Page 1 of 4 123 ... LastLast
Results 1 to 15 of 64

Hybrid View

  1. #1
    Jorndel's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Location
    Norway
    Posts
    8,676
    Reputation
    905
    Thanks
    19,113
    My Mood
    Angelic

    OllyDBG - Find Speed Address (Text - Hard to Understand)

    ---- Uploading Video Tutorial (15 Min long)----
    Covers: Speed, Jump and Gravity. (Also attempt for Health, but went wrong this time )
    Mainly uses OllyDBG, but also a quick jump in IDA.



    1: Get OllyDBG. [Use Google] (Since it's free )
    2: Open OllyDBG as Administrator. (Just for the lolz)
    3: Now you click in this order:
    File->Open [Find your Black Ops II Folder, in the steam folder] {FileName: t6zm.exe} -> Open

    4: Right-Click on this window:


    Then click in this order:
    View-> Module t6zm

    5: Now Right-Click the same window as we did before.
    The click in this order:
    Search for -> All referenced text strings

    A new window will open:


    Right-Click and select: Search for text
    Enter: g_speed
    (Click CTRL + L to search for next) [Do this 2 times]
    Until you find this:


    Double Click the: g_speed
    Then we will be taken to a new window. (Once again)


    Now we will look for anything that is like this:
    PTR DS:[???????]

    The ? = Offset/Pointer value to our address. (speed isn't [offset/pointer] most others are.)
    Note, everytime it will start with: MOV


    Now we want to take the value inside the: [ ] (Those I made ??????)
    Copy that, and insert it to cheat engine or any other hacking tool you use.

    Then you read it as Integer in Cheat Engine.
    Copy the value from cheat engine. (integer)

    Open Windows calculator, set it to programmer mode.
    Enter paste the values, change to hex.
    Now + 0x88 (or: 0x18)
    Copy the address, paste it in Cheat Engine.

    Now the value should be: 190 (Value Type: Integer)
    Last edited by Jorndel; 11-26-2012 at 11:14 AM.

     
    Contributor 01.27.2012 - N/A
    Donator 07-17-2012 - Current
    Editor/Manager 12-16-12 - N/A
    Minion 01-10-2013 - 07.17.13
    Former Staff 09-20-2012 - 01-10-2013 / 07-17-2013 - Current
    Cocksucker 20-04-2013 - N/A

  2. The Following 8 Users Say Thank You to Jorndel For This Useful Post:

    Geomatrical the 7th (11-26-2012),HexMurder (04-01-2016),KeyTools (11-29-2012),Lovroman (04-09-2013),phil13hebert (11-28-2012),Silent (05-20-2015),Slirpa (11-25-2012),Tester9000 (07-08-2014)

  3. #2
    master131's Avatar
    Join Date
    Apr 2010
    Gender
    male
    Location
    Melbourne, Australia
    Posts
    8,858
    Reputation
    3438
    Thanks
    101,669
    My Mood
    Breezy
    Pretty sure that + 88 is the wrong dvar value offset.
    Donate:
    BTC: 1GEny3y5tsYfw8E8A45upK6PKVAEcUDNv9


    Handy Tools/Hacks:
    Extreme Injector v3.7.3
    A powerful and advanced injector in a simple GUI.
    Can scramble DLLs on injection making them harder to detect and even make detected hacks work again!

    Minion Since: 13th January 2011
    Moderator Since: 6th May 2011
    Global Moderator Since: 29th April 2012
    Super User/Unknown Since: 23rd July 2013
    'Game Hacking' Team Since: 30th July 2013

    --My Art--
    [Roxas - Pixel Art, WIP]
    [Natsu - Drawn]
    [Natsu - Coloured]


    All drawings are coloured using Photoshop.

    --Gifts--
    [Kyle]

  4. The Following User Says Thank You to master131 For This Useful Post:

    barata55 (12-03-2012)

  5. #3
    Jorndel's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Location
    Norway
    Posts
    8,676
    Reputation
    905
    Thanks
    19,113
    My Mood
    Angelic
    Quote Originally Posted by master131 View Post
    Pretty sure that + 88 is the wrong dvar value offset.
    Well, it have been working for almost any DVAR I have used so.
    How I found it was by taling the fov addy +/- the one I got via OllyDBG.

    If it's wrong, let me know and I will look for a fix. Still, works for sp, zm and mp.


    ---------- Post added at 11:04 AM ---------- Previous post was at 11:00 AM ----------

    I see..

    Its 0x88


    can you fix?

     
    Contributor 01.27.2012 - N/A
    Donator 07-17-2012 - Current
    Editor/Manager 12-16-12 - N/A
    Minion 01-10-2013 - 07.17.13
    Former Staff 09-20-2012 - 01-10-2013 / 07-17-2013 - Current
    Cocksucker 20-04-2013 - N/A

  6. #4
    master131's Avatar
    Join Date
    Apr 2010
    Gender
    male
    Location
    Melbourne, Australia
    Posts
    8,858
    Reputation
    3438
    Thanks
    101,669
    My Mood
    Breezy
    0x88 is outside the dvar_t's struct size (0x70) so that can't be it.... That would mean it's writing into the value of the next dvar...
    Donate:
    BTC: 1GEny3y5tsYfw8E8A45upK6PKVAEcUDNv9


    Handy Tools/Hacks:
    Extreme Injector v3.7.3
    A powerful and advanced injector in a simple GUI.
    Can scramble DLLs on injection making them harder to detect and even make detected hacks work again!

    Minion Since: 13th January 2011
    Moderator Since: 6th May 2011
    Global Moderator Since: 29th April 2012
    Super User/Unknown Since: 23rd July 2013
    'Game Hacking' Team Since: 30th July 2013

    --My Art--
    [Roxas - Pixel Art, WIP]
    [Natsu - Drawn]
    [Natsu - Coloured]


    All drawings are coloured using Photoshop.

    --Gifts--
    [Kyle]

  7. #5
    Jorndel's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Location
    Norway
    Posts
    8,676
    Reputation
    905
    Thanks
    19,113
    My Mood
    Angelic
    Quote Originally Posted by master131 View Post
    0x88 is outside the dvar_t's struct size (0x70) so that can't be it.... That would mean it's writing into the value of the next dvar...
    Strange :P

    Very strange, why does it work then?
    For the speed, jump, gravity, fov, fog, ai_enabled and more.

     
    Contributor 01.27.2012 - N/A
    Donator 07-17-2012 - Current
    Editor/Manager 12-16-12 - N/A
    Minion 01-10-2013 - 07.17.13
    Former Staff 09-20-2012 - 01-10-2013 / 07-17-2013 - Current
    Cocksucker 20-04-2013 - N/A

  8. #6
    Geomatrical the 7th's Avatar
    Join Date
    Oct 2012
    Gender
    male
    Location
    ?
    Posts
    669
    Reputation
    17
    Thanks
    811
    Thanks...

  9. #7
    master131's Avatar
    Join Date
    Apr 2010
    Gender
    male
    Location
    Melbourne, Australia
    Posts
    8,858
    Reputation
    3438
    Thanks
    101,669
    My Mood
    Breezy
    No idea to be honest. I know I'm not using + 0x88 to write my values and they work.
    Donate:
    BTC: 1GEny3y5tsYfw8E8A45upK6PKVAEcUDNv9


    Handy Tools/Hacks:
    Extreme Injector v3.7.3
    A powerful and advanced injector in a simple GUI.
    Can scramble DLLs on injection making them harder to detect and even make detected hacks work again!

    Minion Since: 13th January 2011
    Moderator Since: 6th May 2011
    Global Moderator Since: 29th April 2012
    Super User/Unknown Since: 23rd July 2013
    'Game Hacking' Team Since: 30th July 2013

    --My Art--
    [Roxas - Pixel Art, WIP]
    [Natsu - Drawn]
    [Natsu - Coloured]


    All drawings are coloured using Photoshop.

    --Gifts--
    [Kyle]

  10. #8
    Jorndel's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Location
    Norway
    Posts
    8,676
    Reputation
    905
    Thanks
    19,113
    My Mood
    Angelic
    Quote Originally Posted by master131 View Post
    No idea to be honest. I know I'm not using + 0x88 to write my values and they work.
    Suppose I get the other one then.
    To check :P

     
    Contributor 01.27.2012 - N/A
    Donator 07-17-2012 - Current
    Editor/Manager 12-16-12 - N/A
    Minion 01-10-2013 - 07.17.13
    Former Staff 09-20-2012 - 01-10-2013 / 07-17-2013 - Current
    Cocksucker 20-04-2013 - N/A

  11. #9
    Hell_Demon's Avatar
    Join Date
    Mar 2008
    Gender
    male
    Location
    I love causing havoc
    Posts
    3,976
    Reputation
    343
    Thanks
    4,320
    My Mood
    Cheeky
    What you're using the the offset from the DVar before the one you want. Take the MOV that comes after the call after your text pointer.
    So for g_speed it's 0x227EDE0.
    Ah we-a blaze the fyah, make it bun dem!

  12. The Following 2 Users Say Thank You to Hell_Demon For This Useful Post:

    Jorndel (12-03-2012),MarkHC (12-03-2012)

  13. #10
    Jorndel's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Location
    Norway
    Posts
    8,676
    Reputation
    905
    Thanks
    19,113
    My Mood
    Angelic
    Quote Originally Posted by Hell_Demon View Post
    What you're using the the offset from the DVar before the one you want. Take the MOV that comes after the call after your text pointer.
    So for g_speed it's 0x227EDE0.
    Ah, thanks for clearing it up
    (I think it's easier for me/others to use the addy under the string)

    But, if you like to go 1 up, then why not

     
    Contributor 01.27.2012 - N/A
    Donator 07-17-2012 - Current
    Editor/Manager 12-16-12 - N/A
    Minion 01-10-2013 - 07.17.13
    Former Staff 09-20-2012 - 01-10-2013 / 07-17-2013 - Current
    Cocksucker 20-04-2013 - N/A

  14. #11
    renk001's Avatar
    Join Date
    Jul 2013
    Gender
    male
    Posts
    5
    Reputation
    10
    Thanks
    0
    now what should i do? If i got this 004BDBC5 B8 847C6D00 MOV EAX,OFFSET 006D7C84 ASCII "g_speed" please someone help me.I need to do it in cheat engine.I have in ptr ds 70ba6c value 1145569280
    Enter paste the values, change to hex.<-- thats right in hex 44480000

    Now + 0x88 (or: 0x18) <-- thats not right what should i do in hex 44480000 + 0x18? =44480000???
    Last edited by renk001; 08-04-2013 at 03:02 AM.

  15. #12
    Lovroman's Avatar
    Join Date
    Sep 2012
    Gender
    male
    Posts
    9,417
    Reputation
    611
    Thanks
    11,989
    My Mood
    Cheerful
    Quote Originally Posted by renk001 View Post
    now what should i do? If i got this 004BDBC5 B8 847C6D00 MOV EAX,OFFSET 006D7C84 ASCII "g_speed" please someone help me.I need to do it in cheat engine.I have in ptr ds 70ba6c value 1145569280
    Enter paste the values, change to hex.<-- thats right in hex 44480000

    Now + 0x88 (or: 0x18) <-- thats not right what should i do in hex 44480000 + 0x18? =44480000???
    Offset is 0x78.

  16. #13
    renk001's Avatar
    Join Date
    Jul 2013
    Gender
    male
    Posts
    5
    Reputation
    10
    Thanks
    0
    Quote Originally Posted by Lovroman View Post
    Offset is 0x78.
    Thx but what can i do with it? I have to multiplication the 44480000 with 78?
    Last edited by renk001; 08-04-2013 at 04:56 AM.

  17. #14
    Lovroman's Avatar
    Join Date
    Sep 2012
    Gender
    male
    Posts
    9,417
    Reputation
    611
    Thanks
    11,989
    My Mood
    Cheerful
    Quote Originally Posted by renk001 View Post
    Thx but waht can i do with it? I have to multiplication the 44480000 with 78?
    Try this:
    Open Cheat Engine, click "Add Address Manualy", check Pointer checkbox, paste this in textbox: 006D7C84 (I'm not sure it is correct address), write in offset textbox 78.

  18. The Following User Says Thank You to Lovroman For This Useful Post:

    renk001 (08-04-2013)

  19. #15
    renk001's Avatar
    Join Date
    Jul 2013
    Gender
    male
    Posts
    5
    Reputation
    10
    Thanks
    0
    Quote Originally Posted by Lovroman View Post
    Try this:
    Open Cheat Engine, click "Add Address Manualy", check Pointer checkbox, paste this in textbox: 006D7C84 (I'm not sure it is correct address), write in offset textbox 78.
    thx really but how did you get this 006D7C84?

Page 1 of 4 123 ... LastLast

Similar Threads

  1. How to find Invisible Address
    By 8oo73l2 in forum WarRock - International Hacks
    Replies: 12
    Last Post: 01-28-2008, 12:17 AM
  2. [Tutorial] How to find ESP address.
    By wr194t in forum WarRock - International Hacks
    Replies: 5
    Last Post: 12-20-2007, 03:42 PM
  3. How find you addresses of Stamina ,recoil , etc... with CE ?
    By leesan in forum WarRock - International Hacks
    Replies: 1
    Last Post: 10-18-2007, 03:48 AM
  4. Cannot find height address
    By SoulRemover in forum WarRock - International Hacks
    Replies: 2
    Last Post: 04-26-2007, 12:43 AM
  5. How to find GPS address?
    By scooby107 in forum WarRock - International Hacks
    Replies: 21
    Last Post: 04-16-2007, 03:25 PM