IDA Pro Wii U Loader

Discussion in 'Wii U - Hacking & Backup Loaders' started by aerosoul94, Feb 24, 2015.

  1. CosmoCortney

    CosmoCortney Chemtrail Pilot

    Member
    11
    Apr 18, 2013
    New Zealand
    on the cool side of the pillow
    Which one is it? Totally missed that :P
    The first of the more reliable exploits still freezes when I try to write to the range of the .rpx (that starts with nop, nop, blr)
     
  2. NWPlayer123

    NWPlayer123 GBAtemp Addict

    Member
    17
    Feb 17, 2012
    United States
    The Everfree Forest
    CosmoCortney likes this.
  3. gamesquest1

    gamesquest1 Nabnut

    Moderator
    21
    GBAtemp Patron
    gamesquest1 is a Patron of GBAtemp and is helping us stay independent!

    Our Patreon
    Sep 23, 2013
    would be good to have a de/recompressor though for manual editing.....figure that would be the best way to go about snes/nes rom injections, i found the rom in the prx and already know how to replace in ram, but i guess injecting it in the prx would make the emulator load up the correct settings properly from the nes header assuming they aren't hard coded for each rom
     
  4. VinsCool

    VinsCool Cattus Incerta Tacitusque

    Member
    26
    GBAtemp Patron
    VinsCool is a Patron of GBAtemp and is helping us stay independent!

    Our Patreon
    Jan 7, 2014
    Canada
    Another World
    I tried to find the rom in the rpx, but didn't. Have you used IDA for that?
    I went to direct hex viewer xD
     
  5. gamesquest1

    gamesquest1 Nabnut

    Moderator
    21
    GBAtemp Patron
    gamesquest1 is a Patron of GBAtemp and is helping us stay independent!

    Our Patreon
    Sep 23, 2013
    yeah in ida, the rom is compressed in the prx
     
    VinsCool likes this.
  6. VinsCool

    VinsCool Cattus Incerta Tacitusque

    Member
    26
    GBAtemp Patron
    VinsCool is a Patron of GBAtemp and is helping us stay independent!

    Our Patreon
    Jan 7, 2014
    Canada
    Another World
    Ok thanks :P ;)

    Even though, NES and SFC strings are findable in the rpx of each nes snes VC I got :P
     
    Last edited by VinsCool, Oct 4, 2015
  7. CosmoCortney

    CosmoCortney Chemtrail Pilot

    Member
    11
    Apr 18, 2013
    New Zealand
    on the cool side of the pillow
  8. NWPlayer123

    NWPlayer123 GBAtemp Addict

    Member
    17
    Feb 17, 2012
    United States
    The Everfree Forest
    Nah, I've poked at it a bunch, you just need to know what you're doing, what are you trying to do? You basically need to edit the sections it mirrors to.
     
  9. CosmoCortney

    CosmoCortney Chemtrail Pilot

    Member
    11
    Apr 18, 2013
    New Zealand
    on the cool side of the pillow
    I've entered A0000000 into the disassembler's address box to view the mirrored ASM. I wanted to find a permanently executed instruction to replace it by a branch-instruction to execute my own code (successfully did this to GCN and Wii games). But the attempt to view the ASM at 0xA0000000 froze the game
     
  10. NWPlayer123

    NWPlayer123 GBAtemp Addict

    Member
    17
    Feb 17, 2012
    United States
    The Everfree Forest
    Depends on what, TCPGecko patching 0xA101C55C is basically coreinit at 0x0101C400 + 0x15C, mirrored to the 0xA0 range, just open up 0x01 and find what you're looking for. If you need more in-depth for stuff after that, I think I still have all my notes lying around.
     
    CosmoCortney likes this.
  11. CosmoCortney

    CosmoCortney Chemtrail Pilot

    Member
    11
    Apr 18, 2013
    New Zealand
    on the cool side of the pillow
    I see :)
    Viewing 0xA101C55C gave me a freeze again.

    Do you mean 0x0101C55C by that? I can tell a specific instruction I'm looking for because I need to find on my own which on is permanently executed. If the game immediately freezes I know it might be useful. It will most likely be an stw or lwz instruction.

    This would probably be really useful :)
     
  12. wj44

    wj44 GBAtemp Fan

    Member
    4
    Jun 18, 2015
    Gambia, The
    You have to disable the Splatoon patches.
     
  13. CosmoCortney

    CosmoCortney Chemtrail Pilot

    Member
    11
    Apr 18, 2013
    New Zealand
    on the cool side of the pillow
    Do you mean the PyGecko that works with Splatoon?
     
  14. wj44

    wj44 GBAtemp Fan

    Member
    4
    Jun 18, 2015
    Gambia, The
    Yes, You have to use an older version.
     
  15. CosmoCortney

    CosmoCortney Chemtrail Pilot

    Member
    11
    Apr 18, 2013
    New Zealand
    on the cool side of the pillow
    Oh, where can I find it? I don't have it anymore :(
     
  16. wj44

    wj44 GBAtemp Fan

    Member
    4
    Jun 18, 2015
    Gambia, The
    CosmoCortney likes this.
  17. NWPlayer123

    NWPlayer123 GBAtemp Addict

    Member
    17
    Feb 17, 2012
    United States
    The Everfree Forest
    Yes, load the 0x01 range, the dNet client should let you dump the whole thing, there's a whole tab dedicated to it. I'll see what I can dig up later, need sleep badly lmao
     
    CosmoCortney likes this.
  18. CosmoCortney

    CosmoCortney Chemtrail Pilot

    Member
    11
    Apr 18, 2013
    New Zealand
    on the cool side of the pillow
    It's working now :)
    thank you
     
  19. NexoCube

    NexoCube stop using piracy :(

    Member
    6
    Nov 3, 2015
    France
    Stack Pointer
    That's crazy, i added it into the loaders directory and when i want to load coreinit.rpl it give me some error, is there a writed or a video tutorial ?
     
  20. NexoCube

    NexoCube stop using piracy :(

    Member
    6
    Nov 3, 2015
    France
    Stack Pointer
    Fixed, only works with 32bit version xD
     
Quick Reply
Draft saved Draft deleted
Loading...