View previous topic :: View next topic |
Author |
Message |
mindoff Advanced Cheater Reputation: 0
Joined: 12 Jun 2016 Posts: 96
|
Posted: Tue Aug 22, 2017 7:08 am Post subject: Can CE open a process and suspend it at the entry point? |
|
|
Can CE act like ollydbg just open a process or program and suspend it at the entry point?
Some resource loading may at this point,I need to pause the app and inject the code from CE then let the app run again.
Can CE do that?
|
|
Back to top |
|
|
ParkourPenguin I post too much Reputation: 140
Joined: 06 Jul 2014 Posts: 4291
|
Posted: Tue Aug 22, 2017 8:42 am Post subject: |
|
|
celua.txt:
Quote: | createProcess(path, parameters OPTIONAL, debug OPTIONAL, breakonentrypoint OPTIONAL) : Creates a process. If debug is true it will be created using the windows debugger and if breakonentry is true it will cause a breakpoint to occur on entrypoint |
_________________
I don't know where I'm going, but I'll figure it out when I get there. |
|
Back to top |
|
|
Dark Byte Site Admin Reputation: 458
Joined: 09 May 2003 Posts: 25288 Location: The netherlands
|
Posted: Tue Aug 22, 2017 10:07 am Post subject: |
|
|
set the windows debugger, and then in the processlist click file->create process
_________________
Do not ask me about online cheats. I don't know any and wont help finding them.
Like my help? Join me on Patreon so i can keep helping |
|
Back to top |
|
|
mindoff Advanced Cheater Reputation: 0
Joined: 12 Jun 2016 Posts: 96
|
Posted: Tue Aug 22, 2017 11:19 am Post subject: |
|
|
This method works for some game and some game just crash.
So what shall I do with the crash one?
The crash one is a 64 bit app,and I have tried IDA to debug it,crash too.
x64dbg works fine with breakpoint and resume.
So what could be the problem?How can I resume it with CE without crash?
The problem is first time the app break at entry point,it's fine,but if resume or CE with run,then it will crash.IDA is the same.
x64dbg works with no problem,free break point and resume any place,any time.
x64dbg is not CE,it can not do the easy cheat part,so this is very annoying
|
|
Back to top |
|
|
Dark Byte Site Admin Reputation: 458
Joined: 09 May 2003 Posts: 25288 Location: The netherlands
|
Posted: Tue Aug 22, 2017 12:27 pm Post subject: |
|
|
after modifying the memory, just go to the processlist and reselect the process. (or any other process)
the debugger will detach and resume the process
_________________
Do not ask me about online cheats. I don't know any and wont help finding them.
Like my help? Join me on Patreon so i can keep helping |
|
Back to top |
|
|
mindoff Advanced Cheater Reputation: 0
Joined: 12 Jun 2016 Posts: 96
|
Posted: Tue Aug 22, 2017 6:50 pm Post subject: |
|
|
It works,and interesting.
Can't help wondering what cause CE and IDA crash and x64dbg not crash.
Think it will be much easier to debug with CE and write the cheat code without crash.
Then I don't need to switch between CE and x64dbg.
|
|
Back to top |
|
|
Dark Byte Site Admin Reputation: 458
Joined: 09 May 2003 Posts: 25288 Location: The netherlands
|
Posted: Tue Aug 22, 2017 8:03 pm Post subject: |
|
|
give me an open source application that crashes when debugged and not on x64dbg and i'll try to pinpoint where it goes wrong.
_________________
Do not ask me about online cheats. I don't know any and wont help finding them.
Like my help? Join me on Patreon so i can keep helping |
|
Back to top |
|
|
mindoff Advanced Cheater Reputation: 0
Joined: 12 Jun 2016 Posts: 96
|
Posted: Tue Aug 22, 2017 9:37 pm Post subject: |
|
|
Sadly I can't give you bacause the App is KOF14 CBT I think CBT it means close beta test or something and the resource file is nearly 16GB in a single assets.wad file,I can do nothing about it.Sorry.
And for other 64 bit app like I write with visual studio myselft,it just work fine.
Right now I can find, Just this kof14 exe crash.
|
|
Back to top |
|
|
OldCheatEngineUser Whateven rank Reputation: 20
Joined: 01 Feb 2016 Posts: 1587
|
Posted: Tue Aug 22, 2017 10:31 pm Post subject: |
|
|
very interesting, why would ida and ce crash the process.
while snapshot(x64dbg) doesnt, are you using stealth plugin for x64dbg? or any other plugin that made for x64?
what about debugging methods have you tried any?
and about ida, (to me personally) their debugger is shit. but their disassembler is so great.
i also would like to see in future updates that ce can find the entry point in executables.
question:
we know there is entry point and we can find it using PEiD, but does dlls have entry point too?
_________________
About Me;
I Use CE Since Version 1.X, And Still Learning How To Use It Well!
Jul 26, 2020
STN wrote: | i am a sweetheart. |
|
|
Back to top |
|
|
mindoff Advanced Cheater Reputation: 0
Joined: 12 Jun 2016 Posts: 96
|
Posted: Wed Aug 23, 2017 12:14 am Post subject: |
|
|
No,I did not use any plugin,just x64dbg.
And I found it's not that bad,I can use x64dbg load the exe and then attach CE to the process.
Meaning I use x64dbg to debug,CE to inject cheat code.
Temporarily soloved my problem and fit my need
|
|
Back to top |
|
|
|