Jump to content

12 posts in this topic

Recommended Posts

Posted

I found this in Ida Pro, guided by LLDB, and now what???

what is exact next step in ida pro or lldb???
i need retard like explanation because am rookie...

step by step...

R7tJ3C3.png

Posted
1 minute ago, Ted2 said:

You don't even say what this function is supposed to be, we can only guess now.

Coin Dozer Coins "R1 hold value"

-> 0x18e5f4:  ldr    r0, [r2, #0xc]
   0x18e5f6:  cbz    r0, 0x18e600              ; ¬¬¬¬¬ + 136463
   0x18e5f8:  mov    r1, r2

Game have ASLR

I found value in LLDB, that guided me to this in IDA PRO...

now what? :)
step by step... ;) please...

Posted
1 minute ago, Ted2 said:

Removed aslr from lldb outcome?

how do you know R1 holds the coin value?

Cuase i watched adress from iGG w s e --... and in lldb showed me... than i used register read -all :)
than i caltucelted adress given - ASLR, got this IDA PRO ADDRESS "0x000CE5F4"

and that adress is on picture :_)

Posted
1 minute ago, Ted2 said:

Paste code in ur post, I can't copy functions from your image

__text:000CE5D2 loc_CE5D2                               ; CODE XREF: sub_CE560+54j
__text:000CE5D2                 MOV             R0, #(off_1D2383C - 0xCE5DE)
__text:000CE5DA                 ADD             R0, PC ; off_1D2383C ; Rd = Op1 + Op2
__text:000CE5DC                 LDR             R5, [R0] ; unk_1FDCE3C ; Load from Memory
__text:000CE5DE                 LDR             R0, [R5] ; Load from Memory
__text:000CE5E0                 LDRB.W          R1, [R0,#0xB2] ; Load from Memory
__text:000CE5E4                 TST.W           R1, #1  ; Set cond. codes on Op1 & Op2
__text:000CE5E8                 BEQ             loc_CE5F8 ; Branch
__text:000CE5EA                 LDR             R1, [R0,#0x60] ; Load from Memory
__text:000CE5EC                 CBNZ            R1, loc_CE5F8 ; Compare and Branch on Non-Zero
__text:000CE5EE                 MOV.W           R1, #0xFFFFFFFF ; Rd = Op2
__text:000CE5F2                 STR             R1, [SP,#0x68+var_48] ; Store to Memory
__text:000CE5F4                 BL.W            sub_E09B20 ; Branch with Link
__text:000CE5F8
__text:000CE5F8 loc_CE5F8                               ; CODE XREF: sub_CE560+88j
__text:000CE5F8                                         ; sub_CE560+8Cj
__text:000CE5F8                 MOVW            R0, #(:lower16:(off_1D23830 - 0xCE608)) ; Rd = Op2
__text:000CE5FC                 MOV.W           R4, #0xFFFFFFFF ; Rd = Op2
__text:000CE600                 MOVT.W          R0, #(:upper16:(off_1D23830 - 0xCE608)) ; Move Top
__text:000CE604                 ADD             R0, PC ; off_1D23830 ; Rd = Op1 + Op2
__text:000CE606                 LDR             R6, [R0] ; unk_1FDF8A0 ; Load from Memory
__text:000CE608                 MOVS            R0, #0  ; Rd = Op2
__text:000CE60A                 LDR             R1, [R6] ; Load from Memory
__text:000CE60C                 STR             R4, [SP,#0x68+var_48] ; Store to Memory
__text:000CE60E                 BL              sub_32A5A4 ; Branch with Link
__text:000CE612                 CMP             R0, #0  ; Set cond. codes on Op1 - Op2
__text:000CE614                 BEQ             loc_CE6CE ; Branch
__text:000CE616                 LDRB.W          R0, [R0,#0x24] ; Load from Memory
__text:000CE61A                 CMP             R0, #0  ; Set cond. codes on Op1 - Op2
__text:000CE61C                 BNE             loc_CE6B2 ; Branch
__text:000CE61E                 LDR             R0, [R5] ; Load from Memory
__text:000CE620                 LDRB.W          R1, [R0,#0xB2] ; Load from Memory
__text:000CE624                 TST.W           R1, #1  ; Set cond. codes on Op1 & Op2
__text:000CE628                 BEQ             loc_CE638 ; Branch
__text:000CE62A                 LDR             R1, [R0,#0x60] ; Load from Memory
__text:000CE62C                 CBNZ            R1, loc_CE638 ; Compare and Branch on Non-Zero
__text:000CE62E                 MOV.W           R1, #0xFFFFFFFF ; Rd = Op2
__text:000CE632                 STR             R1, [SP,#0x68+var_48] ; Store to Memory
__text:000CE634                 BL.W            sub_E09B20 ; Branch with Link
__text:000CE638
__text:000CE638 loc_CE638                               ; CODE XREF: sub_CE560+C8j
__text:000CE638                                         ; sub_CE560+CCj

