What's new
  • Visit Rebornbuddy
  • Visit Panda Profiles
  • Visit LLamamMagic
  • Visit Resources
  • Visit Downloads
  • Visit Portal

Attempting to continue Boting again

BlizPunisher

New Member
Joined
May 15, 2015
Messages
1
Reaction score
0
After the lastest banwave I was doing some research in order to find out what blizz did to detect our 3d party programm. What I had in mind was finding the "spyware" that blizz used to detect us.

I realised that after opening WoW(via bnet or WoW.exe x64) and logging in-game with a character, a process comes up on task manager called WoWBrowserProxy.exe x32.
Let's say that such a process would be normal showing up if i was opening my WoW via the honorbuddy path because it runs x32.
What I dont understand is how such a process shows up (reminding u x32) when i am running the game on its 64 version.

In other words, what I am trying to say is that WoWBrowserProxy.exe x32 is the "trick" Blizz used in order to detect us.

As my investigation is currently ongoing any ideas on the case would be really nice. I am guessing for an IT expert the issue on x32, x64 i mentioned above is easy to answer.

Furthermore, you can end process on the WoWBrowserProxy.exe x32 and even if u logout from your character and logg an other one the process will NOT appear again on your task manager.

A question for the HB support, if I open the game through the HB path, logg a character, end the process on my task manager, login to HB, will i get the Tripwire warning again? Is it safe to try or will i be heading straight into a ban?

In case the tripwire does not show up, does this mean I found the sollution, or it may be completely irrelevant?

In case we/I find the "spyware" blizz used, is it possible to ban it on our anti-virus programms and never see it again?

Thanks a lot for your time, any feedback will be highly appreciated.
 
Interesting. I would also like to see a reply to this. I never got to use Honorbuddy sadly but I would like to in the future.
 
1) WoWBrowseProxy is there since Cata or MoP I don't remember, but it is here for long time
2) Tripwire is system, that has nothing to do with detection. Tripwire is way, how HB team can remotely disable all running HB. This system is now active and there is no way how to run HB.
 
Thanks for joining today!
 
Last edited:
1) WoWBrowseProxy is there since Cata or MoP I don't remember, but it is here for long time
2) Tripwire is system, that has nothing to do with detection. Tripwire is way, how HB team can remotely disable all running HB. This system is now active and there is no way how to run HB.

My understanding is that Tripwire can also be enabled if the program detects warden trying to scan offset used by HB or if warden receives new detection packets from blizz. You are indeed correct that HB can be tripwired remotely which is what happened in this banwave
 
WoWBrowserProxy.exe x32

kill the process and see if your ingame browser still works. but... im guessing you already knew that.

because we knew it about a week after blizzard introduced their ingame support browser.
 
Back
Top