3.55 and Holley - what i've found out

shorty606

Golden Oldie
Golden Oldie
Apr 10, 2005
867
0
122
Whilst unpacking holley and then using ollydbg, I have found out that Holley uses EDcode in his work. This means the loader program hooks the winsock of client and modifies outgoing packets, not incoming. Initially I thought he hooked the actual client and injected his own packets before they were encoded/decoded.
Copying his hooking method I have managed to log in to a 3.55 server using a normal client and my program (the Beta loader I released). Problem is you can't see levels or anything, I can only guess he injects new functions using some sort of remote thread creation in order to get glowing armours and things working.
It's very interesting looking back through his work. I'll keep you posted. thought some of you may find this interestnig.