Module
Known NIDs
Version |
Name |
World |
Privilege |
NID
|
1.69 |
SceCoredump |
Non-secure |
Kernel |
0x4CB1F0CC
|
3.60 |
SceCoredump |
? |
Kernel |
0x3E0F5EBD
|
Libraries
Though it may be possible to enable some Coredump features via setting registry values, patching for creating full Coredumps on retails is required. There are 2 key patches.
In the SceCoredump module, there are two functions that read values from the registry. The registry key used is "/CONFIG/COREDUMP". The first patch is to force the function that checks the key "enable_coredump" to return 1. The second is to force the function that checks the key "dump_level" to return 0xEF0. They are at base+0x3070 and base+0x3000 respectively on 1.50.
Known NIDs
SceCoredumpForDriver
SceCoredump
sceCoredumpRegisterCoredumpHandler
Version |
NID
|
3.60 |
0x031DC61E
|
sceCoredumpUnregisterCoredumpHandler
Version |
NID
|
3.60 |
0x6037A2C3
|
SceCoredumpNounlink
sceCoredumpWriteUserData
Version |
NID
|
3.60 |
0xDF335DCF
|