Post: Black Ops EBOOT Struct
11-20-2011, 05:26 AM #1
(adsbygoogle = window.adsbygoogle || []).push({}); here it is

Originally posted by another user
I was bored and noticed this pattern it has. A fact: If you reverse the whole thing, you'll be able to find the NPDRM key for that firmware version it was encrypted with. Good luck! The eboot is big. I used the 1.02 debug EBOOT but it should work for any. Basically, everything after the .ELF string is the decrypted EBOOT.ELF code.

Start with the debug EBOOT. Once you find the NPDRM key in that (3.55), the same offset it is in that EBOOT should be in the other 1.13 EBOOT (3.72?). Then you'll have the NPDRM key for that firmware. I was sleepy when I wrote this so I may have explained it wrong; good luck.

Originally posted by another user
Encrypted EBOOT - Decrypted EBOOT
0x90-0xB6 - 0x00-0x26
0xB8-0xDA - 0x28-0x4A

Remember, it's to get you started with reversing it. The 0x90-0B6 is the same code in the decrypter EBOOT 0x00-0x26. If anyone wants me to finish, you better give me $200 Happy.

PS:
I'll do this for MW3 once I'm done with my other project. For MW3, since I don't have a decrypted EBOOT for it, I'll have to do it from scratch which is harder. At least I'd be able to code a EBOOT from SCRATCH.
(adsbygoogle = window.adsbygoogle || []).push({});

The following 3 users say thank you to xiiBomberHD for this useful post:

Brentdevent, User23434, Pauly
11-20-2011, 06:57 AM #2
great man !!Winky Winky

The following user thanked rimka06510 for this useful post:

xiiBomberHD
11-20-2011, 10:35 AM #3
Chrom3D
Big Sister
Basically if we get the NPDRM key for the current firmware we can get modofied eboot online?

Good work Famas and thanks xiiBomberHD for sharing Smile

The following user thanked Chrom3D for this useful post:

xiiBomberHD
11-20-2011, 01:15 PM #4
sebz07
Pokemon Trainer
This may be off topic, but can we work out a way to decrypt the 1.11 update for CFW, If this can be done we can then play moon ect Smile

The following user thanked sebz07 for this useful post:

eazynow82
11-20-2011, 01:59 PM #5
Chrom3D
Big Sister
Originally posted by xFLAMeHD
nice Happy. but do 3arc still ban people ? if not :fyea:


They are probably less active as of now. They will most likely only ban depending on the number of cheaters... That's what I think atleast.

And also about which mod that is being acquired. Meaning stat mods will probably not be tolerated.
Prestige hack doesent harm anyone directly so why not? Neither do super jump, super speed, ufo and everything else.
11-20-2011, 02:07 PM #6
Nice one :y:
11-20-2011, 02:33 PM #7
GE90
< ^ > < ^ >
Originally posted by Chrom3D View Post
They are probably less active as of now. They will most likely only ban depending on the number of cheaters... That's what I think atleast.

And also about which mod that is being acquired. Meaning stat mods will probably not be tolerated.
Prestige hack doesent harm anyone directly so why not? Neither do super jump, super speed, ufo and everything else.
It will be insta-perma-ban. 3arc has a tool that autobans people who modified the files
11-20-2011, 03:34 PM #8
There are server checks but thats a different thing. I feel once you reversed the EBOOT completely, who will do that its to big, you'll get a better concept on modding. I think he is planning to continue to reverse it and release more information. He is busy for whatever reason though.

You must login or register to view this content.
You must login or register to view this content.
That guy = C0mplex from NGU. Dumbass :S. Vuno = Famas.
11-20-2011, 08:06 PM #9
Kane500
< ^ > < ^ >
Umm I thought everyone knew how the eboot was encrypted.
11-20-2011, 08:22 PM #10
Originally posted by kane212v2isgay View Post
Umm I thought everyone knew how the eboot was encrypted.


This doesn't tell you that the EBOOT is encrypted with NPDRM >.>.

Copyright © 2026, NextGenUpdate.
All Rights Reserved.

Gray NextGenUpdate Logo