Advertisement
mgostih

Reverse engineer notes

Jun 21st, 2016
480
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.62 KB | None | 0 0
  1. 8D 8E B0 02 00 00 C6 86 CB 01 00 00 01 C6 86 C9 01 00 00 00 VERIFY
  2. 8B CE C6 87 30 02 00 00 01 NOCLIP1
  3. 6A 00 C6 83 56 05 00 00 01 NOCLIP2
  4. C2 04 00 CC C6 81 FE 00 00 00 00 TRAIL ON
  5. H4sIAAAAAAAAC6WO3QnDMAyEF1JBJ_kv9CkzZIAbICt0-NpWoJAWGsiLPvvOn-198yZgUhphmU7LmUDAAhEmPsBCqCorQfSGjXiB01a7ZuOWvZztUcfZS75xqD9-EDfoPz_f9Mu3L_sKFx3IgRJI0mesayQH2sDmy9zZnHHBLNY0Z7TQAESfELgtYtLf8T4-QToH9Qjekko-lCACAAA= 3 User Coins LevelString
  6. C6 86 57 05 00 00 00 INFINITE JUMP + HIGH JUMP
  7. 00A97543
  8. FF 86 24 02 00 00 increase block count
  9. FF 8F 24 02 00 00 decrease block count BA 01 00 00 00 8B CE E8 AF CA 00 00 50 8B CF E8 B7 07 00 00 FF B6 BC 02 00 00 8B 8F 10 02 00 00 FF 15 18 EC 5B 00 56 8B C8
  10. 0040DF92
  11. 89 81 98 01 00 00
  12. 0040DF97
  13. 90 89 81 98 01 00 00 50 8B C1 05 98 01 00 00 53 BB 50 00 40 00 89 03 5B 58 E9 59 DF 00 00
  14. 90 89 81 98 01 00 00 50 8B C1 05 98 01 00 00 53 31 DB 81 C3 50 00 40 00 89 03 5B 58 C3 90
  15.  
  16. 3B C7 7D 45 84 C9 74 0C ---> 3B C7 7D 45 84 C9 75 0C Practice HACK
  17. BF 64 00 00 00 B8 64 00 00 00 E9 7E 4C 1A FD
  18.  
  19. 8B EC 56 57 -8B 7D 08 B8 64 00 00 00 ---> E9 5A A3 00 00 90 90 90
  20.  
  21. inject to FF 92 B0 01 00 00 8B 4D F4 64 89 0D 00 00 00 00 59 5F 5E 8B E5 5D C3 CC
  22. BF 64 00 00 00 B8 64 00 00 00 E9 97 5C FF FF -LEN
  23.  
  24. FF 15 1C EC 5B 00 83 BF 10 03 00 00 1F 89 9F BC 02 00 00 74 06 -FF 86 24 02 00 00 ---> NOP from -
  25. E8 B7 07 00 00 FF B6 BC 02 00 00 8B 8F 10 02 00 00 FF 15 18 EC 5B 00 56 8B C8 FF 15 C4 E9 5B 00 83 BE 10 03 00 00 1F 74 06 -FF 8F 24 02 00 00 ----> NOP from -
  26. 51 56 8B 0D B0 A3 63 00 8B B1 44 01 00 00 83 FE 00 75 0B 5E 59 C3 90 90 90 90 90 90 90 90 89 B7 C8 01 00 00 59 59 C3 90 icon hax: inject into 00432158
  27. 8B 75 08 57 8B F9 -89 B7 10 02 00 00 ----> E8 29 7A F9 FF 90
  28. 8B 75 08 57 8B F9 -89 B7 1C 02 00 00 ----> E8 C9 79 F9 FF 90
  29. 8B 75 08 57 8B F9 -89 B7 D4 01 00 00 ----> E8 09 7C F9 FF 90
  30. 8B 75 08 57 8B F9 -89 B7 E0 01 00 00 ----> E8 A9 7B F9 FF 90
  31. 8B 75 08 57 8B F9 -89 B7 EC 01 00 00 ----> E8 49 7B F9 FF 90
  32. 8B 75 08 57 8B F9 -89 B7 F8 01 00 00 ----> E8 E9 7A F9 FF 90
  33. 8B 75 08 57 8B F9 -89 B7 C8 01 00 00 ----> E8 69 7C F9 FF 90
  34. step 1: git gud
  35.  
  36. 004607C1 76 7F JBE SHORT Geometry.00460842 CUSTOM OBJ
  37. 004594E5 75 49 JNZ SHORT Geometry.00459530 Verify Bypass
  38. 0050A1C7 74 4F JE SHORT Geometry.0050A218 Password lvl
  39. 004CF61D 75 04 JNZ SHORT Geometry.004CF623
  40.  
  41. original 0056007E: mov byte ptr [esi+0000049A],01
  42. 004A5156 OnJump address func.
  43.  
  44. 004A51B9 call here
  45.  
  46. 0055E053 - 8D 81 90050000 - lea eax,[ecx+00000590]
  47. GeometryDash.exe+15E053 - E8 6171F4FF - call GeometryDash.exe+A51B9
  48. GeometryDash.exe+15E058 - 90 - nop
  49.  
  50. 004A51B9 - C7 81 90050000 8096184B - mov [ecx+00000590],4B189680
  51. GeometryDash.exe+A51C3 - 8D 81 90050000 - lea eax,[ecx+00000590]
  52. GeometryDash.exe+A51C9 - C3 - ret
  53. GeometryDash.exe+A51CA - 90 - nop
  54.  
  55. MSVCR120.atoi+57 - 8A 18 - mov bl,[eax]
  56. MSVCR120.atoi+59 - 83 7F 74 01 - cmp dword ptr [edi+74],01
  57.  
  58. 004B8F72 - stars
  59.  
  60. libcocos2d.cocos2d::CCString::uintValue+14 - 50 - push eax
  61.  
  62. 005567F3 GUARD BYPASS (set to cmp eax,eax)
  63.  
  64. 00410E50 - B8 01 00 00 00 90 - Bypass Copying mov eax,[ecx+00000214]
  65.  
  66. GeometryDash.exe+7D0E0 - 8B 81 18020000 - mov eax,[ecx+00000218] ORIGINAL BYPASS
  67.  
  68. jmpto 08C10000
  69. 00410E4A B8 01 00 00 00 C3 8B 81 14 02 00 00 89 05 ?? ?? ?? ?? EB EC
  70.  
  71. ICON ADDR
  72. RANDOM NUMB = ICON ADDR - 4
  73. COMPARISION = ICON ADDR - 8
  74. COMPARISION = RANDOM NUMB + ICON ID
  75.  
  76.  
  77. Max Obj Checks (set to FFFFFF):
  78. 004EF1AF
  79. 00469903
  80. 0046B896
  81. 0046BBFA
  82.  
  83.  
  84. Hash checking for:
  85. 1-ID
  86. 18-Stars
  87. 38-Coins Rate Status
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement