Happy 2024!
To start new year on a positive note, here's a new version of my Enigma Virtual Box unpacker.
- Added detection Enigma Virtual Box v10.40 and 10.50.
- Added support for Enigma Virtual Box v10.60.
Big thank you goes to everyone who reported issues with my tools. I really appreciate it!
Have a great year!
Enigma Protector v6.80. Can you provide a tool to decrypt it? Thank you very much.
As far as I know, there is no public unpacker for Enigma Protector. I think there are some OllyDbg/x64dbg scripts for unpacking but they don't extract the embedded files.
hello kao
I tried unpacking a file that was about 1.6GB and had 70GB of free space on my hard disk, but it still said "There is not enough space in working directory."
I don't have much more free space on my hard disk. Is this reasonable? How much free space do I need?
Thank you
My unpacker expects disk free space to be 8 times the size of packed file. If you have a 1.6GB file, it would expect ~12GB free space.
If there's a bug, I'll be happy to fix it. But to do that, I'd need to learn more about your system. Can you please tell me size and free space on all your disks? Where was the packed file located? Where's unpacker located? How did you launch the unpacker?
As a workaround, you can use command-line parameter "/nodiskspace" to disable the check. But if you run out of disk space during the unpacking, it will crash!
下载不了中国
If mega.nz is blocked in China or anywhere else in the world, there is nothing I can do about that.
Hi Kao, I found this app by chance last year (v0.61) and it had been a great help in unpacking of files for modifications. Till now I did not found any issues, works great. Also, Thanks a bunch for the new update.
Note: This is not about the unpacker. I found some issues with EVB (10.60) that certain apps don't work after boxing, so I switched back to EVB (10.40). And everything goes fine now.
Thank you! I'm glad you find it useful. :)
Hey Kao, thanks again for your recent release of the unpacker. So I came to this problem where an EXE had an Enigma & Obsidium as its protection software as stated by Detect It Easy. I tried using your Unpacker but sadly no luck, do you have any advice or recommendation on how to bypass an Obsidium protected file? Any help would be appreciated
DiE is known to be wrong on more than a few occasions. :)
I am not aware of any ready-made tool for Obsidium. If your target is x86 executable and you only need the embedded files, you could try https://github.com/extremecoders-re/Virtual-File-System-Editor
Otherwise, manual unpacking is the only option I can think of.
Hey Kao, thanks for the reply.
I have tried VFS before but sadly it can't unpack it, I guess my only option is to try and do it manually like you mentioned. But yeah Obsidium is still vey hard to decrypt so thats a challenge of its own.
Thanks again, have a good day
Hello Kao, I've encounter an EVB packed RPG MV game it only could detected by 0.62 unpacker while it will crash in the middle of unpacking. How could I provide the file to you?
Hi Cal,
please upload your file to some file sharing service (like mega.nz/mediafire.com/workupload.com) and send me the link in the comment.
Links in comments are moderated and visible only to me.
Sorry for being late on reply
{hidden link}
Hi,
Unpacker works fine on my machine and unpacks all the files properly. Could you please describe the exact steps that lead to the crash? Or, even better, make a video?
Please try to include everything that might be useful for catching this elusive bug - hardware specifications, disk free space, running antivirus software, and so on.
If you're not comfortable sharing that information publicly, my email address is at the bottom of the page.
main its not working ?
I found what happened, the full path of the extract target location too long and it just crash during the process. Thanks Kao
Thank you so much for this information, I really appreciate your time and effort! :)
I'll see whether I can do something about that in the next version of unpacker..
i am not getting the source ?
i am getting Invalid MethodBodyBlock: Invalid relative virtual address (RVA): 0x0003C154
its .net apps
here is the app
{hidden link}
The file be_forcer.exe and also bofer_unpacked.exe are protected with some .NET protector I don't recognize.
You will need to unpack that protection to be able to see the decompiled code. But I can't help you with that.
Hi Kao, I really like the unpacking program you created and it helped me a lot. It was really good for unpacking packing programs made up of enigma or mole.
But I have one question. I don't know the exact packing program, but do you know of a packing program called vProtect? I am leaving a question because I am having trouble unpacking the file.
Sorry, I haven't heard of "VProtect".
I'm guessing it's not a typo and you did not mean "VMProtect". :)
Do you have vmprotect unpacking program?
No, I don't.