Üye
Arkadaslar merhaba,
Simdi forumda biraz goz gezdirdim bazi konular goruyorum [HWID BAN,Spoofer,SSD/HDD] vb.Simdi ben sizlere genel olarak birseylerden bahsedeyim;
Riot Games'in yeni anti hile korumasi olan ''Vanguard (vgk.sys)'' isimli yazilim sizin bilgisayarinizda Ring0 yani ''kernel driver'' yani bilgisayarin en alt katmaninda calisan bir yazilimdir.Hali hazirda bunu ESEA/FACEIT gibi platformlarda yapiyordu zaten.Siz bilgisayarin power tusuna bastiginiz andan itibaren onyukleme ekraninda yuklenen driveri sayesinde bilgisayarinizda butun erisime sahiptir.Dolayi ile piyasada bulunan hiçbir spoofer ''Vanguard'in mantigini anlayan ve reverse engineering ile Ring0 icin kodlanan bir spoofer değil ise'' (kaldiki piyasada yok) çalışmayacaktır.HDD/SSD olayina gelirsek, günümüz artik 2020 ve maliyeti ucuz olan birşeye riot games'in ban atacağını düşünüyorsanız yanılıyorsunuz, bu sizlere hiçbir çözüm sağlamayacaktır dilerseniz piyasadan istediğiniz harici HDD ve SSD'yi satin alip sizdekileri söküp gönül rahatlığı ile deniyebilirsiniz.İşe yaramayacaktır, yaramazda.
Genel olarak atilan donanim banlari kendi deyimleriyle Soul ban (Monitorunuzun PID id si , anakartiniz ve ekran karti yonundedir yukaridada gorebileceginiz uzere) Sagda solda yok mouse'a atiyolar yok klavyeyi bagladim tekrar yasaklandim gibi konulara yada SSD aldim taktim calisti gibi konulara kesinlikle itibar etmeyiniz inanmayiniz.Onun disinda Phillip'in twitter adresinide takip edecek olursaniz, yasaklamalari (KAPALI BETADA YASAKLANANLAR ICIN) periyodik olarak affedeceklerini ve zamanla kaldiracaklarini soyledi.KAPALI BETA'DAN sonra oyunun tam sürümünde ban yiyenlere '' SORRY NO SECOND CHANCE FOR CHEATERS'' denildi.O yüzden tam sürümde ban yiyen herkese geçmiş olsun.Tavsiyem uzun bir sure hesap acip tekrar tekrar denemeyiniz, her yasaklanisinizda havuzun en altina tekrar atiliyorsunuz.Yaklasik olarak 2-3 ay boyunca yeni bir hesap acmayiniz denemeyiniz, daha sonrasinda bir destek bileti acip hile yaptiginizi ve cok pisman oldugunuzu cezanizi yeterince cektiginizi tatli bir dille dile getirin ve bir sans daha istediginizi belirtiniz.Riot games affedicir merak etmeyin.
Not : Tüm bunların dışında hile kullanacak arkadaşlara buradan tavsiyelerim, ''undetect'' olanherhangi bir hile piyasada yok,hali hazirda bulunan sisteminizde kernel modda çalışan bir antihile yazilimi var ister adini degistir, ister kimsenin bilmedigi bir source kod ile hile gelistir, istersen yerel disk D'ye kur istiyorsan USB'ye at bilgisayarina bagla calistir oyuna mudale eden herhangi bir 3. parti yazilimi zaten vanguard bilecektir.Mikyon dolarlik sirketten bahsediyoruz ve vanguard icin calisan 30 tane deneylimli muhendisten.Kendinizi kandiramayin 10-20 dolarlik hileler ile yada bedava hileler ile kimse yasayamaz
.Cunku hali hazirda zaten oyunu oynarken monitorunuzu trackerliyorlar (izliyorlar yani)Yasaklanmalar delayli gelir, en fazla 1 ay yasarsiniz.Şayet bu tarz kernel driverlarda hile kullanmak istiyorsan CS:GO'da olan aylik maliyeti 600-700 dolarin uzerinde olan websockets for communication between web server and client yani bagli bulundugunuz sunucunun ip si uzerinden harici bir bilgisayara yada telefona anlik gecikmeli olan sunucudaki herseyi yansitma.
Bknz :
bu kev1nS aka ko1n isimli arkadas ESEA/FACEIT 'in icinden gecen alman bir yazilimcidir, profesyonel oyuncularin coguna hile tedarigi saglayan arkadasta budur [AIMLOCK] türevi.Yani bunu basarirsa bu ve bunun ayarinda arkadaslar yapabilir sadece.Onun disinda External ve Internal hicbir hile karnel modda calisan antihile icin etkisizdir.Sonra üzülürsünüz, lütfen bilincli olalim arkadaslar.
