SoaR Router

2.3K posts

SoaR Router banner
SoaR Router

SoaR Router

@_routers

shooter @soargaming | @KurosunCo @GLSSWRKSGG | @jor4c @badisafk @rrewnd

@99r34 ^~^ ❤︎ neens Katılım Temmuz 2021
1.1K Takip Edilen11.4K Takipçiler
King Sea
King Sea@seafish·
vx-underground@vxunderground

I had some people DM me and tag me on this post to determine if it's malware or "slop". Using the software requires providing billing information prior to downloading the trial. I got mildly annoyed by this and contacted support. I requested access to the binary without needing to provide billing information. Their support team was ... actually very, very, very polite and nice. I was kind of taken back by how polite they were. They provided me the software with a 60 day trial. I can't tell if they know I do malware development and reverse engineering because (usually) places are hesitant to just give me the stuff like this on a platter. I would feel bad if I was hyper-critical of this product because of how polite the person running this profile is, they're just a chill dude. To be direct: - Is this malware? No. - Is this slop? Probably not, no. - Does this actually improve FPS? Yes, unironically. However, it is very important you realize this software is changing the voltage and clock speed on your machine (among other things). They're achieving this in a legitimate way by working with AMD and Intel with actual SDK (Software Development Kit) documentation. This product went to great lengths to secure its source code. It has junk code insertion, in-memory patching (stubs), junk variables, control flow obfuscation, and it also does device finger-printing to ensure you don't steal their product. All of this was performed using professional anti-reverse engineering products. It was a real pain in my balls to deal with. I got mildly irritated at several points. Some strings are AES256 encrypted and decrypted when needed (run-time lazy loading) making static-analysis even more difficult. Despite all of this, none of it is malicious. They just don't want nerds stealing their stuff. At first glance however it does use methods similar to malware to avoid reverse engineering. The application UI is also incredibly heavy. It is using the latest and great .NET UI stuff to make it look super cool and gamer-like. It launches from HyperTune.exe which then loads the actual (super obfuscated) HyperTune.dll using HOSTFXR (Google it). The obfuscation tools they used disassembled and fractionated the application entry point (and subsequent functionality) down into 1,618 other functions (see attached image) The only saving grace was the visibility into it's dependencies and other 3rd party libraries it uses (Realm for local settings savings, Sentry for logging errors, SimpleInjector for handling classes they use, etc). I won't go into full details on how their product actually works, I would feel bad because of support dude being a chill dude, but here is my main criticism: - Loading of kernel-mode drivers from vendors for overclocking. They load AMD and Intel drivers based on your hardware profile on your machine. However, the driver configuration settings are set to AUTOSTART. Hence, once you use this software these kernel-mode components will auto-start even if HyperTune is not running. Additionally, uninstalling HyperTune will not uninstall these kernel-mode components. These kernel-mode components come by default with the installer in a directory called /3p/ but move to SYSTEM32 after installation (as they should be). - For reasons I do not understand, HyperTune modifies HKLM\Software\Policies\Microsoft\Windows\WindowsUpdate\AU ... it disables automatic updates from Windows. I don't know why. My presumption is this could prevent potential driver conflicts, but if not managed correctly this exposes users to security vulnerabilities. Did they actually spend $1,000,000 developing this? With a full development team, infrastructure they're using (Sentry, VERCEL, enterprise and professional anti-reverse engineering tools, etc) ...maybe...?

English
1
0
2
359
SoaR Router retweetledi
vx-underground
vx-underground@vxunderground·
I had some people DM me and tag me on this post to determine if it's malware or "slop". Using the software requires providing billing information prior to downloading the trial. I got mildly annoyed by this and contacted support. I requested access to the binary without needing to provide billing information. Their support team was ... actually very, very, very polite and nice. I was kind of taken back by how polite they were. They provided me the software with a 60 day trial. I can't tell if they know I do malware development and reverse engineering because (usually) places are hesitant to just give me the stuff like this on a platter. I would feel bad if I was hyper-critical of this product because of how polite the person running this profile is, they're just a chill dude. To be direct: - Is this malware? No. - Is this slop? Probably not, no. - Does this actually improve FPS? Yes, unironically. However, it is very important you realize this software is changing the voltage and clock speed on your machine (among other things). They're achieving this in a legitimate way by working with AMD and Intel with actual SDK (Software Development Kit) documentation. This product went to great lengths to secure its source code. It has junk code insertion, in-memory patching (stubs), junk variables, control flow obfuscation, and it also does device finger-printing to ensure you don't steal their product. All of this was performed using professional anti-reverse engineering products. It was a real pain in my balls to deal with. I got mildly irritated at several points. Some strings are AES256 encrypted and decrypted when needed (run-time lazy loading) making static-analysis even more difficult. Despite all of this, none of it is malicious. They just don't want nerds stealing their stuff. At first glance however it does use methods similar to malware to avoid reverse engineering. The application UI is also incredibly heavy. It is using the latest and great .NET UI stuff to make it look super cool and gamer-like. It launches from HyperTune.exe which then loads the actual (super obfuscated) HyperTune.dll using HOSTFXR (Google it). The obfuscation tools they used disassembled and fractionated the application entry point (and subsequent functionality) down into 1,618 other functions (see attached image) The only saving grace was the visibility into it's dependencies and other 3rd party libraries it uses (Realm for local settings savings, Sentry for logging errors, SimpleInjector for handling classes they use, etc). I won't go into full details on how their product actually works, I would feel bad because of support dude being a chill dude, but here is my main criticism: - Loading of kernel-mode drivers from vendors for overclocking. They load AMD and Intel drivers based on your hardware profile on your machine. However, the driver configuration settings are set to AUTOSTART. Hence, once you use this software these kernel-mode components will auto-start even if HyperTune is not running. Additionally, uninstalling HyperTune will not uninstall these kernel-mode components. These kernel-mode components come by default with the installer in a directory called /3p/ but move to SYSTEM32 after installation (as they should be). - For reasons I do not understand, HyperTune modifies HKLM\Software\Policies\Microsoft\Windows\WindowsUpdate\AU ... it disables automatic updates from Windows. I don't know why. My presumption is this could prevent potential driver conflicts, but if not managed correctly this exposes users to security vulnerabilities. Did they actually spend $1,000,000 developing this? With a full development team, infrastructure they're using (Sentry, VERCEL, enterprise and professional anti-reverse engineering tools, etc) ...maybe...?
vx-underground tweet media
HYPERTUNE@hypertune_

75% of gamers are limited by their FPS. We spent $1,000,000 to even those odds.

English
37
73
1.7K
141.9K
SoaR Router retweetledi
HYPERTUNE
HYPERTUNE@hypertune_·
75% of gamers are limited by their FPS. We spent $1,000,000 to even those odds.
English
86
105
711
671.1K
rewind
rewind@rrewnd·
the latest blender lighting is actually insane cause wtf
rewind tweet media
English
62
93
4.5K
108.4K
L21saac
L21saac@L21saac·
If you seen my shit on soft, imma need u to sign an NDA
English
10
1
66
9.6K
SoaR Router retweetledi
iiTzTimmy
iiTzTimmy@iiTzTimmy·
Lowest to Highest Rank. 7 FPS Games. Gaming Marathon.
English
214
535
17.3K
1.8M
SoaR Router
SoaR Router@_routers·
@L21saac i don't vouch people often but a brain like yours not being put to use is ridiculous. you will find work don't even think about going back to maple syrup land
English
0
0
0
87
L21saac
L21saac@L21saac·
@_routers thats such a sweet sentiment man I rlly appreciate you in my life <3
English
1
0
2
162
SoaR Router
SoaR Router@_routers·
please help my brother out if anyone has work available inside the US. he's a very hard working disciplined individual that isn't afraid to take on tasks no matter how difficult. dedication like his does not come by often so do not miss out giving this guy an opportunity.
L21saac@L21saac

I really wanna stay in the US but my Visa expires soon :/ Anyone know of any jobs in the Dallas/LA areas (Construction/Project Management, Civil Engineer, E-Sports, Media + Marketting, Editting, PA, anything) It’s impossible to get hired over US citizens without a connect :/

English
1
0
7
2.8K
SoaR Router retweetledi
L21saac
L21saac@L21saac·
I really wanna stay in the US but my Visa expires soon :/ Anyone know of any jobs in the Dallas/LA areas (Construction/Project Management, Civil Engineer, E-Sports, Media + Marketting, Editting, PA, anything) It’s impossible to get hired over US citizens without a connect :/
English
26
24
754
105.9K
qvs
qvs@Quevrys·
don't forget about me #valtwt
English
25
11
194
12.6K
soulcas 𓆩♡𓆪
soulcas 𓆩♡𓆪@soulcas_·
this is movie level choreography im seeing on my fyp
English
45
893
19.4K
983.1K
soulcas 𓆩♡𓆪
soulcas 𓆩♡𓆪@soulcas_·
OPENED THE PIKACHU FROM ASCENDED HEROS AAAAAA + 3 MEGA DRAGONITE MARs !!!
soulcas 𓆩♡𓆪 tweet media
English
3
1
37
2.7K
tekkusai
tekkusai@tekkusai·
Guys I have to admit something. I fucked up the Ninja 2.0, and that's the main reason it hasn't been released yet. I decided to experiment with special coatings. I was confident after some testing, but then unforeseen things happened during production - it was causing the ink to fade. I'd start to see marks of ink on my skin. I tried everything. Tried to get the coating out, tried different parameters, tried layering different coatings on top to counteract it. Nothing worked. I was left with $22,000 worth of fabric inventory that I refused to use or sell. It was in a great state before the coating, and instead of leaving it at that, I just had to try "one more thing" and it failed spectacularly. It took until now to realize there is no salvaging it. So.. I'll be remaking the fabric without the coating, as initially planned. The final version will be the same as the one people like @bardozVAL and @minigodcs and a few others have tested, with just slight tweaks.
English
53
21
431
40.8K
L21saac
L21saac@L21saac·
Im over this TFT set and im bowing out of the bootcamp. I want to enjoy my life this weekend and this B patch has genuinely destroyed my mental health playing hours of this highroll/lowroll + full open board anima garbage. Maybe im shit, but the outcome of the game feels entirely dependant on your augments/if u get a premium opener and everyone is just contesting eachother. Gg’s and goodluck to everyone else :) Ill tap back in after a few patches and try again w a fresh mental
English
30
18
444
73K
NAVI chloric
NAVI chloric@chloricc·
🎂 24 on the 24th 🎂
English
54
4
479
10.7K