Spoofer [ Xernel ] is an HWID spoofer run from the same Xernel launcher. It has no menu: it swaps your hardware IDs until the computer restarts.
Requirements
- Windows 10 or 11 (x64)
- Administrator rights on the computer
System requirements
Preparation
All of this is done once: turn off antivirus, run the driver command and restart.
Remove third-party antivirus and anti-cheats Kaspersky, Avast, ESET and the like, plus FaceIT and Riot Vanguard, conflict with the loader. They must be uninstalled, not just paused.
-
Open Settings → Apps → Installed apps (or Control Panel → Programs and Features).
-
Uninstall any third-party antivirus (Kaspersky, Avast, AVG, ESET, 360, Malwarebytes, etc.). Pausing or disabling is not enough — the antivirus driver stays resident.
-
Uninstall the FaceIT AC and Riot Vanguard anti-cheats if present — they block third-party software at the kernel level.
- FaceIT is the CS2 anti-cheat, Vanguard is the Valorant one. If you don't play those games, they are safe to remove.
After removing an antivirus, restart the PC — some of its services only unload after a reboot.
Fully disable Windows Defender The #1 cause of "it won't launch". Disable it for real: manually first, then remove it from startup, reboot, and finish it off with Defender Control.
-
Step 1. Turn protection off by hand. Open Windows Security → Virus & threat protection → Manage settings and switch every toggle off:
- Real-time protection — Off.
- Cloud-delivered protection — Off.
- Automatic sample submission — Off.
- Tamper Protection — Off. Turn this one off first, otherwise the others switch themselves back on.
-
Step 2. Disable reputation-based protection. In Windows Security → App & browser control → Reputation-based protection → Settings, turn everything off (SmartScreen, potentially-unwanted-app blocking).
-
Step 3. Remove Defender from startup. Open Task Manager (Ctrl+Shift+Esc) → Startup apps tab, find Windows Security notification icon and click Disable.
-
Step 4. Restart your computer. This is mandatory — some Defender services only unload after a reboot.
-
Step 5. Finish with Defender Control. Download Defender Control (archive password: r1xon), run it as administrator and click Disable Windows Defender — the tile turns red.
- If your antivirus deletes the utility itself, protection is still active — go back to step 1. The file ships zipped on purpose so Defender can't wipe it before it's disabled.
Don't skip steps 3–4. "I turned the toggles off but it didn't help" almost always means Defender came back after restart because it was left in startup.
Turn off core isolation, the driver blocklist and VBS Three Windows protections block the product's driver. They are switched off by pasting the commands into an administrator Command Prompt — once, followed by a restart.
-
Press Win, type cmd and choose Run as administrator.
-
Paste all three commands at once and press Enter. Each should answer "The operation completed successfully".
reg add "HKLM\SYSTEM\CurrentControlSet\Control\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity" /v Enabled /t REG_DWORD /d 0 /f
reg add "HKLM\SYSTEM\CurrentControlSet\Control\CI\Config" /v VulnerableDriverBlocklistEnable /t REG_DWORD /d 0 /f
reg add "HKLM\SYSTEM\CurrentControlSet\Control\DeviceGuard" /v EnableVirtualizationBasedSecurity /t REG_DWORD /d 0 /f -
Restart the computer — the changes don't apply until you do.
To turn the protections back on, run the same commands with /d 1 instead of /d 0.
-
Open the download page — download Xernel Launcher, enter your license key and wait for it to be processed. The download starts on its own within a few seconds; if not, click Manual download
-
Move the launcher from Downloads into its own folder, for example C:\XERNEL\. To leave no traces on the disk, you can keep it on a USB drive formatted as FAT32
-
Once the cards above are done, restart the computer: Win + R, type shutdown /r /t 0 and press Enter
Launch
-
Run the launcher as administrator
-
In the License activation window enter the key and click Activate — the launcher's main menu opens
-
Select Spoofer and click Launch. A window with launch logs opens — that's expected
-
Wait for authorisation. When asked "Load driver?", answer Yes on the first run after a restart and No on later runs until the next restart
- Pressing Yes every time breaks the product — then restart the computer and answer Yes once.
-
Use Spoof All — it swaps every identifier at once
-
When the log window closes, spoofing is done: the main window shows ticks next to the parameters
-
Start the game. The swap lasts until a restart — restarting brings back the real values
Problems & fixes
Rules after use
Before a Windows or BIOS update, turn the spoofer off first by restarting the computer. Don't change IDs too often — that alone can look suspicious. If anything behaves oddly, restart.
The spoofer won't start
Turn off all antivirus, run the launcher as administrator and make sure your account has administrator rights. Check the key is active, restart and try again.
The driver won't load or "Failed to load driver"
Run the preparation command again in an administrator Command Prompt — every system protection must be off. Run the launcher as administrator and answer Yes only to the first prompt after a restart. Finish off Defender with Defender Control (card in preparation), update the graphics driver and restart. If it still fails, reinstall the launcher.
Spoofed, but the game still recognises the system
Use Spoof All instead of individual parameters and try Randomize Values to generate new IDs. Restart and repeat. The developer suggests waiting a few days before using it again: some systems sync data over time.
The MAC address changed but didn't apply to the network
The MAC is changed at driver level but can be overridden by the registry. Use the Advanced tab, check in Device Manager that the network card works, restart and repeat.
The computer is unstable or slow after the spoofer
Most often the driver was loaded several times. Restart the computer and from then on answer Yes only once after a restart. Update graphics, network and chipset drivers; if it's still unstable, roll back with System Restore.
The spoofer window isn't responding
Wait a few seconds — processing takes time. If the window stays frozen, close it via Ctrl + Alt + Delete → Task Manager → End task, restart and run the launcher as administrator.
"Insufficient privileges" or "Access Denied"
Right-click the launcher → Run as administrator and make sure your account has administrator rights. You can temporarily turn off UAC. If that fails, reinstall the launcher.
Pressed "Yes" several times, now it doesn't work
The driver loads once per session, so this is expected. Restart the computer and answer Yes only once after the restart. If that doesn't help, boot into Safe Mode and roll back with System Restore to a point before the problem, or reinstall the launcher.
Advanced setup — only if it still won’t launch
Use a VPN for download and activation CIS ISPs often block the activation servers. A VPN is needed while downloading the loader, activating the key and injecting — you can turn it off before joining a match.
-
Use a full VPN (an app that routes all traffic), not a browser proxy, VLESS or extension — half the support tickets come from exactly this.
-
Turn the VPN on before downloading the loader and activating the key. If something won't load, switch country (Europe or the US usually work).
-
After a successful inject you can turn the VPN off before the match to avoid extra ping.
A VPN fixes most endless-loading and "key won't activate" problems.
Update Visual C++ and DirectX Up-to-date runtimes keep the loader and overlay from crashing at start.
-
Install Visual C++ Redistributable x64 and restart the PC.
-
Update DirectX if you haven't in a while.
FAQ
Where do I get the key after payment?
The key arrives instantly after payment — it appears on the order page and lands in your email, and if Telegram is linked to your account, our bot sends a copy too. This guide opens from there as well.
What is an HWID spoofer?
HWID is the set of unique hardware identifiers of your computer. The spoofer swaps them so detection systems stop recognising the machine.
Can the spoofer damage my computer?
No. It works at driver level and doesn't touch the hardware. After a restart everything is back as it was.
Do I need to load the driver every time?
Only once after every restart. Later runs in the same session use the driver already loaded — answer No.
Can I use the spoofer for several games?
Yes. Once the driver is loaded, the swap applies to every application until you restart.
Are the changes permanent?
No. The swap only lasts for the current session: after a restart the real values come back.
Do I need to turn off Defender if I have another antivirus?
Yes, turn off both: Defender and a third-party antivirus get in the product's way even together.
How do I turn the Windows protections back on?
Run the same commands with the value 1 in an administrator Command Prompt:
reg add "HKLM\SYSTEM\CurrentControlSet\Control\DeviceGuard\Scenarios\HypervisorEnforcedCodeIntegrity" /v Enabled /t REG_DWORD /d 1 /f
reg add "HKLM\SYSTEM\CurrentControlSet\Control\CI\Config" /v VulnerableDriverBlocklistEnable /t REG_DWORD /d 1 /f
reg add "HKLM\SYSTEM\CurrentControlSet\Control\DeviceGuard" /v EnableVirtualizationBasedSecurity /t REG_DWORD /d 1 /f
Still stuck?
Run R1XON Checker first — it pinpoints most launch problems in 30 seconds. If it still fails, attach the checker report to your support ticket and we’ll sort it out fast.