吾爱破解 - LCG - LSG |安卓破解|病毒分析|www.52pojie.cn

 找回密码
 注册[Register]

QQ登录

只需一步,快速开始

查看: 14000|回复: 20
收起左侧

[Unpackers] Molebox Virtualization Studio unpacker ver.0.2

  [复制链接]
antiol 发表于 2018-12-11 09:02
本帖最后由 antiol 于 2018-12-11 09:16 编辑

Molebox Virtualization Studio unpacker
  • Fixed error "VFSDecrypt: failed to find STELPACK signature" on some data files;
  • Fixed error "SPack catalog not found or invalid. vfsrootsize=00000000" on some EXE files;
  • Fixed out-of-memory error when unpacking huge data files;
  • Loads possible filenames from mole_dictionary.txt;

How to use mole_dictionary.txt
If you have a file which uses "hide files" feature of Molebox VS, it only stores hash of the filename - original filenames are not stored anywhere. But if you have a good idea what the filename might be, you can add it to mole_dictionary.txt and my unpacker will use that for intelligent guessing.
You must enter path relative to where the main executable is, for example: data\magic.dat. DO NOT enter full paths like C:\Program Files\My Program\data\magic.dat, they will not work.You can also add comments for your convenience - any line starting with "//" is treated as a comment and ignored.If your paths contain non-English characters, make sure you save mole_dictionary.txt in UTF-8 encoding with BOM.Real-life example of mole_dictionary.txtThere are lots of different "editions" of Tantra Online game. They all need specific files
like HTSound.dll, HTWeb.dll or system\MobInfo.tan to run properly. However, this specific version called Tantra Surya has packed all files inside HTLauncher.exe and .sps files
and enabled "hide files" feature:
My unpacker does the job but original filenames are lost:
To improve unpacking results, you can add list of files normally used by Tantra into mole_dictionary.txt. Let's start with something simple, files that normally are in Tantra root folder:
[HTML] 纯文本查看 复制代码
// from Tantra Atlas Online Oficial
_settings.ini
bg_settings.png
BugslayerUtil.dll
ChatServer.cfg
d3dx9_27.dll
d3dx9_28.dll
d3dx9_29.dll
dbghelp.dll
HT3DHeaven.dll
HTDirect3D.dll
HTLauncher.exe
HTSound.dll
HTSpec.cfg
HTUserSetting.sys
HTWeb.dll
icon.ico
MSCOMCTL.OCX
MSINET.OCX
mss32.dll
NotifyMsg.dat
ntdll.dll
serverlist.bin
Serverlist.txt
Tantra Updater.exe
Tantra.dat
Tantra.exe
Tantra_Crash.txt
TantraCrashSender.exe
tempTantra.dat
UpdateList.dat
version.dat
XPva03.dll
After that, unpacker works much better. It has recovered most of the DLL names and just 5 filenames are unknown:
Of course, the more possibilities you add, the better are chances that the filename will be recovered. smileSo, let's look into some subfolders..Take, for example, this map folder:

Compare it to the same map folder in some different Tantra edition, in my case - Prime:
Now we know what filenames to add to mole_dictionary.txt
[HTML] 纯文本查看 复制代码
[/indent][indent]data\maps\AnakaKruma\MAP_AnakaKruma.tcc
data\maps\AnakaKruma\MAP_AnakaKruma.thm
data\maps\AnakaKruma\MAP_AnakaKruma.tme
data\maps\AnakaKruma\MAP_AnakaKruma.tml
data\maps\AnakaKruma\MAP_AnakaKruma.tmo
data\maps\AnakaKruma\Sky.tmd
data\maps\AnakaKruma\SkyTerrain.tmd
data\maps\AnakaKruma\TerrainTex.hpk
Run the unpacker again on the packed HTLauncher.exe and the result is much better:

You can keep on building your dictionary until all the unknown filenames are resolved. But that's your task, I will not do that for you.. smileHave fun and as always - please let me know if you notice any issues!

Molebox没记错的话,官方已经挂了,停止更新很久了...理论这款通杀,如果解包有问题可以到作者blog下反馈
作者bolg https://lifeinhex.com

本地上传一份
Molebox Virtualization Studio unpacker-v0.20.zip (305.75 KB, 下载次数: 268)

免费评分

参与人数 3吾爱币 +7 热心值 +3 收起 理由
Fate丶眼镜 + 1 + 1 欢迎分析讨论交流,吾爱破解论坛有你更精彩!
Techflow + 1 + 1 谢谢@Thanks!
Hmily + 5 + 1 鼓励转贴优秀软件安全工具和文档!

查看全部评分

发帖前要善用论坛搜索功能,那里可能会有你要找的答案或者已经有人发布过相同内容了,请勿重复发帖。

jianfei209 发表于 2018-12-11 09:31
谢谢奉献分享,学习多学习
殇-No.1 发表于 2018-12-11 10:09
Hmily 发表于 2018-12-11 11:30
yhzh 发表于 2018-12-11 13:29
感谢分享。。。
blsn3548 发表于 2018-12-11 21:16
感谢分享资源
segasonyn64 发表于 2018-12-11 22:02
试试这个脱壳工具!!!
almpig 发表于 2018-12-12 08:31
谢谢奉献分享,学习多学习
大大的小天蝎 发表于 2018-12-12 18:47
66666666666666666666666666
chang1582 发表于 2018-12-13 02:07
感谢分享
您需要登录后才可以回帖 登录 | 注册[Register]

本版积分规则 警告:本版块禁止灌水或回复与主题无关内容,违者重罚!

快速回复 收藏帖子 返回列表 搜索

RSS订阅|小黑屋|处罚记录|联系我们|吾爱破解 - LCG - LSG ( 京ICP备16042023号 | 京公网安备 11010502030087号 )

GMT+8, 2024-5-2 03:20

Powered by Discuz!

Copyright © 2001-2020, Tencent Cloud.

快速回复 返回顶部 返回列表