Jump to content

⤴️-Paid Ad- Check advertising disclaimer here. Add your banner here.🔥

Recommended Posts

Posted

Hi, does anyone have MZPack 3.18.28 or above? (Not 3.18.8 as this is a much older version)

It includes individual profile splitting, and so much more orderflow additions etc. Super super good TPO so is much superior to others shared here.

 

If anyone could Edu or share it would be extremely appreciated!

Thanks for all the help.

 

@apmoo @kimsam

Screenshot_20260131-230553.png

Posted

Attention, everyone! Virus Total recognizes it as a Trojan, but the situation is much more complicated than that: 

 this file is a virus, I performed an analysis using a memory dump and by analyzing netstat.

Type: RAT, VMProtect 3.x packer.
Injected shellcode, in‑process execution.
SetWindowsHookEx → keylogger.

There are 4 ESTABLISHED connections active from the malware process.
It uses ANTI evasion techniques.

VMProtect 3.x packing → code obfuscation
Process injection → runs inside a legitimate process
WebSocket encryption → TLS 1.3 to hide traffic
Cloud infrastructure → appears legitimate
Custom binary protocol → not recognized by IDS
Registry hooking → persistence after reboot

Posted
56 minutes ago, hakuthedog said:

Attention, everyone! Virus Total recognizes it as a Trojan, but the situation is much more complicated than that: 

 this file is a virus, I performed an analysis using a memory dump and by analyzing netstat.

Type: RAT, VMProtect 3.x packer.
Injected shellcode, in‑process execution.
SetWindowsHookEx → keylogger.

There are 4 ESTABLISHED connections active from the malware process.
It uses ANTI evasion techniques.

VMProtect 3.x packing → code obfuscation
Process injection → runs inside a legitimate process
WebSocket encryption → TLS 1.3 to hide traffic
Cloud infrastructure → appears legitimate
Custom binary protocol → not recognized by IDS
Registry hooking → persistence after reboot

bro chech this link this file is clean

Posted
6 hours ago, TRADER said:

bro chech this link this file is clean

So I've installed a virus lol 🤦🏼‍♂️

Is the one you sent clean and educated?

Posted
1 hour ago, Shadow said:

So I've installed a virus lol 🤦🏼‍♂️

Is the one you sent clean and educated?

What you installed is completely worthless, I mean MZ. If you’re worried about your PC, don’t be: it’s just a false positive.

Posted
3 hours ago, laser1000it said:

What you installed is completely worthless, I mean MZ. If you’re worried about your PC, don’t be: it’s just a false positive.

Ah so I've not got a virus then?

Also, in regards to MZ. It works perfectly fine. I just needed it's TPO and it does the job well

Posted

After installing on 2 PC's, I get strange behavior on sim data feed. It keeps connecting and disconnecting continuously, but on Live data feed it stays connected without issue. Both PC's are NT8 edu. Anybody seeing the same behavior ? Btw, at one point I got tag that showed it might be a Val1312q product.

Posted
On 2/2/2026 at 1:25 PM, rcarlos1947 said:

After installing on 2 PC's, I get strange behavior on sim data feed. It keeps connecting and disconnecting continuously, but on Live data feed it stays connected without issue. Both PC's are NT8 edu. Anybody seeing the same behavior ? Btw, at one point I got tag that showed it might be a Val1312q product.

Thanks for the feedback. Which version are you referring to? The posted by TRADER or hammyy2k?

  • 1 month later...
Posted
2 hours ago, pygmalion5000 said:

Thanks Ninja but this file immediately gets flagged by Microsoft Defender

Hello,

It is understandable.

Often than not, most "educated" stuff gets flagged by your anti virus system. 

In most cases, it is just a normal thing...

In the end though, however, it is a risk one must decide to take or not to when downloading "educated" stuff. Since you dont truly know where it comes from or whoever educated it. It is of course very easy to imbed something fishy in any indicator for that matter.

 

  • 2 weeks later...
  • 1 month later...
Posted
On 4/4/2026 at 10:41 AM, trader88 said:

which indicators and settings are most useful for NQ and ES? https://ibb.co/DDFsXRX7

This question goes a while back, but I see is unanswered. There really isn't one correct or "best" answer, that can work well for even one instrument, because it depends on how much volume is getting pushed through it, it depends if it's RTH or ETH session, and it depends on what price exploration algos are in play, ie, sometimes the goal is to trap sellers on a low bar, other times, it can be the start of more selling. The great thing about MZPack is that you can pop up the indicator settings from the top toolbar of your NT chart, and then as you make a change to the field you're changing, you move away from that field, and the change is immediately reflected on the chart - any other indicators on your chart do not need to be redrawn. So, if you are adjusting the "min volume" on the mzBigTrade indicator, you can immediately see which additional volume circles appear, and then see concentrated bid hitting or offer lifting, and if one side is trapped, based on crescendo volume - this means buyers trapped at a price high, or sellers trapped at a price low.

Since many trade the micro products, IMHO it's crucial to display the mzBigTrade on the parallel mini instrument too. This means having mzBigTrade on MGC and GC, on MNQ and NQ, MYM and YM, and so on. What you'll find is often the micros will extend farther in one direction, either trapping sellers or trapping buyers, while that may not be shown as clearly, or not shown at all on the mini instrument: this is often the case with MNQ and NQ during the RTH session. And, when MNQ shows trapped sellers on a price bar that probed down farther than NQ, that's a good sign longing can work.

The datafeed is pretty crucial too - level 2 should be mandatory to use with both mzFootprint, and mzBigTrade. Some default L1 datafeeds seem to do well enough - if you're into prop firms, the regular L1 issued by Tradovate based firms, works pretty decent. But I run both alongside each other, and you just can't beat the accuracy of a L2 feed. mzPack makes assumptions when consolidating tick transactions clumped within microseconds, and I've seen price lows on a quick probe down reflect both as a large buy and a large sell - both can be right, if you remember that for every seller there is a buyer, and vice versa. Also, I'm a huge fan of displaying cumulative delta, and you'll find different "helpfullness" between the mini and micro instruments. Also, there is an iceberg detector that is a part of mzBigTrades, which can display on the micro product, earlier, and better, than the mini.

I take a lot of screenshots that I find helpful as plays and events to remember, but I'm not exactly find ones that show mzBigTrades in the light of (for example) MNQ being a better tell than NQ. But I will include some shots of decent mzBigTrade displays of how tracking that volume can be quite helpful.

NQ excellent ~5x big buys in a row NQ buying and then just up.png

NQ overnight ~4am into below y-127pct then hold then massive print bids and up.png

NQ this morning scribed for Tom Robic.png

NQ after +400day on Powell declines ~23pct to y+161 dips below at start of 15m candle MAJOR ~5 buys to take it up.png

GC and MGC different reads at same price levels on mzBigTrades.png

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

⤴️-Paid Ad- Check advertising disclaimer here. Add your banner here.🔥

×
×
  • Create New...