Giter Site home page Giter Site logo

mymacsappcrack's People

Contributors

fallen2leaves avatar hoochanlon avatar qiuchenly avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

mymacsappcrack's Issues

求软件工具

Hopper Disassembler 5.3.4 52没搜索到,可能我搜索姿势不对
顺带 贴一下 IDA 😂

求求求求

希望可以支持PS v23.x.x.x版本

如题,穷鬼买不起m1/2的设备,机器上11以后的系统版本疯卡,所以只能使用10.15版本的系统,而10.15版本的系统只能支持到PSv23.x.x.x

DisableLibraryValidation

如果设置DisableLibraryValidation这个,是不是所有的应用都可以这样搞了?

M1 Pro PD 18打開崩潰

M1 Pro PD 18打開崩潰

錯誤訊息如下


Translated Report (Full Report Below)

Process: prl_client_app [3177]
Path: /Applications/Parallels Desktop.app/Contents/MacOS/prl_client_app
Identifier: com.parallels.desktop.console
Version: 18.3.0 (53606)
Build Info: Parallels-53606.0~18.3.53606.0
Code Type: ARM-64 (Native)
Parent Process: launchd [1]
User ID: 501

Date/Time: 2023-05-31 15:21:07.5525 +0800
OS Version: macOS 13.5 (22G5027e)
Report Version: 12
Anonymous UUID: CDB0BE63-8E97-CE3D-7B7C-DFFD5DC201E8

Time Awake Since Boot: 21000 seconds

System Integrity Protection: enabled

Crashed Thread: 0

Exception Type: EXC_BAD_ACCESS (SIGKILL (Code Signature Invalid))
Exception Codes: UNKNOWN_0x32 at 0x0000000105254000
Exception Codes: 0x0000000000000032, 0x0000000105254000

Termination Reason: Namespace CODESIGNING, Code 2 Invalid Page

VM Region Info: 0x105254000 is in 0x105204000-0x1052a8000; bytes after start: 327680 bytes before end: 344063
REGION TYPE START - END [ VSIZE] PRT/MAX SHRMOD REGION DETAIL
mapped file 105138000-105204000 [ 816K] r--/rw- SM=COW ...t_id=dae219b1
---> mapped file 105204000-1052a8000 [ 656K] r--/rw- SM=COW ...t_id=dae205b1
GAP OF 0x1f8000 BYTES
mapped file 1054a0000-105598000 [ 992K] r-x/rwx SM=COW ...t_id=dae200b1

Thread 0 Crashed:
0 dyld 0x1a8efee40 dyld3::MachOFile::isMachO(Diagnostics&, unsigned long long) const + 40
1 dyld 0x1a8efed1c dyld3::FatFile::isValidSlice(Diagnostics&, unsigned long long, unsigned int, unsigned int, unsigned int, unsigned long long, unsigned long long) const + 80
2 dyld 0x1a8eff03c dyld3::FatFile::forEachSlice(Diagnostics&, unsigned long long, bool, void (unsigned int, unsigned int, void const*, unsigned long long, bool&) block_pointer) const + 332
3 dyld 0x1a8ed6edc dyld4::SyscallDelegate::mapFileReadOnly(Diagnostics&, char const*, unsigned long*, dyld4::FileID*, bool*, char*) const + 704
4 dyld 0x1a8ed6668 dyld4::SyscallDelegate::withReadOnlyMappedFile(Diagnostics&, char const*, bool, void (void const*, unsigned long, bool, dyld4::FileID const&, char const*) block_pointer) const + 88
5 dyld 0x1a8ecf69c dyld4::JustInTimeLoader::makeJustInTimeLoaderDisk(Diagnostics&, dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&, bool, unsigned int, mach_o::Layout const*) + 208
6 dyld 0x1a8ec6414 invocation function for block in dyld4::Loader::getLoader(Diagnostics&, dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&) + 1680
7 dyld 0x1a8ec6a38 invocation function for block in dyld4::Loader::forEachResolvedAtPathVar(dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&, dyld4::ProcessConfig::PathOverrides::Type, bool&, void (char const*, dyld4::ProcessConfig::PathOverrides::Type, bool&) block_pointer) + 436
8 dyld 0x1a8eac2d8 dyld3::MachOFile::forEachLoadCommand(Diagnostics&, void (load_command const*, bool&) block_pointer) const + 296
9 dyld 0x1a8f025c8 dyld3::MachOFile::forEachRPath(void (char const*, bool&) block_pointer) const + 128
10 dyld 0x1a8ec5718 dyld4::Loader::forEachResolvedAtPathVar(dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&, dyld4::ProcessConfig::PathOverrides::Type, bool&, void (char const*, dyld4::ProcessConfig::PathOverrides::Type, bool&) block_pointer) + 708
11 dyld 0x1a8eb2f54 dyld4::ProcessConfig::PathOverrides::forEachPathVariant(char const*, dyld3::Platform, bool, bool, bool&, void (char const*, dyld4::ProcessConfig::PathOverrides::Type, bool&) block_pointer) const + 488
12 dyld 0x1a8ec5294 dyld4::Loader::forEachPath(Diagnostics&, dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&, void (char const*, dyld4::ProcessConfig::PathOverrides::Type, bool&) block_pointer) + 248
13 dyld 0x1a8ec59e8 dyld4::Loader::getLoader(Diagnostics&, dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&) + 588
14 dyld 0x1a8ecd738 invocation function for block in dyld4::JustInTimeLoader::loadDependents(Diagnostics&, dyld4::RuntimeState&, dyld4::Loader::LoadOptions const&) + 412
15 dyld 0x1a8f007e8 invocation function for block in dyld3::MachOFile::forEachDependentDylib(void (char const*, bool, bool, bool, unsigned int, unsigned int, bool&) block_pointer) const + 148
16 dyld 0x1a8eac2d8 dyld3::MachOFile::forEachLoadCommand(Diagnostics&, void (load_command const*, bool&) block_pointer) const + 296
17 dyld 0x1a8f00630 dyld3::MachOFile::forEachDependentDylib(void (char const*, bool, bool, bool, unsigned int, unsigned int, bool&) block_pointer) const + 172
18 dyld 0x1a8ecd480 dyld4::JustInTimeLoader::loadDependents(Diagnostics&, dyld4::RuntimeState&, dyld4::Loader::LoadOptions const&) + 164
19 dyld 0x1a8eb0a0c dyld4::prepare(dyld4::APIs&, dyld3::MachOAnalyzer const*) + 1236
20 dyld 0x1a8eafe18 start + 1964

Thread 0 crashed with ARM Thread State (64-bit):
x0: 0x0000000105254000 x1: 0x000000016f159910 x2: 0x0000000000052ba0 x3: 0x0000000000000001
x4: 0x000000000100000c x5: 0x0000000000000000 x6: 0x0000000000050000 x7: 0x0000000000052ba0
x8: 0x0000000000052ba0 x9: 0x0000000000000500 x10: 0x00000000000007e8 x11: 0x0000000000000001
x12: 0x000000016f15a242 x13: 0x0000000000000000 x14: 0x000000024ae00b3a x15: 0x0000000000008000
x16: 0x00000002f9303724 x17: 0x6ae100016f159998 x18: 0x0000000000000000 x19: 0x000000016f159910
x20: 0x0000000000050000 x21: 0x0000000105254000 x22: 0x000000000100000c x23: 0x0000000000000000
x24: 0x0000000105204020 x25: 0x0000000000000001 x26: 0x0000000000052ba0 x27: 0x000000000100000c
x28: 0x0000000000000000 fp: 0x000000016f159880 lr: 0x26728001a8efed1c
sp: 0x000000016f159870 pc: 0x00000001a8efee40 cpsr: 0x20001000
far: 0x0000000105254000 esr: 0x92000007 (Data Abort) byte read Translation fault

Binary Images:
0x100ca4000 - 0x10323bfff com.parallels.desktop.console (18.3.0) /Applications/Parallels Desktop.app/Contents/MacOS/prl_client_app
0x1a8eaa000 - 0x1a8f38587 dyld () <5e0662ba-3d6a-3e40-bba9-1c2dc26e567d> /usr/lib/dyld
0x0 - 0xffffffffffffffff ??? (
) <00000000-0000-0000-0000-000000000000> ???

External Modification Summary:
Calls made by other processes targeting this process:
task_for_pid: 0
thread_create: 0
thread_set_state: 0
Calls made by this process:
task_for_pid: 0
thread_create: 0
thread_set_state: 0
Calls made by all processes on this machine:
task_for_pid: 0
thread_create: 0
thread_set_state: 0

VM Region Summary:
ReadOnly portion of Libraries: Total=841.3M resident=0K(0%) swapped_out_or_unallocated=841.3M(100%)
Writable regions: Total=8512K written=0K(0%) resident=0K(0%) swapped_out=0K(0%) unallocated=8512K(100%)

                            VIRTUAL   REGION 

REGION TYPE SIZE COUNT (non-coalesced)
=========== ======= =======
STACK GUARD 56.0M 1
Stack 8176K 1
VM_ALLOCATE (reserved) 64K 3 reserved VM address space (unallocated)
__DATA 603K 3
__DATA_CONST 438K 2
__DATA_DIRTY 7K 1
__LINKEDIT 803.1M 2
__TEXT 38.2M 2
dyld private memory 272K 2
mapped file 49.5M 49
shared memory 32K 1
=========== ======= =======
TOTAL 956.2M 67
TOTAL, minus reserved VM space 956.1M 67


Full Report

{"app_name":"prl_client_app","timestamp":"2023-05-31 15:21:07.00 +0800","app_version":"18.3.0","slice_uuid":"c9f7c041-153b-3e57-a9e7-55e231e13784","build_version":"53606","platform":1,"bundleID":"com.parallels.desktop.console","share_with_app_devs":0,"is_first_party":0,"bug_type":"309","os_version":"macOS 13.5 (22G5027e)","roots_installed":0,"name":"prl_client_app","incident_id":"01EC0600-3E18-4485-8C5E-E26EBDBC3851"}
{
"uptime" : 21000,
"procRole" : "Default",
"version" : 2,
"userID" : 501,
"deployVersion" : 210,
"modelCode" : "MacBookPro18,1",
"coalitionID" : 2352,
"osVersion" : {
"train" : "macOS 13.5",
"build" : "22G5027e",
"releaseType" : "User"
},
"captureTime" : "2023-05-31 15:21:07.5525 +0800",
"incident" : "01EC0600-3E18-4485-8C5E-E26EBDBC3851",
"pid" : 3177,
"translated" : false,
"cpuType" : "ARM-64",
"roots_installed" : 0,
"bug_type" : "309",
"procLaunch" : "2023-05-31 15:21:07.1993 +0800",
"procStartAbsTime" : 505590326277,
"procExitAbsTime" : 505598793773,
"procName" : "prl_client_app",
"procPath" : "/Applications/Parallels Desktop.app/Contents/MacOS/prl_client_app",
"bundleInfo" : {"CFBundleShortVersionString":"18.3.0","CFBundleVersion":"53606","CFBundleIdentifier":"com.parallels.desktop.console"},
"buildInfo" : {"ProjectName":"Parallels","SourceVersion":"53606.0","BuildVersion":"18.3.53606.0"},
"storeInfo" : {"deviceIdentifierForVendor":"554B8E52-F837-58BB-9C7D-3C67C10E5D50","thirdParty":true},
"parentProc" : "launchd",
"parentPid" : 1,
"coalitionName" : "com.parallels.desktop.console",
"crashReporterKey" : "CDB0BE63-8E97-CE3D-7B7C-DFFD5DC201E8",
"codeSigningID" : "com.parallels.desktop.console",
"codeSigningTeamID" : "4C6364ACXT",
"codeSigningFlags" : 587281153,
"codeSigningValidationCategory" : 6,
"codeSigningTrustLevel" : 0,
"sip" : "enabled",
"vmRegionInfo" : "0x105254000 is in 0x105204000-0x1052a8000; bytes after start: 327680 bytes before end: 344063\n REGION TYPE START - END [ VSIZE] PRT/MAX SHRMOD REGION DETAIL\n mapped file 105138000-105204000 [ 816K] r--/rw- SM=COW ...t_id=dae219b1\n---> mapped file 105204000-1052a8000 [ 656K] r--/rw- SM=COW ...t_id=dae205b1\n GAP OF 0x1f8000 BYTES\n mapped file 1054a0000-105598000 [ 992K] r-x/rwx SM=COW ...t_id=dae200b1",
"exception" : {"codes":"0x0000000000000032, 0x0000000105254000","rawCodes":[50,4381294592],"type":"EXC_BAD_ACCESS","signal":"SIGKILL (Code Signature Invalid)","subtype":"UNKNOWN_0x32 at 0x0000000105254000"},
"termination" : {"flags":0,"code":2,"namespace":"CODESIGNING","indicator":"Invalid Page"},
"vmregioninfo" : "0x105254000 is in 0x105204000-0x1052a8000; bytes after start: 327680 bytes before end: 344063\n REGION TYPE START - END [ VSIZE] PRT/MAX SHRMOD REGION DETAIL\n mapped file 105138000-105204000 [ 816K] r--/rw- SM=COW ...t_id=dae219b1\n---> mapped file 105204000-1052a8000 [ 656K] r--/rw- SM=COW ...t_id=dae205b1\n GAP OF 0x1f8000 BYTES\n mapped file 1054a0000-105598000 [ 992K] r-x/rwx SM=COW ...t_id=dae200b1",
"extMods" : {"caller":{"thread_create":0,"thread_set_state":0,"task_for_pid":0},"system":{"thread_create":0,"thread_set_state":0,"task_for_pid":0},"targeted":{"thread_create":0,"thread_set_state":0,"task_for_pid":0},"warnings":0},
"faultingThread" : 0,
"threads" : [{"triggered":true,"id":130211,"threadState":{"x":[{"value":4381294592},{"value":6158653712},{"value":338848},{"value":1},{"value":16777228},{"value":0},{"value":327680},{"value":338848},{"value":338848},{"value":1280},{"value":2024},{"value":1},{"value":6158656066},{"value":0},{"value":9846131514},{"value":32768},{"value":12770621220},{"value":7701436843938912664},{"value":0},{"value":6158653712},{"value":327680},{"value":4381294592},{"value":16777228},{"value":0},{"value":4380966944},{"value":1},{"value":338848},{"value":16777228},{"value":0}],"flavor":"ARM_THREAD_STATE64","lr":{"value":2770417465403895068},"cpsr":{"value":536875008},"fp":{"value":6158653568},"sp":{"value":6158653552},"esr":{"value":2449473543,"description":"(Data Abort) byte read Translation fault"},"pc":{"value":7129263680,"matchesCrashFrame":1},"far":{"value":4381294592}},"frames":[{"imageOffset":347712,"symbol":"dyld3::MachOFile::isMachO(Diagnostics&, unsigned long long) const","symbolLocation":40,"imageIndex":1},{"imageOffset":347420,"symbol":"dyld3::FatFile::isValidSlice(Diagnostics&, unsigned long long, unsigned int, unsigned int, unsigned int, unsigned long long, unsigned long long) const","symbolLocation":80,"imageIndex":1},{"imageOffset":348220,"symbol":"dyld3::FatFile::forEachSlice(Diagnostics&, unsigned long long, bool, void (unsigned int, unsigned int, void const*, unsigned long long, bool&) block_pointer) const","symbolLocation":332,"imageIndex":1},{"imageOffset":184028,"symbol":"dyld4::SyscallDelegate::mapFileReadOnly(Diagnostics&, char const*, unsigned long*, dyld4::FileID*, bool*, char*) const","symbolLocation":704,"imageIndex":1},{"imageOffset":181864,"symbol":"dyld4::SyscallDelegate::withReadOnlyMappedFile(Diagnostics&, char const*, bool, void (void const*, unsigned long, bool, dyld4::FileID const&, char const*) block_pointer) const","symbolLocation":88,"imageIndex":1},{"imageOffset":153244,"symbol":"dyld4::JustInTimeLoader::makeJustInTimeLoaderDisk(Diagnostics&, dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&, bool, unsigned int, mach_o::Layout const*)","symbolLocation":208,"imageIndex":1},{"imageOffset":115732,"symbol":"invocation function for block in dyld4::Loader::getLoader(Diagnostics&, dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&)","symbolLocation":1680,"imageIndex":1},{"imageOffset":117304,"symbol":"invocation function for block in dyld4::Loader::forEachResolvedAtPathVar(dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&, dyld4::ProcessConfig::PathOverrides::Type, bool&, void (char const*, dyld4::ProcessConfig::PathOverrides::Type, bool&) block_pointer)","symbolLocation":436,"imageIndex":1},{"imageOffset":8920,"symbol":"dyld3::MachOFile::forEachLoadCommand(Diagnostics&, void (load_command const*, bool&) block_pointer) const","symbolLocation":296,"imageIndex":1},{"imageOffset":361928,"symbol":"dyld3::MachOFile::forEachRPath(void (char const*, bool&) block_pointer) const","symbolLocation":128,"imageIndex":1},{"imageOffset":112408,"symbol":"dyld4::Loader::forEachResolvedAtPathVar(dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&, dyld4::ProcessConfig::PathOverrides::Type, bool&, void (char const*, dyld4::ProcessConfig::PathOverrides::Type, bool&) block_pointer)","symbolLocation":708,"imageIndex":1},{"imageOffset":36692,"symbol":"dyld4::ProcessConfig::PathOverrides::forEachPathVariant(char const*, dyld3::Platform, bool, bool, bool&, void (char const*, dyld4::ProcessConfig::PathOverrides::Type, bool&) block_pointer) const","symbolLocation":488,"imageIndex":1},{"imageOffset":111252,"symbol":"dyld4::Loader::forEachPath(Diagnostics&, dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&, void (char const*, dyld4::ProcessConfig::PathOverrides::Type, bool&) block_pointer)","symbolLocation":248,"imageIndex":1},{"imageOffset":113128,"symbol":"dyld4::Loader::getLoader(Diagnostics&, dyld4::RuntimeState&, char const*, dyld4::Loader::LoadOptions const&)","symbolLocation":588,"imageIndex":1},{"imageOffset":145208,"symbol":"invocation function for block in dyld4::JustInTimeLoader::loadDependents(Diagnostics&, dyld4::RuntimeState&, dyld4::Loader::LoadOptions const&)","symbolLocation":412,"imageIndex":1},{"imageOffset":354280,"symbol":"invocation function for block in dyld3::MachOFile::forEachDependentDylib(void (char const*, bool, bool, bool, unsigned int, unsigned int, bool&) block_pointer) const","symbolLocation":148,"imageIndex":1},{"imageOffset":8920,"symbol":"dyld3::MachOFile::forEachLoadCommand(Diagnostics&, void (load_command const*, bool&) block_pointer) const","symbolLocation":296,"imageIndex":1},{"imageOffset":353840,"symbol":"dyld3::MachOFile::forEachDependentDylib(void (char const*, bool, bool, bool, unsigned int, unsigned int, bool&) block_pointer) const","symbolLocation":172,"imageIndex":1},{"imageOffset":144512,"symbol":"dyld4::JustInTimeLoader::loadDependents(Diagnostics&, dyld4::RuntimeState&, dyld4::Loader::LoadOptions const&)","symbolLocation":164,"imageIndex":1},{"imageOffset":27148,"symbol":"dyld4::prepare(dyld4::APIs&, dyld3::MachOAnalyzer const*)","symbolLocation":1236,"imageIndex":1},{"imageOffset":24088,"symbol":"start","symbolLocation":1964,"imageIndex":1}]}],
"usedImages" : [
{
"source" : "P",
"arch" : "arm64",
"base" : 4308221952,
"CFBundleShortVersionString" : "18.3.0",
"CFBundleIdentifier" : "com.parallels.desktop.console",
"size" : 39419904,
"uuid" : "c9f7c041-153b-3e57-a9e7-55e231e13784",
"path" : "/Applications/Parallels Desktop.app/Contents/MacOS/prl_client_app",
"name" : "prl_client_app",
"CFBundleVersion" : "53606"
},
{
"source" : "P",
"arch" : "arm64e",
"base" : 7128915968,
"size" : 583048,
"uuid" : "5e0662ba-3d6a-3e40-bba9-1c2dc26e567d",
"path" : "/usr/lib/dyld",
"name" : "dyld"
},
{
"size" : 0,
"source" : "A",
"base" : 0,
"uuid" : "00000000-0000-0000-0000-000000000000"
}
],
"sharedCache" : {
"base" : 7128252416,
"size" : 3558817792,
"uuid" : "e9724c46-2505-3fc8-9ddb-66ddfe5286e5"
},
"vmSummary" : "ReadOnly portion of Libraries: Total=841.3M resident=0K(0%) swapped_out_or_unallocated=841.3M(100%)\nWritable regions: Total=8512K written=0K(0%) resident=0K(0%) swapped_out=0K(0%) unallocated=8512K(100%)\n\n VIRTUAL REGION \nREGION TYPE SIZE COUNT (non-coalesced) \n=========== ======= ======= \nSTACK GUARD 56.0M 1 \nStack 8176K 1 \nVM_ALLOCATE (reserved) 64K 3 reserved VM address space (unallocated)\n__DATA 603K 3 \n__DATA_CONST 438K 2 \n__DATA_DIRTY 7K 1 \n__LINKEDIT 803.1M 2 \n__TEXT 38.2M 2 \ndyld private memory 272K 2 \nmapped file 49.5M 49 \nshared memory 32K 1 \n=========== ======= ======= \nTOTAL 956.2M 67 \nTOTAL, minus reserved VM space 956.1M 67 \n",
"legacyInfo" : {
"threadTriggered" : {

}
},
"logWritingSignature" : "690f41146fae3a2fd022024a1da429896140de4d",
"trialInfo" : {
"rollouts" : [
{
"rolloutId" : "60356660bbe37970735c5624",
"factorPackIds" : {

  },
  "deploymentId" : 250000013
},
{
  "rolloutId" : "63582c5f8a53461413999550",
  "factorPackIds" : {

  },
  "deploymentId" : 240000002
}

],
"experiments" : [
{
"treatmentId" : "d28d100b-301c-49ae-b6c9-57930102d4d4",
"experimentId" : "64466b09a3b9440a82a18c34",
"deploymentId" : 500000001
},
{
"treatmentId" : "c28e4ee6-1b08-4f90-8e05-2809e78310a3",
"experimentId" : "6317d2003d24842ff850182a",
"deploymentId" : 400000012
}
]
}
}

Model: MacBookPro18,1, BootROM 8422.140.18.0.2, proc 10:8:2 processors, 32 GB, SMC
Graphics: Apple M1 Pro, Apple M1 Pro, Built-In
Display: Color LCD, 3456 x 2234 Retina, Main, MirrorOff, Online
Memory Module: LPDDR5, Samsung
AirPort: spairport_wireless_card_type_wifi (0x14E4, 0x4387), wl0: Apr 7 2023 15:18:26 version 20.96.28.1.8.7.146 FWID 01-aff1b48a
Bluetooth: Version (null), 0 services, 0 devices, 0 incoming serial ports
Network Service: Wi-Fi, AirPort, en0
USB Device: USB31Bus
USB Device: USB31Bus
USB Device: USB31Bus
Thunderbolt Bus: MacBook Pro, Apple Inc.
Thunderbolt Bus: MacBook Pro, Apple Inc.
Thunderbolt Bus: MacBook Pro, Apple Inc.

这种insert_dylib方式,对surge这类检查签名的应用能用吗?

比如无限试用,用frida可以这样注入(注入js),用insert_dylib这种注入方式不关sip的情况下能用吗?,比如注入到OpenSSL.framework中
另外问下,编译libInlineInjectPlugin.dylib的工具链能开源吗?

otool -L ./Surge
./Surge:
	@rpath/MMMarkdown.framework/Versions/A/MMMarkdown (compatibility version 1.0.0, current version 1.0.0)
	@rpath/Bugsnag.framework/Versions/A/Bugsnag (compatibility version 1.0.0, current version 1.0.0)
	/usr/lib/libz.1.dylib (compatibility version 1.0.0, current version 1.2.11)
	/System/Library/Frameworks/CloudKit.framework/Versions/A/CloudKit (compatibility version 1.0.0, current version 2050.46.0)
	@rpath/Sparkle.framework/Versions/A/Sparkle (compatibility version 1.6.0, current version 1.23.0)
	@rpath/OpenSSL.framework/Versions/A/OpenSSL (compatibility version 1.1.0, current version 0.0.0)

注入js

function get_rva(module, offset) {
  var base_addr = Module.findBaseAddress(module);
  // console.log(module + ' addr: ' + base_addr);
  var target_addr = base_addr.add(offset);

  return target_addr;
}

var target_addr = get_rva("Surge", 0x184C76);
console.log("addr: " + target_addr);

/* 获取时间戳  */
Interceptor.attach(target_addr, {
  onEnter: function (args) {
    console.log('addr onEnter: ', this.context.rax);
    // console.log('onEnter: ', hexdump(this.context.rax))
    this.context.rax = 1982426173
  },
  onLeave: function (retval) {
    // console.log("sub_100184C76 return:" + retval + " replaced: 0x1");
    // retval.replace(0x1);
  },
});

PD 18 破解后无法打开

下载了最新的code PD版本是ParallelsDesktop-18.3.0-53606。
破解之后无法打开PD 18, 请大神指教。
image
image

omi录屏专家无法打开

结果:omi录屏专家 1.2.4,intel macOS11.7,tool内俩个可执行文件均未移动,重启无效

过程:第一次操作成功但未关闭SIP,打开就显示:因为出现问题而无法打开。用app cleaner完全卸载。
第二次先关闭SIP和WIFI网络,再进行相同操作,依然是无法打开。

相关截图:截图2023-03-17 上午12 30 45
截图2023-03-17 上午12 31 39
截图2023-03-17 上午12 31 53

执行成功后无法打开

The application cannot be opened for an unexpected reason, error=Error Domain=RBSRequestErrorDomain Code=5 "Launch failed." UserInfo={NSLocalizedFailureReason=Launch failed., NSUnderlyingError=0x60000152cb70 {Error Domain=NSPOSIXErrorDomain Code=153 "Unknown error: 153" UserInfo={NSLocalizedDescription=Launchd job spawn failed}}}

Crack的Bandizip

App Cleaner 8.app 意外退出

``image

执行过程
image

错误报告

`-------------------------------------
Translated Report (Full Report Below)

Process: App Cleaner 8 [4341]
Path: /Applications/App Cleaner 8.app/Contents/MacOS/App Cleaner 8
Identifier: com.nektony.App-Cleaner-SIII
Version: 8.1.2 (1935)
Code Type: X86-64 (Native)
Parent Process: launchd [1]
User ID: 501

Date/Time: 2023-05-06 10:46:11.9305 +0800
OS Version: macOS 12.6.2 (21G320)
Report Version: 12
Bridge OS Version: 7.1 (20P2059)
Anonymous UUID: 3C0829D7-C7B2-E7FF-0906-D50D0A64FEE3

Sleep/Wake UUID: 6A6FDA25-C9F3-4416-BA4F-4C7AC4407C7F

Time Awake Since Boot: 85000 seconds
Time Since Wake: 9142 seconds

System Integrity Protection: enabled

Crashed Thread: 0

Exception Type: EXC_CRASH (SIGABRT)
Exception Codes: 0x0000000000000000, 0x0000000000000000
Exception Note: EXC_CORPSE_NOTIFY

Termination Reason: Namespace DYLD, Code 1 Library missing
Library not loaded: '@rpath/NektonyFallManager.framework/Versions/A/NektonyFallManager'
Referenced from: '/Applications/App Cleaner 8.app/Contents/MacOS/App Cleaner 8'
Reason: tried: '' (no such file), '' (no such file), '' (code signature in <42CAE91E-733C-3A10-B409-846D6A943284> '' not valid for use in process: mapped file has no cdhash, completely unsigned? Code has to be at least ad-hoc signed.), '' (no such file), '�
(terminated at launch; ignore backtrace)

Thread 0 Crashed:
0 dyld 0x114e0398e __abort_with_payload + 10
1 dyld 0x114e19a72 abort_with_payload_wrapper_internal + 80
2 dyld 0x114e19aa4 abort_with_payload + 9
3 dyld 0x114dc7699 dyld4::halt(char const*) + 615
4 dyld 0x114dc35b5 dyld4::prepare(dyld4::APIs&, dyld3::MachOAnalyzer const*) + 3995
5 dyld 0x114dc24e4 start + 388

Thread 0 crashed with X86 Thread State (64-bit):
rax: 0x0000000002000209 rbx: 0x0000000000000000 rcx: 0x00007ff7b3d38f88 rdx: 0x00007ff7b3d393f0
rdi: 0x0000000000000006 rsi: 0x0000000000000001 rbp: 0x00007ff7b3d38fd0 rsp: 0x00007ff7b3d38f88
r8: 0x00007ff7b3d38ff0 r9: 0x0000000000000000 r10: 0x0000000000000093 r11: 0x0000000000000246
r12: 0x0000000000000093 r13: 0x00007ff7b3d393f0 r14: 0x0000000000000001 r15: 0x0000000000000006
rip: 0x0000000114e0398e rfl: 0x0000000000000246 cr2: 0x0000000114dc9da4

Logical CPU: 0
Error Code: 0x02000209
Trap Number: 133

Binary Images:
0x114dbd000 - 0x114e28fff dyld (*) /usr/lib/dyld

External Modification Summary:
Calls made by other processes targeting this process:
task_for_pid: 0
thread_create: 0
thread_set_state: 0
Calls made by this process:
task_for_pid: 0
thread_create: 0
thread_set_state: 0
Calls made by all processes on this machine:
task_for_pid: 0
thread_create: 0
thread_set_state: 0

VM Region Summary:
ReadOnly portion of Libraries: Total=10.0M resident=0K(0%) swapped_out_or_unallocated=10.0M(100%)
Writable regions: Total=9380K written=0K(0%) resident=0K(0%) swapped_out=0K(0%) unallocated=9380K(100%)

                            VIRTUAL   REGION 

REGION TYPE SIZE COUNT (non-coalesced)
=========== ======= =======
STACK GUARD 56.0M 1
Stack 8192K 1
VM_ALLOCATE 12K 3
__DATA 1824K 11
__DATA_CONST 80K 1
__LINKEDIT 2352K 10
__TEXT 7936K 8
dyld private memory 1024K 1
=========== ======= =======
TOTAL 76.9M 36


Full Report

{"app_name":"App Cleaner 8","timestamp":"2023-05-06 10:46:11.00 +0800","app_version":"8.1.2","slice_uuid":"e962153c-cbd0-35e5-8f9a-d0bdd229cd08","build_version":"1935","platform":1,"bundleID":"com.nektony.App-Cleaner-SIII","share_with_app_devs":0,"is_first_party":0,"bug_type":"309","os_version":"macOS 12.6.2 (21G320)","incident_id":"64066E16-0BB4-4A99-A714-67C6F51A7562","name":"App Cleaner 8"}
{
"uptime" : 85000,
"procLaunch" : "2023-05-06 10:46:11.9092 +0800",
"procRole" : "Default",
"version" : 2,
"userID" : 501,
"deployVersion" : 210,
"modelCode" : "MacBookPro16,1",
"procStartAbsTime" : 85288098264935,
"coalitionID" : 14845,
"osVersion" : {
"train" : "macOS 12.6.2",
"build" : "21G320",
"releaseType" : "User"
},
"captureTime" : "2023-05-06 10:46:11.9305 +0800",
"incident" : "64066E16-0BB4-4A99-A714-67C6F51A7562",
"bug_type" : "309",
"pid" : 4341,
"procExitAbsTime" : 85288118957181,
"cpuType" : "X86-64",
"procName" : "App Cleaner 8",
"procPath" : "/Applications/App Cleaner 8.app/Contents/MacOS/App Cleaner 8",
"bundleInfo" : {"CFBundleShortVersionString":"8.1.2","CFBundleVersion":"1935","CFBundleIdentifier":"com.nektony.App-Cleaner-SIII"},
"storeInfo" : {"deviceIdentifierForVendor":"E49D3F8A-0284-5F38-82EC-5B4EBBCEFF19","thirdParty":true},
"parentProc" : "launchd",
"parentPid" : 1,
"coalitionName" : "com.nektony.App-Cleaner-SIII",
"crashReporterKey" : "3C0829D7-C7B2-E7FF-0906-D50D0A64FEE3",
"wakeTime" : 9142,
"bridgeVersion" : {"build":"20P2059","train":"7.1"},
"sleepWakeUUID" : "6A6FDA25-C9F3-4416-BA4F-4C7AC4407C7F",
"sip" : "enabled",
"isCorpse" : 1,
"exception" : {"codes":"0x0000000000000000, 0x0000000000000000","rawCodes":[0,0],"type":"EXC_CRASH","signal":"SIGABRT"},
"termination" : {"code":1,"flags":518,"namespace":"DYLD","indicator":"Library missing","details":["(terminated at launch; ignore backtrace)"],"reasons":["Library not loaded: '@rpath/NektonyFallManager.framework/Versions/A/NektonyFallManager'","Referenced from: '/Applications/App Cleaner 8.app/Contents/MacOS/App Cleaner 8'","Reason: tried: '' (no such file), '' (no such file), '' (code signature in <42CAE91E-733C-3A10-B409-846D6A943284> '' not valid for use in process: mapped file has no cdhash, completely unsigned? Code has to be at least ad-hoc signed.), '' (no such file), '\u0001"]},
"extMods" : {"caller":{"thread_create":0,"thread_set_state":0,"task_for_pid":0},"system":{"thread_create":0,"thread_set_state":0,"task_for_pid":0},"targeted":{"thread_create":0,"thread_set_state":0,"task_for_pid":0},"warnings":0},
"faultingThread" : 0,
"threads" : [{"triggered":true,"id":1294110,"threadState":{"r13":{"value":140701850637296},"rax":{"value":33554953},"rflags":{"value":582},"cpu":{"value":0},"r14":{"value":1},"rsi":{"value":1},"r8":{"value":140701850636272},"cr2":{"value":4644969892},"rdx":{"value":140701850637296},"r10":{"value":147},"r9":{"value":0},"r15":{"value":6},"rbx":{"value":0},"trap":{"value":133},"err":{"value":33554953},"r11":{"value":582},"rip":{"value":4645206414,"matchesCrashFrame":1},"rbp":{"value":140701850636240},"rsp":{"value":140701850636168},"r12":{"value":147},"rcx":{"value":140701850636168},"flavor":"x86_THREAD_STATE","rdi":{"value":6}},"frames":[{"imageOffset":289166,"symbol":"__abort_with_payload","symbolLocation":10,"imageIndex":0},{"imageOffset":379506,"symbol":"abort_with_payload_wrapper_internal","symbolLocation":80,"imageIndex":0},{"imageOffset":379556,"symbol":"abort_with_payload","symbolLocation":9,"imageIndex":0},{"imageOffset":42649,"symbol":"dyld4::halt(char const*)","symbolLocation":615,"imageIndex":0},{"imageOffset":26037,"symbol":"dyld4::prepare(dyld4::APIs&, dyld3::MachOAnalyzer const*)","symbolLocation":3995,"imageIndex":0},{"imageOffset":21732,"symbol":"start","symbolLocation":388,"imageIndex":0}]}],
"usedImages" : [
{
"source" : "P",
"arch" : "x86_64",
"base" : 4644917248,
"size" : 442368,
"uuid" : "b53641ea-6cd4-39c9-9b14-59c92cfd9584",
"path" : "/usr/lib/dyld",
"name" : "dyld"
}
],
"sharedCache" : {
"base" : 140703162003456,
"size" : 19331678208,
"uuid" : "3172f8f5-c412-3210-95e0-1cfd89e01f8a"
},
"vmSummary" : "ReadOnly portion of Libraries: Total=10.0M resident=0K(0%) swapped_out_or_unallocated=10.0M(100%)\nWritable regions: Total=9380K written=0K(0%) resident=0K(0%) swapped_out=0K(0%) unallocated=9380K(100%)\n\n VIRTUAL REGION \nREGION TYPE SIZE COUNT (non-coalesced) \n=========== ======= ======= \nSTACK GUARD 56.0M 1 \nStack 8192K 1 \nVM_ALLOCATE 12K 3 \n__DATA 1824K 11 \n__DATA_CONST 80K 1 \n__LINKEDIT 2352K 10 \n__TEXT 7936K 8 \ndyld private memory 1024K 1 \n=========== ======= ======= \nTOTAL 76.9M 36 \n",
"legacyInfo" : {
"threadTriggered" : {

}
},
"trialInfo" : {
"rollouts" : [
{
"rolloutId" : "61301e3a61217b3110231469",
"factorPackIds" : {
"SIRI_FIND_MY_CONFIGURATION_FILES" : "6348493aa52bb16adc4e4d06"
},
"deploymentId" : 240000023
},
{
"rolloutId" : "60186475825c62000ccf5450",
"factorPackIds" : {

  },
  "deploymentId" : 240000026
}

],
"experiments" : [
{
"treatmentId" : "c28e4ee6-1b08-4f90-8e05-2809e78310a3",
"experimentId" : "6317d2003d24842ff850182a",
"deploymentId" : 400000013
},
{
"treatmentId" : "6dd670af-0633-45e4-ae5f-122ae4df02be",
"experimentId" : "64406ba83deb637ac8a04419",
"deploymentId" : 900000005
}
]
}
}

Model: MacBookPro16,1, BootROM 1916.60.2.0.0 (iBridge: 20.16.2059.0.0,0), 8 processors, 8-Core Intel Core i9, 2.4 GHz, 32 GB, SMC
Graphics: Intel UHD Graphics 630, Intel UHD Graphics 630, Built-In
Graphics: AMD Radeon Pro 5500M, AMD Radeon Pro 5500M, PCIe, 8 GB
Display: Color LCD, 3072 x 1920 Retina, Main, MirrorOff, Online
Display: DELL U3219Q, 6016 x 3384, MirrorOff, Online
Memory Module: BANK 0/ChannelA-DIMM0, 16 GB, DDR4, 2667 MHz, SK Hynix, HMAA2GS6CMR8K-VK
Memory Module: BANK 2/ChannelB-DIMM0, 16 GB, DDR4, 2667 MHz, SK Hynix, HMAA2GS6CMR8K-VK
AirPort: spairport_wireless_card_type_wifi (0x14E4, 0x7BF), wl0: Jul 12 2021 18:02:56 version 9.30.464.0.32.5.76 FWID 01-c081cfed
Bluetooth: Version (null), 0 services, 0 devices, 0 incoming serial ports
Network Service: Wi-Fi, AirPort, en0
USB Device: USB31Bus
USB Device: hub_device
USB Device: composite_device
USB Device: T2Bus
USB Device: composite_device
USB Device: Touch Bar Backlight
USB Device: Touch Bar Display
USB Device: Apple Internal Keyboard / Trackpad
USB Device: Headset
USB Device: Ambient Light Sensor
USB Device: FaceTime HD Camera (Built-in)
USB Device: Apple T2 Controller
Thunderbolt Bus: MacBook Pro, Apple Inc., 63.5
Thunderbolt Bus: MacBook Pro, Apple Inc., 63.5
`

Surge Enterprise 破解后还是显示试用已过期

我之前下载过surge 5试用已过了期限,然后卸载了。
今天下载了readme链接中的版本(https://dl.nssurge.com/mac/v5/Surge-5.1.1-2251-25b569303a5219ac59c8375ba3cd1034.zip),不过与readme注释的v5.1.1 (2264)还是有点区别。

安装后,按文档说明的过程破解,然后运行,还是提示试用已过期。

不知是不是以下两个问题,还是其它原因
1)版本不对。但在surge官网无法找到v5.1.1 (2264)下载的位置,只有一个V5最新版提供试用下载。
2)之前试用已过期了,所以破解出问题。

not work with bindizip365

bindizip365按照流程操作后无法正常解压文件,无法添加沙箱目录,可能是之前用过bindizip365,导致试用过期了。暂无法确定原因。

M1mac surge失败

M1mac
未关闭sip


Translated Report (Full Report Below)

Process: Surge [84712]
Path: /Applications/Surge.app/Contents/MacOS/Surge
Identifier: com.nssurge.surge-mac
Version: 5.1.0 (2216)
Code Type: ARM-64 (Native)
Parent Process: launchd [1]
User ID: 501

Date/Time: 2023-05-30 18:24:05.8638 +0800
OS Version: macOS 13.1 (22C65)
Report Version: 12
Anonymous UUID: A1DD43D2-B679-77FF-A34F-DC4E11C51C04

Sleep/Wake UUID: 55CB92D2-F3BE-4EDC-9114-95283B10AE80

Time Awake Since Boot: 360000 seconds
Time Since Wake: 987 seconds

System Integrity Protection: enabled

Crashed Thread: 0

Exception Type: EXC_CRASH (SIGABRT)
Exception Codes: 0x0000000000000000, 0x0000000000000000

Termination Reason: Namespace DYLD, Code 1 Library missing
Library not loaded: @rpath/MMMarkdown.framework/Versions/A/MMMarkdown
Referenced from: <33849BDC-402E-35F6-AA45-E85D8F186F3A> /Applications/Surge.app/Contents/MacOS/Surge
Reason: tried: '/Applications/Surge.app/Contents/Frameworks/MMMarkdown.framework/Versions/A/MMMarkdown' (code signature in '/Applications/Surge.app/Contents/Frameworks/MMMarkdown.framework/Versions/A/MMMarkdown' not valid for use in process: Trying to load an unsigned library), '/Applications/Surge.app/Contents/Frameworks/MMMarkdown.framework/Versions/A/MMMarkdown' (code signature in '/Applications/Surge.app/Contents/Frameworks/MMMarkdown.framework/Versions/A/MMMarkdown' not valid for use in process: Trying to load an unsigned library), '/System/Volumes/Preboot/Cryptexes/OS@rpath/MMMarkdown.framework/Versions/A/MMMarkdown' (no such file), '/Applications/Surge.app/Contents/Frameworks/MMMarkdown.framework/Versions/A/MMMarkdown' (code signature in <E26FEE4B-77D3-
(terminated at launch; ignore backtrace)

Thread 0 Crashed:
0 dyld 0x1845f3190 __abort_with_payload + 8
1 dyld 0x1845fda00 abort_with_payload_wrapper_internal + 104
2 dyld 0x1845fda34 abort_with_payload + 16
3 dyld 0x18458c0a4 dyld4::halt(char const*) + 328
4 dyld 0x184589098 dyld4::prepare(dyld4::APIs&, dyld3::MachOAnalyzer const*) + 4204
5 dyld 0x184587dc4 start + 2404

Thread 0 crashed with ARM Thread State (64-bit):
x0: 0x0000000000000006 x1: 0x0000000000000001 x2: 0x000000016f986930 x3: 0x0000000000000073
x4: 0x000000016f986530 x5: 0x0000000000000000 x6: 0x0000000000000000 x7: 0x0000000000000460
x8: 0x0000000000000020 x9: 0x0000000000000009 x10: 0x0000000000000001 x11: 0x000000000000000a
x12: 0x0000000000000000 x13: 0x0000000000000038 x14: 0x000000022114d9d6 x15: 0x000000016f986e40
x16: 0x0000000000000209 x17: 0x0000000184585344 x18: 0x0000000000000000 x19: 0x0000000000000000
x20: 0x000000016f986530 x21: 0x0000000000000073 x22: 0x000000016f986930 x23: 0x0000000000000001
x24: 0x0000000000000006 x25: 0x00000001e011f340 x26: 0x000000016f9873f0 x27: 0x000000016f987258
x28: 0x0000000000000000 fp: 0x000000016f986500 lr: 0x00000001845fda00
sp: 0x000000016f9864c0 pc: 0x00000001845f3190 cpsr: 0x00001000
far: 0x0000000100a54000 esr: 0x56000080 Address size fault

Binary Images:
0x184582000 - 0x18460cb63 dyld (*) <487cfdeb-9b07-39bf-bfb9-970b61aea2d1> /usr/lib/dyld

External Modification Summary:
Calls made by other processes targeting this process:
task_for_pid: 0
thread_create: 0
thread_set_state: 0
Calls made by this process:
task_for_pid: 0
thread_create: 0
thread_set_state: 0
Calls made by all processes on this machine:
task_for_pid: 0
thread_create: 0
thread_set_state: 0

VM Region Summary:
ReadOnly portion of Libraries: Total=772.0M resident=0K(0%) swapped_out_or_unallocated=772.0M(100%)
Writable regions: Total=8784K written=0K(0%) resident=0K(0%) swapped_out=0K(0%) unallocated=8784K(100%)

                            VIRTUAL   REGION 

REGION TYPE SIZE COUNT (non-coalesced)
=========== ======= =======
STACK GUARD 56.0M 1
Stack 8176K 1
VM_ALLOCATE 16K 1
__DATA 491K 3
__DATA_CONST 294K 2
__DATA_DIRTY 7K 1
__LINKEDIT 767.0M 2
__TEXT 5084K 2
dyld private memory 512K 2
=========== ======= =======
TOTAL 837.3M 15


Full Report

{"app_name":"Surge","timestamp":"2023-05-30 18:24:06.00 +0800","app_version":"5.1.0","slice_uuid":"33849bdc-402e-35f6-aa45-e85d8f186f3a","build_version":"2216","platform":1,"bundleID":"com.nssurge.surge-mac","share_with_app_devs":0,"is_first_party":0,"bug_type":"309","os_version":"macOS 13.1 (22C65)","roots_installed":0,"name":"Surge","incident_id":"ED2682EA-F2AD-4012-8F40-B722A68825D8"}
{
"uptime" : 360000,
"procRole" : "Default",
"version" : 2,
"userID" : 501,
"deployVersion" : 210,
"modelCode" : "MacBookPro18,2",
"coalitionID" : 41816,
"osVersion" : {
"train" : "macOS 13.1",
"build" : "22C65",
"releaseType" : "User"
},
"captureTime" : "2023-05-30 18:24:05.8638 +0800",
"incident" : "ED2682EA-F2AD-4012-8F40-B722A68825D8",
"pid" : 84712,
"translated" : false,
"cpuType" : "ARM-64",
"roots_installed" : 0,
"bug_type" : "309",
"procLaunch" : "2023-05-30 18:24:05.8119 +0800",
"procStartAbsTime" : 8834414600541,
"procExitAbsTime" : 8834415828992,
"procName" : "Surge",
"procPath" : "/Applications/Surge.app/Contents/MacOS/Surge",
"bundleInfo" : {"CFBundleShortVersionString":"5.1.0","CFBundleVersion":"2216","CFBundleIdentifier":"com.nssurge.surge-mac"},
"storeInfo" : {"deviceIdentifierForVendor":"356B3D7A-F9FB-586F-9163-C8E23EE51691","thirdParty":true},
"parentProc" : "launchd",
"parentPid" : 1,
"coalitionName" : "com.nssurge.surge-mac",
"crashReporterKey" : "A1DD43D2-B679-77FF-A34F-DC4E11C51C04",
"throttleTimeout" : 2147483647,
"wakeTime" : 987,
"sleepWakeUUID" : "55CB92D2-F3BE-4EDC-9114-95283B10AE80",
"sip" : "enabled",
"exception" : {"codes":"0x0000000000000000, 0x0000000000000000","rawCodes":[0,0],"type":"EXC_CRASH","signal":"SIGABRT"},
"termination" : {"code":1,"flags":518,"namespace":"DYLD","indicator":"Library missing","details":["(terminated at launch; ignore backtrace)"],"reasons":["Library not loaded: @rpath/MMMarkdown.framework/Versions/A/MMMarkdown","Referenced from: <33849BDC-402E-35F6-AA45-E85D8F186F3A> /Applications/Surge.app/Contents/MacOS/Surge","Reason: tried: '/Applications/Surge.app/Contents/Frameworks/MMMarkdown.framework/Versions/A/MMMarkdown' (code signature in '/Applications/Surge.app/Contents/Frameworks/MMMarkdown.framework/Versions/A/MMMarkdown' not valid for use in process: Trying to load an unsigned library), '/Applications/Surge.app/Contents/Frameworks/MMMarkdown.framework/Versions/A/MMMarkdown' (code signature in '/Applications/Surge.app/Contents/Frameworks/MMMarkdown.framework/Versions/A/MMMarkdown' not valid for use in process: Trying to load an unsigned library), '/System/Volumes/Preboot/Cryptexes/OS@rpath/MMMarkdown.framework/Versions/A/MMMarkdown' (no such file), '/Applications/Surge.app/Contents/Frameworks/MMMarkdown.framework/Versions/A/MMMarkdown' (code signature in <E26FEE4B-77D3-"]},
"extMods" : {"caller":{"thread_create":0,"thread_set_state":0,"task_for_pid":0},"system":{"thread_create":0,"thread_set_state":0,"task_for_pid":0},"targeted":{"thread_create":0,"thread_set_state":0,"task_for_pid":0},"warnings":0},
"faultingThread" : 0,
"threads" : [{"triggered":true,"id":13741460,"threadState":{"x":[{"value":6},{"value":1},{"value":6167226672},{"value":115},{"value":6167225648},{"value":0},{"value":0},{"value":1120},{"value":32},{"value":9},{"value":1},{"value":10},{"value":0},{"value":56},{"value":9144949206},{"value":6167227968},{"value":521},{"value":6515348292,"symbolLocation":392,"symbol":"__simple_bprintf"},{"value":0},{"value":0},{"value":6167225648},{"value":115},{"value":6167226672},{"value":1},{"value":6},{"value":8054240064,"symbolLocation":0,"symbol":"gProcessInfo"},{"value":6167229424},{"value":6167229016},{"value":0}],"flavor":"ARM_THREAD_STATE64","lr":{"value":6515841536},"cpsr":{"value":4096},"fp":{"value":6167225600},"sp":{"value":6167225536},"esr":{"value":1442840704,"description":" Address size fault"},"pc":{"value":6515798416,"matchesCrashFrame":1},"far":{"value":4305797120}},"frames":[{"imageOffset":463248,"symbol":"__abort_with_payload","symbolLocation":8,"imageIndex":0},{"imageOffset":506368,"symbol":"abort_with_payload_wrapper_internal","symbolLocation":104,"imageIndex":0},{"imageOffset":506420,"symbol":"abort_with_payload","symbolLocation":16,"imageIndex":0},{"imageOffset":41124,"symbol":"dyld4::halt(char const*)","symbolLocation":328,"imageIndex":0},{"imageOffset":28824,"symbol":"dyld4::prepare(dyld4::APIs&, dyld3::MachOAnalyzer const*)","symbolLocation":4204,"imageIndex":0},{"imageOffset":24004,"symbol":"start","symbolLocation":2404,"imageIndex":0}]}],
"usedImages" : [
{
"source" : "P",
"arch" : "arm64e",
"base" : 6515335168,
"size" : 568164,
"uuid" : "487cfdeb-9b07-39bf-bfb9-970b61aea2d1",
"path" : "/usr/lib/dyld",
"name" : "dyld"
}
],
"sharedCache" : {
"base" : 6514688000,
"size" : 3434283008,
"uuid" : "00a1fbb6-43e1-3c11-8483-faf0db659249"
},
"vmSummary" : "ReadOnly portion of Libraries: Total=772.0M resident=0K(0%) swapped_out_or_unallocated=772.0M(100%)\nWritable regions: Total=8784K written=0K(0%) resident=0K(0%) swapped_out=0K(0%) unallocated=8784K(100%)\n\n VIRTUAL REGION \nREGION TYPE SIZE COUNT (non-coalesced) \n=========== ======= ======= \nSTACK GUARD 56.0M 1 \nStack 8176K 1 \nVM_ALLOCATE 16K 1 \n__DATA 491K 3 \n__DATA_CONST 294K 2 \n__DATA_DIRTY 7K 1 \n__LINKEDIT 767.0M 2 \n__TEXT 5084K 2 \ndyld private memory 512K 2 \n=========== ======= ======= \nTOTAL 837.3M 15 \n",
"legacyInfo" : {
"threadTriggered" : {

}
},
"trialInfo" : {
"rollouts" : [
{
"rolloutId" : "63582c5f8a53461413999550",
"factorPackIds" : {

  },
  "deploymentId" : 240000002
},
{
  "rolloutId" : "62b4513af75dc926494899c6",
  "factorPackIds" : {
    "COREOS_ICD" : "62fbe3cfa9a700130f60b3ea"
  },
  "deploymentId" : 240000019
}

],
"experiments" : [

]
}
}

Model: MacBookPro18,2, BootROM 8419.60.44, proc 10:8:2 processors, 32 GB, SMC
Graphics: Apple M1 Max, Apple M1 Max, Built-In
Display: Color LCD, 3456 x 2234 Retina, Main, MirrorOff, Online
Memory Module: LPDDR5, Samsung
AirPort: spairport_wireless_card_type_wifi (0x14E4, 0x4387), wl0: Sep 3 2022 02:35:52 version 20.10.965.9.8.7.129 FWID 01-b0e84a9b
Bluetooth: Version (null), 0 services, 0 devices, 0 incoming serial ports
Network Service: AX88179A, Ethernet, en7
Network Service: Wi-Fi, AirPort, en0
USB Device: USB31Bus
USB Device: USB31Bus
USB Device: USB31Bus
Thunderbolt Bus: MacBook Pro, Apple Inc.
Thunderbolt Bus: MacBook Pro, Apple Inc.
Thunderbolt Bus: MacBook Pro, Apple Inc.

破解CleanMyMac X後開不了

我執行的

sudo ./insert_dylib libInlineInjectPlugin.dylib /Applications/CleanMyMac\ X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements拷 貝 /Applications/CleanMyMac\ X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements

開啟錯誤

➜  ~ /Applications/CleanMyMac\ X.app/Contents/MacOS/CleanMyMac\ X ; exit;
dyld[86118]: Library not loaded: @rpath/Announcements.framework/Versions/A/Announcements
  Referenced from: <B6EA2A72-1799-3F34-AD6E-6363449B5483> /Applications/CleanMyMac X.app/Contents/MacOS/CleanMyMac X
  Reason: tried: '/usr/lib/swift/Announcements.framework/Versions/A/Announcements' (no such file, not in dyld cache), '/System/Volumes/Preboot/Cryptexes/OS/usr/lib/swift/Announcements.framework/Versions/A/Announcements' (no such file), '/Applications/CleanMyMac X.app/Contents/MacOS/../Frameworks/Announcements.framework/Versions/A/Announcements' (code signature in <AFD562A6-3C0A-35DB-AE4D-ABDCE827E7CF> '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' not valid for use in process: Trying to load an unsigned library), '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (code signature in <AFD562A6-3C0A-35DB-AE4D-ABDCE827E7CF> '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' not valid for use in process: Trying to load an unsigned library), '/Applications/CleanMyMac X.app/Contents/Library/LoginItems/CleanMyMac X Menu.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (no such file), '/Applications/CleanMyMac X.app/Contents/Library/LoginItems/CleanMyMac X HealthMonitor.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (no such file), '/usr/lib/swift/Announcements.framework/Versions/A/Announcements' (no such file, not in dyld cache), '/System/Volumes/Preboot/Cryptexes/OS/usr/lib/swift/Announcements.framework/Versions/A/Announcements' (no such file), '/Applications/CleanMyMac X.app/Contents/MacOS/../Frameworks/Announcements.framework/Versions/A/Announcements' (code signature in <AFD562A6-3C0A-35DB-AE4D-ABDCE827E7CF> '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' not valid for use in process: Trying to load an unsigned library), '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (code signature in <AFD562A6-3C0A-35DB-AE4D-ABDCE827E7CF> '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' not valid for use in process: Trying to load an unsigned library), '/Applications/CleanMyMac X.app/Contents/Library/LoginItems/CleanMyMac X Menu.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (no such file), '/Applications/CleanMyMac X.app/Contents/Library/LoginItems/CleanMyMac X HealthMonitor.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (no such file), '/System/Volumes/Preboot/Cryptexes/OS@rpath/Announcements.framework/Versions/A/Announcements' (no such file), '/usr/lib/swift/Announcements.framework/Versions/A/Announcements' (no such file, not in dyld cache), '/System/Volumes/Preboot/Cryptexes/OS/usr/lib/swift/Announcements.framework/Versions/A/Announcements' (no such file), '/Applications/CleanMyMac X.app/Contents/MacOS/../Frameworks/Announcements.framework/Versions/A/Announcements' (code signature in <AFD562A6-3C0A-35DB-AE4D-ABDCE827E7CF> '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' not valid for use in process: Trying to load an unsigned library), '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (code signature in <AFD562A6-3C0A-35DB-AE4D-ABDCE827E7CF> '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' not valid for use in process: Trying to load an unsigned library), '/Applications/CleanMyMac X.app/Contents/Library/LoginItems/CleanMyMac X Menu.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (no such file), '/Applications/CleanMyMac X.app/Contents/Library/LoginItems/CleanMyMac X HealthMonitor.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (no such file), '/usr/lib/swift/Announcements.framework/Versions/A/Announcements' (no such file, not in dyld cache), '/System/Volumes/Preboot/Cryptexes/OS/usr/lib/swift/Announcements.framework/Versions/A/Announcements' (no such file), '/Applications/CleanMyMac X.app/Contents/MacOS/../Frameworks/Announcements.framework/Versions/A/Announcements' (code signature in <AFD562A6-3C0A-35DB-AE4D-ABDCE827E7CF> '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' not valid for use in process: Trying to load an unsigned library), '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (code signature in <AFD562A6-3C0A-35DB-AE4D-ABDCE827E7CF> '/Applications/CleanMyMac X.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' not valid for use in process: Trying to load an unsigned library), '/Applications/CleanMyMac X.app/Contents/Library/LoginItems/CleanMyMac X Menu.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (no such file), '/Applications/CleanMyMac X.app/Contents/Library/LoginItems/CleanMyMac X HealthMonitor.app/Contents/Frameworks/Announcements.framework/Versions/A/Announcements' (no such file), '/System/Library/Frameworks/Announcements.framework/Versions/A/Announcements' (no such file, not in dyld cache)
[1]    86118 abort      /Applications/CleanMyMac\ X.app/Contents/MacOS/CleanMyMac\ X

Saving session...completed.


报错 0x80000034

➜ A sudo /Users/lugo/Downloads/MyMacsAppCrack-main/Tools/insert_dylib /Users/lugo/Downloads/MyMacsAppCrack-main/Tools/libInlineInjectPlugin.dylib /Applications/iShot.app/Contents/Frameworks/PTHotKey.framework/Versions/A/PTHotKey_副本 /Applications/iShot.app/Contents/Frameworks/PTHotKey.framework/Versions/A/PTHotKey
Password:
dyld: cannot load 'insert_dylib' (load command 0x80000034 is unknown)
[1] 1831 abort sudo /Users/lugo/Downloads/MyMacsAppCrack-main/Tools/insert_dylib

系统版本10.14.6 是不是系统老了?sip关了的。

请教关于frida的问题

因最近入了个m2的mini所以学习下macos上的逆向,
我之前在windows上使用frida时直接frida -p pid就可以注入到进程了,但是在macos上时无论去注入任何进程始终提示报错,如下:

 410  访达                                                                                                     
(base) ➜  ~ sudo frida -p 410 
     ____
    / _  |   Frida 16.0.13 - A world-class dynamic instrumentation toolkit
   | (_| |
    > _  |   Commands:
   /_/ |_|       help      -> Displays the help system
   . . . .       object?   -> Display information about 'object'
   . . . .       exit/quit -> Exit
   . . . .
   . . . .   More info at https://frida.re/docs/home/
   . . . .
   . . . .   Connected to Local System (id=local)
Failed to attach: the connection is closed 

是macos需要特殊设置吗?
另:我学习作者的文章后成功通过修改二进制方式破解了bandizip365和超级右键,但是好像都因为签名原因导致权限问题使部分功能失效了。
作者有时间的时候方便分享一个简单完整的dylib修改源码吗,我想自己尝试学习修改一下arm版的这些软件。

想自己破,但是對codesign有點疑問

noteplan

如題所說noteplan
看了macfans control的那份文件但對最後這邊替換簽名的部分不太懂想問,能不能教一下具體怎麼做替換簽名的部分
下圖為看不懂的部分
Screenshot 2023-05-29 at 4 29 05 PM

求安排 MindNode

Xmind 的破解非常给力,大佬写的文章都仔细读完了!🎉

想问下 MindNode 可不可以安排一下~

执行insert_dylib 成功之后, 运行app不成功, log输出以下报错

请问这种报错是什么问题

dyld[44238]: Library not loaded: '@rpath/PTHotKey.framework/Versions/A/PTHotKey'
  Referenced from: '/Applications/iShot.app/Contents/MacOS/iShot'
  Reason: tried: '/Applications/iShot.app/Contents/MacOS/../Frameworks/PTHotKey.framework/Versions/A/PTHotKey' (code signature in <95789552-F4EE-3167-9990-E2C44D5D51A9> '/Applications/iShot.app/Contents/Frameworks/PTHotKey.framework/Versions/A/PTHotKey' not valid for use in process: mapped file has no cdhash, completely unsigned? Code has to be at least ad-hoc signed.), '/Applications/iShot.app/Contents/MacOS/../Frameworks/PTHotKey.framework/Versions/A/PTHotKey' (code signature in <95789552-F4EE-3167-9990-E2C44D5D51A9> '/Applications/iShot.app/Contents/Frameworks/PTHotKey.framework/Versions/A/PTHotKey' not valid for use in process: mapped file has no cdhash, completely unsigned? Code has to be at least ad-hoc signed.), '/System/Library/Frameworks/PTHotKey.framework/Versions/A/PTHotKey' (no such file)
[1]    44238 abort      /Applications/iShot.app/Contents/MacOS/iShot

请教关于arm版pd18.3修改问题

当前我操作步骤如下:
1.我已经通过x64的补丁找到2个对应函数的地址
2.将install_parallels.sh脚本中注入dylib部分暂时注释,其他照旧执行
3.写了一个python脚本,主要用来启动pd,然后循环判断进程“prl_disp_service”是否启动成功了,如果成功了则利用frida注入js脚本。
4.js脚本内容尝试过用frida的api来hook函数返回值,也试过直接修改函数头的代码,但最终启动完成后pd均显示为未激活,破解失败。
麻烦大佬帮忙分析下我这个步骤和思路有没有什么问题呢?
下面是python脚本的内容

# -*- coding: utf-8 -*-

import frida
import sys
import os
import subprocess

jspath = "hookpd.js"                                             #定义frida脚本路径 

def get_javascript(filepath):
    code = ''
    with open(filepath, 'r') as file:
        code = code + file.read()
    return code


# 启动MacOS程序
os.system('open /Applications/Parallels\ Desktop.app')

# 检查进程名称是否存在
while True:
    process_name = 'prl_disp_service'
    ps_output = subprocess.check_output(['ps', '-A'])
    if bytes(process_name, 'utf-8') in ps_output:
        print(f'{process_name} process is running')
        # 附加到进程并执行Frida脚本
        session = frida.attach(process_name)
        javascript = get_javascript(jspath)
        script = session.create_script(javascript)
        script.load()
        break
    else:
        print(f'{process_name} process is not running')

sys.stdin.read()

下面是js脚本的内容:

function patchsignchecker(){
    var module = Process.findModuleByName('prl_disp_service');
    var patchaddress = module.base.add(0x5e1000);
    console.log("patchsignchecker is " + patchaddress);
    Memory.patchCode(patchaddress, 8, function (codeAddress) {
        var writer = new Arm64Writer(codeAddress);
        // mov       x0, #0x1
        writer.putInstruction(0x200080D2);
        // ret
        writer.putInstruction(0xC0035FD6);
        writer.flush();
        Memory.dump();
    });
    var size = 32;

    var data = Memory.readByteArray(patchaddress, size);
    console.log(hexdump(data, {
    offset: 0,
    length: size,
    header: true,
    ansi: true
    }));
}

function patchcodesign(){
    var module = Process.findModuleByName('prl_disp_service');
    var patchaddress = module.base.add(0x7b67d4);
    console.log("patchcodesign is " + patchaddress);
    Memory.patchCode(patchaddress, 8, function (codeAddress) {
        var writer = new Arm64Writer(codeAddress);
        // mov       x0, #0x1
        writer.putInstruction(0x200080D2);
        // ret
        writer.putInstruction(0xC0035FD6);
        writer.flush();
    });
    var size = 32;
    var data = Memory.readByteArray(patchaddress, size);
    console.log(hexdump(data, {
    offset: 0,
    length: size,
    header: true,
    ansi: true
    }));
}


function main() {
    patchsignchecker();
    patchcodesign();
}

setImmediate(main, 0);

patch的第一个函数位置:
image

patch的第二个函数位置:
image

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.