What will you do step by step in this situation... thanks mate <3

Posted (edited)
2 minutes ago, Goran said:

__text:000CE5D2 loc_CE5D2                               ; CODE XREF: sub_CE560+54j
__text:000CE5D2                 MOV             R0, #(off_1D2383C - 0xCE5DE)
__text:000CE5DA                 ADD             R0, PC ; off_1D2383C ; Rd = Op1 + Op2
__text:000CE5DC                 LDR             R5, [R0] ; unk_1FDCE3C ; Load from Memory
__text:000CE5DE                 LDR             R0, [R5] ; Load from Memory
__text:000CE5E0                 LDRB.W          R1, [R0,#0xB2] ; Load from Memory
__text:000CE5E4                 TST.W           R1, #1  ; Set cond. codes on Op1 & Op2
__text:000CE5E8                 BEQ             loc_CE5F8 ; Branch
__text:000CE5EA                 LDR             R1, [R0,#0x60] ; Load from Memory
__text:000CE5EC                 CBNZ            R1, loc_CE5F8 ; Compare and Branch on Non-Zero
__text:000CE5EE                 MOV.W           R1, #0xFFFFFFFF ; Rd = Op2
__text:000CE5F2                 STR             R1, [SP,#0x68+var_48] ; Store to Memory
__text:000CE5F4                 BL.W            sub_E09B20 ; Branch with Link
__text:000CE5F8
__text:000CE5F8 loc_CE5F8                               ; CODE XREF: sub_CE560+88j
__text:000CE5F8                                         ; sub_CE560+8Cj
__text:000CE5F8                 MOVW            R0, #(:lower16:(off_1D23830 - 0xCE608)) ; Rd = Op2
__text:000CE5FC                 MOV.W           R4, #0xFFFFFFFF ; Rd = Op2
__text:000CE600                 MOVT.W          R0, #(:upper16:(off_1D23830 - 0xCE608)) ; Move Top
__text:000CE604                 ADD             R0, PC ; off_1D23830 ; Rd = Op1 + Op2
__text:000CE606                 LDR             R6, [R0] ; unk_1FDF8A0 ; Load from Memory
__text:000CE608                 MOVS            R0, #0  ; Rd = Op2
__text:000CE60A                 LDR             R1, [R6] ; Load from Memory
__text:000CE60C                 STR             R4, [SP,#0x68+var_48] ; Store to Memory
__text:000CE60E                 BL              sub_32A5A4 ; Branch with Link
__text:000CE612                 CMP             R0, #0  ; Set cond. codes on Op1 - Op2
__text:000CE614                 BEQ             loc_CE6CE ; Branch
__text:000CE616                 LDRB.W          R0, [R0,#0x24] ; Load from Memory
__text:000CE61A                 CMP             R0, #0  ; Set cond. codes on Op1 - Op2
__text:000CE61C                 BNE             loc_CE6B2 ; Branch
__text:000CE61E                 LDR             R0, [R5] ; Load from Memory
__text:000CE620                 LDRB.W          R1, [R0,#0xB2] ; Load from Memory
__text:000CE624                 TST.W           R1, #1  ; Set cond. codes on Op1 & Op2
__text:000CE628                 BEQ             loc_CE638 ; Branch
__text:000CE62A                 LDR             R1, [R0,#0x60] ; Load from Memory
__text:000CE62C                 CBNZ            R1, loc_CE638 ; Compare and Branch on Non-Zero
__text:000CE62E                 MOV.W           R1, #0xFFFFFFFF ; Rd = Op2
__text:000CE632                 STR             R1, [SP,#0x68+var_48] ; Store to Memory
__text:000CE634                 BL.W            sub_E09B20 ; Branch with Link
__text:000CE638
__text:000CE638 loc_CE638                               ; CODE XREF: sub_CE560+C8j
__text:000CE638                                         ; sub_CE560+CCj

What will you do step by step in this situation... thanks mate <3

In a code box please, I'm on phone so hard to actually read it

 

also copy from graph view, so there's no text2836362__

Updated by Ted2
Posted
2 minutes ago, Ted2 said:

