Advertisement
Guest User

Untitled

a guest
Sep 19th, 2017
84
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 15.33 KB | None | 0 0
  1. ======================================
  2. hook execve called
  3. executing prog:
  4. ffffff8002400c40 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  5. ffffff8002400c50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  6.  
  7. executing /app0/eboot_dec.bin
  8. argc 1
  9. ffffff8046e00000 2f 61 70 70 30 2f 65 62 6f 6f 74 5f 64 65 63 2e |/app0/eboot_dec.|
  10. ffffff8046e00010 62 69 6e 00 00 00 00 00 00 00 00 00 00 00 00 00 |bin.............|
  11. ffffff8046e00020 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  12. td[38] = fffffe0029b2da00:
  13. fffffe0029b2da58 07 00 00 00 00 00 00 38 00 00 00 00 00 1c 00 40 |.......8.......@|
  14. fffffe0029b2da68 00 ff 00 00 00 00 00 80 00 00 00 00 00 00 00 00 |................|
  15. fffffe0029b2da78 00 00 00 00 00 00 00 00 00 00 00 80 00 40 00 40 |.............@.@|
  16. fffffe0029b2da88 00 00 00 00 00 00 00 80 00 00 00 00 00 00 00 08 |................|
  17. fffffe0029b2da98 00 40 ff ff 00 00 00 f0 00 00 00 00 00 00 00 00 |.@..............|
  18. fffffe0029b2daa8 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  19. fffffe0029b2dab8 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  20. fffffe0029b2dac8 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  21. fffffe0029b2dad8 00 00 00 00 00 00 00 00 |................|
  22. has hito payload? 0
  23. header 9010102464c457f
  24. eboot.bin redirecting to our test_elf_imgact
  25. section
  26. { type: 1 offset: 4000 vaddr: 400000 memsz: 91ac58 filesz: 91ac58 prot: 5 }
  27. [INFO] first map len: 91c000
  28. [INFO] got to a map_insert
  29. { off: 4000 start: 400000 end: d1c000 prot: 5}
  30. section
  31. { type: 1 offset: 920000 vaddr: d1c000 memsz: 10726c filesz: 7a490 prot: 3 }
  32. [INFO] first map len: 78000
  33. [INFO] got to a map_insert
  34. { off: 920000 start: d1c000 end: d94000 prot: 3}
  35. [INFO] mapping anonymous page copy_len: 2490 madrr: d94000 maplen: 90000
  36. [INFO] got to a map_insert
  37. { off: 0 start: d94000 end: e24000 prot: 7}
  38. [INFO] mapped
  39. [INFO] vm_imgact_map_page fffffe0064f79880
  40. fffffe004f570000 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  41. fffffe004f570010 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  42. [INFO] off = 998000 - 998000
  43. [INFO] copyout 0 d94000 2490
  44. [INFO] copyout
  45. [INFO] vm_imgact_unmap_page
  46. [INFO] protecting page
  47. [INFO] protecting page done
  48. test returned: 0(0)
  49. imgp->entry_addr: 82e393d58
  50. imgp->base: 82e393d58
  51. imgp->100: 800000000000ff00
  52. imgp->108: 0
  53. imgp->110: 0
  54. imgp->118: 4000400080000000
  55. imgp->120: 8000000000000000
  56. imgp->128: 800000000000000
  57. imgp->130: f0000000ffff4000
  58. imgp->138: 0
  59. imgp->140: 0
  60. imgp->148: 0
  61. imgp->150: 0
  62. imgp->158: 0
  63. imgp->160: 0
  64. imgp->168: 0
  65. imgp->170: 0
  66. imgp->178: 0
  67. imgp->180: d1c000
  68. imgp->188: 40
  69. imgp->190: 7
  70. imgp->198: 131b50
  71. imgp->1a0: cb0
  72. imgp->1a8: 7
  73. imgp->1b0: 99a4a0
  74. imgp->1b8: 132800
  75. imgp->1c0: 8
  76. imgp->1c8: accca0
  77. imgp->1d0: 6c
  78. imgp->1d8: fffffe003b2c5fe0
  79. imgp->1e0: ffffff8046e00000
  80. imgp->1e8: 0
  81. imgp->1f0: a24000
  82. imgp->1f8: 186b100000001
  83. imgp->200: 0
  84. imgp->208: fe10
  85. imgp->210: 186b00000000c
  86. imgp->218: 0
  87. imgp->220: 0
  88. imgp->228: 186af0000000c
  89. imgp->230: 0
  90. imgp->238: 0
  91. imgp->PT_SCE_DYNLIBDATA_segment_index: 7
  92. imgp->LOOS_DYNLIB_SEGMENT: 99a4a0
  93. imgp->PT_SCE_DYNLIBDATA: 132800
  94. imgp->1c8: accca0
  95. proc 1: fffffe003a842400
  96. dinamic?: d1c000
  97. 0000000000d1c000 40 00 00 00 00 00 00 00 4f 52 42 49 01 00 00 00 |@.......ORBI....|
  98. 0000000000d1c010 81 00 70 01 00 00 00 00 00 00 00 00 00 00 00 00 |..p.............|
  99. fffffe003af17000 48 31 ed 48 83 ec 18 48 c7 c0 57 02 00 00 0f 05 |H1.H...H..W.....|
  100. fffffe003af17010 72 1f 48 c7 c0 57 02 00 00 49 89 fc 48 89 e6 48 |r.H..W...I..H..H|
  101. fffffe003af17020 89 e2 48 83 c2 08 e8 dd 0a 00 00 5e 4c 89 e7 ff |..H........^L...|
  102. fffffe003af17030 e0 0f 0b 90 90 90 90 90 30 c0 48 83 7f 10 00 74 |........0.H....t|
  103. fffffe003af17040 0a 83 bf 18 01 00 00 ff 0f 95 c0 0f b6 c0 c3 66 |...............f|
  104. fffffe003af17050 0f 1f 84 00 00 00 00 00 55 48 89 e5 53 50 48 89 |........UH..SPH.|
  105. fffffe003af17060 fb f6 05 54 |...T............|
  106. self_imgact_img[0xf0]
  107. fffffe0029a860f0 07 00 00 00 00 00 00 38 00 00 00 00 00 00 00 20 |.......8....... |
  108. fffffe0029a86100 00 ff 00 00 00 00 00 80 00 00 00 00 00 00 00 00 |................|
  109. fffffe0029a86110 00 00 00 00 00 00 00 00 00 00 00 80 00 40 00 40 |.............@.@|
  110. fffffe0029a86120 00 00 00 00 00 00 00 80 00 00 00 00 00 00 00 08 |................|
  111. fffffe0029a86130 00 40 ff ff 00 00 00 f0 00 00 00 00 00 00 00 00 |.@..............|
  112. fffffe0029a86140 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  113. fffffe0029a86150 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  114. fffffe0029a86160 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  115. fffffe0029a86170 00 00 00 00 00 00 00 00 |................|
  116. setting regs for /app0/eboot_dec.bin rip(should be libkernel->start): 82e393d58
  117. kernel entry
  118. ffffff8002400c40 48 31 ed 48 83 ec 18 48 c7 c0 57 02 00 00 0f 05 |H1.H...H..W.....|
  119. ffffff8002400c50 72 1f 48 c7 c0 57 02 00 00 49 89 fc 48 89 e6 48 |r.H..W...I..H..H|
  120.  
  121. stack_base 7efccadc8:
  122. found? 0
  123. Loading custom module
  124. after NDINIT v2
  125. namei returned: 0
  126. exec_check_permissions: 0, opened: 1
  127. exec_map_first_page: 0 fffffe004f988000
  128. binvp->v_object: fffffe003b2c5980
  129. after vm_object_reference
  130. fffffe004f988000 7f 45 4c 46 02 01 01 00 00 00 00 00 00 00 00 00 |.ELF............|
  131. fffffe004f988010 03 00 3e 00 01 00 00 00 e0 14 00 00 00 00 00 00 |..>.............|
  132. fffffe004f988020 40 00 00 00 00 00 00 00 a8 8c 00 00 00 00 00 00 |@...............|
  133. fffffe004f988030 00 00 00 00 40 00 38 00 08 00 40 00 10 00 0f 00 |....@.8...@.....|
  134. fffffe004f988040 06 00 00 00 05 00 00 00 40 00 00 00 00 00 00 00 |........@.......|
  135. fffffe004f988050 40 00 00 00 00 00 00 00 40 00 00 00 00 00 00 00 |@.......@.......|
  136. fffffe004f988060 c0 01 00 00 00 00 00 00 c0 01 00 00 00 00 00 00 |................|
  137. fffffe004f988070 08 00 00 00 00 00 00 00 03 00 00 00 04 00 00 00 |................|
  138. fffffe004f988080 00 02 00 00 00 00 00 00 00 02 00 00 00 00 00 00 |................|
  139. fffffe004f988090 00 02 00 00 00 00 00 00 1c 00 00 00 00 00 00 00 |................|
  140. fffffe004f9880a0 1c 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 |................|
  141. fffffe004f9880b0 01 00 00 00 05 00 00 00 00 00 00 00 00 00 00 00 |................|
  142. fffffe004f9880c0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  143. fffffe004f9880d0 78 77 00 00 00 00 00 00 78 77 00 00 00 00 00 00 |xw......xw......|
  144. fffffe004f9880e0 00 00 20 00 00 00 00 00 01 00 00 00 06 00 00 00 |.. .............|
  145. fffffe004f9880f0 f0 7e 00 00 00 00 00 00 f0 7e 20 00 00 00 00 00 |.~.......~ .....|
  146. Elf64_Ehdr {
  147. unsigned char e_ident[EI_NIDENT]; /* File identification. */
  148. Elf64_Half e_type = 3; /* File type. */
  149. Elf64_Half e_machine = 62; /* Machine architecture. */
  150. Elf64_Word e_version = 1; /* ELF format version. */
  151. Elf64_Addr e_entry = 14e0; /* Entry point. */
  152. Elf64_Off e_phoff = 40; /* Program header file offset. */
  153. Elf64_Off e_shoff; /* Section header file offset. */
  154. Elf64_Word e_flags; /* Architecture-specific flags. */
  155. Elf64_Half e_ehsize; /* Size of ELF header in bytes. */
  156. Elf64_Half e_phentsize; /* Size of program header entry. */
  157. Elf64_Half e_phnum; /* Number of program header entries. */
  158. Elf64_Half e_shentsize; /* Size of section header entry. */
  159. Elf64_Half e_shnum; /* Number of section header entries. */
  160. Elf64_Half e_shstrndx = f; /* Section name strings section. */
  161. }
  162. fffffe004f988040 06 00 00 00 05 00 00 00 40 00 00 00 00 00 00 00 |........@.......|
  163. fffffe004f988050 40 00 00 00 00 00 00 00 40 00 00 00 00 00 00 00 |@.......@.......|
  164. fffffe004f988060 c0 01 00 00 00 00 00 00 c0 01 00 00 00 00 00 00 |................|
  165. fffffe004f988070 08 00 00 00 00 00 00 00 03 00 00 00 04 00 00 00 |................|
  166. section
  167. { type: 6 offset: 40 vaddr: 40 memsz: 1c0 filesz: 1c0 prot: 5 }
  168. section
  169. { type: 3 offset: 200 vaddr: 200 memsz: 1c filesz: 1c prot: 1 }
  170. section
  171. { type: 1 offset: 0 vaddr: 0 memsz: 7778 filesz: 7778 prot: 5 }
  172. rebasing to 2009e8000
  173. [INFO] first map len: 8000
  174. [INFO] got to a map_insert
  175. { off: 0 start: 2009e8000 end: 2009f0000 prot: 5}
  176. section
  177. { type: 1 offset: 7ef0 vaddr: 200befef0 memsz: c058 filesz: 110 prot: 3 }
  178. [INFO] first map len: 4000
  179. [INFO] got to a map_insert
  180. { off: 4000 start: 200bec000 end: 200bf0000 prot: 3}
  181. [INFO] mapping anonymous page copy_len: 0 madrr: 200bf0000 maplen: c000
  182. [INFO] got to a map_insert
  183. { off: 0 start: 200bf0000 end: 200bfc000 prot: 7}
  184. [INFO] mapped
  185. [INFO] protecting page
  186. [INFO] protecting page done
  187. section
  188. { type: 2 offset: 7ef0 vaddr: 200befef0 memsz: 110 filesz: 110 prot: 3 }
  189. section
  190. { type: 1685382480 offset: 7398 vaddr: 2009ef398 memsz: 9c filesz: 9c prot: 1 }
  191. section
  192. { type: 1685382481 offset: 0 vaddr: 2009e8000 memsz: 0 filesz: 0 prot: 7 }
  193. section
  194. { type: 1685382482 offset: 7ef0 vaddr: 200befef0 memsz: 110 filesz: 110 prot: 1 }
  195. fffffe0029868400 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  196. fffffe0029868410 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  197. fffffe0029868420 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  198. fffffe0029868430 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  199. fffffe0029868440 1b 00 00 00 01 00 00 00 02 00 00 00 00 00 00 00 |................|
  200. fffffe0029868450 00 02 00 00 00 00 00 00 00 02 00 00 00 00 00 00 |................|
  201. fffffe0029868460 1c 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  202. fffffe0029868470 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  203. fffffe0029868480 23 00 00 00 05 00 00 00 02 00 00 00 00 00 00 00 |#...............|
  204. fffffe0029868490 20 02 00 00 00 00 00 00 20 02 00 00 00 00 00 00 | ....... .......|
  205. fffffe00298684a0 10 00 00 00 00 00 00 00 03 00 00 00 00 00 00 00 |................|
  206. fffffe00298684b0 08 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 |................|
  207. fffffe00298684c0 29 00 00 00 0b 00 00 00 02 00 00 00 00 00 00 00 |)...............|
  208. fffffe00298684d0 30 02 00 00 00 00 00 00 30 02 00 00 00 00 00 00 |0.......0.......|
  209. fffffe00298684e0 18 00 00 00 00 00 00 00 04 00 00 00 01 00 00 00 |................|
  210. fffffe00298684f0 08 00 00 00 00 00 00 00 18 00 00 00 00 00 00 00 |................|
  211. fffffe0029868500 31 00 00 00 03 00 00 00 02 00 00 00 00 00 00 00 |1...............|
  212. fffffe0029868510 48 02 00 00 00 00 00 00 48 02 00 00 00 00 00 00 |H.......H.......|
  213. fffffe0029868520 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  214. fffffe0029868530 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  215. fffffe0029868540 39 00 00 00 04 00 00 00 02 00 00 00 00 00 00 00 |9...............|
  216. fffffe0029868550 50 02 00 00 00 00 00 00 50 02 00 00 00 00 00 00 |P.......P.......|
  217. fffffe0029868560 90 12 00 00 00 00 00 00 03 00 00 00 00 00 00 00 |................|
  218. fffffe0029868570 08 00 00 00 00 00 00 00 18 00 00 00 00 00 00 00 |................|
  219. fffffe0029868580 43 00 00 00 01 00 00 00 06 00 00 00 00 00 00 00 |C...............|
  220. fffffe0029868590 e0 14 00 00 00 00 00 00 e0 14 00 00 00 00 00 00 |................|
  221. fffffe00298685a0 61 1b 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |a...............|
  222. fffffe00298685b0 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  223. fffffe00298685c0 49 00 00 00 01 00 00 00 02 00 00 00 00 00 00 00 |I...............|
  224. fffffe00298685d0 50 30 00 00 00 00 00 00 50 30 00 00 00 00 00 00 |P0......P0......|
  225. fffffe00298685e0 47 43 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |GC..............|
  226. fffffe00298685f0 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  227. fffffe0029868600 51 00 00 00 01 00 00 00 02 00 00 00 00 00 00 00 |Q...............|
  228. fffffe0029868610 98 73 00 00 00 00 00 00 98 73 00 00 00 00 00 00 |.s.......s......|
  229. fffffe0029868620 9c 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  230. fffffe0029868630 04 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  231. fffffe0029868640 5f 00 00 00 01 00 00 00 02 00 00 00 00 00 00 00 |_...............|
  232. fffffe0029868650 38 74 00 00 00 00 00 00 38 74 00 00 00 00 00 00 |8t......8t......|
  233. fffffe0029868660 40 03 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |@...............|
  234. fffffe0029868670 08 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  235. fffffe0029868680 69 00 00 00 06 00 00 00 03 00 00 00 00 00 00 00 |i...............|
  236. fffffe0029868690 f0 7e 20 00 00 00 00 00 f0 7e 00 00 00 00 00 00 |.~ ......~......|
  237. fffffe00298686a0 10 01 00 00 00 00 00 00 04 00 00 00 00 00 00 00 |................|
  238. fffffe00298686b0 08 00 00 00 00 00 00 00 10 00 00 00 00 00 00 00 |................|
  239. fffffe00298686c0 72 00 00 00 08 00 00 00 03 00 00 00 00 00 00 00 |r...............|
  240. fffffe00298686d0 00 80 20 00 00 00 00 00 00 80 00 00 00 00 00 00 |.. .............|
  241. fffffe00298686e0 48 bf 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |H...............|
  242. fffffe00298686f0 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  243. fffffe0029868700 77 00 00 00 01 00 00 00 30 00 00 00 00 00 00 00 |w.......0.......|
  244. fffffe0029868710 00 00 00 00 00 00 00 00 00 80 00 00 00 00 00 00 |................|
  245. fffffe0029868720 2d 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |-...............|
  246. fffffe0029868730 01 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 |................|
  247. fffffe0029868740 01 00 00 00 02 00 00 00 00 00 00 00 00 00 00 00 |................|
  248. fffffe0029868750 00 00 00 00 00 00 00 00 30 80 00 00 00 00 00 00 |........0.......|
  249. fffffe0029868760 b0 07 00 00 00 00 00 00 0e 00 00 00 25 00 00 00 |............%...|
  250. fffffe0029868770 08 00 00 00 00 00 00 00 18 00 00 00 00 00 00 00 |................|
  251. fffffe0029868780 09 00 00 00 03 00 00 00 00 00 00 00 00 00 00 00 |................|
  252. fffffe0029868790 00 00 00 00 00 00 00 00 e0 87 00 00 00 00 00 00 |................|
  253. fffffe00298687a0 48 04 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |H...............|
  254. fffffe00298687b0 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  255. fffffe00298687c0 11 00 00 00 03 00 00 00 00 00 00 00 00 00 00 00 |................|
  256. fffffe00298687d0 00 00 00 00 00 00 00 00 28 8c 00 00 00 00 00 00 |........(.......|
  257. fffffe00298687e0 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  258. fffffe00298687f0 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
  259. reading string section 8c28 80
  260. ffffff800210c000 00 2e 73 79 6d 74 61 62 00 2e 73 74 72 74 61 62 |..symtab..strtab|
  261. ffffff800210c010 00 2e 73 68 73 74 72 74 61 62 00 2e 69 6e 74 65 |..shstrtab..inte|
  262. ffffff800210c020 72 70 00 2e 68 61 73 68 00 2e 64 79 6e 73 79 6d |rp..hash..dynsym|
  263. ffffff800210c030 00 2e 64 79 6e 73 74 72 00 2e 72 65 6c 61 2e 64 |..dynstr..rela.d|
  264. ffffff800210c040 79 6e 00 2e 74 65 78 74 00 2e 72 6f 64 61 74 61 |yn..text..rodata|
  265. ffffff800210c050 00 2e 65 68 5f 66 72 61 6d 65 5f 68 64 72 00 2e |..eh_frame_hdr..|
  266. ffffff800210c060 65 68 5f 66 72 61 6d 65 00 2e 64 79 6e 61 6d 69 |eh_frame..dynami|
  267. ffffff800210c070 63 00 2e 62 73 73 00 2e 63 6f 6d 6d 65 6e 74 00 |c..bss..comment.|
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement