Next Gen Boards
 

Sponsored Links
Arcade YouTube vbBux / vbPlaza Calendar FAQ

Reply
 
Thread Tools Display Modes  
freddyftbll
Private Grade 1
 
Join Date: Oct 2007
Posts: 29
Rep Power: 0 freddyftbll is on a distinguished road Reputation: 10
Points: 27,758.25
Bank: 1,515.67
Total Points: 29,273.92
freddyftbll is offline
 
 
#1
12-05-2007, 02:36 AM   #1
Reply With Quote
low memory hook?

What is the lowest point in the mips memory for socom that you think a hook will get accessed online?
Report Post
Whitey
Colonel Grade 1
 
Join Date: Apr 2007
Location: Where minutes turn into hours and days into years
Posts: 595
Rep Power: 2 Whitey is on a distinguished road Reputation: 20
Points: 59,949.60
Bank: 56,884.38
Total Points: 116,833.98
Whitey is offline
 
 
#2
12-05-2007, 04:48 PM   #2
Reply With Quote
you mean the scan range? i thought it was like somewhere between 2000-3999. anything beyond that is okay i think. the only codes that have these adresses though are usually like e-tags and scores. its been awhile so i could be wrong
__________________

Socom 3/CA Clan [E]LeMeNt
R.I.P.
Dec '05-Jan '07
[img]<a href="http://www.us.playstation.com/PSN/Users/whitey111"><img src="http://pid.us.playstation.com/user/whitey111.jpg" width="235" height="149" border="0" /></a>[/img]
Report Post
freddyftbll
Private Grade 1
 
Join Date: Oct 2007
Posts: 29
Rep Power: 0 freddyftbll is on a distinguished road Reputation: 10
Points: 27,758.25
Bank: 1,515.67
Total Points: 29,273.92
freddyftbll is offline
 
 
#3
12-06-2007, 01:48 AM   #3
Reply With Quote
Actually ,i meant for socom 3,to activate a subroutine you need a hook,and the scan range goes as low as 20100000 cuz i got banned with a code in that area,but 20c00000 is safe,was just looking for a safe hook...
Report Post
Whitey
Colonel Grade 1
 
Join Date: Apr 2007
Location: Where minutes turn into hours and days into years
Posts: 595
Rep Power: 2 Whitey is on a distinguished road Reputation: 20
Points: 59,949.60
Bank: 56,884.38
Total Points: 116,833.98
Whitey is offline
 
 
#4
12-06-2007, 08:32 AM   #4
Reply With Quote
oh, well its been a while. my bad
__________________

Socom 3/CA Clan [E]LeMeNt
R.I.P.
Dec '05-Jan '07
[img]<a href="http://www.us.playstation.com/PSN/Users/whitey111"><img src="http://pid.us.playstation.com/user/whitey111.jpg" width="235" height="149" border="0" /></a>[/img]
Report Post
Robby23
=P
 
Robby23's Avatar
 
Join Date: Jan 2007
Posts: 255
Rep Power: 2 Robby23 is on a distinguished road Reputation: 12
Points: 221,613.56
Bank: 0.00
Total Points: 221,613.56
Robby23 is offline
 
 
#5
12-06-2007, 09:53 AM   #5
Reply With Quote
You could hook within kernal memory...

If you're using codemajic find codemajic's routine which is in kernal memory around 0x0008 and hook within there. I would probably take one of the jals in the codemajic routine, jal it to my subroutine, then j it to where the original jal was going to that way you keep the ra register the same
__________________
Easiest Money I've ever made
Referal link:
http://www.swatcash.com/Robby23

Last edited by Robby23; 12-06-2007 at 09:56 AM..
Report Post
Bucknastey
[TDP] = しるるヤ けへメ
 
Bucknastey's Avatar
 
Join Date: Feb 2007
Location: in a box in the states
Posts: 1,394
Rep Power: 3 Bucknastey is on a distinguished road Reputation: 26
Points: 5,517.88
Bank: 98,613.77
Total Points: 104,131.65
Los Angeles Dodgers 24 Jeff Gordon Los Angeles Lakers Buffalo New York Jets Buffalo Sabres Portsmouth
Bucknastey is offline
 
Send a message via AIM to Bucknastey
 
#6
12-06-2007, 02:22 PM   #6
Reply With Quote
you lost me here....

Quote:
Originally Posted by Robby23 View Post
You could hook within kernal memory...

If you're using codemajic find codemajic's routine which is in kernal memory around 0x0008 and hook within there. I would probably take one of the jals in the codemajic routine, jal it to my subroutine, then j it to where the original jal was going to that way you keep the ra register the same

yeah from the first word
__________________

^^^BEST FUCKING CLAN^^^
Report Post
freddyftbll
Private Grade 1
 
Join Date: Oct 2007
Posts: 29
Rep Power: 0 freddyftbll is on a distinguished road Reputation: 10
Points: 27,758.25
Bank: 1,515.67
Total Points: 29,273.92
freddyftbll is offline
 
 
#7
12-06-2007, 03:25 PM   #7
Reply With Quote
omg,the great robby23 is still around?!LOve your work lol.Thank you I'll try that.
Hmm,well tryed a jal in 0008 area, didnt jump,to find the codemajic sub wouldnt i have to disassemble the program?

Last edited by freddyftbll; 12-06-2007 at 03:51 PM..
Report Post
Robby23
=P
 
Robby23's Avatar
 
Join Date: Jan 2007
Posts: 255
Rep Power: 2 Robby23 is on a distinguished road Reputation: 12
Points: 221,613.56
Bank: 0.00
Total Points: 221,613.56
Robby23 is offline
 
 
#8
12-06-2007, 08:08 PM   #8
Reply With Quote
Quote:
Originally Posted by freddyftbll View Post
omg,the great robby23 is still around?!LOve your work lol.Thank you I'll try that.
Hmm,well tryed a jal in 0008 area, didnt jump,to find the codemajic sub wouldnt i have to disassemble the program?
Yes sir...you need the codemajic sub first before you can jal anywhere. Kernal memory starts at 0x0008. All cheat devices at one point are loaded into kernal memory and they usually have a couple jumps in the middle if not right at the end. Make sure you know what you are doing otherwise you will most likely freeze.

Also little tip if you do figure it out make the hook the last line in your code because if the hook is written first it will freeze
__________________
Easiest Money I've ever made
Referal link:
http://www.swatcash.com/Robby23
Report Post
LONE-SNIPER
Banned
 
Join Date: Apr 2007
Posts: 39
Rep Power: 0 LONE-SNIPER is on a distinguished road Reputation: 10
Points: 1,334.00
Bank: 0.00
Total Points: 1,334.00
LONE-SNIPER is offline
 
 
#9
12-08-2007, 02:41 AM   #9
Reply With Quote
so instead of using a jr ra, use a j or jal, back to the hook? nice advice. how would i get the cm sub? do i have to look at the codemajic express file?

Last edited by LONE-SNIPER; 12-08-2007 at 02:49 AM..
Report Post
Robby23
=P
 
Robby23's Avatar
 
Join Date: Jan 2007
Posts: 255
Rep Power: 2 Robby23 is on a distinguished road Reputation: 12
Points: 221,613.56
Bank: 0.00
Total Points: 221,613.56
Robby23 is offline
 
  12-08-2007, 03:26 AM   #10
Reply With Quote
Quote:
Originally Posted by LONE-SNIPER View Post
so instead of using a jr ra, use a j or jal, back to the hook? nice advice. how would i get the cm sub? do i have to look at the codemajic express file?
You dont j back to the hook. Say the hook address initially was a jal $00000000 (which it wouldnt obviously) you would change it to jal $xxxxxxxx where x's is the start of your sub. Then at the end of your sub make it j $00000000 that way when you jal ra register isnt changed in any way making no disturbance.

As for your second question you would need to create a dump after codemajic was loaded. Beware though as Idot has put in some security measures to make sure you dont dump the kernal memory with cm loaded so you need to figure out how to get around that ;). If you get how a cheat device works basically you would understand about what is stored in the kernal and how a cheat device is loaded even to keep a constant write.
__________________
Easiest Money I've ever made
Referal link:
http://www.swatcash.com/Robby23

Last edited by Robby23; 12-08-2007 at 03:30 AM..
Report Post
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off
Forum Jump

top Go to Top All times are GMT -4. The time now is 02:39 PM.

Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 Copyright ©2006 - 2008, NextGenBoards. All Rights Reserved