Tum bunlara ek kolarak kendiminde denedigi ve sonuc aldigi bir method var bunlar icin gerekli olanlar yeni bir bilgisayar monitoru, yeni NIC (ethernet card) sizde bulunan ayni SSD markasindan bir tane daha alip ''RAID0 method'' ile yeniden windows kurulumu yapmaniz ve yeni windows OS key ile %100 calisacaktir.
Tesekkurler, herkese bol sans.
Simdi forumda biraz goz gezdirdim bazi konular goruyorum [HWID BAN,Spoofer,SSD/HDD] vb.Simdi ben sizlere genel olarak birseylerden bahsedeyim;
Riot Games'in yeni anti hile korumasi olan ''Vanguard (vgk.sys)'' isimli yazilim sizin bilgisayarinizda Ring0 yani ''kernel driver'' yani bilgisayarin en alt katmaninda calisan bir yazilimdir.Hali hazirda bunu ESEA/FACEIT gibi platformlarda yapiyordu zaten.Siz bilgisayarin power tusuna bastiginiz andan itibaren onyukleme ekraninda yuklenen driveri sayesinde bilgisayarinizda butun erisime sahiptir.Dolayi ile piyasada bulunan hiçbir spoofer ''Vanguard'in mantigini anlayan ve reverse engineering ile Ring0 icin kodlanan bir spoofer değil ise'' (kaldiki piyasada yok) çalışmayacaktır.HDD/SSD olayina gelirsek, günümüz artik 2020 ve maliyeti ucuz olan birşeye riot games'in ban atacağını düşünüyorsanız yanılıyorsunuz, bu sizlere hiçbir çözüm sağlamayacaktır dilerseniz piyasadan istediğiniz harici HDD ve SSD'yi satin alip sizdekileri söküp gönül rahatlığı ile deniyebilirsiniz.İşe yaramayacaktır, yaramazda.
[Key]: \Registry\Machine\System\CurrentControlSet\Services\vgk
640 | ntoskrnl.IoCreateFileSpecifyDeviceObjectHint+2E4 | FFFF8F0FF0C9F930 | FFFFC980337F4180 | FFFF8F01023C8180 | FFFF8F01023C8040 | ntoskrnl.CcCopyReadEx+7559 | Ntfs.sys+8E000 | FFFFC70F24EBA958 | Ntfs.sys+8F388 | ntoskrnl.IoCreateFileSpecifyDeviceObjectHint+170 | FFFF8F0FF0C9F930 | Ntfs.sys+8F300 | FFFF8F0FF0C83D50 | FFFF8F0FF0C9F930 | ntoskrnl.CcCopyReadEx+6A9A | FFFF8F0FF0C9F930 | Ntfs.sys+F5F0 | FFFF8F01023C8040 | FFFF8F0FF0C83D50 | FFFF8F0FFF6F3DE0 | FFFFC98033B78000 | FFFF8F0FF2183140 | FFFF8F0FF0C9F930 | ntoskrnl.CcCopyReadEx+6930 | ntoskrnl.RtlIpv4StringToAddressW+4D5 | FFFF8F01023C8040 | FFFF8F0FF0CDA340 | FFFF8F01023C8040 | FFFFA30851E4B570 | FFFF8F0FFF99D901 | FFFFC98033B75200 | ntoskrnl.KeSynchronizeExecution+62EC | FFFFC98033B65180 | FFFF8F01023C8040 | ntoskrnl.RtlIpv4StringToAddressW+480 | FFFF8F0FFF73B210 | FFFFC70F2952F000 |
[NtQuerySystemInformation]: SystemBootMetadataInformation
1554 | ntoskrnl.setjmpex+7875 | FFFFDB86C45FABA4 | FFFFA00810400000 | FFFFA00810400100 | ntoskrnl.exe | FFFF8481DF5A6B10 | FFFFA008223BA020 | ntoskrnl.ExFreePoolWithTag+AD3 | FFFFA00810400340 | FFFFA00822FF485C | FFFFA008223BA140 | FFFFA008223BA030 | FFFFA008223BA030 | FFFFA008122435B0 | FFFF8481DF5A6A94 | FFFF8481DF5A6AA0 | FFFF8481DF5A6A88 | FFFF8481DF5A6AB0 | CI.Ordinal1+344D | FFFF8481DF5A6AA8 | FFFFA008122439F0 | FFFFA008122435B0 | FFFF8481DF5A6B34 | FFFF8481DF5A6AA9 | FFFFA008122435A8 | ntoskrnl.KeSynchronizeExecution+2B80 | FFFF8481DF5A6A18 | CI.Ordinal1+43E7 | FFFFA008122435A8 | CI.dll+6D7FF | FFFF8481DF5A6AB0 | FFFF8481DF5A6A98 | FFFF8481DF5A6A84 | FFFF8481DF5A6A00 | FFFFDB86CD086C78 | FFFFA008122435B0 | FFFFA00812243590 |
[Key]: \Registry\MACHINE\System\CurrentControlSet\Control\CI
640 | ntoskrnl.FsRtlFindInTunnelCacheEx+411 | ntoskrnl.FsRtlRegisterFltMgrCalls+5D30 | FFFFC70F29535070 | FFFFA308553BCDC0 | FFFFA308553BCDC0 | FFFF8F0FF9260CF0 | FFFFC70F295351F0 | ntoskrnl.FsRtlGetFileSize+67C | FFFFC70F295353D0 | FFFFC70F295351F0 | FFFF8A8004885890 | FFFFC70F29535170 | FFFFC70F29535160 | FFFFC70F295351A0 | FFFFC70F29535168 | FFFF8A8004885890 | FFFFA308553BCDC0 | FFFF8F01028C7970 | FFFF8F0FF9678818 | FFFFA308553BCE08 | FFFF8F01023C8040 |
[Key]: \Registry\MACHINE\System\CurrentControlSet\Control\CI
640 | ntoskrnl.PsCreateSiloContext+5B00 | ntoskrnl.KeSynchronizeExecution+2B80 | ntoskrnl.FsRtlRegisterFltMgrCalls+5D30 | FFFFC70F29535000 | FFFFC70F295350C4 | ntoskrnl.SeDeleteAccessState+169D | FFFFC70F29535300 | ntoskrnl.FsRtlRegisterFltMgrCalls+5D10 | ntoskrnl.FsRtlRegisterFltMgrCalls+5D10 | ntoskrnl.FsRtlRegisterFltMgrCalls+5D30 | FFFF8A8004885801 | ntoskrnl.PsGetProcessExitTime+373 | FFFFC70F29535300 | FFFFA308553BCD01 | FFFF8F0FF9260CF0 | FFFFC70F295351F0 | ntoskrnl.FsRtlGetFileSize+79A | FFFFC70F295353D0 | FFFF8A8004885890 | FFFFC70F29535151 | FFFFC70F29535160 | FFFFC70F295351A0 | FFFFC70F29535168 | FFFF8A8004885890 | FFFFA308553BCDC0 | FFFF8F01028C7970 | FFFF8F0FF9678818 | FFFFA308553BCE08 |
[Key]: \Registry\MACHINE\System\CurrentControlSet\Control\CI
640 | CI.Ordinal1+236E | FFFF8F0FF0CDA340 | ntoskrnl.RtlImageNtHeaderEx+2D | FFFFC70F29534BD8 | CI.dll+2C820 | FFFFC70F29534BE0 | FFFFC70F29534D60 | CI.CiFreePolicyInfo+A29C | FFFF8F0FF0CDA340 | FFFFC70F29534D38 | FFFFC70F29534F18 | FFFF8F0FF9260C01 | FFFFC70F29534F10 | FFFFC70F29534F5C | FFFFC70F29534E88 | FFFFC70F29534E80 | FFFF8A80053B4CD0 | FFFF8F0FF0CDA340 | FFFF8F01028C7970 | FFFFC70F29534F10 | FFFFF800F5A00000 | FFFFC70F29534F5C | FFFF8F0FF9260C00 | FFFFC70F29534F18 | FFFFC70F29534E80 | FFFFF800F5A00000 | FFFFC70F29534E88 | FFFFC70F29534F20 | FFFFC70F29534EB0 |
[Key]: \Registry\MACHINE\System\CurrentControlSet\Control\CI
640 | ntoskrnl.FsRtlFindInTunnelCacheEx+411 | FFFF8F01028C7970 | FFFF8F0FF9260CF0 | ntoskrnl.FsRtlRegisterFltMgrCalls+5D30 | FFFFC70F29535010 | FFFFC70F29535300 | FFFF8F01028C7970 | FFFF8F0FF9260CF0 | FFFF8F01028C7970 | FFFF8F0FF9260CF0 | ntoskrnl.RtlEqualUnicodeString+DF1 | FFFF8F0FF9260CF0 | FFFF8A8004885890 | FFFFA308553BCDC0 | ntoskrnl.FsRtlGetFileSize+9B1 | FFFF8F01028C7970 | FFFFC70F295351F0 | FFFFC70F29535101 | FFFF8A8004885890 | FFFFA308553BCDC0 | FFFF8F01028C7970 | FFFFA308553BCE08 |
[Key]: \Registry\Machine\System\CurrentControlSet\Control\Compatibility\Driver\vgk.sys
640 | ntoskrnl.MmMapViewInSystemSpace+1A0E | ntoskrnl.FsRtlRegisterFltMgrCalls+59E0 | FFFFC70F295354D0 | FFFFC70F29535550 | ntoskrnl.RtlImageDirectoryEntryToData+13 | FFFFA308553BD810 | FFFFC70F29535490 | FFFFC70F295355E0 | FFFFA30847D40010 | FFFFC70F295355E8 | FFFFC70F29535568 | ntoskrnl.MmMapViewInSystemSpace+17E8 | FFFFC70F29535570 | FFFFC70F29535660 | FFFFA30847D40010 | ntoskrnl.KeRaiseIrqlToDpcLevel+45 | ntoskrnl.MmMapViewInSystemSpace+1C12 | FFFFC70F29535660 | FFFFC70F29535570 | FFFFC70F295356A8 | ntoskrnl.NtBuildLab+43A0 | FFFFC70F295356A8 | FFFFC70F29535670 | FFFFC70F29535660 | FFFFC70F295356A0 | FFFFC70F29535600 | ntoskrnl.MmMapViewInSystemSpace+1DBD | FFFFF800AA240000 | FFFFC70F295355E8 | ntoskrnl.exe+26CE | FFFFC70F295357A0 | FFFF8F0FF9260D70 | FFFFF800AA240000 | FFFFC70F29535680 | ntoskrnl.MmMapViewInSystemSpace+1B06 | FFFFF800AA240000 | FFFF8F0FFFDC29F0 | FFFFC70F295356A8 | FFFFC70F295356A0 | FFFFA30852DF53B0 |
[CreateFile]: \Device\HarddiskVolume5\
640 | nldrv.sys+1E381 | FFFF8F0FF967030A | FFFF8F0100501903 | FFFFC70F295355C0 | FFFF8F0FF225FE30 | FFFFC70F295354E8 | FFFFC70F295354F0 | FFFFC70F29535648 | FFFFC70F29535648 | FFFFC70F295355C0 | FFFF8F01023C8040 | ntoskrnl.NtFindAtom+80F | FFFFC70F29535640 | ntoskrnl.exe+4D9B78 | FFFF8F0FF938A1C0 | ntoskrnl.exe+4D9B70 | FFFF8F01023C8040 | ntoskrnl.PsSiloContextPagedType+C0A0 | FFFFA30851F93150 | FFFFC70F295358A8 | FFFFC70F29535740 | FFFFF800AA240000 | FFFF8F0FF9260CF0 | FFFFC70F29535680 | ntoskrnl.PsWow64IsMachineSupported+193 | FFFF8F01028C7970 | FFFFA30851F930D0 | FFFF8F0FFFDC29F0 | FFFFF800AA240000 |
[CreateFile]: \??\C:\Program Files\Riot Vanguard\vgk.sys
640 | ntoskrnl.RtlNumberGenericTableElementsAvl+2B0 | FFFFA30852E8FA30 | FFFFC70F29535488 | ntoskrnl.RtlUnicodeToOemN+128 | FFFFC70F295353D0 | FFFFC70F29535410 | ntoskrnl.MmMapViewInSystemSpace+15FE | FFFFA30852E8FA30 | FFFFA30852E8F800 | FFFFC70F295357A0 | FFFFF800AA240000 | FFFFA3084AE1BBE0 | FFFFC70F29535808 | FFFFA3084AE1BBE0 | FFFFA30852E8F800 | FFFFC70F29535550 | ntoskrnl.MmMapViewInSystemSpace+10DF | ntoskrnl.FsRtlAllocateExtraCreateParameter+149 | FFFFF800AA240000 | ntoskrnl.FsRtlAllocateExtraCreateParameter+149 |
[Key]: \REGISTRY\MACHINE\SYSTEM\ControlSet001\Services\vgk
640 | vgk.sys+5371AD | ntoskrnl.ZwOpenKey | FFFFF800AA27EA50 | FFFFF800AA240000 | FFFF8F01021FC000 | vgk.sys+5A03C | FFFF8F01021FC001 | FFFF8F01023E6280 | FFFFF800AA27EA50 | FFFFC70F29535559 | FFFFC70F295354A0 | FFFFF800AA240000 | FFFF8F01021FC001 | FFFFC70F29535559 | vgk.sys+50311A | FFFF8F0FF0CDA340 | FFFF8F01023E6280 | FFFF8F01023E62B0 | FFFF8F01023E6280 | FFFFA30855908760 | FFFF8F01023E62B0 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFF800AA278120 | vgk.sys+5010D0 |
[Key]: \REGISTRY\MACHINE\HARDWARE\RESOURCEMAP\System Resources\Physical Memory
640 | vgk.sys+51407C | FFFFC70F29535559 | ntoskrnl.ZwOpenKey | FFFFC70F295353B0 | FFFFC70F29535390 | FFFF8F0FF0602290 | FFFFC70F29535290 | FFFF8F0FF0602290 | FFFFC70F295354C0 |
[CreateFile]: \??\PhysicalDrive0
640 | vgk.sys+50D420 | FFFFF800AA27EA70 | FFFFC70F29535740 | FFFFC70F295355F0 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFF800AA27EA70 | FFFFC70F295356C0 | vgk.sys+50CE0D | ntoskrnl.ZwCreateFile | FFFF8F0FFF58F7B0 | FFFFC70F29535740 | FFFFC70F29535740 | ntoskrnl.ZwProtectVirtualMemory | FFFFC70F29535950 | FFFF8F01021FC000 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFFF800AA27FAB8 | FFFFA30852DF5230 | FFFFF800AA2524B7 | FFFFC70F295357F0 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFF8F01021FC000 | FFFF8F01021FC000 | ntoskrnl.ObFindHandleForObject+27 | ntoskrnl.ObDuplicateObject+5F0 | FFFFF800AA27FA40 |
[CreateFile]: \??\PhysicalDrive0
640 | vgk.sys+50D5F5 | FFFF8F01009E8FF0 | FFFF8F0FF06022C0 | FFFFC70F29535559 | ntoskrnl.ZwCreateFile | FFFF8F01009E8FF0 | FFFFC70F295355F0 | FFFFF800AA27EA70 | FFFFF800AA27EA70 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFC70F295356C0 | vgk.sys+50CE18 | ntoskrnl.ZwClose | FFFFF800AA27EA70 | FFFFC70F29535740 | FFFFC70F29535740 | ntoskrnl.ZwProtectVirtualMemory | FFFFC70F29535950 | FFFF8F01021FC000 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFFF800AA27FAB8 | FFFFA30852DF5230 | FFFFF800AA2524B7 | FFFFC70F295357F0 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFF8F01021FC000 | FFFF8F01021FC000 |
[CreateFile]: \??\PhysicalDrive1
640 | vgk.sys+50D420 | FFFFC70F29535578 | FFFF8F0100775890 | FFFF8F01028BA10E | FFFFF800AA27EA70 | FFFFC70F29535740 | FFFFC70F295355F0 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFF800AA27EA84 | FFFFC70F295356C0 | vgk.sys+50CE0D | ntoskrnl.ZwCreateFile | FFFFF800AA27EA70 | FFFFC70F29535740 | FFFFC70F29535740 | ntoskrnl.ZwProtectVirtualMemory | FFFFC70F29535950 | FFFF8F01021FC000 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFFF800AA27FAB8 | FFFFA30852DF5230 | FFFFF800AA2524B7 | FFFFC70F295357F0 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFF8F01021FC000 | FFFF8F01021FC000 | ntoskrnl.ObFindHandleForObject+27 | ntoskrnl.ObDuplicateObject+5F0 | FFFFF800AA27FA40 |
[CreateFile]: \Device\HarddiskVolume5\
115C | nldrv.sys+1E381 | FFFF8F0FF967030A | FFFFC70F25DEEDC0 | FFFF8F01026E6E90 | FFFFC70F25DEECE8 | FFFFC70F25DEECF0 | FFFFC70F25DEEEB0 | FFFFC70F25DEEEB0 | FFFFC70F25DEEDC0 | FFFF8F0FFF1D4040 | ntoskrnl.NtFindAtom+80F | FFFFC70F25DEEEA8 | ntoskrnl.exe+4D9B78 | FFFF8F0FF938A1C0 | ntoskrnl.exe+4D9B70 | FFFF8F01022486A0 | FFFFA30855BE8620 | FFFFC70F25DEF160 | FFFF8F01023D2380 | FFFF8F01022486A0 | FFFFC70F25DEEF00 | ntoskrnl.NtSetInformationVirtualMemory+1991 | FFFFA30855BE85A0 | FFFF8F0FFF1D4040 | FFFFC70F25DEEF00 | FFFFC70F25DEEE78 | FFFFC70F25DEEE68 | FFFFA3084404F8A0 | FFFF8F0FFF1D4040 |
[CreateFile]: \??\PhysicalDrive1
640 | vgk.sys+50D5F5 | FFFF8F0102102040 | FFFF8F0FF06022C0 | FFFFC70F29535559 | ntoskrnl.ZwCreateFile | FFFF8F0102102040 | FFFFC70F295355F0 | FFFFF800AA27EA70 | FFFFF800AA27EA70 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFC70F295356C0 | vgk.sys+50CE18 | ntoskrnl.ZwClose | FFFFF800AA27EA84 | FFFFC70F29535740 | FFFFC70F29535740 | ntoskrnl.ZwProtectVirtualMemory | FFFFC70F29535950 | FFFF8F01021FC000 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFFF800AA27FAB8 | FFFFA30852DF5230 | FFFFF800AA2524B7 | FFFFC70F295357F0 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFF8F01021FC000 | FFFF8F01021FC000 |
[CreateFile]: \??\PhysicalDrive2
