Jump to content

Encoding Branch and Link BL sub_x


Go to solution Solved by jayvee,

18 posts in this topic

Recommended Posts

Posted (edited)

The issue I have is encoding the branch and link ARM instruction, since the opcode is pc-relative.
 
All I am trying to do is call a different function that returns a modified item instead of the original.
 
And I am stuck on figuring out the hex for these particular functions. To make it easier, I have here, the old assembly, and what I want to modify the new assembly to be.
 
Old Assembly:

Offset = 0x36C2A6
BL              sub_3C1FC4 // hex=0x55F08DFE
B               loc_36C308 // hex=0x2DE0

Modified Assembly:

Offset = 0x36EE8A
BL              sub_3C5944 // hex=??
B               loc_36EEEC // hex=??

I want it to reference these different functions.

 

If there is any way you can help me figure this out, it would be much appreciated!

 

If I am missing any other piece of information, let me know so I can include it on this post :D

Updated by Javi Tech
Posted
  On 2/16/2015 at 10:29 AM, castix said:

Change to HEX view in IDA to see the changes

Well it's not that, what I am trying to do is change the functions it is referencing, so instead of BL sub_3C1FC4, I am trying to make it to be BL sub_3C5944, but how would I do that? How would I know how to change the hex to make it reference that function?

Posted
  On 2/16/2015 at 10:44 AM, castix said:

How do you know the new offset without changing the HEX. Meh, try using an ARM > HEX converter

http://iosgods.com/topic/686-tool-windows-arm-hex-converter-v401/

I tried testing it on "BL              sub_3C1FC4" and it gave me "FEFFFFEB" instead of "55F08DFE", so I don't think it will work :/

Posted

I guess the function you mean is

BX       LR

which determines the end of the function.

 

2Byte BX LR : 7047
4Byte BX LR : 1EFF2FE1

Posted
  On 2/16/2015 at 11:03 AM, castix said:

I guess the function you mean is

BX       LR

which determines the end of the function.

 

2Byte BX LR : 7047

4Byte BX LR : 1EFF2FE1

Huh? No, it's not BX LR. I'm trying to link it to another function :o

Posted

Change 

MOV R0,#0

to

MOV R0,#1

at the location

sub_3C1FC4

BL links to the function which holds the value of the boolean. Remember #0 = false; #1= true

Posted
  On 2/16/2015 at 11:14 AM, akosijv said:

Yeah, he pretty much explains what I already know. I just want to know how to encode BL.W sub_X to hex or if there's a program that can do it for me.

 

BL.W sub_44F08 -> CA F0 43 F5

 

Where the heck does CA F0 43 F5 come from? O.o

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Graveyard Empire v1.0.6 Debug Menu [+3 Cheats]
      Modded/Hacked App: Graveyard Empire By 24 HIT Riga SIA
      Bundle ID: com.graveyard.empire
      iTunes Store Link: https://apps.apple.com/us/app/graveyard-empire/id6680186576?uo=4

       

      🤩 Hack Features

      - Debug Menu (Enable and Click Settings Button)
      • 1 reply
    • Graveyard Empire v1.0.6 Debug Menu [+3 Jailed Cheats]
      Modded/Hacked App: Graveyard Empire By 24 HIT Riga SIA
      Bundle ID: com.graveyard.empire
      iTunes Store Link: https://apps.apple.com/us/app/graveyard-empire/id6680186576?uo=4

       

      🤩 Hack Features

      - Debug Menu (Enable and Click Settings Button)
      • 2 replies
    • Hex Warriors v2.2.1 Cheat Menu [+10 Jailed Cheats]
      Modded/Hacked App: Hex Warriors By Voodoo
      Bundle ID: com.dong.hexwarriors
      App Store Link: https://apps.apple.com/us/app/hex-warriors/id6736930021?uo=4


       

      🤩 Hack Features

      Cheat Menu (Currency, Auto Win, Cards and more)
      • 9 replies
    • Hex Warriors v2.2.1 Cheat Menu [+10 Cheats]
      Modded/Hacked App: Hex Warriors By Voodoo
      Bundle ID: com.dong.hexwarriors
      App Store Link: https://apps.apple.com/us/app/hex-warriors/id6736930021?uo=4



      🤩 Hack Features

      - Cheat Menu (Currency, Auto Win, Cards and more)
      • 7 replies
    • Draft Showdown v1.1.4 [+3 Jailed Cheats]
      Modded/Hacked App: Draft Showdown By Quest Lab Games Korlatolt Felelossegu Tarsasag
      Bundle ID: com.questlab.draftwar
      App Store Link: https://apps.apple.com/us/app/draft-showdown/id6743368869?uo=4



      🤩 Hack Features

      - Unlimited Resources
      - Never Die
      - One Hit Kill
      • 2 replies
    • Draft Showdown v1.1.4 [+3 Cheats]
      Modded/Hacked App: Draft Showdown By Quest Lab Games Korlatolt Felelossegu Tarsasag
      Bundle ID: com.questlab.draftwar
      App Store Link: https://apps.apple.com/us/app/draft-showdown/id6743368869?uo=4



      🤩 Hack Features

      - Unlimited Resources
      - Never Die
      - One Hit Kill
       
      • 3 replies
    • Endless Wander - Roguelike RPG v2.4.15 [+3 Jailed Cheats]
      Modded/Hacked App: Endless Wander - Roguelike RPG By First Pick Studios
      Bundle ID: com.FirstPickStudios.Endless-Wander
      App Store Link: https://apps.apple.com/us/app/endless-wander-roguelike-rpg/id6473157705?uo=4



      🤩 Hack Features

      - Never Die
      - Always Enough Currency
      - Unlimited Currency (Will Always Increase)
      • 5 replies
    • Endless Wander - Roguelike RPG v2.4.15 [+3 Cheats]
      Modded/Hacked App: Endless Wander - Roguelike RPG By First Pick Studios
      Bundle ID: com.FirstPickStudios.Endless-Wander
      App Store Link: https://apps.apple.com/us/app/endless-wander-roguelike-rpg/id6473157705?uo=4



      🤩 Hack Features

      - Never Die
      - Always Enough Currency
      - Unlimited Currency (Will Always Increase)
       
      • 5 replies
    • Pal Go: Tower Defense TD v0.3.73 [+7 Cheats]
      Modded/Hacked App: Pal Go: Tower Defense TD By Playwind Ltd
      Bundle ID: com.playwindgames.freedefender
      iTunes Store Link: https://apps.apple.com/us/app/pal-go-tower-defense-td/id6479316663?uo=4


       

      🚀 Hack Features

      - [VIP] Freeze Currency (Currency will not decrease when used)

      - [VIP] Currency Always Enough (Buy even when you don't have enough currency)

      - [Free] Higher Recruit Energy (Gives 500 Recruit Energy Every Wave)

      - [Free] Always Can Drag Hero

      - [Free] Skip Ads

      - [Free] No Attack Cooldown

      - [Free] Global Speed Multiplier (Enable Inside Battle)

       

      Warning


      Do not use on main account. There is a chance of ban. Not responsible for any bans.

       


      🍏 For Non-Jailbroken & No Jailbreak required hacks: https://iosgods.com/forum/79-no-jailbreak-section/
      🤖 Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      • 46 replies
    • Pal Go: Tower Defense TD v0.3.73 [+7 Jailed Cheats]
      Modded/Hacked App: Pal Go: Tower Defense TD By Playwind Ltd
      Bundle ID: com.playwindgames.freedefender
      iTunes Store Link: https://apps.apple.com/us/app/pal-go-tower-defense-td/id6479316663?uo=4


       

      Hack Features

      - [VIP] Freeze Currency (Currency will not decrease when used)

      - [VIP] Currency Always Enough (Buy even when you don't have enough currency)

      - [Free] Higher Recruit Energy (Gives 500 Recruit Energy Every Wave)

      - [Free] Always Can Drag Hero

      - [Free] Skip Ads

      - [Free] No Attack Cooldown

      - [Free] Global Speed Multiplier (Enable Inside Battle)

       

      Warning


      Do not use on main account. There is a chance of ban. Not responsible for any bans.

       

      Jailbreak required iOS hacks: https://iosgods.com/forum/5-game-cheats-hack-requests/
      Modded Android APKs: https://iosgods.com/forum/68-android-section/
      • 71 replies
    • Derailed: Survival Adventure v1.8.0 [+3 Jailed Cheats]
      Modded/Hacked App: Derailed: Survival Adventure By Kwalee Ltd
      Bundle ID: com.kwalee.derailed
      iTunes Store Link: https://apps.apple.com/us/app/derailed-survival-adventure/id6670252580?uo=4



      🤩 Hack Features

      - Free Shop (IAP, No Ads, Chest)
      - Never Die
      - Always Can Unlock Tiles
      • 8 replies
    • Derailed: Survival Adventure v1.8.0 [+3 Cheats]
      Modded/Hacked App: Derailed: Survival Adventure By Kwalee Ltd
      Bundle ID: com.kwalee.derailed
      iTunes Store Link: https://apps.apple.com/us/app/derailed-survival-adventure/id6670252580?uo=4

       

      🤩 Hack Features

      - Free Shop (IAP, No Ads, Chest)
      - Never Die
      - Always Can Unlock Tiles
      • 7 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines