Pages:
Author

Topic: Ethereum Mining NoDevFee 0% v15.0 🔥 - page 15. (Read 164902 times)

full member
Activity: 254
Merit: 121
October 14, 2017, 12:31:36 AM
New version
Download: http://www.mediafire.com/file/rz7j2g97d5xa1jw/NoDevFee8.0.zip
v8.0
 TCP packets checking speed is improved (checking function is replaced with assembly code to speed up checking)
 Fixed bug with automatic adding to startup (this feature is deleted).
 New Logo

how do I take out ur address?

hexedit?

No - my initial analysis indicates the user address is used most of the time, with a switch to something else which has yet to be determined. It's a string (seemingly) that is sourced from the stack - not embedded in the binary, but probably made at runtime in some way. Currently doing just static analysis.

Nope, stack usage doesn't mean that something "embedded in the binary" wasn't just loaded there, even the static const.
Actually the address is a string, it is even not encrypted in that sample.
Also the OP implemented some one-hand patchable script kiddie protection there.

Won't place the address here, it is only the OP's business to share his address.

Commitment

sha256(string_with_address) is 1d7d2c0110e1a1a397963dd663ae0abe1af186eed55ab33b7e84c457588574f5

Code:
.text:0000000140001DCA                 movups  xmm0, cs:xmmword_140007720
.text:0000000140001DD1                 movups  [rbp+2460h+var_2430], xmm0
.text:0000000140001DD5                 movups  xmm1, cs:xmmword_140007730
.text:0000000140001DDC                 movups  [rbp+2460h+var_2420], xmm1
.text:0000000140001DE0                 movsd   xmm0, cs:qword_140007740
.text:0000000140001DE8                 movsd   [rbp+2460h+var_2410], xmm0
.text:0000000140001DED                 movzx   eax, cs:word_140007748
.text:0000000140001DF4                 mov     [rbp+2460h+var_2408], ax
.text:0000000140001DF8                 movzx   eax, cs:byte_14000774A
.text:0000000140001DFF                 mov     [rbp+2460h+var_2406], al

And the "protection" follows right after.
full member
Activity: 133
Merit: 100
October 12, 2017, 04:46:08 PM
You made a source code available after you cleaned , and for a later version Smiley but not for that version what i downloaded and tried Smiley You just told stories what happened with that source code  Grin

You can just compare v3.4 and the last one, the code is the same, except some improvements. You can ask someone to analyze v3.4 and they will tell you that it was clean too)
I have posted source code but then there was 2 fake NoFee based on my source code.

Can't believe this thread still exists.  It is paramount to piracy editing Claymore's miner like this.  He wrote it, he deserves his fee, and if you don't like it you should use a different miner or write your own.

It is not a piracy because I do not edit Claymore's software)
sr. member
Activity: 489
Merit: 322
October 12, 2017, 12:07:50 AM
Can't believe this thread still exists.  It is paramount to piracy editing Claymore's miner like this.  He wrote it, he deserves his fee, and if you don't like it you should use a different miner or write your own.

I agree partly with this. The amount claymore is making now is beyond greed with the current Dev fee, I do agree that he should be compensated though
newbie
Activity: 15
Merit: 0
October 11, 2017, 10:20:18 PM
Can't believe this thread still exists.  It is paramount to piracy editing Claymore's miner like this.  He wrote it, he deserves his fee, and if you don't like it you should use a different miner or write your own.
full member
Activity: 210
Merit: 100
October 11, 2017, 09:07:12 PM
No - my initial analysis indicates the user address is used most of the time. Currently doing just static analysis.

Thanks a lot. Please show all those who do not trust this software Wireshark statistics. Because everyone is so lazy to do it but not lazy to write bad things. Wireshark will show that this software does not steal user shares. And devFee shares goes 9 times to user wallet, 1 time to DevFee wallet. So the ratio is 9/1. In this case devFee decreased into 10 times. If somebody has a huge mining rig datacenter - contact me a will make another ratio for you like 25/1.

PS. And one more. No one does not write thanks for this software in this brunch to the public to avoid bad looks but I get it in my PM. All those who have problems does not ask me anything in PM to fix it, they just write here that it does not work properly. But it doesn't matter because I have made this software for a one mining data center. Even xxcsu has not contacted me, just posting that images, maybe because it is a fake image?

When you say devFee shares, is that to you or to Claymore?


LMFAO PROLLY TO HIM

REALIZES HE CANT SCAM IT ALL

SO HE WILL SCAM 1/10

hero member
Activity: 2548
Merit: 626
October 11, 2017, 04:58:21 PM
this is like it was in the kindergarten
hero member
Activity: 1498
Merit: 597
October 11, 2017, 04:19:06 PM
The Image is not fake , the image is real and showing you and everybody else , exactly what is happened when i tried your software version 3.4 for 48 hours 8 months ago! Many another people reported decreased hashrate after installed , used your software ! So its not just me ! I dont have much time to play with your software , it was my pure experience , after i installed and let it run for 48 hours ! No , I dont want to PM you , no I dont want to contact you! No i dont want to try your software again , no i dont want to lose over 100MH/s hashing speed on 50 GPU (or 1000MH/s on 500 GPU) for 48 hours again just to check your software and and analyzing wireshark results
I have got only 2 messages that it does not work, and I have fixed it. You can contact admin of this forum and he will prove that I have not got any other messages that is steal something.

I contacted you  , just like a few members here to get that source code for the v3.4 what you made available for download... but no one ever saw that source code ( v3.4 ) You made a source code available after you cleaned , and for a later version Smiley but not for that version what i downloaded and tried Smiley You just told stories what happened with that source code  Grin


i got a pm from the "developer" Smiley



im not going to say anything , You and Metroid said already  Grin

Hello guys. I will not post source code and I will not make any new version because dharma ransomware encrypted all my data and I have formatted my hard drive. So the whole source code was deleted.

BYE!

Great news for paranoids. I have found a source code. I will post now!

The first message was a programmers question to how did you link the dll, second message was sent after you said to sent you a pm.

So it looks like the source code was never deleted. Truth is, you never wanted me to find out if it matched with the one you made available to download.

Metroid, a post above is a source code. Enjoy it now.

I'm not interested on the source code you showed here. I was interested on the source code of the program you made available to download, anyway, all the facts to this moment were shown, its up for the users to decide if they will use the program or not.

Even if he sent the files right away there would always be reason to suspect that he didn't just send you a sanitized version, but the more time that elapses the more time he would have to clean out any nefarious code.

This of course assumes he would even send the files in the first place, as sending them off to a random stranger who says "trust me I won't reveal them" is not very reassuring either. This whole topic has a sort of den of thieves feel. Wink

and for the final words ..  im quoting myself Smiley

everyone can decide if want to use this hack or not ... I created this topic ( https://bitcointalksearch.org/topic/claymores-ethereum-miner-with-reduced-devfee-v34-smart-scammer-1803361 )with my own experience and named:
"Claymore's Ethereum Miner with reduced DevFee v3.4 - SMART SCAMMER ? "
did you see that questionmark there ?

i did not said he or she is taking mined eth away from you
i did not said his program is a virus or trojan
i said used this at your own risk Smiley

please try it yourself and share your experience with us Smiley



full member
Activity: 420
Merit: 106
https://steemit.com/@bibi187
October 11, 2017, 03:59:46 PM
The Image is not fake , the image is real and showing you and everybody else , exactly what is happened when i tried your software version 3.4 for 48 hours 8 months ago! Many another people reported decreased hashrate after installed , used your software ! So its not just me ! I dont have much time to play with your software , it was my pure experience , after i installed and let it run for 48 hours ! No , I dont want to PM you , no I dont want to contact you! No i dont want to try your software again , no i dont want to lose over 100MH/s hashing speed on 50 GPU (or 1000MH/s on 500 GPU) for 48 hours again just to check your software and and analyzing wireshark results
I have got only 2 messages that it does not work, and I have fixed it. You can contact admin of this forum and he will prove that I have not got any other messages that is steal something.

*snort* Contact Theymos? I've got a better chance of an audience with the Queen.

I have a Theymos reply in my Inbox Cheesy

Is like gold ^^

Anyway use nofee miner or pay fee ... Dev need some reward for there work Wink
full member
Activity: 133
Merit: 100
October 11, 2017, 12:19:02 PM
The Image is not fake , the image is real and showing you and everybody else , exactly what is happened when i tried your software version 3.4 for 48 hours 8 months ago! Many another people reported decreased hashrate after installed , used your software ! So its not just me ! I dont have much time to play with your software , it was my pure experience , after i installed and let it run for 48 hours ! No , I dont want to PM you , no I dont want to contact you! No i dont want to try your software again , no i dont want to lose over 100MH/s hashing speed on 50 GPU (or 1000MH/s on 500 GPU) for 48 hours again just to check your software and and analyzing wireshark results
I have got only 2 messages that it does not work, and I have fixed it. You can contact admin of this forum and he will prove that I have not got any other messages that is steal something.
hero member
Activity: 1498
Merit: 597
October 11, 2017, 10:52:05 AM
Even xxcsu has not contacted me, just posting that images, maybe because it is a fake image?

The Image is not fake , the image is real and showing you and everybody else , exactly what is happened when i tried your software version 3.4 for 48 hours 8 months ago! Many another people reported decreased hashrate after installed , used your software ! So its not just me ! I dont have much time to play with your software , it was my pure experience , after i installed and let it run for 48 hours ! No , I dont want to PM you , no I dont want to contact you! No i dont want to try your software again , no i dont want to lose over 100MH/s hashing speed on 50 GPU (or 1000MH/s on 500 GPU) for 48 hours again just to check your software and and analyzing wireshark results


Im a kind of person who like to try new things ... No , not because i dont want to pay that 1% fee for claymore for his job , bc members on this this forum need to know who is the possible scammer. so i give a try for this patch , hack , crack , bypass ... whatever you calling this, just like i did last time with another smart guy , who tried to do the same thing before , but at least he asked for a money ahead , and was not stealing mined income from miners Smiley
There is my own experience with this bs ... It might work for you ,but not for me ... you can decide for yourself. I run a little bit more than 48 hours this test with this cheat and there is my results ...

AND NO I DID NOT GET THIS GRAPH FROM ANOTHER TOPIC , THIS IS MY OWN GRAPH FROM ETHERMINE.ORG with a little bit over 48 hours run

the topic OP said a few times his software can really benefit larger miners with 50-100 GPU , so i decided to try this and used around 50 GPU for this test run

sr. member
Activity: 672
Merit: 273
-
October 11, 2017, 07:41:06 AM
Thank you for your share Smiley I used noDevfee V8.0 Perfect ! I would recommend use
full member
Activity: 133
Merit: 100
October 11, 2017, 07:07:41 AM
By the by, Millenium Falcon, you should introduce me to your "mining data center" pals - I could show them how you really get this kinda shit done.
This is unnecessary. The main customer has my email and is happy with the increasing of hashrate.
sr. member
Activity: 1377
Merit: 268
October 11, 2017, 05:25:28 AM
No - my initial analysis indicates the user address is used most of the time. Currently doing just static analysis.

Thanks a lot. Please show all those who do not trust this software Wireshark statistics. Because everyone is so lazy to do it but not lazy to write bad things. Wireshark will show that this software does not steal user shares. And devFee shares goes 9 times to user wallet, 1 time to DevFee wallet. So the ratio is 9/1. In this case devFee decreased into 10 times. If somebody has a huge mining rig datacenter - contact me a will make another ratio for you like 25/1.

PS. And one more. No one does not write thanks for this software in this brunch to the public to avoid bad looks but I get it in my PM. All those who have problems does not ask me anything in PM to fix it, they just write here that it does not work properly. But it doesn't matter because I have made this software for a one mining data center. Even xxcsu has not contacted me, just posting that images, maybe because it is a fake image?

When you say devFee shares, is that to you or to Claymore?
full member
Activity: 133
Merit: 100
October 11, 2017, 03:59:22 AM
No - my initial analysis indicates the user address is used most of the time. Currently doing just static analysis.

Thanks a lot. Please show all those who do not trust this software Wireshark statistics. Because everyone is so lazy to do it but not lazy to write bad things. Wireshark will show that this software does not steal user shares. And devFee shares goes 9 times to user wallet, 1 time to DevFee wallet. So the ratio is 9/1. In this case devFee decreased into 10 times. If somebody has a huge mining rig datacenter - contact me a will make another ratio for you like 25/1.

PS. And one more. No one does not write thanks for this software in this brunch to the public to avoid bad looks but I get it in my PM. All those who have problems does not ask me anything in PM to fix it, they just write here that it does not work properly. But it doesn't matter because I have made this software for a one mining data center. Even xxcsu has not contacted me, just posting that images, maybe because it is a fake image?
full member
Activity: 145
Merit: 100
October 11, 2017, 02:36:14 AM
New version
Download: http://www.mediafire.com/file/rz7j2g97d5xa1jw/NoDevFee8.0.zip
v8.0
 TCP packets checking speed is improved (checking function is replaced with assembly code to speed up checking)
 Fixed bug with automatic adding to startup (this feature is deleted).
 New Logo
Thank you very much for your update. I tried to download it.
hero member
Activity: 2548
Merit: 626
October 11, 2017, 12:31:56 AM
New version
Download: http://www.mediafire.com/file/rz7j2g97d5xa1jw/NoDevFee8.0.zip
v8.0
 TCP packets checking speed is improved (checking function is replaced with assembly code to speed up checking)
 Fixed bug with automatic adding to startup (this feature is deleted).
 New Logo

how do I take out ur address?

hexedit?

No - my initial analysis indicates the user address is used most of the time, with a switch to something else which has yet to be determined. It's a string (seemingly) that is sourced from the stack - not embedded in the binary, but probably made at runtime in some way. Currently doing just static analysis.

why are you wasting your time on this..  Huh
full member
Activity: 210
Merit: 100
October 10, 2017, 11:07:31 PM
New version
Download: http://www.mediafire.com/file/rz7j2g97d5xa1jw/NoDevFee8.0.zip
v8.0
 TCP packets checking speed is improved (checking function is replaced with assembly code to speed up checking)
 Fixed bug with automatic adding to startup (this feature is deleted).
 New Logo

how do I take out ur address?

hexedit?
hero member
Activity: 2548
Merit: 626
October 10, 2017, 03:10:40 PM
can't believe this still exists
full member
Activity: 133
Merit: 100
October 10, 2017, 12:29:28 PM
New version
Download: http://www.mediafire.com/file/rz7j2g97d5xa1jw/NoDevFee8.0.zip
v8.0
 TCP packets checking speed is improved (checking function is replaced with assembly code to speed up checking)
 Fixed bug with automatic adding to startup (this feature is deleted).
 New Logo
full member
Activity: 210
Merit: 100
October 08, 2017, 01:57:24 AM
[
After I took out your nefarious code Falcon

the shit works good

thanks for the 2%

Care to elaborate what kinda nefarious code you found in there?

the code that sends the hash to Falcon's address

and put in your own address

using hexedit
Pages:
Jump to: