Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion frida/config/win/addresses.11581.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 11581,
"LoadStartHookOffset": "0x28E9190",
"CDPFilterHookOffset": "0x38C4350",
"SceneOffsets": [1208, 1160, 488]
"SceneOffsets": [56, 1208, 8, 1160, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.11633.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 11633,
"LoadStartHookOffset": "0x28F22A0",
"CDPFilterHookOffset": "0x38D41E0",
"SceneOffsets": [1208, 1160, 488]
"SceneOffsets": [56, 1208, 8, 1160, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.13331.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 13331,
"LoadStartHookOffset": "0x0FFC200",
"CDPFilterHookOffset": "0x2420100",
"SceneOffsets": [1272, 1224, 488]
"SceneOffsets": [56, 1272, 8, 1224, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.13341.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 13341,
"LoadStartHookOffset": "0x10009E0",
"CDPFilterHookOffset": "0x242E8E0",
"SceneOffsets": [1272, 1224, 488]
"SceneOffsets": [56, 1272, 8, 1224, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.13487.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 13487,
"LoadStartHookOffset": "0x0FFB600",
"CDPFilterHookOffset": "0x241FEB0",
"SceneOffsets": [1272, 1224, 488]
"SceneOffsets": [56, 1272, 8, 1224, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.13639.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 13639,
"LoadStartHookOffset": "0x1000990",
"CDPFilterHookOffset": "0x2424DE0",
"SceneOffsets": [1272, 1224, 488]
"SceneOffsets": [56, 1272, 8, 1224, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.13655.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 13655,
"LoadStartHookOffset": "0x100F4B0",
"CDPFilterHookOffset": "0x244A9E0",
"SceneOffsets": [1280, 1232, 488]
"SceneOffsets": [56, 1280, 8, 1232, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.13871.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 13871,
"LoadStartHookOffset": "0x101F160",
"CDPFilterHookOffset": "0x246FC40",
"SceneOffsets": [1360, 1312, 488]
"SceneOffsets": [56, 1360, 8, 1312, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.13909.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 13909,
"LoadStartHookOffset": "0x101F0E0",
"CDPFilterHookOffset": "0x246FDC0",
"SceneOffsets": [1360, 1312, 488]
"SceneOffsets": [56, 1360, 8, 1312, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.14161.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 14161,
"LoadStartHookOffset": "0x10246C0",
"CDPFilterHookOffset": "0x24839B0",
"SceneOffsets": [1360, 1312, 488]
"SceneOffsets": [56, 1360, 8, 1312, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.14199.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 14199,
"LoadStartHookOffset": "0x10246F0",
"CDPFilterHookOffset": "0x24839E0",
"SceneOffsets": [1360, 1312, 488]
"SceneOffsets": [56, 1360, 8, 1312, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.14315.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 14315,
"LoadStartHookOffset": "0x10004C0",
"CDPFilterHookOffset": "0x2424B50",
"SceneOffsets": [1272, 1224, 488]
"SceneOffsets": [56, 1272, 8, 1224, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.16133.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 16133,
"LoadStartHookOffset": "0x470FAD0",
"CDPFilterHookOffset": "0x90FC7E0",
"SceneOffsets": [1360, 1312, 488]
"SceneOffsets": [56, 1360, 8, 1312, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.16203.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 16203,
"LoadStartHookOffset": "0x4710890",
"CDPFilterHookOffset": "0x90FD640",
"SceneOffsets": [1360, 1312, 488]
"SceneOffsets": [56, 1360, 8, 1312, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.16389.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 16389,
"LoadStartHookOffset": "0x24E4830",
"CDPFilterHookOffset": "0x2E2A880",
"SceneOffsets": [1360, 1312, 488]
"SceneOffsets": [56, 1360, 8, 1312, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.16467.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 16467,
"LoadStartHookOffset": "0x24E4FD0",
"CDPFilterHookOffset": "0x2E2CC90",
"SceneOffsets": [1360, 1312, 488]
"SceneOffsets": [56, 1360, 8, 1312, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.16771.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 16771,
"LoadStartHookOffset": "0x24E9130",
"CDPFilterHookOffset": "0x2E3C470",
"SceneOffsets": [1360, 1312, 488]
"SceneOffsets": [56, 1360, 8, 1312, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.16815.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 16815,
"LoadStartHookOffset": "0x2509690",
"CDPFilterHookOffset": "0x2E768D0",
"SceneOffsets": [1416, 1360, 488]
"SceneOffsets": [56, 1416, 8, 1360, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.16965.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 16965,
"LoadStartHookOffset": "0x2570220",
"CDPFilterHookOffset": "0x2F844A0",
"SceneOffsets": [1416, 1360, 488]
"SceneOffsets": [56, 1416, 8, 1360, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.17037.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 17037,
"LoadStartHookOffset": "0x257D0A0",
"CDPFilterHookOffset": "0x2FB2310",
"SceneOffsets": [1408, 1352, 488]
"SceneOffsets": [56, 1408, 8, 1352, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.17071.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 17071,
"LoadStartHookOffset": "0x258F370",
"CDPFilterHookOffset": "0x2FD3080",
"SceneOffsets": [1408, 1352, 488]
"SceneOffsets": [56, 1408, 8, 1352, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.17127.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 17127,
"LoadStartHookOffset": "0x2590910",
"CDPFilterHookOffset": "0x2FD4040",
"SceneOffsets": [1408, 1352, 488]
"SceneOffsets": [56, 1408, 8, 1352, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.18055.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 18055,
"LoadStartHookOffset": "0x25A1040",
"CDPFilterHookOffset": "0x30031E0",
"SceneOffsets": [1416, 1352, 488]
"SceneOffsets": [56, 1416, 8, 1352, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.18151.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 18151,
"LoadStartHookOffset": "0x25A2E20",
"CDPFilterHookOffset": "0x3013D20",
"SceneOffsets": [1416, 1352, 488]
"SceneOffsets": [56, 1416, 8, 1352, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.18787.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 18787,
"LoadStartHookOffset": "0x25B2870",
"CDPFilterHookOffset": "0x3028AD0",
"SceneOffsets": [1408, 1344, 488]
"SceneOffsets": [56, 1408, 8, 1344, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.18891.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 18891,
"LoadStartHookOffset": "0x25B50C0",
"CDPFilterHookOffset": "0x30245E0",
"SceneOffsets": [1408, 1344, 488]
"SceneOffsets": [56, 1408, 8, 1344, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.18955.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 18955,
"LoadStartHookOffset": "0x25B52C0",
"CDPFilterHookOffset": "0x30248B0",
"SceneOffsets": [1408, 1344, 488]
"SceneOffsets": [56, 1408, 8, 1344, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.19027.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 19027,
"LoadStartHookOffset": "0x25B52D0",
"CDPFilterHookOffset": "0x3024AD0",
"SceneOffsets": [1408, 1344, 488]
"SceneOffsets": [56, 1408, 8, 1344, 16, 488]
}
2 changes: 1 addition & 1 deletion frida/config/win/addresses.19201.json
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,5 @@
"Version": 19201,
"LoadStartHookOffset": "0x25B5DD0",
"CDPFilterHookOffset": "0x301B3C0",
"SceneOffsets": [1376, 1312, 456]
"SceneOffsets": [56, 1376, 8, 1312, 16, 456]
}
6 changes: 6 additions & 0 deletions frida/config/win/addresses.19339.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
{
"Version": 19339,
"LoadStartHookOffset": "0x25B5DD0",
"CDPFilterHookOffset": "0x301BA00",
"SceneOffsets": [56, 1376, 8, 1312, 16, 456]
}
6 changes: 6 additions & 0 deletions frida/config/win/addresses.19459.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
{
"Version": 19459,
"LoadStartHookOffset": "0x25BB580",
"CDPFilterHookOffset": "0x3022F20",
"SceneOffsets": [56, 1376, 8, 1312, 16, 456]
}
6 changes: 6 additions & 0 deletions frida/config/win/addresses.19481.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
{
"Version": 19481,
"LoadStartHookOffset": "0x25BBA80",
"CDPFilterHookOffset": "0x3023420",
"SceneOffsets": [56, 1376, 8, 1312, 16, 456]
}
6 changes: 6 additions & 0 deletions frida/config/win/addresses.19749.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
{
"Version": 19749,
"LoadStartHookOffset": "0x25E77C0",
"CDPFilterHookOffset": "0x30ABC60",
"SceneOffsets": [64, 1408, 8, 1344, 16, 456]
}
6 changes: 6 additions & 0 deletions frida/config/win/addresses.19769.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
{
"Version": 19769,
"LoadStartHookOffset": "0x25E7990",
"CDPFilterHookOffset": "0x30AC0A0",
"SceneOffsets": [64, 1408, 8, 1344, 16, 456]
}
6 changes: 6 additions & 0 deletions frida/config/win/addresses.19823.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
{
"Version": 19823,
"LoadStartHookOffset": "0x25ED1C0",
"CDPFilterHookOffset": "0x30B3320",
"SceneOffsets": [64, 1408, 8, 1344, 16, 456]
}
17 changes: 14 additions & 3 deletions frida/hook.js
Original file line number Diff line number Diff line change
Expand Up @@ -124,8 +124,19 @@ const winPatchLoadStart = (base, config) => {
// Scene hijack via SceneOffsets pointer chain
try {
const offsets = config.SceneOffsets;
const ptr1 = this.context.rcx.add(56).readPointer().add(offsets[0]).readPointer();
const scenePtr = ptr1.add(8).readPointer().add(offsets[1]).readPointer().add(16).readPointer().add(488);
const miniappConfigPtr = this.context.rcx
.add(offsets[0])
.readPointer()
.add(offsets[1])
.readPointer();
const scenePtr = miniappConfigPtr
.add(offsets[2])
.readPointer()
.add(offsets[3])
.readPointer()
.add(offsets[4])
.readPointer()
.add(offsets[5]);
const scene = scenePtr.readInt();
send(`[hook] scene: ${scene}`);
if (SCENE_WHITELIST.includes(scene)) {
Expand Down Expand Up @@ -164,7 +175,7 @@ const parseConfig = () => {
Version: 18955,
LoadStartHookOffset: "0x25B52C0",
CDPFilterHookOffset: "0x30248B0",
SceneOffsets: [1408, 1344, 488],
SceneOffsets: [56, 1408, 8, 1344, 16, 488],
};
}
return JSON.parse(rawConfig);
Expand Down