BlackShot method?

Posts 1–5 of 5 · Page 1 of 1
BlackShot method?
Quite useless for me.... not sure if any of these still work... try it out Yourself

Code:
                           "BS Method"
collector : astron51 , VioletCoder , Zenith97
-------------------------------------------------------------------------------------------

Auto fire method (Automatic Spam)
--------------------------------------
start - HK416
Stop -D.Eagle

4 byte
Untick fast scan
scan 2
get 2 address
chg value as 4 byte 2
Value -  2=auto  1=manual
use to - HK address


Fire Rate
----------------------------
start - HK416
Stop -D.Eagle

4byte 
scan 1038576779
get address
chg value as float 0.0001
test 1 by 1
after found
use it to - HK416 address


SpeedHack Method
--------------------------------------------------------------------------
1.
Start - HK416
End - D.Eagle
untick fast scan
scan 4 Byte 17375
chg to 17700 test it
get it and - HK416 address
done

Recoil Method
--------------------------------------
1.start - HK416
2.end - D.Eagle
3.untick fast scan
4.4 byte
5.scan 15887
6.get address
7.use it - HK416 address

Althenative
Use Speed + A5

Damage hacking method
-------------------------------------
1.start - HK416
2.end - D.Eagle
3.untick fast scan
4.4 byte
5.scan 21004288 or 82048
6.get address
7.use it to - HK416 Address
8.82048 + 65536 = damage hack x2

All 2 Melee method
------------------------------------------
1.start - HK416
2.end - D.Eagle
3.untick fast scan
4.4 byte
5.scan 131073
6.use it to - HK416 Address
7.add to VB 
8.value 0 then chged to melee


Scope and Silencer
---------------------------------
1.start - HK416
2.end - D.Eagle
3.4 byte
4.scan 16777216
5.On 17235968 / oNLY sILENT 17006592
6.done get scope and silencer


Shoot Through Wall
--------------------------------------
1.start - HK416
2.end - D.Eagle
3.4 byte
4.untick fast scan
scan 704643139   Off - 704643139 ON - 0
get address and  - HK address
done

Spread
----------------------------------------
1.Cheyac - Start
2.next address - end
3.float
4.scan 1500
5.use it  - Cheytac address
6.that is stay spread
7.if wanna find out another
8.use the offset - 4
9.4 times,get it
10.done

PBase
_________________________________________
Value 93073408
Or string scan username 
-18

TeamESP
_________________________________________
Byte

Blue 0 Red 1 

In Room (Ready) change Team use CE scan.



|| TeamESP ||==========================================================================================================================

AOBadd
2F 2E 2E 2F 42 6C 61 63 6B 53 68 6F 74 2F 44 61 74 61 2F 00

AOBadd - 6a = TeamIDCheck [Static address]

Pbase -> BlackShot Logger v1.dll


Unlimited Buy Time
5F 53 45 41 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 5F 53 47 - 20

Offset 124 Value 1


Coordinate Base

00 00 00 00 4E 69 41 56 4F 62 6A 65 63 74 00 - 8380
Offset 0 8 10 18 20 28

=======================================================================================================================================



|| GameGuard Bypass [Beta] ||==========================================================================================================

3773316468 | 3773316587
21464079 | 21464335		GGBYPASS BETA DEF VAL + ON VAL
1583286900 | 1583286901

=======================================================================================================================================


|| EASY BP + EXP [BD] ||===============================================================================================================


00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 A0 04 1D 05 00 00 00 00 B0 39 E1 00 F0 39 E1 00 F0 39 E1 00 07 00 00 00 08 00 00 00 00 00 80 3F
AOBadd

01 00 00 00 00 00 00 00 58 02 00 00 00 00 00 00 00 00 00 00 00 00 16 44 00 00 00 00 00 00 00 00 14 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 98 3F E1 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 20 41 00 00 00 00 00 00 00 00 00 00 F0 41
AOBadd2

HeadShot [AOBadd] 600 ON
???? [AOBadd + 4] 18000 ON
???? [AOBadd + 10] 1476395008 ON
???? [AOBadd + 14] 2 ON
???? [AOBadd2] 1 ON

========================================================================================================================================


Gravity ~~

[1/9/2016 3:08:32 PM] : if you use this offsets
[1/9/2016 3:08:36 PM] : it wthis address
[1/9/2016 3:08:52 PM] : 3B8
8
24
[1/9/2016 3:08:56 PM] : in float
[1/9/2016 3:08:59 PM] : you can edit the gravity
[1/9/2016 3:09:12 PM] : nop this
[1/9/2016 3:09:18 PM] : add more offsets

Bux Data

#define WeaponTypeSave 0x048
#define WeaponID 0x008
#define WeaponName 0x00C
#define FlashType 0x044
#define MaxBullets 0x054
#define MaxAmmo 0x058
#define WeaponType 0x169
#define FireType 0x16B
#define Attachment 0x0043 //Thanks to Minerva
#define Speed 0x178
#define VectorsPerRound 0x188
#define SpreadStop 0x01B4
#define ShootThrough 0x1BB
#define SpreadJump 0x01C4
#define SpreadWalk 0x01D8
#define IncreasePitch 0x0218
#define DecreaseSpeed 0x021C
#define AimSize 0x0294
#define AimUnt 0x0298
#define AimWalk 0x029C
#define AimUnt1 0x02A0
#define AimUnt2 0x02A4
#define AimUnt3 0x02A8
#define AimFall 0x02AC
#define FireDelay 0x2D4

#define TeamID		0x61
#define TeamIDCheck 0x63


*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + DecreaseSpeed) = 1.0f; // DecreaseSpeed to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + IncreasePitch) = 0.0f; // IncreasePitch to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + SpreadStop) = 1.0f; // SpreadStop to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + SpreadJump) = 1.0f; // SpreadJump to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + SpreadWalk) = 1.0f; // SpreadWalk to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimSize) = 10.0f; // AimSize to 10
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimUnt) = 0.0f; // AimUnt to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimWalk) = 0.0f; // AimWalk to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimUnt1) = 0.0f; // AimUnt1 to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimUnt2) = 0.0f; // AimUnt2 to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimUnt3) u = 0.0f; // AimUnt3 to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimFall) = 0.0f; // AimFall to 1



Sig Scan Source Code C++======

#include <Windows.h>
 
bool PatternCompare(const BYTE* pData, const BYTE* bMask, const char* szMask)
{
    for (; *szMask; ++szMask, ++pData, ++bMask)
        if (*szMask == 'x' && *pData != *bMask)
            return 0;
 
    return (*szMask) == NULL;
}
 
DWORD FindPattern(DWORD dwAddress, DWORD dwLen, BYTE *bMask, char * szMask)
{
    DWORD i;
 
    for (i = 0; i<dwLen; i++)
        if (PatternCompare((BYTE*)(dwAddress + i), bMask, szMask))
            return (DWORD)(dwAddress + i);
 
    return 0;
}

===WIE Bypass===

References String 
-Weapon Index Error 

Browse Memory Scroll Up until 


cmp edx,-01
jne BlackShot.exe+??????
xor eax,eax
mov [ebp+edi*2-2A],ax
jmp BlackShot.exe+14AF84

Change cmp edx,-01 to 00
jne BlackShot.exe+?????? to JE

===MIM Bypass===
393529733 - OFF
401328517 - ON

4 Byte Scan OFF thn search for OP Code
test ecx,ecx
je BlackShot.exe+XXXXX
mov edx,[ebp+0C]
mov edi,[ebp+08]
sub edi,edx
mov eax,[edi+edx]
cmp eax,[edx]
jne BlackShot.exe+xxxxx
inc esi
add edx,04
Quote Originally Posted by astron51 View Post
Quite useless for me.... not sure if any of these still work... try it out Yourself

Code:
                           "BS Method"
collector : astron51 , VioletCoder , Zenith97
-------------------------------------------------------------------------------------------

Auto fire method (Automatic Spam)
--------------------------------------
start - HK416
Stop -D.Eagle

4 byte
Untick fast scan
scan 2
get 2 address
chg value as 4 byte 2
Value -  2=auto  1=manual
use to - HK address


Fire Rate
----------------------------
start - HK416
Stop -D.Eagle

4byte 
scan 1038576779
get address
chg value as float 0.0001
test 1 by 1
after found
use it to - HK416 address


SpeedHack Method
--------------------------------------------------------------------------
1.
Start - HK416
End - D.Eagle
untick fast scan
scan 4 Byte 17375
chg to 17700 test it
get it and - HK416 address
done

Recoil Method
--------------------------------------
1.start - HK416
2.end - D.Eagle
3.untick fast scan
4.4 byte
5.scan 15887
6.get address
7.use it - HK416 address

Althenative
Use Speed + A5

Damage hacking method
-------------------------------------
1.start - HK416
2.end - D.Eagle
3.untick fast scan
4.4 byte
5.scan 21004288 or 82048
6.get address
7.use it to - HK416 Address
8.82048 + 65536 = damage hack x2

All 2 Melee method
------------------------------------------
1.start - HK416
2.end - D.Eagle
3.untick fast scan
4.4 byte
5.scan 131073
6.use it to - HK416 Address
7.add to VB 
8.value 0 then chged to melee


Scope and Silencer
---------------------------------
1.start - HK416
2.end - D.Eagle
3.4 byte
4.scan 16777216
5.On 17235968 / oNLY sILENT 17006592
6.done get scope and silencer


Shoot Through Wall
--------------------------------------
1.start - HK416
2.end - D.Eagle
3.4 byte
4.untick fast scan
scan 704643139   Off - 704643139 ON - 0
get address and  - HK address
done

Spread
----------------------------------------
1.Cheyac - Start
2.next address - end
3.float
4.scan 1500
5.use it  - Cheytac address
6.that is stay spread
7.if wanna find out another
8.use the offset - 4
9.4 times,get it
10.done

PBase
_________________________________________
Value 93073408
Or string scan username 
-18

TeamESP
_________________________________________
Byte

Blue 0 Red 1 

In Room (Ready) change Team use CE scan.



|| TeamESP ||==========================================================================================================================

AOBadd
2F 2E 2E 2F 42 6C 61 63 6B 53 68 6F 74 2F 44 61 74 61 2F 00

AOBadd - 6a = TeamIDCheck [Static address]

Pbase -> BlackShot Logger v1.dll


Unlimited Buy Time
5F 53 45 41 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 5F 53 47 - 20

Offset 124 Value 1


Coordinate Base

00 00 00 00 4E 69 41 56 4F 62 6A 65 63 74 00 - 8380
Offset 0 8 10 18 20 28

=======================================================================================================================================



|| GameGuard Bypass [Beta] ||==========================================================================================================

3773316468 | 3773316587
21464079 | 21464335		GGBYPASS BETA DEF VAL + ON VAL
1583286900 | 1583286901

=======================================================================================================================================


|| EASY BP + EXP [BD] ||===============================================================================================================


00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 A0 04 1D 05 00 00 00 00 B0 39 E1 00 F0 39 E1 00 F0 39 E1 00 07 00 00 00 08 00 00 00 00 00 80 3F
AOBadd

01 00 00 00 00 00 00 00 58 02 00 00 00 00 00 00 00 00 00 00 00 00 16 44 00 00 00 00 00 00 00 00 14 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 98 3F E1 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 20 41 00 00 00 00 00 00 00 00 00 00 F0 41
AOBadd2

HeadShot [AOBadd] 600 ON
???? [AOBadd + 4] 18000 ON
???? [AOBadd + 10] 1476395008 ON
???? [AOBadd + 14] 2 ON
???? [AOBadd2] 1 ON

========================================================================================================================================


Gravity ~~

[1/9/2016 3:08:32 PM] : if you use this offsets
[1/9/2016 3:08:36 PM] : it wthis address
[1/9/2016 3:08:52 PM] : 3B8
8
24
[1/9/2016 3:08:56 PM] : in float
[1/9/2016 3:08:59 PM] : you can edit the gravity
[1/9/2016 3:09:12 PM] : nop this
[1/9/2016 3:09:18 PM] : add more offsets

Bux Data

#define WeaponTypeSave 0x048
#define WeaponID 0x008
#define WeaponName 0x00C
#define FlashType 0x044
#define MaxBullets 0x054
#define MaxAmmo 0x058
#define WeaponType 0x169
#define FireType 0x16B
#define Attachments 0x16C
#define Speed 0x178
#define VectorsPerRound 0x188
#define SpreadStop 0x01B4
#define ShootThrough 0x1BB
#define SpreadJump 0x01C4
#define SpreadWalk 0x01D8
#define IncreasePitch 0x0218
#define DecreaseSpeed 0x021C
#define AimSize 0x0294
#define AimUnt 0x0298
#define AimWalk 0x029C
#define AimUnt1 0x02A0
#define AimUnt2 0x02A4
#define AimUnt3 0x02A8
#define AimFall 0x02AC
#define FireDelay 0x2D4

#define TeamID		0x61
#define TeamIDCheck 0x63


*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + DecreaseSpeed) = 1.0f; // DecreaseSpeed to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + IncreasePitch) = 0.0f; // IncreasePitch to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + SpreadStop) = 1.0f; // SpreadStop to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + SpreadJump) = 1.0f; // SpreadJump to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + SpreadWalk) = 1.0f; // SpreadWalk to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimSize) = 10.0f; // AimSize to 10
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimUnt) = 0.0f; // AimUnt to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimWalk) = 0.0f; // AimWalk to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimUnt1) = 0.0f; // AimUnt1 to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimUnt2) = 0.0f; // AimUnt2 to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimUnt3) u = 0.0f; // AimUnt3 to 1
*(float*)(*(DWORD*)(*(DWORD*)(WeapAddress)+(i * 4)) + AimFall) = 0.0f; // AimFall to 1



Sig Scan Source Code C++======

#include <Windows.h>
 
bool PatternCompare(const BYTE* pData, const BYTE* bMask, const char* szMask)
{
    for (; *szMask; ++szMask, ++pData, ++bMask)
        if (*szMask == 'x' && *pData != *bMask)
            return 0;
 
    return (*szMask) == NULL;
}
 
DWORD FindPattern(DWORD dwAddress, DWORD dwLen, BYTE *bMask, char * szMask)
{
    DWORD i;
 
    for (i = 0; i<dwLen; i++)
        if (PatternCompare((BYTE*)(dwAddress + i), bMask, szMask))
            return (DWORD)(dwAddress + i);
 
    return 0;
}

===WIE Bypass===

References String 
-Weapon Index Error 

Browse Memory Scroll Up until 


cmp edx,-01
jne BlackShot.exe+??????
xor eax,eax
mov [ebp+edi*2-2A],ax
jmp BlackShot.exe+14AF84

Change cmp edx,-01 to 00
jne BlackShot.exe+?????? to JE

===MIM Bypass===
393529733 - OFF
401328517 - ON

4 Byte Scan OFF thn search for OP Code
test ecx,ecx
je BlackShot.exe+XXXXX
mov edx,[ebp+0C]
mov edi,[ebp+08]
sub edi,edx
mov eax,[edi+edx]
cmp eax,[edx]
jne BlackShot.exe+xxxxx
inc esi
add edx,04
Most likely patched, cause bs updated a lot
Well, firsts scan methods I never see before and I dont know if still working, maybe will be blocked due new MIM protection.
Features like, teamesp, teleport, ubt still working fine(No need MIM).
All others mentoned is just outdated, for example, WeapomMGR Base:
Quote Originally Posted by astron51 View Post
Code:
#define Attachments 0x16C
Now is:
Code:
__int8 Attachment; //0x0043 aka Scope+Silencer
Btw, good job and nice see you again.
Quote Originally Posted by Minerva View Post
Well, firsts scan methods I never see before and I dont know if still working, maybe will be blocked due new MIM protection.
Features like, teamesp, teleport, ubt still working fine(No need MIM).
All others mentoned is just outdated, for example, WeapomMGR Base:

Now is:
Code:
__int8 Attachment; //0x0043 aka Scope+Silencer
Btw, good job and nice see you again.
Now I am a free man... I am looking for some group or squad to share some Blackshit hacking info that's why I am back

Quote Originally Posted by ClashiBotV1 View Post
Most likely patched, cause bs updated a lot
Those scanning method still work. All You have to do is just waste some of Your time to increase those offset by 4 time and it might just work out.
em... not all will work like dmg hack etc but others may still work
Posts 1–5 of 5 · Page 1 of 1

Post a Reply

Similar Threads

Tags for this Thread

None

Need help?