640 | vgk.sys+50D420 | FFFFC70F29535578 | FFFF8F01007770F0 | FFFF8F01028BA110 | FFFFF800AA27EA70 | FFFFC70F29535740 | FFFFC70F295355F0 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFF800AA27EA98 | FFFFC70F295356C0 | vgk.sys+50CE0D | ntoskrnl.ZwCreateFile | FFFFF800AA27EA84 | FFFFC70F29535740 | FFFFC70F29535740 | ntoskrnl.ZwProtectVirtualMemory | FFFFC70F29535950 | FFFF8F01021FC000 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFFF800AA27FAB8 | FFFFA30852DF5230 | FFFFF800AA2524B7 | FFFFC70F295357F0 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFF8F01021FC000 | FFFF8F01021FC000 | ntoskrnl.ObFindHandleForObject+27 | ntoskrnl.ObDuplicateObject+5F0 | FFFFF800AA27FA40 |
[CreateFile]: \??\PhysicalDrive2
640 | vgk.sys+50D5F5 | FFFF8F0FFF80D990 | FFFF8F0FF06022C0 | FFFFC70F29535559 | ntoskrnl.ZwCreateFile | FFFF8F0FFF80D990 | FFFFC70F295355F0 | FFFFF800AA27EA70 | FFFFF800AA27EA70 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFC70F295356C0 | vgk.sys+50CE18 | ntoskrnl.ZwCreateFile | FFFFF800AA27EA98 | FFFFC70F29535740 | FFFFC70F29535740 | ntoskrnl.ZwProtectVirtualMemory | FFFFC70F29535950 | FFFF8F01021FC000 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFFF800AA27FAB8 | FFFFA30852DF5230 | FFFFF800AA2524B7 | FFFFC70F295357F0 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFF8F01021FC000 | FFFF8F01021FC000 |
[CreateFile]: \??\PhysicalDrive3
640 | vgk.sys+50D420 | FFFFF800AA27EA70 | FFFFC70F29535740 | FFFFC70F295355F0 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFF800AA27EAAC | FFFFC70F295356C0 | vgk.sys+50CE0D | ntoskrnl.ZwCreateFile | FFFFF800AA27EA98 | FFFFC70F29535740 | FFFFC70F29535740 | ntoskrnl.ZwProtectVirtualMemory | FFFFC70F29535950 | FFFF8F01021FC000 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFFF800AA27FAB8 | FFFFA30852DF5230 | FFFFF800AA2524B7 | FFFFC70F295357F0 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFF8F01021FC000 | FFFF8F01021FC000 | ntoskrnl.ObFindHandleForObject+27 | ntoskrnl.ObDuplicateObject+5F0 | FFFFF800AA27FA40 |
[CreateFile]: \??\PhysicalDrive3
640 | vgk.sys+50D5F5 | FFFF8F0101FD17B0 | FFFF8F0FF06022C0 | FFFFC70F29535559 | ntoskrnl.ZwCreateFile | FFFF8F0101FD17B0 | FFFFC70F295355F0 | FFFFF800AA27EA70 | FFFFF800AA27EA70 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFC70F295356C0 | vgk.sys+50CE18 | ntoskrnl.ZwCreateFile | FFFFF800AA27EAAC | FFFFC70F29535740 | FFFFC70F29535740 | ntoskrnl.ZwProtectVirtualMemory | FFFFC70F29535950 | FFFF8F01021FC000 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFFF800AA27FAB8 | FFFFA30852DF5230 | FFFFF800AA2524B7 | FFFFC70F295357F0 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFF8F01021FC000 | FFFF8F01021FC000 |
[CreateFile]: \??\PhysicalDrive4
640 | vgk.sys+50D420 | FFFFF800AA27EA70 | FFFFC70F29535740 | FFFFC70F295355F0 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFF800AA27EAC0 | FFFFC70F295356C0 | vgk.sys+50CE0D | ntoskrnl.ZwCreateFile | FFFFF800AA27EAAC | FFFFC70F29535740 | FFFFC70F29535740 | ntoskrnl.ZwProtectVirtualMemory | FFFFC70F29535950 | FFFF8F01021FC000 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFFF800AA27FAB8 | FFFFA30852DF5230 | FFFFF800AA2524B7 | FFFFC70F295357F0 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFF8F01021FC000 | FFFF8F01021FC000 | ntoskrnl.ObFindHandleForObject+27 | ntoskrnl.ObDuplicateObject+5F0 | FFFFF800AA27FA40 |
[CreateFile]: \??\PhysicalDrive4
640 | vgk.sys+50D5F5 | FFFF8F0FFFB0B750 | FFFF8F0FF06022C0 | FFFFC70F29535559 | ntoskrnl.ZwCreateFile | FFFF8F0FFFB0B750 | FFFFC70F295355F0 | FFFFF800AA27EA70 | FFFFF800AA27EA70 | FFFFF800AA240000 | FFFF8F01021FC000 | FFFFC70F295356C0 | vgk.sys+50CE18 | ntoskrnl.ZwCreateFile | FFFFF800AA27EAC0 | FFFFC70F29535740 | FFFFC70F29535740 | ntoskrnl.ZwProtectVirtualMemory | FFFFC70F29535950 | FFFF8F01021FC000 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFFF800AA27FAB8 | FFFFA30852DF5230 | FFFFF800AA2524B7 | FFFFC70F295357F0 | FFFFC70F29535950 | FFFF8F0FFF58F7B0 | FFFF8F01021FC000 | FFFF8F01021FC000 |
[Key]: \Registry\Machine\SYSTEM\CurrentControlSet\Control\WMI\Restrictions
640 | ntoskrnl.RtlCreateUnicodeString+254D | FFFFC70F29534FE8 | FFFF8F01021FD000 | ntoskrnl.RtlClearAllBitsEx+40 | FFFFC70F295351A0 | ntoskrnl.FsRtlRegisterFltMgrCalls+A8D0 | FFFFC70F29535000 | ntoskrnl.RtlCreateUnicodeString+2449 | FFFFC70F295350B0 | ntoskrnl.RtlClearAllBitsEx+7A | FFFF8F01021FD000 | FFFFC70F29535440 | FFFF8F01021FD000 | ntoskrnl.KeReenterRetpolinedCode+18AD | ntoskrnl.PsSetProcessWin32Process+1E72 | FFFF8F0FFF12C000 | ntoskrnl.ExFreePoolWithTag+C70 | FFFF8F0FF0602340 | FFFF8F0FFF12C010 | FFFFC70F295355D0 | FFFF8F01021FD000 | ntoskrnl.NtQuerySystemInformation+FF5 |
[Key]: \Registry\Machine\SYSTEM\CurrentControlSet\Control\WMI\Restrictions
640 | ntoskrnl.RtlCreateUnicodeString+254D | FFFF8F01029F1000 | ntoskrnl.RtlClearAllBitsEx+40 | FFFFC70F295351A0 | ntoskrnl.FsRtlRegisterFltMgrCalls+A8D0 | FFFFC70F29535000 | ntoskrnl.RtlCreateUnicodeString+2449 | FFFFC70F295350B0 | ntoskrnl.RtlClearAllBitsEx+7A | FFFF8F01029F1000 | FFFFC70F29535440 | FFFF8F01029F1000 | ntoskrnl.KeReenterRetpolinedCode+18AD | ntoskrnl.PsSetProcessWin32Process+1E72 | FFFF8F0FF0602340 | FFFF8F0FFF12C010 | FFFFC70F295355D0 | FFFF8F01029F1000 | ntoskrnl.NtQuerySystemInformation+FF5 | FFFF8F01029EA000 | ntoskrnl.KeGetCurrentIrql+ABA | FFFFC70F29535219 | FFFF8F0FF0602280 |
[Key]: \Registry\Machine\SYSTEM\CurrentControlSet\Control\WMI\Restrictions
640 | ntoskrnl.RtlCreateUnicodeString+254D | FFFF8F01029F1000 | ntoskrnl.RtlClearAllBitsEx+40 | FFFFC70F295351A0 | FFFFC70F295350B0 | ntoskrnl.FsRtlRegisterFltMgrCalls+A8D0 | FFFFC70F29535000 | FFFF8F01029F1018 | ntoskrnl.RtlCreateUnicodeString+2449 | FFFFC70F295350B0 | ntoskrnl.RtlClearAllBitsEx+A7 | FFFF8F01029F1000 | FFFFC70F29535440 | FFFF8F01029F1000 | ntoskrnl.KeReenterRetpolinedCode+18AD | ntoskrnl.PsSetProcessWin32Process+1E72 | FFFF8F0FF0602340 | FFFF8F0FFF12C010 | FFFFC70F295355D0 | FFFF8F01029F1000 | ntoskrnl.NtQuerySystemInformation+FF5 | FFFF8F01029EA000 | ntoskrnl.KeGetCurrentIrql+ABA | FFFFC70F29535219 | FFFF8F0FF0602280 |
[Key]: \REGISTRY\MACHINE\SYSTEM\ControlSet001\Services\vgk
640 | vgk.sys+5374B1 | FFFFC70F29535732 | FFFFC70F29535500 | FFFFF800AA27E490 | FFFFC70F29535500 | FFFF8F01021FC000 | ntoskrnl.ZwOpenKey | FFFFC70F295355C0 | FFFFF800AA27EAD8 | FFFFF800AA27E490 | FFFFC70F295351D0 | FFFFF800AA27EAC0 | FFFFC70F29535590 | vgk.sys+32894F | FFFF8F01021FC000 | FFFF8F0FF0602290 | FFFF8F01029F1000 | FFFFF800AA27EAD8 | vgk.sys+F4BE7 | FFFFF800AA27EAE8 | FFFF8F01021FC000 | FFFF8F01021FC000 | FFFFC70F295356C0 | FFFFF800AA27EAD4 | FFFFC70F29535500 | FFFFC70F295356C0 | vgk.sys+50CFEA | ntoskrnl.ZwCreateFile | FFFFF800AA27EAE8 | FFFF8F01021FC000 | FFFFC70F29535740 | FFFFC70F29535740 |
Genel olarak atilan donanim banlari kendi deyimleriyle Soul ban (Monitorunuzun PID id si , anakartiniz ve ekran karti yonundedir yukaridada gorebileceginiz uzere) Sagda solda yok mouse'a atiyolar yok klavyeyi bagladim tekrar yasaklandim gibi konulara yada SSD aldim taktim calisti gibi konulara kesinlikle itibar etmeyiniz inanmayiniz.Onun disinda Phillip'in twitter adresinide takip edecek olursaniz, yasaklamalari (KAPALI BETADA YASAKLANANLAR ICIN) periyodik olarak affedeceklerini ve zamanla kaldiracaklarini soyledi.KAPALI BETA'DAN sonra oyunun tam sürümünde ban yiyenlere '' SORRY NO SECOND CHANCE FOR CHEATERS'' denildi.O yüzden tam sürümde ban yiyen herkese geçmiş olsun.Tavsiyem uzun bir sure hesap acip tekrar tekrar denemeyiniz, her yasaklanisinizda havuzun en altina tekrar atiliyorsunuz.Yaklasik olarak 2-3 ay boyunca yeni bir hesap acmayiniz denemeyiniz, daha sonrasinda bir destek bileti acip hile yaptiginizi ve cok pisman oldugunuzu cezanizi yeterince cektiginizi tatli bir dille dile getirin ve bir sans daha istediginizi belirtiniz.Riot games affedicir merak etmeyin.
Not : Tüm bunların dışında hile kullanacak arkadaşlara buradan tavsiyelerim, ''undetect'' olanherhangi bir hile piyasada yok,hali hazirda bulunan sisteminizde kernel modda çalışan bir antihile yazilimi var ister adini degistir, ister kimsenin bilmedigi bir source kod ile hile gelistir, istersen yerel disk D'ye kur istiyorsan USB'ye at bilgisayarina bagla calistir oyuna mudale eden herhangi bir 3. parti yazilimi zaten vanguard bilecektir.Mikyon dolarlik sirketten bahsediyoruz ve vanguard icin calisan 30 tane deneylimli muhendisten.Kendinizi kandiramayin 10-20 dolarlik hileler ile yada bedava hileler ile kimse yasayamaz
Bknz :
Bağlantıları görmek için lütfen
Giriş Yap
Bağlantıları görmek için lütfen
Giriş Yap
bu kev1nS aka ko1n isimli arkadas ESEA/FACEIT 'in icinden gecen alman bir yazilimcidir, profesyonel oyuncularin coguna hile tedarigi saglayan arkadasta budur [AIMLOCK] türevi.Yani bunu basarirsa bu ve bunun ayarinda arkadaslar yapabilir sadece.Onun disinda External ve Internal hicbir hile karnel modda calisan antihile icin etkisizdir.Sonra üzülürsünüz, lütfen bilincli olalim arkadaslar.
Tum bunlara ek kolarak kendiminde denedigi ve sonuc aldigi bir method var bunlar icin gerekli olanlar yeni bir bilgisayar monitoru, yeni NIC (ethernet card) sizde bulunan ayni SSD markasindan bir tane daha alip ''RAID0 method'' ile yeniden windows kurulumu yapmaniz ve yeni windows OS key ile %100 calisacaktir.
Tesekkurler, herkese bol sans.
Son düzenleme: