranRO, yes.

@VeteranRO i try to edit ur code, and got result with 63********

@c4c1n6kr3m1 can you prove it?

@k1nt4r0 cool.. but still its not the correct result.
i like it when a person willing to try and contribute like you did k1nt4r0.
play around with that code even when we cannot find the formula
maybe latter u will be a perl coder

im still working sir, cant help for now
i will try later :D

@k1nt4r0 oh ya? do the multitasking bro hehe like i did

btw don't try this formula. already trying this but failed.
md5($pass.$salt): b007bdaffaaa7d3d252922c484348435
md5($salt.$pass.$salt): 4950930a496fdcb5f07dc50cd4eef0b1
md5($salt.md5($pass)): 8c900a25202a9ab4ce0a605dd25ac116
md5(md5($salt).$pass): 5432aa294dea97b01500593db6f0a123
md5($pass.md5($salt)): a2cbdfd01df69c43f1d72201ee6642a2
md5(md5($salt).md5($pass)): ed6fbfdc1a9e52497fa4ca83ec629ac7
md5(md5($pass).md5($salt)): 0e85be343af975d8b37e69f0b77c73f0
try something like
$newstr:='A1 6B 62 59';
md5_hex($newstr.$salt.$password):

pencerahan
some one help meee pls

@VeteranRO only with 64** that can used to bypass?

@VeteranRO what is the rest of your result of 64**** ? can we just reverse the schema's to find the $salt number?

@k1nt4r0 nope. its for comparison only..
what needed to bypass is the formula.
i have the complete hash result.
i just give the 1st byte so its easy to compare..
if u get to pas the first byte 64, i will give you the second and third bytes.

@iqbalpetet you wont need the complete hash.. i will give u the full if you give me the correct formula.
mostly if you pass the first, second and third bytes all the rest will be the same.. or its the correct formula.

good question.. iqbalpetet
i try to find web service for that kind of reverse but some how its not working when using with salt.
maybe u can do it better than me.
if its not using salt, i enter the hash result and it will return the password.
but when entered with salt its never give me result.
try it here.. hmm more and more you all will become a better hash decoder
http://www.dcode.fr/md5-hash

@veteranRO not that easy to compare with only first head of the hash result because as i know if you try to modified MD5 method, it will randomly generate all the data which mean it could be generate the result with the same head but not with the tail.

@iqbalpetet what to focus is in the formula.. like: salt+pass+md5(md5(salt))
not the comparing result..
md5 is not generate random. its calculate to make a string like random value. but its fix value..
if you run md5_hex('asdf') it will produce the same value everytime you run the script.

@VeteranRO yes, mfc90g.dll handling to the packet
ur receive packet A1 6B 62 59 6B B7 22 29 9E B3 26 80 EF 9F 15 48 0F F0 5A 38
with key, maybe this:
DC 01 14 00 27 D9 50 74 DE D1 58 D1 AB F9 6F 1D 57 8A 3C 71
OK should get that so the sending packets does not occur errors

@VeteranRO yes i know, but what i mean is that if you try to modified it with salt+pass+md5 or etc it could be possible to give you the the same head with 64 that you hv, but the rest of the body it could be different with the one that you hv now, mmm maybe that's only my "burnout mind" opinion with this thingy, lul..

capture
help my delphine-data .

@SanQiBa wait the minute..
if mfc90g.dll decoding the salt packet and send it to client now the story change..

correct me if i am wrong:
server send the encrypted salt to the client but intercept by mfc90g.
mfc90g will decrypt the salt packet and send it to client.

server ---> mfc90g : 01 FA XX(16) which XX(16) is the encrypted packet let say encrypt(salt).
mfc90g ---> client : DC 01 YY(16) which YY(16) is the actual salt
client ---> server : DD 01 ZZ(16) which ZZ(16) is the login packet

correct me if i am wrong.. the correct step is necessary.
can someone gave me this complete packet to observe?

@k1nt4r0 its true
evident from SmartSniff (network) and WPE (injection ws32_32.dll)

I know how to record or see the packet, just use virtual router (router that has reading packet inside like mikrotik/pfsense/etc) and then change your gateway to the router this is the easiest to read packet instead try inject wpe/smartsniff 🗡

@orgmatileg false
smartsniff only can see gateway but wpe can see real packet

@SanQiBa did you use wpe with hidecon? because my wpe can't detec ragexe. i use win7 32bit..maybe someone in here want to help me?

@k1nt4r0 oh really?? hufff...
need to debug using ollydbg then.. aw man... that is suackkk..
gave me screenshot of smsniff and the wpe like @phinokio does
hmm the DC 01 packet act like live connection packet.. look at phinokio picture above..
i cannot run wpe because of my antivirus...

i dont see the DC 01 packet that i snif using smsnif..
http://imgur.com/a2OH

@SanQiBa can i learn how to get those keys from you , if you willl , give me contact at [email protected] please.
@VeteranRO , you need to decrypt first to get 01dc

@shinmyu7 I do not use WPE but I just try to translate you results
if u want, unhide ragexe from system procces "image memory"

@c4c1n6kr3m1 unpack mfc90g.dll with "Themida" n "Borland delphi"
or
use logical Exclusive function
or
crc32

@SanQiBa, well i've been using it since last year. i'm not a programmer, just from basic math,
but i am a curious person , so, i'm curious about technical stuff , the unpack thing
wow, now you expose everything

@VeteranRO my wpe not working anymore
then why dont just get the right switched packet and add it too recvpacket and servertype?

@c4c1n6kr3m1

  1. you must understand what they pack like PEiD
  2. using a disassembler tool with plugins support pack
  3. learn how they make the code or structure (maybe you already understand this)
    well done

@k1nt4r0 i am making it for another project, and for several thing that i want to try
not just for opkore..

@SanQiBa just gave them direct answer..

@c4c1n6kr3m1
yes i will try the encryption.
you dont know how to unpack?

  1. check what the pack using exeinfope or Peid, protection id or stud pe. i am using exeinfope
  2. using ollydbg or ida my fav is ollydbg
  3. find the plugin and the script
  4. watch and learn from youtube
    that's it to the point.. a direct answer

The person who build openkore, share it for free. Now, the person who can bypass (like 5% work than build openkore) want money or dont want to share. Good job!!

@olandganteng what your problem if they dont want to share...

just wondering if this somewhat related to something like kRO, Packet Obfuscation in client side (just an idea)... will try this stuff later

anyone can help me to compile OK in win10x64 ? seems broken on newer compiler.

@olandganteng
I am here just to straighten logic alone, no more than that.
there are communities that do not share because they just follow the rules of the game. rules that they hold will not damage the system. That is all.
it is also very good, together thinking not just accept the results.
if requested unpack mfc9g, I would not give. I just explain the logic of work such as well unpack.
VeteranRO already explained its logic

@olandganteng yeah that is the typical idro opkore.
they put new lines of code NOT even close to 1% compared to openkore script
and they didn't want to share..

@VeteranRO , that will categorized as a clue, not answer heh ( ofcourse we know the requirement part for unpack , although i'm not programmer ) haha

@c4c1n6kr3m1 at least my answer better than SanQiBa wakaka.. just kidding..
so what? you wants me to teach you like a baby sitter? no offense okay..
Unpacking is Reverse Engineer stuff.. this is another job field in IT besides programmer.
This is require advance programming and stuff.
Normal people will be hard to graps the technique..
because what u will read is completely MACHINE LANGUAGE (bahasa mesin men)

Before I leave, give me 2 packet results of SmartSniff n WPE and I will give explanations.
Remember the results of SmartSniff and WPE.

@VeteranRO sama aja lah mas bro wkwkwkwk

@c4c1n6kr3m1 wakaka ur funny

@VeteranRO from ur post https://github.com/OpenKore/openkore/issues/433#issuecomment-282208677
the result must 64xxxxxxx but how about the salt key ? sry newbie just asking

Smartsniff : 94 6B 62 59 CF 34 ED 02 E7 CB BD AE A4 97 29 0B 81 78 0F 30
WPE : DC 01 14 00 83 5A 9F 5F A7 A9 C3 FF E0 F1 53 5E D9 02 69 79

Smartsniff : 94 6B 62 59 08 5E A2 E8 A8 42 CE 10 BF 9C 50 57 28 CC 84 13
WPE : DC 01 14 00 44 30 D0 B5 E8 20 B0 41 FB FA 2A 02 70 B6 E2 5A

anyone solve this problem?

@newb1ez the salt key is 61 61 61 61 61 61 61 61 61 61 61 61 61 61 61 61

@SuperPoke
XX = Header packet
AA = total length packet
C16 = code

94 6B 62 59 CF 34 ED 02 E7 CB BD AE A4 97 29 0B 81 78 0F 30
XX ----- AA ------------------ C16

with key: 4c6e725D40627e5144667a55587a6649
first packet:
incoming data ----CF 34 ED 02 E7 CB BD AE A4 97 29 0B 81 78 0F 30
key -----------------4C 6E 72 5D 40 62 7E 51 44 66 7A 55 58 7A 66 49

im using logika eksklusif function
CF XOR 4C = 83
34 XOR 6E = 5A
ED XOR 72 = 9F
......
.....
30 XOR 49 = 79

second packet:
94 6B 62 59 08 5E A2 E8 A8 42 CE 10 BF 9C 50 57 28 CC 84 13
same key
incoming data ----08 5E A2 E8 A8 42 CE 10 BF 9C 50 57 28 CC 84 13
key -----------------4C 6E 72 5D 40 62 7E 51 44 66 7A 55 58 7A 66 49

im using logika eksklusif function
08 XOR 4C = 44
5E XOR 6E = 30
A2 XOR 72 = D0
......
.....
13 XOR 49 = 5A

hasilnya sesuai dgn data yg terdapat di wpe/rpe
selama paket datang(secure login), asal gunakan key yg kukasi bakalan sama dengan yang ada di wpe/rpe/client ro

bebas taruh dimana saja asal dlm folder network a/ network-receive:
saran saya idro.pm agar tertata rapi
-gunakan switch
'6B94' switch '01DC'

  • tambahkan bbrp baris perintah untuk aktifkan proses key agar bisa tampilkan data yg sebenarnya ke socket OK (sync_ex_reply)
    contoh kalian bisa liat di toxcil

saya gunakan bhs indo krn pihak gravity memantau, sebenarnya yg buat pihak gravity bukan gravindo

@SanQiBa terimakasih mas, solusi untuk wpe/rpe saya yang saat ini tidak bisa berjalan dengan ragexe
dengan ini saya rasa bisa membuat delphi-data untuk plugin delphine

dan yang saya pertanyakan apakah kita masih bisa menggunakan plugin delphine atau tidak?

@oqhadev saya rasa toxcil punya alasan tersendiri untuk sedikit mengaburkan data di delpine. itulah kenapa kalau kita gunakan delpine.pl ada waktu pemakaian.
untuk gunakan wpe/rpe, dibutuhkan skill untuk munculkan ragexe didalam "image memory" (system proses), ini tidak sama dengan yang nampak depan mata (task manager)

apakah yang dimaskud waktu pemakaian itu login key 4c6e725D40xxxx yang berubah2 setiap minggunya?

@oqhadev key yang saya kasi selama tidak ada perubahan dari mereka, saya rasa bisa dipakai selamanya.. dan tidak dibutuhkan lg plugins delphine.pl ckp nambahkan perintah di idro.pm
urusan coding saya tidak jabarkan, silakan mencari sendiri. tugasku meluruskan logika, karena player masih fokus ke perubahan recvpackets.

@SanQiBa, delphine plugin actually worked, but for xyz.dll , that's year 2010 , the datas is not blurred.
but as i said, it's for 2010, it's retarded
the encryption is different between xyz and m f c 90 g.

@c4c1n6kr3m1 but ro server use tickcount timestamp. using delphine will often experience dc due to the time change.

it's retarded

@c4c1n6kr3m1 For us as it but the system will check if there is a fake key.
we have to understand also why used only temporarily, while the system as it was nice preserved

@SanQiBa is there a posibility that we can bypass gg by editing hex code inside ragexe? because i knew some ppl could do it. I tried to edit it, then when i try to launch ragexe, it poped up checksum error, so how they edit so the checksum will still same? thanks

@MinangRiau before editing, you pay attention to what has been written by VeteranRO
1

anyone with this? always reconnecting after send 01DD
screenshot_1

@rioA
no idea, just a piece of the picture and you do not allow all of the debug configuration. enable debug, give color to username n password. upload here, so let friends here who analyze, my time is up

but in my console not showing another debug bro, just showing them.
before that, my unknown packet switch was 952A and i have adding it manually in recvpackets.

capture

using delphine,
for smsniff data from smsniff ,
for wpe data from like sanqiba say not from wpe
and this what i get, i think theres no password in my DD 01 data

@oqhadev saya harap setelah dd 01 02 00 00 00 ditutup pake warna, krn itu privatemu. awas yg paham md5 mudah ambil identitasmu
setelah dd 01, data yang akan kau terima 6a 00 dimana isinya akan isi nama char.
kalau bisa usahakan jgn main kirim, usahakan matikan inet dl baru lakukan print untuk cetak diconsole hasil codingmu. hati" bisa ke banned
tujuannya bagus agar kita bisa bermain" dengan percobaan coding tanpa server ke ganggu

@rioA dalam config, bagian bawah ada debug. klo nga salah ada 5, kasi angka 1. biar keluar semua analisa. tp ingat klo mau upload spt oqhadev tolong tutup dgn warna bagian username n password.

ane lagi cari bot yg work, ada yg bisa jelasin step by step nya? baru sampe tahapan masukin server aja nih. kalo ada yg mau bantu dan sharing ilmu boleh minta step step nya message ke [email protected] , hatur nuhun

@oqhadev boleh bagi fomaternya?

untitled

its just like password error 006a, where is put key : 4c6e725D40627e5144667a55587a6649

@kepokepo woa it's cool your delphine key show you its successful, why mine not show it was succesful T__T may you share your delphine-data? or delphine plugins
may you share your servers.txt?

@SanQiBa yes i have to enable 5 debug in config.txt but it only show them..

@SanQiBa : thanks for your goddamn great clue. it can break error 946B easly.
Want to ask about key that you share "4c6exxxx......" .
How you get it?
cause it will change if gravindo change in their server.

@justdoitright bro, where to put the key in src?

@rioA : im using "ugly" way which intercept packet data receive and change it using @SanQiBa way. You can start with log it self, "Packet Tokenizer: Unknown switch:" and trace it where it use.

@justdoitright Kalo ga salah diatas dia bilang dr unpack mfc90g.dll @SanQiBa CMIIW
itu pake cara si sanqiba yg nambah codingan buat keynya?

@justdoitright have discord bro? maybe i can ask little bit :D

@SanQiBa iya mas saya tau itu berisi username dan password
tapi berhubung akun dummy, dan username nya sama dengan nama saya di github, jadi bukan menurut saya bukan masalah

saya sudah menencrypsi data dari smsniff untuk mendapatkan data dari wpe dengan cara yang mas berikan
tapi saya mendapatkan respon 51 2a , apakah mas bisa bantu jelaskan?atau jika ada yang salah bisa memberi tahukan saya?
@sumberrahayu email me ur real facebook qlo pengen coba :dancing_men: [email protected]

@oqhadev saya boleh coba formaternya mas?

@pierrecardin saat dicoba hasilnya error seperti foto saya diatas mas, qlo memang mau silahkan email akun fb mas
*saya tidak memakai delphine formater, ini buatan saya

@oqhadev cek email

Got timeout when connecting to the Character Server. Also "Servers" list doesn't show readable server name (I believe should be "Chaos", instead it showed garbage string). Is this due to wrong server info in servers.txt?

@okgrammer i think u add wrong packet sir haha
u add the unknown packet into ur servertype and make ur own packet to reply on ur recvpacket.txt right?

openkore_error

anyone can help me to explain what happened to me?

@kepokepo may you share delphine key and data? iam stuck..thx before

@serverlegend pls invite to discord hanazawarui#0728 for join discussion. Thanks

@kepokepo i try your delphine-key, and it return 006A again. we need to add this packet to scripts.. but where? :D

@kepokepo i have tried your key too.
but disconnected when encoding password

i'm still confused with make delphine-data.
any clue for convert ssniff and wpe to delphine data. thanks

just_share

jika ada yang butuh unpack dari mfc90g.dll silahkan di ambil, tolong di gunakan dengan bijaksana. jangan bijak sini.. :)
https://cdn.discordapp.com/attachments/281414080961576960/285099311379906560/mfc90g_DP1.dll

mungkin ada kekeliruan atau kurangnya harap maklum, bukan seorang profesional saya, hanya penjual pulsa. :p

@randualas bro, ada email yg bisa di hubungin? ada beberapa hal yg mau ditanyakan...

Can anyone share how to get delphine data from sniff and rpe ?? thank's

@pierrecardin maaf untuk e-mail saya tidak kasih, kalo mau tanya silahkan add randualas#1115

@SuperPoke thanks for the packet..
but still u miss to give the DD 01 packet.. although i can generate it but i need to make sure it will be the correct packet.

@SanQiBa that is Great explanation..
its kind of we have breaking the Enigma Code like in the Imitation Game movie hahaha..

my handler that running in 70% still required adjustment..
http://imgur.com/a/ISAJj

@VeteranRO woaa it's cool!
how you handle the 6B94 packet bro?

@rioA just read what i already post in here and @SanQiBa cool logic thinking..
its my own handler and its nothing to do with delphine plugin.
doesn't require delphine data or key..

@VeteranRO i tried to disable delphine and adding the 6B94 to recvpacket, but it comes 006A which my password doesn't correct.. maybe some pencerahan buat adek kak? apa pake salted + md5? ada tutor nya kah :D

screenshot_2

server to client
946b>mfc90g.dll>dc01

client to server
encrypt password using dc01>send dd01 xx(username) yy(password)

its wrong?

@oqhadev @rioA yes that is the logic..
need to change the 6B94 packet to something
and to have successful login you must add additional packet at DD01 after your username hex string..
kind of the additional packet different for each ragexe client, i have to inject it manually thou

@VeteranRO
so dd01 need encrypted password
but how to encrypt password with dc01?can u tell me?

@oqhadev the salt packet need to be decrypt first. salt packet is 6B94 XXX
then the decrypted salt+password will be encrypted using md5.
the formula is md5(salt.password)

then input the encypted as username and password in config.txt? @VeteranRO

@VeteranRO and @rioA : I'm noob, need more explanation so after download fresh openkore and config server got to disable Delphine kan? I add 6B94 20 20 0 or 6B94 20 20 1 di revcpacket (still original file) and '006D' => ['character_creation_successful', 'a4 V9 v V2 v14 Z24 C6 v2', in subnew class in idro.pm, but masih ketemu sama tante unknw switc 6B94? any step miss?

REALLY BIG THANKS for @SanQiBa for your clue, if delphine update like last week when we can't record the login packet, how to sniff it to find the key like XOR gate method?

@VeteranRO the formula not changed at all right?

@rioA no not in the config.txt..
its a script handler that i make to handle the login problem..

@mikahoy045 just add 6B94 20 20 0 to the recvpacket.
and add '6B94' => ['secure_login_key', 'x2 a*', [qw(secure_key)]],
inside idRO.pm located in \openkoresrc\Network\Receive
after that.. its come to you guys.. i cannot give the script its completely made by myself and
i know the gm of the game kind of watching this thread.
if i have time i will make a guide how to do it like i do but tidak disini ok

i did exactly the same like you @VeteranRO but, i still get password error molo, mungkin bisa lewat discord bang kita bicarakan? :D

@rocknrolldev yup its not changing. that formula still the same.
to find the key is simple. try to search at google. how xor to swap a value without variable.
the answer lies in there.. hehehe

@VeteranRO i got it before, but how to sniff while we can't sniff login packet (diff entry point)??
disasm it or something? the key is to compare socket and client. so hope the patch still like this time :dancing_men:

@VeteranRO Tks banyak cluenya om, ternyata typo... ada clue buat get saltnya?

@rioA kita ngumpul bareng disitu. boleh minta id discordnya?

@rocknrolldev to sniff use smsnif program and wpe.
since my antivirus keep delete my wpe dll i won't use it anymore.
i try to make my own wpe which is in initial phase..

image

Does someone share bot to the public? Online players increases so much.

Somebody probably.... I still stuck in this encrypted password....

Can you send me a link for smsniff and wpe because i search for this but
always failed to download.

On Feb 26, 2017 7:09 PM, "VeteranRO" notifications@github.com wrote:

@rocknrolldev https://github.com/rocknrolldev to sniff use smsnif
program and wpe.
since my antivirus keep delete my wpe dll i won't use it anymore.
i try to make my own wpe which is in initial phase..


You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
https://github.com/OpenKore/openkore/issues/433#issuecomment-282551518,
or mute the thread
https://github.com/notifications/unsubscribe-auth/AYfZAK3SsmdJQaast4asoFLQ-MbwiYlQks5rgWtfgaJpZM4L7abP
.

Password Error for Account xxxxx

:(

@VeteranRO @SanQiBa @RaynV and all thanks working here now
@VeteranRO im not add some kind hex to dd01, but i say it in wpe, and i can login :dagger:

@oqhadev have discord bro? ane mau konsultasi lebih lanjut... klo boleh minta idnya tks

@oqhadev bro.. bisa ikut konsultasi juga via doscord, bingung code buat inject passwordnya.. thx..

@oqhadev iya sama bro minta discord donk, salah di password error trus

@RaynV don't u read all coments here ?
btw, actually , first day obt is much more players. when the server down at 23:00 GMT+7, the number shown 24k (or 26k i forget)
can you wipe your kaskus inbox, actually i want to ask something to you
@VeteranRO i'm waiting your own packet sniffer

@oqhadev use delphine or use @SanQiBa method?

sorry sir can u add me on discord ?

@oqhadev cool, another bypasser arise
@c4c1n6kr3m1 yeah, its still initial phase, there are several issues bump in right now.
still its a long way to go.

add me di discord dong @oqhadev @oxalist @SanQiBa @VeteranRO

add me discord RaynV #3338

add me discord ohmangga #2109

hi guys @RaynV @SanQiBa @VeteranRO , kindly add my discord : DesertFox #9511
wanna discuss about the steps that i've been doing so far. (creating global var, adding additional script...etc)

@oqhadev biar wpe work gmn yah? munculin hide process atau ada cara lain? klo boleh add discord yah gan #2109

just tested poseidon, but stuck while logging into map server :(
please add me on discord: #5496

@ohmangga saya pake windows 10, jalanin ragexe dolo baru jalanin wpe run as admin, g ada masalah

@oqhadev saya udah jalan wpenya... sekarang dari DC 01 harus diapain? klo bisa discuss discord aja. Tks

@oqhadev terimakasih infonya besok saya coba, cari windows 10 dulu

@mikahoy045 komen2 sebelumnya dibaca mas udah jelas kok semuanya

@ohmangga iya mas, sebelumnya pake win7 setiap capture login crash

@oqhadev yang bagian the salt packet need to be decrypt first. salt packet is 6B94 XXX bagian ini clueless

bagaimana ini sepertinya belum jebol juga ya, beda sama lyto jaman dulu

@oqhadev berarti situ berhasil, tapi masih pake cara yg delphine ya ? yang ngumpul2in paket dulu.

@mikahoy045 946b>mfc90g.dll>dc01
selengkapnya liat sanqiba

@oqhadev @VeteranRO @c4c1n6kr3m1 u got it already?
i just back to home, and i read the comment from the last
and then i try to login with OK.
i put a banned id, and i change it with the right one.
then it login successfull but got dc when the bot try to connect into map.

then i try to run the OK again, and get the wrong password again ~_~"
this is the console

[Feb 27 00:15:43 2017.61] Closing connection to Character Server [Feb 27 00:15:43 2017.61] Disconnecting (202.93.25.70:6000)...[Feb 27 00:15:43 2017.61] disconnected [Feb 27 00:15:43 2017.63] Connecting to Map Server... [Feb 27 00:15:43 2017.63] Connecting (202.93.25.74:5000)... [Feb 27 00:15:43 2017.66] connected [Feb 27 00:15:43 2017.67] Encrypted MID : [0072]->[5E39] / KEY : [0x611B]->[0x5E4B] [Feb 27 00:15:43 2017.67] Sent packet : 0072 [19 bytes] [Map Login] [Feb 27 00:15:43 2017.67] Sent sendMapLogin [Feb 27 00:15:55 2017.67] Timeout on Map Server, connecting to Account Server...

@VeteranRO ini "salt packet is 6B94 XXX " dapetnya darimana? di wpe cuman ada 94 6B XXXX

@mikahoy045 94 6b itu sama aja 6b94 , 6b94 itu dc01 yg terenkripsi
coba dibaca lagi komentar sanqiba dan veteranro sudah cukup jelas kok

please add my discord xilentza17 i need openkore ready to use

27-2-17
having this trouble, actually im not sure what i did and what i say thou
i think i have to enable delphine plugin right?

@oqhadev berarti tetap pake delphine? trs keynya dibuat dari pake formulanya sanbiqa?

Need openkore ready to use for idRO - Gravindo. Paying well

@oqhadev @SanQiBa @VeteranRO

bro, aku nanya nih...

OpenKore -> Login Code Request
Server -> 6B94
6B 64 LL LL XX XX XX .... -> XX di xatau dengan key yang dikasih sama si sanqiba.
jadi DC 01 LL LL YY YY YY YY -> YY hasil XX di xatau, dan YY adalah salt ( bener gak sampe sini ).

Client - > 01DD (Login) ..

Nah yang aku bingung adalah kenapa send encoding passwordnya terus - terusan.

kaya gambar dibawah ini

image

aku gak pakek delphine plugin, apa harus dipakek ya delphine pluginnya...

terima kasih sebelumnya

for password md5(salt.pass)?....example...
md5=digest ::md5>new
message "password: ".$password." => ".getHex($password)." .|\n"; #we got the pass from encoded pass 6b94 to 01dc
message "type: ".$type." .|\n";
message "salt: ".$salt." .|\n";
message "salt hex: ".getHex($salt)." .|\n";
$salt = $password . $salt; or $salt =$salt . $password ????
then digest md5 salt to send to server ?
now we get the hex salt...and send to server with md5 encryption?

@neocaffes
just make sure u use valid salt, no need to change that line.

Bro nanya donk itu Delphine pluginnya tetep harus diaktifkan atau gmna...

Udah ubah dari 6b94 to 01dc...
Tapi malah kek gambar atas send encoded password mulu...

Ad pencerahan

@emoisback bro ngubah 6b94 jadi 01dc dimana yap? mohon pencerahan.
coba delphine nya di disable bro

Aku emang ga pakek plugin delphine...
Makanya bingung bber ga nih decryptan saltnya...

Ngerubahnya bebas bro mau dimana aja..intinya waktu kamu dapet paket 6b94 nah sisanya decrypt bo pakek key yg dikasih...terus saltnya dipakek buat formula password..

ada discord bro? mau tanya2 nih sedikit.. @emoisback

Ga ad discord gw bro..
Aku jga masih salah ini...blom bsa :(

yg bagian ngerubah 6b94 nya itu gw masih bingung nih, ato ada id line bro? yg bisa buat chat..

Can someone upload the delphine-data-formater from http://dwarna-ro.blogspot.com/p/cara-buat-togelkey-idro.html ?? the download link from theres already broken, :(

@rio on network/send.pm sub secure login
add this line
line 38 use Log qw(debug); change to use Log qw(debug message);
then on
line 357 under my $md5 = Digest::MD5->new;
message "password: ".$password." => ".getHex($password)." .|\n";
message "type: ".$type." .|\n";
message "salt: ".$salt." .|\n";
message "salt hex: ".getHex($salt)." .|\n";
so u know ur password salt....and check it and make little function....

dont forget to change all debug to 1 or 2 on ur config.txt

yap udah yg buat itu bro,
kalo yg biar muncul packet 01dc nya gmn ?

@neocaffes line 357 still in send.pm ?

kaya yang dijelasin sama SanQiBa kalo udah dapet password saltnya, tinggal di decrypt pakek key yang dikasih gunain xatau 👍 .

@neocaffes
udah bikin fungsi untuk rubah saltnya pakek key diatas..
tapi tetep dapet error :
Received packet: 006A Handler: login_error

Secure login key: D3 0B 2E D3 A5 EE 3B AC 19 74 5E 1F A2 8F F2 BD
Secure login key (Decrypt): 9F 65 5C 8E E5 8C 45 FD 5D 12 24 4A FA F5 94 F4

benerkan ya itu?...
udah cek sih bener...tapi kenapa ya error 006A.

ngedecrypt nya ngedit dimana bro / masukin key nya sanqiba itu @emoisback
terakhir gw cman dapet 006A jga tuh.. T__T

itu dijelasin sama neocaffes kan udah dimana...

iya nih bingung dapet 006A, error kenapa ya harusnya bener sih..

like SanQiBa said....
" tambahkan bbrp baris perintah untuk aktifkan proses key agar bisa tampilkan data yg sebenarnya ke socket OK (sync_ex_reply)
contoh kalian bisa liat di toxcil"

and this just check if data we receive on socket is wrong or true...if true ta da u can login....

message "password: ".$password." => ".getHex($password)." .|\n";
message "type: ".$type." .|\n";
message "salt: ".$salt." .|\n";
message "salt hex: ".getHex($salt)." .|\n";

u can check it on wpe.....

@neocaffes proses keynya itu xatau kan ya maksudnya?..

salt hex di ubah pakek proses key terus diteruskan ke socketnya buat dikirim ke server.

006a kenapa ya :(

@neocaffes
" tambahkan bbrp baris perintah untuk aktifkan proses key agar bisa tampilkan data yg sebenarnya ke socket OK (sync_ex_reply)
contoh kalian bisa liat di toxcil"
toxcil bukannya cuman bikin delphine aja ya? atau saya kelewat pas nyarinya.. bisa kasih link yg toxcil?

@emoisback
006a salah password, kan di openkore qlo dapet 006a ada penjelasannya salah password
qlo mau tau hasil decryptnya bener atau nggk, kamu smsniff sama wpe, ambil sebaris aja datanya
trus coba kamu jalanin perhitungan/kodingan kamu ke data smsniff, qlo hasilnya persis seperti dengan wpe berarti ok
@rio salt yg di encrypt 746b salt yg dah g di encrypt dc01
yang dibutuhkan dc01,gunakan login key dari sanqiba untuk mengubah 746b menjadi dc01

@oqhadev key yang di kasih sanqiba harus di taro di idro.pm dan di coding lagi supaya code tersebut bisa mengubah 746b jadi dc01 gitu ya kurang lebih ?

@oqhadev @justdoitright @SanQiBa @VeteranRO add me pls, need a little more clue with my work Nickelodeon#1875

@newb1ez delphine data formater just for edit data from sniff to the format require for delphine key

if you copying from snif like that

94 6B 62 59 5D 30 FB 9E  53 F9 35 00 6F 28 05 58   .kbY]0.. S.5.o(.X 
00000010  6D CE 67 E7
DC 01 14 00 11 5E 89 C3 13 9B 4B 51 2B 4E 7F 0D 35 B4 01 AE

94 6B 62 59 49 B3 8F CA  4B 37 49 14 6F DE 79 6A   .kbYI... K7I.o.yj 
00000010  3B A7 16 EF
DC 01 14 00 05 DD FD 97 0B 55 37 45 2B B8 03 3F 63 DD 70 A6 

94 6B 62 59 5F 4A AA AA  54 DD 15 01 53 AB 46 7B   .kbY_J.. T...S.F{ 
00000010  90 61 17 3A
DC 01 14 00 13 24 D8 F7 14 BF 6B 50 17 CD 3C 2E C8 1B 71 73 

94 6B 62 59 76 89 98 EC  59 74 51 F0 03 B3 27 4C   .kbYv... YtQ...'L 
00000010  41 97 C2 9F
DC 01 14 00 3A E7 EA B1 19 16 2F A1 47 D5 5D 19 19 ED A4 D6 

94 6B 62 59 39 68 6A DE  D2 82 4D 25 75 96 FB 04   .kbY9hj. ..M%u... 
00000010  D0 24 7C 55
DC 01 14 00 75 06 18 83 92 E0 33 74 31 F0 81 51 88 5E 1A 1C 

@oqhadev thanks 👍 .

@phinokio So, we just need copy like that ? or we must delete the 00000010 and .kbY9hj.xxxx ?
and we must have 256/256 for delphine data right ?

delphine data gak diperluin, soalnya sudah punya key yang dikasih sama si SanQiBa..

Cuma perlu rubah salt yang dibawa sama paket 6B94 supaya saltnya bener. udah gitu doank

so in send.pm "$salt" we need to change sanqiba keys? @emoisback ?

@rioA
rubah salt yang ada pakek yg sanqiba kasih itu.

udah coba gw ubah, cman di ok nya received packet nya masih 6b94 euy, bukan 01dc @emoisback

@oqhadev @justdoitright @SanQiBa @VeteranRO
udah gw ubah salt nya pake coding switch kan sync_ex_reply
hasil packet :
94 6B 62 59 CF 34 ED 02 E7 CB BD AE A4 97 29 0B 81 78 0F 30 << hasil sniff smsniff
di ambil per 2 byte lalu switch ke key yg sanqiba kasih

tapi masih ttp aj wrong password, apa salt nya salah?
atau harus sniff lebih dari 1 packet?
cara ubah encrypt dari smsniff biar tau sama hasilnya seperti wpe gmn caranya?

@k1nt4r0 where to change salt value? I can't find it on send.pm

gpp recievenya mah mau tetep 6b94 yg penting hasil saltnya bener kirim DC 01nya bener...

kalo gagal login berarti saltnya salah

@MinangRiau idro.pm recv
sending encode password sih udah lewat tapi gk bisa juga ya

@SuperPoke add discord pls Nickelodeon#1875 mau tanya2 dikit

@emoisback sending dc01 uda bener cman ketemu 952A lagi nih.. apaan tuh ya?

@rioA

pastiin dlu hasilnya bner gak tuh fungsi ubah ke dc01nya..
caranya smsniff di masukin ke fungsi ubahnya kalo hasilnya sama kayak di wpe berarti garemnya bner, tapi kalo beda berarti garemnya salah...

@SuperPoke bos bs bantu gk tutorialnya ? add discord scythelike#8944

masih sama, send 01DD
encoded password dah lwt, tapi kena 006A lagi

Just read all message on this thread ... then use google to get help.
about perl command.
thanks to @emoisback , @VeteranRO , @SanQiBa and all who share clue on this thread.

may some clue bro about what file to edit @SuperPoke

@SuperPoke bantu dikit pls
karena gk ngerti perl maka nya jadi pusing ._.

All invite me discord @9055

@k1nt4r0
i dont have basic programing, just read ...

@TjiuZ
Achien(if not wrong) kaga usah ikut" ngebott..wkwkwk

please @SuperPoke ajarin stepnya

@SuperPoke

Wkwkkwkwkwk... kenapa sih jahat amat.. sapa ni oi.. bagi2.. gw ada lahan lohh ✌️

and here i am stuck with 006A @emoisback

@emoisback om saya udah nyoba yang dr sniff pake xatau sama kek di wpe , trs gmn ya?

Sama ga hasilnya sniff di xatau sama ga ama wpe kalo sama harusnya dah bner dan bisa...kalo 006A berarti msh salah

sama om , mungkin di coding sendpm/recvpm nya , boleh kasih pencerahan buat kasih coding switchnya?

bro2 didiskusikan disini aja ya https://discord.gg/wj8kC

@rioA bagi emailnya saya mo nanya2 bisa?

@rioA @k1nt4r0 invite my discord, maybe i can help u oqhadev#8545

can someone help me? im also stuck with 006A :(

@SuperPoke Maybe you can share the google link for us so we can try it :D

@oqhadev boleh gabung ga om @oqhadev ? stuck di 006a nih

@oqhadev whats your discord id?

@oqhadev what your discord id ???

Iya mending bahas di discord biat ga dibaca ama yg empunya hahaha

@emoisback invite me bang emo aconx01#6849

invite to group too hanazawarui#0728

please invite me on discord, JohtoNoob#5496

Invite me on Discord #8449

invite me also @emoisback .. diavolo1899 #1461

Itukan ada yg mo buat td diatas katanya

mana grup discord nya ? link dong senpai :)

Invite donk zeravince#0762

invite gryked#3619

discord mari berbagi

please invite me mate....thanks
bumbumcha#5170

invite me too pls @rioA @oqhadev
DesertFox #9511

Krone#4646 invite me please

please invite me discord bluewhite99#2709
thx GBU

image
So uhh...i've got the salt encrypted with the key , and what is the next step?
do i change the command '$salt = $salt . $password;' with '$salt = $salt_with_key . $password;'

or something else??

please invite nau6hty_b0y

7371

please my invite discord saihahan#4994

please invite me to discord too jetzet08#1819 thx before

Kindly invite me to discord as well, i have much question
ivan#1745

@emoisback should not post your complete packet like that..
from that i can tell ur username and password. rajasalman "keluar"?
please change ur password..

image

Mungkin ada yg bisa kasih pencerahan , belajar itu perlu tapi belajar tanpa guru itu sulit ~

@VeteranRO @oqhadev needs learning how to make coding key from @SanQiBa
this is hard to learn codes from toxcil or you can make the Manual of coding -switch 946b to DC01 steps
my bot stuck same as @desertfox123


thx before

@wimaian don't post picture to big.. not effective at all.
read my post the answer is in there. from there you wont receive the unknown switch.

@gracksan for manual coding just edit the function.pl..
from there do something like toxcil does, not all but something necessary.

@wimaian u have a discord?

i think i cant understand toxcil code @VeteranRO maybe u can email me ( [email protected] ) the details steps ^_^
sorry its hard learn new stuff (im just reader and newbie, cant be a codebreaker) ^_^

If you're not a coder... just give up... and stop spamming you're email asking for detail step it's not something that can be easily to understand...

@gracksan you have 006a for wrong password, read explanation from @SanQiBa @VeteranRO and @oqhadev

@VeteranRO okay so there must be something to edit in idro_decrypt(toxcil), am i right? cmiiw. What must i do, change the YY's receive packet from 946B XX YY(16) using xor secure key? or what to do there? thanks

@VeteranRO ok siap, passwordnya sengaja disalahin itu bukan password yang sebenernya..lagi pula itu id dummy asal bikin cuma buat coba oprek botnya aja..

buat yang lain, coba bacanya diatas itu lengkap cuma butuh ikutin, terus googling cara terapin proses yang sanqiba kasih ke dalam bentuk kode.

oke sir sorry @VeteranRO ,I dont know Rules and , is difficult for me , maybe some one or any one here is thread can help likes me , thx before

Can someone explain well how to get revcpakect? May peek master can't get properly.. The other application like packet extractor v1,v1.2,3.. They said that it' has proctection or no can't find exe..thanks..

@harley24 i think theres no issue with recvpacket, just add "6B94 20 20 0" code. If you want to know how to solve this you can read the comment from 4 days ago until now, theres so many clue if you understand what to do it should be easy :D

pencerahan
help me, 4 days iam stuck here

@Mangpadik well.... I'm not using recvpackets..... use @VeteranRO tutor, you dont have to change recvpackets or add any delphine data and key... just patch it and you good to go.... by the way today are MT, dont try too hard cause it might change...

@mikahoy045 i dont know how to used salt.. ? any tutor from beginning..? @VeteranRO

can someone help me with this? i am totally beginner in this thing..

bot ro

@itsrachelfish @Cozzie @isieo this issue is all about leeching, can u stop this by deleting this issue? so we can open other issue.

TO ALL, please try before ask, don't make stupid comment, we can't help if u always ask for the running bot. we all tried here. so give the 'programer' or 'who can code' solve this. hope u will understand

@oqhadev @justdoitright @SanQiBa @VeteranRO @k1nt4r0 please add me acdc777#5725, need some advice and guide from you guys

@ever-boy who are you ? Gravity ? why u need deleting this issue ? what your interests?

@SuperPoke i'm no one. delete and make new issue with clue from @SanQiBa @VeteranRO and the other, so we can learn from them without the leech comment.

@ever-boy why many people like short cuts to get something without trying?
What is hard to read from beginning to end to know what are the problems of people with this problem?

Hmm today gameguard update for anti bot improvement...doesnt think this way will still working..

@SuperPoke calm down dude, this issue is full of leecher, even the clues overwritten with it. this is shameful for our country.

@ever-boy shameful for our country? chill dude its just a game and bot lol. thats why we ask nicely about the instant bot cause its just a game. some people have a real job and don't have time learning how to solve this issue. once again we always ask nicely, so ass licker like you better learn what shameful is lol

@zeravince yes ... ragnarok just a game.(some people wihtout bot play this game to earn money from this game).
So why ask about instant bot cause its just a game?. some people have a real job and don't have time learning how to solve this issue.? So just give up and leave it.

Just stop discuss about that...

Mending perisapan buat apa yg akan datang jam 12 nnti.

@SuperPoke doesnt so just because u can solve this bot issue and then act like this? u are not making a nuclear code dude. and once again, we ask nicely. it is normal for us to ask instant bot, and some people ask step by step try to learn it. put ur shoes on other shoes. dont act like superman in this case dude. lol

add my discord Fuske347#0983

@emoisback Waiting maintenance finish to know what update gameguard today.
@zeravince i dont solve this bot issue, other people at this thread solve this issue. i'm not superman. i'm not coder just like trying.

@zeravince and it's normal for them to not giving the instant bot too..., yes some people ask for step by step to learn it and they already give it... it's just not in a normal human way, even for most programmer it still give you headache..... like it or not you can't solved it if you don't know how to code or dont have time learning it to solve those issue.

@SuperPoke Aren't we all curious about what would happen after mt... lol

i think its really matter of time until official OK release their last version that will by pass gravindo gameguard. we will see dude. its absolutely same story when ragnarok came at very first time and openkore succeed to break that.

@mikahoy045 yes its normal, its not a problem if they dont want to share, cause they are using their brain for solving it, and we cant ask for the instant one. i really appreciate that. i just surprise that @ever-boy said "shamefull for our country". i mean cmon dude......................

i can solve this issue packed 6B94 because @emoisback write some logic about received packed.

@zeravince i did not mean to being offensive, this page is created for us to discuss the issue of the glitch, problem, etc with OpenKore it seems not right if we keep asking for instant solution in this page. And yes indeed it shamefull for our country if we didn't know what the purpose of the issue page is by asking for instant solution.

just need some effort...
anyone can solve this issue because all logic has been written on this disccussion..

its ok if you cant code, just need to know what you have to do, and try to find on google what you want todo on perl..there is thousand example how to do to solve this issue.

@zeravince oh... I see, I agree with you but just don't take it seriously.... most of the coder in this issue hate leech and spamming email.

@emoisback not all of that logic can be understood easily. Its not that simple. Including me to understanding this issue. It's like I give you task to determine capitalization rate in matter of investor interest to invest some of their money in our stock market. I can make that formula easily, but you? can you? you dont even understand what capitalization rate is. no offense just simple supposition.

@pierrecardin Correct..... as I said like it or not if you want to make it work, you gotta spare sometime (could be month or years) to learn it...

@SuperPoke

orang n3 ? sapa neh ??? contact gw dong..

i cant understand but i know what i have to find right how to determine capitalization bla bla...
ther is many people out there sharing about it, even though case is different..we can try and error right?..put some effort on it.

@pierrecardin indeed not all of that logic can be understood easily, that's why this page is created. but the problem is when people keep asking for instant solution instead of asking another problem that they got from trying the method or clue that the others has been discussed here. its like when you know how to determine capitalization rate or what it is and the others keep asking you for the instant result for their own good even you've write down the steps here.
for me i haven't solve it yet, but i wont ask the instant solution here because i know this page created for discuss the issue.

Now all of you know, in this issue, we learn something new, not leeching. i feel shame for this.

*skrg liat aja, clue yg bermanfaat malah tenggelem cuma karena minta dan minta, discord dan discord.

The comment from SanQiBa is really good and it's about 99% clue for this issue. really big thanks for him and enjoy leeching (_most comment in issues_)

come we make new issue..we make clue from start,,then leeching and newbie not always ask again N share their discord becos they can try we clue from start,,just learning..
bikin kesimpulan langkah2 dari awal ambil dari posting isue smua ini..
Soalnya kalo diterusin kya gni,clue2 udah ketimpa2..makin byk pertanyaan awal2 lagi(pusing lagi tar suhunya)
penjalanan diskusi sudah ampir 90%,,eh ada yg nanya lagi dari 0%..ya ketimpa terus trit ini..mohon dipertimbangkan untuk membuka trit baru dengan lngkah clue yg lebih jelas untuk menghindari leecing2 yg byk tanya dan bikin pusing para pemikir trit ini.. sekedar saran..terimakasih

Unknown switch: FCA6..

Just advice.
We need to create a team, especially for documentation section, so it will
help us for the next step and simplify for read.

I just wanna help, please don't misunderstanding :)

6B94 -> FCA6

  • Key berubah, bisa dicari tapi butuh paket dari smartsniff sama wpe, nah bagian wpe sekarang waktu login dia error tidak bisa berjalan bersama ragexe.exe, wpenya gak nangkep data paket yang setelah di decrypt.

  • kalo ada yang bisa tembus wpe bagi data smartsniff sama wpenya aja, nnti keynya aku bagi dsini.

  • cara laen ya bongkar dll yang dikasih sama si sanqiba buat cari keynya..

Its seems this thread is no longer moderate by the initiator @orgmatileg
and the issue 16CF already solved. I will create another thread
with another issue just go in there post your question.
here is the link:
idRO packet tokenizer unknown switch: FCA6 #460

I want to appreciate for each of you guys i mention here
that successfully helping me to overcome this issue.

@degodd who's giving a feedback for someone that asking for help
@randualas who like to share and keep to follow up someone problem
@c4c1n6kr3m1 the one who try to convince me to look at correct direction
@SanQiBa the cool guy.. who gave the xor key and clear explanation..
@k1nt4r0 is very active guy. willing to try something new.. this guy keep appearing since the beginning of this thread until now.. make this thread live..
@iqbalpetet this guy is creative..
@SuperPoke who give us the intel... i mean the packet to observe
@mikahoy045, @iqbalpetet, @rioA and those which i cannot mention it one by one...

SanQiBa, itsrachelfish, newb1ez, sumberrahayu.. thanks for the heart emoji..
i happen to notice it when i use desktop to open this thread.
usually i open this thread using my android device
that exhaust my finger just by scrolling it up/down.

Lets MOVE ON guys to the new thread..
its different issue now..
hopefully we can overcome this too..

@VeteranRO or @SanQiBa please add my discord rossevelts #0147
gw minta tolong, gw butuh bantuan untuk langkah selanjutnya gw harus ngapain.. rcvpacket gak bisa gw dapetin..
bisa bantu kasih clue via discord gw ?
gw udh baca2 dari atas kurang paham jadi butuh penjelasan yg lebih jelas dari kalian pro2..
berharap kalian mau bantu :+1:

guys github issues isn't a complain area.

Please share me bot work help2 setioa45@gmail,com

Was this page helpful?
0 / 5 - 0 ratings

Related issues

restartowi picture restartowi  ·  5Comments

TomEnder picture TomEnder  ·  3Comments

ojuniorbezerra picture ojuniorbezerra  ·  4Comments

farrainbow picture farrainbow  ·  4Comments

clarawong picture clarawong  ·  4Comments