In a code box please, I'm on phone so hard to actually read it

 

also copy from graph view, so there's no text2836362__

__text:000CE5D2 loc_CE5D2                               ; CODE XREF: sub_CE560+54j
__text:000CE5D2                 MOV             R0, #(off_1D2383C - 0xCE5DE)
__text:000CE5DA                 ADD             R0, PC ; off_1D2383C ; Rd = Op1 + Op2
__text:000CE5DC                 LDR             R5, [R0] ; unk_1FDCE3C ; Load from Memory
__text:000CE5DE                 LDR             R0, [R5] ; Load from Memory
__text:000CE5E0                 LDRB.W          R1, [R0,#0xB2] ; Load from Memory
__text:000CE5E4                 TST.W           R1, #1  ; Set cond. codes on Op1 & Op2
__text:000CE5E8                 BEQ             loc_CE5F8 ; Branch
__text:000CE5EA                 LDR             R1, [R0,#0x60] ; Load from Memory
__text:000CE5EC                 CBNZ            R1, loc_CE5F8 ; Compare and Branch on Non-Zero
__text:000CE5EE                 MOV.W           R1, #0xFFFFFFFF ; Rd = Op2
__text:000CE5F2                 STR             R1, [SP,#0x68+var_48] ; Store to Memory
__text:000CE5F4                 BL.W            sub_E09B20 ; Branch with Link
__text:000CE5F8
__text:000CE5F8 loc_CE5F8                               ; CODE XREF: sub_CE560+88j
__text:000CE5F8                                         ; sub_CE560+8Cj
__text:000CE5F8                 MOVW            R0, #(:lower16:(off_1D23830 - 0xCE608)) ; Rd = Op2
__text:000CE5FC                 MOV.W           R4, #0xFFFFFFFF ; Rd = Op2
__text:000CE600                 MOVT.W          R0, #(:upper16:(off_1D23830 - 0xCE608)) ; Move Top
__text:000CE604                 ADD             R0, PC ; off_1D23830 ; Rd = Op1 + Op2
__text:000CE606                 LDR             R6, [R0] ; unk_1FDF8A0 ; Load from Memory
__text:000CE608                 MOVS            R0, #0  ; Rd = Op2
__text:000CE60A                 LDR             R1, [R6] ; Load from Memory
__text:000CE60C                 STR             R4, [SP,#0x68+var_48] ; Store to Memory
__text:000CE60E                 BL              sub_32A5A4 ; Branch with Link
__text:000CE612                 CMP             R0, #0  ; Set cond. codes on Op1 - Op2
__text:000CE614                 BEQ             loc_CE6CE ; Branch
__text:000CE616                 LDRB.W          R0, [R0,#0x24] ; Load from Memory
__text:000CE61A                 CMP             R0, #0  ; Set cond. codes on Op1 - Op2
__text:000CE61C                 BNE             loc_CE6B2 ; Branch
__text:000CE61E                 LDR             R0, [R5] ; Load from Memory
__text:000CE620                 LDRB.W          R1, [R0,#0xB2] ; Load from Memory
__text:000CE624                 TST.W           R1, #1  ; Set cond. codes on Op1 & Op2
__text:000CE628                 BEQ             loc_CE638 ; Branch
__text:000CE62A                 LDR             R1, [R0,#0x60] ; Load from Memory
__text:000CE62C                 CBNZ            R1, loc_CE638 ; Compare and Branch on Non-Zero
__text:000CE62E                 MOV.W           R1, #0xFFFFFFFF ; Rd = Op2
__text:000CE632                 STR             R1, [SP,#0x68+var_48] ; Store to Memory
__text:000CE634                 BL.W            sub_E09B20 ; Branch with Link
__text:000CE638
__text:000CE638 loc_CE638                               ; CODE XREF: sub_CE560+C8j
__text:000CE638                                         ; sub_CE560+CCj

 

Posted

loc_CE5D2                               ; CODE XREF: sub_CE560+54j
MOV             R0, #(off_1D2383C - 0xCE5DE)
ADD              R0, PC ; off_1D2383C
LDR               R5, [R0] ; unk_1FDCE3C
LDR               R0, [R5]
LDRB.W        R1, [R0,#0xB2]
TST.W           R1, #1
BEQ              loc_CE5F8
LDR               R1, [R0,#0x60]
CBNZ            R1, loc_CE5F8
MOV.W         R1, #0xFFFFFFFF
STR               R1, [SP,#0x68+var_48]
BL.W            sub_E09B20

loc_CE5F8                               ; CODE XREF: sub_CE560+88j
                                                 ; sub_CE560+8Cj
MOVW            R0, #(:lower16:(off_1D23830 - 0xCE608))
MOV.W           R4, #0xFFFFFFFF
MOVT.W         R0, #(:upper16:(off_1D23830 - 0xCE608))
ADD                R0, PC ; off_1D23830
LDR                 R6, [R0] ; unk_1FDF8A0
MOVS             R0, #0
LDR                 R1, [R6]
STR                 R4, [SP,#0x68+var_48]
BL                   sub_32A5A4
CMP               R0, #0
BEQ                loc_CE6CE
LDRB.W         R0, [R0,#0x24]
CMP               R0, #0
BNE               loc_CE6B2
LDR               R0, [R5]
LDRB.W        R1, [R0,#0xB2]
TST.W           R1, #1
BEQ              loc_CE638
LDR              R1, [R0,#0x60]
CBNZ           R1, loc_CE638
MOV.W       R1, #0xFFFFFFFF
STR              R1, [SP,#0x68+var_48]
BL.W           sub_E09B20

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Chainsaw Juice King: Idle Shop Cheats v1.6.0 +6
      Modded/Hacked App: Chainsaw Juice King: Idle Shop By SayGames LTD
      Bundle ID: com.loadcomplete.aichainsaw
      iTunes Store Link: https://apps.apple.com/us/app/chainsaw-juice-king-idle-shop/id6450706268?uo=4

       

      📌 Mod Requirements

      - Jailbroken iPhone or iPad.
      - iGameGod / Filza / iMazing.
      - Cydia Substrate, ElleKit, Substitute or libhooker depending on your jailbreak (from Sileo, Cydia or Zebra).

       

      🤩 Hack Features

      - Multiply Attack
      - God Mode
      - Free Store (not iAP)
      - No Ads
      - Skip Ads
      - Unlimited Open Boosters Pack

       

      ⬇️ iOS Hack Download Link: https://iosgods.com/topic/192062-chainsaw-juice-king-idle-shop-cheats-v0141-6/
      • 57 replies
    • Ulike - Define trendy selfie Modded v5.4.1 +1
      Modded/Hacked App: Ulike - Define trendy selfie By BYTEDANCE PTE. LTD.
      Bundle ID: com.light.beautyabroad
      App Store Link: https://apps.apple.com/ph/app/ulike-define-trendy-selfie/id1398796436?uo=4

       

      📌 Mod Requirements

      - Jailbroken iPhone or iPad.
      - iGameGod / Filza / iMazing.
      - Cydia Substrate, ElleKit, Substitute or libhooker depending on your jailbreak (from Sileo, Cydia or Zebra).

       

      🤩 Hack Features

      - PREMIUM

       

      Non-Jailbroken Hack: https://iosgods.com/topic/120828-ulike-define-trendy-selfie-v541-jailed-mod-1/

       

      ⬇️ iOS Hack Download Link: https://iosgods.com/topic/120826-arm64-ulike-define-trendy-selfie-modded-all-versions-1/
      • 355 replies
    • Mimo: Learn Coding/Programming v9.27.0 Jailed Mod +1
      Modded/Hacked App: Mimo: Learn to Code By Mimohello GmbH
      Bundle ID: com.getmimo.mimo
      iTunes Store Link: https://itunes.apple.com/us/app/mimo-learn-to-code/id1133960732?mt=8&uo=4&at=1010lce4


      Hack Features:
      - Premium
      - All Chapters Unlocked
       

      Hack Download Link: https://iosgods.com/topic/68649-arm64-mimo-learn-to-code-v312-jailed-mod-2/


      Credits:
      - @Laxus
      • 1,224 replies
    • Last Day On Earth: Survival v1.40.1 +36 FREE Hacks
      Modded/Hacked App: Last Day on Earth: Survival By Andrey Pryakhin
      Bundle ID: zombie.survival.craft.z
      iTunes Link: https://itunes.apple.com/us/app/last-day-on-earth-survival/id1241932094

      Hack Features:
      - Coins Hack - Spend/Buy something that costs Coins to increase Coins!
      - Durability Hack - Weapons, Clothes, Boots, etc. Will not break. You can always keep using them.
      - Crafting Hack - Able to craft stuff without required items!
      - Skill Points Hack - Skill Points won't decrease, reset to increase.
      - Duplicate Items Hack - Split Items to duplicate them! Now it will duplicate by 20!
      - Loot box hack - Open 1 lootbox for 1000! - x64 only
      - Items increase when Taking from Inbox. You will never run out of Items in your inbox! - x64 only
      - Minigun Doesn't Overheat - x64 only
      - Unlimited Energy. Energy Increases instead of subtracting! - x64 only
      - Bow One Hit Kill - x64 only
      - Anti-Ban

      During the month of December, we have decided to make the ViP hack for free for all users! :) Extra features include:
      • 30,249 replies
    • Zombastic: Time to Survive v1.19.2 [ +3 Jailed ] Good MOD
      Modded/Hacked App: Zombastic: Time to Survive By Playmotional Limited
      Bundle ID: com.playmotional.survival
      iTunes Store Link: https://apps.apple.com/us/app/zombastic-time-to-survive/id6475173073?uo=4


      Hack Features:
      - Currency & Resources Unlimited [ Disable When Playing ] 





      Jailbreak required hack(s): https://iosgods.com/forum/5-game-cheats-hack-requests/
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 85 replies
    • Zombastic: Time to Survive v1.19.2 [ +3 Cheats ] Good MOD
      Modded/Hacked App: Zombastic: Time to Survive By Playmotional Limited
      Bundle ID: com.playmotional.survival
      iTunes Store Link: https://apps.apple.com/us/app/zombastic-time-to-survive/id6475173073?uo=4


      Hack Features:
      - Currency & Resources Unlimited [ Disable When Playing ] 





      Non-Jailbroken & No Jailbreak required hack(s): https://iosgods.com/forum/79-no-jailbreak-section/
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 70 replies
    • Adventure Chef v1.58.65 [ +3 Cheats ] Currency Max
      Modded/Hacked App: Adventure Chef By Futurewave Games LLC
      Bundle ID: com.adventurechef
      App Store Link: https://apps.apple.com/us/app/adventure-chef/id6717580048?uo=4

       
      🤩 Hack Features

      - IAP FREE [ Buy Anything ] ADS
      - Gems
      - Cash
      • 8 replies
    • Adventure Chef v1.58.65 [ +3 Jailed ] Currency Max
      Modded/Hacked App: Adventure Chef By Futurewave Games LLC
      Bundle ID: com.adventurechef
      App Store Link: https://apps.apple.com/us/app/adventure-chef/id6717580048?uo=4


      🤩 Hack Features

      - IAP FREE [ Buy Anything ] ADS
      - Gems
      - Cash
      • 14 replies
    • Vampirio: Defend & Survive v1.3.4 [ +2 Cheats ] Currency Max
      Modded/Hacked App: Vampirio: Defend & Survive By Outfit7 Neo Limited
      Bundle ID: com.outfit7neo.onehelsing
      App Store Link: https://apps.apple.com/ph/app/vampirio-defend-survive/id6670539564?uo=4

       

      🤩 Hack Features

      - Currency Max [ Disable After Get ]
      - Resources Max [ Use Only Resources - Disable After Get ] Becasue Linked Population When You Build Disable OtherWise Crash

      • 10 replies
    • Vampirio: Defend & Survive v1.3.4 [ +2 Jailed ] Currency Max
      Modded/Hacked App: Vampirio: Defend & Survive By Outfit7 Neo Limited
      Bundle ID: com.outfit7neo.onehelsing
      App Store Link: https://apps.apple.com/ph/app/vampirio-defend-survive/id6670539564?uo=4


      🤩 Hack Features

      - Currency Max [ Disable After Get ]
      - Resources [ Use Only Resources - Disable After Get ] Becasue Linked Population When You Build Disable OtherWise Crash
      • 14 replies
    • Castle on Wheels v1.003 [ +3 Cheats ] Currency Max
      Modded/Hacked App: Castle on Wheels By Follow Circles
      Bundle ID: com.followcircles.castleonwheels
      App Store Link: https://apps.apple.com/ph/app/castle-on-wheels/id6751804150?uo=4

      🤩 Hack Features

      - Unlimited Coins / Win Battle
      - Unlimited ATK
      - Unlimited HP
      • 4 replies
    • Castle on Wheels v1.003 [ +3 Jailed ] Currency Max
      Modded/Hacked App: Castle on Wheels By Follow Circles
      Bundle ID: com.followcircles.castleonwheels
      App Store Link: https://apps.apple.com/ph/app/castle-on-wheels/id6751804150?uo=4

      🤩 Hack Features

      - Unlimited Coins / Win Battle
      - Unlimited ATK
      - Unlimited HP
      • 6 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines