Hacking Post your WiiU cheat codes here!

  • Thread starter Thread starter LawnMeower
  • Start date Start date
  • Views Views 2,113,726
  • Replies Replies 9,274
  • Likes Likes 52
Does somebody know the offset for "Monster hunter 3 ultimate" (WiiU) with Loadiine GX2 on 5.5.1
 
can somebody make a Pal version of this code pls?:
Secondary Item Slot Modifier
378D6B9C 0000000X

1 - Mushroom
2 - Cat
3 - Fire Flower
4 - Tanooki
5 - Boomerang
6 - Golden Leaf
7 - Lucky Bell

While I can't make any promises since school is about to start for me in a week. I could make a powerup modifier (it give the player the powerup instead of just storing it in an inventory) for player 2 also, if you want me to. (Even though my codes were made with the NTSC game, I remember hearing from the Pal user that some of my codes worked for them).
 
Last edited by CuriousTommy,
Just thought I'd make your search a bit easier, @CuriousTommy, so... yeah. By the way, there are 8 offsets of a kind (16, if we add the less than timers) in the 30000000's row, that tells the game whether or not all of the coins have been collected... and/or renders said coins intangible. I haven't the foggiest, however, on where the real Green Coin timer might be in the 30000000's.
 
So thanks to JGecko U's search function and my previous experience porting the battle codes, I've managed to port all the Hyrule Warriors codes I had for 1.10.0 to 1.11.0. These are NTSC, specifically the North American version. I'm including the XML here. If anyone is interested, the offset for Bazaar codes (rupees, materials, Adventure Map items, etc.) is - 4E50. That means I actually had to subtract 4E50 from the previous version's codes. The offset for the battle codes is 12E0.
 

Attachments

  • Like
Reactions: I pwned U!
My wii u freezes when i try to hack loadiine games.

More info. -

How i expected it to go -

Starts Wii U
Goes to Web Browser
Launches Kexploit 10
Goes back to Web Browser
Launches HBL
In HBL, Launches TCPGecko (Wii U RAM Hacking)
Presses X
Returns to Home Menu
Launches Web Browser
Launches HBL
In HBL,Launches Loadiine Gx2
Enables PyGecko Support in Loadiine Gx2 Settings
Launches A game from Loadiine Gx2
Connects JGecko U
Sends Cheat Codes
All Done!

How it actually went -

Starts Wii U
Goes to Web Browser
Launches Kexploit 10
Goes back to Web Browser
Launches HBL
In HBL, Launches TCPGecko (Wii U RAM Hacking)
Presses X
Returns to Home Menu
Launches Web Browser
Wii U Freezes! :(
Force shut downs wii u.

Please Help!
You cannot use gecko.elf file with loadiine. You have to enable PyGecko in LoadiineGX2 as you stated and start your game and should be able to connect. No need to relaunch the Home Brew Loader. Keep in mind with JGecko U, you cannot use the send code feature as pygecko does not have @CosmoCortney code handler.
 
While I can't make any promises since school is about to start for me in a week. I could make a powerup modifier (it give the player the powerup instead of just storing it in an inventory) for player 2 also, if you want me to. (Even though my codes were made with the NTSC game, I remember hearing from the Pal user that some of my codes worked for them).
yeah that was nice pls make it!
 
i tried doing -

Start wii u
launch web browser
Go to wj44.xyz
Load kexploit 31
launch web browser
go to wj44.xyz
load pygecko
launch web browser
go to wj44.xyz
load kexploit 10
launch web browser
go to wj44.xyz
load HBL
In HBL, load loadiine
Enable pygecko in settings
load game
connect jgecko U

I was successful till here, until -

Send cheat codes (FAIL)
ERROR : It can't send cheat codes because it's not cosmocourtney's codehandler

Is there a way to stop that error?
 
i tried doing -

Start wii u
launch web browser
Go to wj44.xyz
Load kexploit 31
launch web browser
go to wj44.xyz
load pygecko
launch web browser
go to wj44.xyz
load kexploit 10
launch web browser
go to wj44.xyz
load HBL
In HBL, load loadiine
Enable pygecko in settings
load game
connect jgecko U

I was successful till here, until -

Send cheat codes (FAIL)
ERROR : It can't send cheat codes because it's not cosmocourtney's codehandler

Is there a way to stop that error?
you must have luck maybe you can send maybe not
 
i tried doing -

Start wii u
launch web browser
Go to wj44.xyz
Load kexploit 31
launch web browser
go to wj44.xyz
load pygecko
launch web browser
go to wj44.xyz
load kexploit 10
launch web browser
go to wj44.xyz
load HBL
In HBL, load loadiine
Enable pygecko in settings
load game
connect jgecko U

I was successful till here, until -

Send cheat codes (FAIL)
ERROR : It can't send cheat codes because it's not cosmocourtney's codehandler

Is there a way to stop that error?
i dont think so but if it is a code like
00020000 1071219C
03030000 00000000
you can remove the 00020000 and the 000000000 and poke the address (1071219C in this case) with the Value (03030000 in this case)

(this btw is the HW1.11 Pal Code for speacial attack)
 
you must have luck maybe you can send maybe not
Actually he is doing it wrong, if using LoadiineGX2, there is no need to load PyGecko twice. LoadiineGX2 has it's own Pygecko which can be enabled from within it's menu. I have told @Anoymous_001 that you cannot send codes with JGecko U, as I stated earlier, PyGecko does not have the required handler. All he can do is just view the RAM in memory viewer portion of JGecko U and poke the memory from there. It is probably better to use TCPGecko for Loadiine though. He apparently did not read my post or something?:sleep:
 
Last edited by RandomUser,
  • Like
Reactions: CuriousTommy
What happened to the pointer in pointer codetype? None of my codes can be ported properly without it. I tried to chain multiple pointers togethor and it didn't work.

I tried to do this:
30000000 XXXXXXXX # pointer address
42800000 49000000 # range
31000000 000000YY # add YY to the pointer
00120000 00000001 # add 0000 to [value at XXXXXXXX] + YY and write 00000001
00120004 000000FF # add 0004 to [value at XXXXXXXX] + YY and write 000000FF
30000000 000000ZZ # pointer in pointer - [XXXXXXXX] + YY (don't resolve YY) + ZZ]
42800000 4A000000 # range
31000000 00000030 # add 30 to [XXXXXXXX] + YY (don't resolve YY) + ZZ]
00120000 FFFFFFFF # write FFFFFFFF to [XXXXXXXX] + YY (don't resolve YY) + ZZ] + 0000
001200CC 00000000 # write 00000000 to [XXXXXXXX] + YY (don't resolve YY) + ZZ] + 00CC
001200D0 00000000 # write 00000000 to [XXXXXXXX] + YY (don't resolve YY) + ZZ] + 00D0
D0000000 DEADCAFE # terminator


Can someone help? The code can't be posted publicly so I used fake numbers and X/Y/Z when creating this post, assume that these are the actual offsets and values.
 
What happened to the pointer in pointer codetype? None of my codes can be ported properly without it. I tried to chain multiple pointers togethor and it didn't work.

I tried to do this:
30000000 XXXXXXXX # pointer address
42800000 49000000 # range
31000000 000000YY # add YY to the pointer
00120000 00000001 # add 0000 to [value at XXXXXXXX] + YY and write 00000001
00120004 000000FF # add 0004 to [value at XXXXXXXX] + YY and write 000000FF
30000000 000000ZZ # pointer in pointer - [XXXXXXXX] + YY (don't resolve YY) + ZZ]
42800000 4A000000 # range
31000000 00000030 # add 30 to [XXXXXXXX] + YY (don't resolve YY) + ZZ]
00120000 FFFFFFFF # write FFFFFFFF to [XXXXXXXX] + YY (don't resolve YY) + ZZ] + 0000
001200CC 00000000 # write 00000000 to [XXXXXXXX] + YY (don't resolve YY) + ZZ] + 00CC
001200D0 00000000 # write 00000000 to [XXXXXXXX] + YY (don't resolve YY) + ZZ] + 00D0
D0000000 DEADCAFE # terminator


Can someone help? The code can't be posted publicly so I used fake numbers and X/Y/Z when creating this post, assume that these are the actual offsets and values.
I am trying to understand how you code works. Are there two different pointers that you want to combine into one code? Or are you using the same pointer?
 
I am trying to understand how you code works. Are there two different pointers that you want to combine into one code? Or are you using the same pointer?
I got it to work after I stopped trying to take shortcuts. I separated the normal pointer code and the pointer in pointer. It works when they're seperated. This method works on DS and 3DS but apparently not on Wii U.

it would have been something like this, simplified. Everything in [] is resolved, everything outside is just added
[XXXXXXXX] + 10 VVVVVVVV
[XXXXXXXX] + 14 VVVVVVVV
[XXXXXXXX + ZZ] + 10 VVVVVVVV

XXXXXXXX is the same in both cases, so I thought I could do my single pointer writes and then my pointer in pointer writes below it by just adding ZZ to the current offset without re-resolving XXXXXXXX. I don't understand why but it apparently doesn't work that way with the Wii U codetypes.

It might still be confusing but if you know 3ds here is an example

[mushroom + display]
D3000000 14000000
B37BDFD4 00000000 # grab value at 17BDFD4 and load value into base address
000009AC 21F6C700 # add 9AC and write 21F6C700
00001EAC 40000000 # add 1EAC and write 40000000
B00004C0 00000000 # add 4C0 to current offset and then take value and load into base address
00001810 182E2F00 # add 1810 and write 182E2F00
D2000000 00000000
 
I only started making cheat codes for the Wii U. I never did any cheat codes on the DS or 3DS. But I think I sort of get what you are trying to day.

Everything in [] is resolved, everything outside is just added
When you mean resolved, do you loading the pointer value from the address?

XXXXXXXX is the same in both cases, so I thought I could do my single pointer writes and then my pointer in pointer writes below it by just adding ZZ to the current offset without re-resolving XXXXXXXX. I don't understand why but it apparently doesn't work that way with the Wii U codetypes.
Since you already solved your problem, it would probably be pointless for me to post this. But maybe something like this could work?
Code:
30000000 LLLLLLLL
10000000 50000000
00120010 VVVVVVVV
00120014 VVVVVVVV
31000000 000000ZZ
30100000 00000000
10000000 50000000
00120010 VVVVVVVV
D0000000 DEADCAFE
I don't even know if you are allowed to do this... I had never been in a situation where I needed to do something like this.
 
But where to find the new code handler??

All codes crash my game but I guess I don't have the new code handler

Okay, so here is the code list ported to the new code handler. I do need people to test this first before @Macopride64 puts it on his website.
Button Activator GCC [Macopride64 -PAL]*
09010000 112EC9C2
0000XXXX 00000000
*Makes use of the if AND statement, allow code to be activated even if other buttons are being pressed.

P1 Walk/Run Speed Modifier [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
31000000 000003E8
00120000 XXXXXXXX
00120004 YYYYYYYY
D0000000 DEADCAFE

Substitute XXXXXXXX for Walk Speed
Substitute YYYYYYYY for Run Speed

P1 Infinite Ledge Hang Time [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000474
00120000 00000165
D0000000 DEADCAFE

P1 Infinite Footstools [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000006A3
00100000 00000000
D0000000 DEADCAFE

P1 Instant Get Up After Missed Tech [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000408
00120000 00000000
D0000000 DEADCAFE

P1 Instant Respawn [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 0000047C
00120000 000000FF
D0000000 DEADCAFE

P1 No Dizziness From Shield Break/Instant Grab Break [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 0000036C
00120000 00000000
D0000000 DEADCAFE

P1 Infinite Shield [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000504
00120000 42480000
D0000000 DEADCAFE

P1 Damage Percentage Modifier [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00001B70
00120000 XXXXXXXX
D0000000 DEADCAFE

P1 No Ledge Invincibility [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000950
00100000 00000000
D0000000 DEADCAFE

P1 Always Get Ledge Invincibility [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000950
00100000 02000000
D0000000 DEADCAFE

P1 Jumps Modifier [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000693
00100000 000000XX
D0000000 DEADCAFE

Start Game With One Player [Macopride64 -NTSC-U]
30000000 107FA2D8
13000000 13800000
31000000 000000E0
00100000 00000001
D0000000 DEADCAFE

Mario:
Mario: F.L.U.D.D. Always Full Charge [Macopride64 -PAL]

03000000 1098EDEB
00000004 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000897
00100000 00000050
D0000000 DEADCAFE

Bowser:
Bowser: Infinite Fire Breath [Macopride64 -PAL]

03000000 1098EDEB
00000010 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000005B4
00120000 3F99999A
00120008 3FD9999A
D0000000 DEADCAFE

Yoshi:
Yoshi: Infinite Egg Roll [Macopride64 -PAL]

03000000 1098EDEB
00000008 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000003F8
00120000 00000000
D0000000 DEADCAFE

Rosalina & Luma:
Rosalina & Luma: Luma Shot Always Full Charge [Macopride64 -PAL]

03000000 1098EDEB
00000025 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000003E8
00120000 7F800000
D0000000 DEADCAFE

Rosalina & Luma: Launch Star Height Modifier [Macopride64 -PAL]
03000000 1098EDEB
00000025 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000003EC
00120000 X0000000
D0000000 DEADCAFE

Bowser JR.:
Bowser JR.: Clown Cannon Always Full Charge [Macopride64 -PAL]

03000000 1098EDEB
0000002C 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000003E4
00120000 7F800000
D0000000 DEADCAFE

Wario:
Wario: Waft Always Full [Macopride64 -PAL]

03000000 1098EDEB
00000017 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 0000089E
00110000 000019C8
D0000000 DEADCAFE

Donkey Kong:
Donkey Kong: Giant Punch Always Full Charge [Macopride64 -PAL]

03000000 1098EDEB
00000005 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000005B4
00120000 41200000
D0000000 DEADCAFE

Diddy Kong
Diddy Kong: Peanut Popgun Always Full Charge [Macopride64 -PAL]

03000000 1098EDEB
0000001C 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000003E4
00120000 42200000
D0000000 DEADCAFE

Diddy Kong: Rocket Barrel Boost Always Full Charge [Macopride64 -PAL]

03000000 1098EDEB
0000001C 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000477
00100000 0000005A
D0000000 DEADCAFE

Little Mac
Little Mac: Always Have K.O. Punch [Macopride64 -PAL]

03000000 1098EDEB
00000027 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000005B4
00120000 42C80000
D0000000 DEADCAFE

Link:
Link: Hero's Bow Always Full Charge [Macopride64 -PAL]

03000000 1098EDEB
00000006 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000003E4
00120000 42700000
D0000000 DEADCAFE

Zelda:
Zelda: Phantom Slash Always Full Charge [Macopride64 -PAL]

03000000 1098EDEB
00000011 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000477
00100000 0000006D
D0000000 DEADCAFE

Sheik:
Sheik: Needle Storm Always Full Charge [Macopride64 -PAL]

03000000 1098EDEB
00000012 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000897
00100000 00000006
D0000000 DEADCAFE

Toon Link:
Toon Link: Hero's Bow Full Charge [Macopride64 -PAL]

03000000 1098EDEB
00000021 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000003E4
00120000 42700000
D0000000 DEADCAFE

Samus:
Samus: Charge Shot Always Full [Macopride64 -PAL]

03000000 1098EDEB
00000007 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 0000089B
00100000 00000070
D0000000 DEADCAFE

Marth:
Marth: Shield Breaker Always Full Charge [Macopride64 -PAL]

03000000 1098EDEB
00000013 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000477
00100000 0000003C
D0000000 DEADCAFE

Lucario:
Lucario: Aura Sphere Always Full [Macopride64 -PAL]

03000000 1098EDEB
0000001F 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000897
00100000 0000005A
D0000000 DEADCAFE

R.O.B.:
R.O.B.: Robo Beam/Gyro/Robo Burner Always Full [Macopride64 -PAL]

03000000 1098EDEB
00000020 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000005B4
00120000 44570000
00120004 42B40000
00120008 43020000
D0000000 DEADCAFE

Mewtwo:
Mewtwo: Shadow Ball Always Full [Macopride64 -PAL]

03000000 1098EDEB
00000034 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00000897
00100000 00000078
D0000000 DEADCAFE

Cloud:
Cloud: Instant Limit Break Charge [Macopride64 -PAL]

03000000 1098EDEB
00000038 00000000
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 000005B4
00120000 42C80000
D0000000 DEADCAFE
P1 Invincibility [Macopride64 -PAL]
30000000 107F9C30
13000000 13800000
31000000 0000002C
30100000 00000000
13000000 13800000
31000000 00001B5B
00100000 00000001
D0000000 DEADCAFE

Stocks Modifier [Macopride64 -PAL]
30000000 107FA024
17000000 17800000
31000000 000000YY
30100000 00000000
17000000 17800000
31000000 000000C7
00100000 000000XX
D0000000 DEADCAFE
You can find the values on his website: http://gewiihacks.freeforums.org/super-smash-bros-for-wii-u-f18.html

Edit: I tested the Start Game With One Player and it works!
 
yeah that was nice pls make it!
So I have some bad new, I can't seem to get a good pointer currently from the game. For the powerup effect, it seems like all of the pointers are bad and I got zero pointers for the costume effect. I am going to try to change how I do the ram dumps and see if I have better luck.
 

Site & Scene News

Popular threads in this forum