Ok well i dont know german so someone feel free to translate this but.. The point of this topic is i have a tool to extract molebox packed exe's and you might ask "why would i want to do that".
Alot of the private servers for ro now use molebox to encrypt there data havent been able to decrypt grf files but this will work for exe files. Theres quite afew servers i can name who pack alot of there data into there exe making it larger then the normal 3mb's for there exe and when an exe is encrypted you cant edit it.
This will work for most of the servers out there who claim to use anti bot protection if you use PE program to scan the exe you can make sure its molebox for sure i use exeinfope.
But if you dont believe that this would actually work i have proof in another post i made asking for help with header file that was extracted from a server dunno if im allowed to post what server here i know openkore got all homo about me posting this.
Also it is packed with UPX its not virus infected and heres a scan from virustotal. You use it by runing it from command prompt cd to the directory you have it and run it for the options.
Antivirus Version Last Update Result
AhnLab-V3 2008.5.16.0 2008.05.18 -
AntiVir 7.8.0.19 2008.05.18 -
Authentium 5.1.0.4 2008.05.18 -
Avast 4.8.1195.0 2008.05.18 -
AVG 7.5.0.516 2008.05.18 -
BitDefender 7.2 2008.05.19 -
CAT-QuickHeal 9.50 2008.05.17 -
ClamAV 0.92.1 2008.05.19 -
DrWeb 4.44.0.09170 2008.05.17 -
eSafe 7.0.15.0 2008.05.18 suspicious Trojan/Worm
eTrust-Vet 31.4.5796 2008.05.16 -
Ewido 4.0 2008.05.18 -
F-Prot 4.4.2.54 2008.05.16 -
F-Secure 6.70.13260.0 2008.05.18 -
Fortinet 3.14.0.0 2008.05.18 -
GData 2.0.7306.1023 2008.05.19 -
Ikarus T3.1.1.26.0 2008.05.19 -
Kaspersky 7.0.0.125 2008.05.19 -
McAfee 5297 2008.05.17 -
Microsoft 1.3408 2008.05.13 -
NOD32v2 3107 2008.05.18 -
Norman 5.80.02 2008.05.16 -
Panda 9.0.0.4 2008.05.18 -
Prevx1 V2 2008.05.19 Prevx Database Unreachable
Rising 20.44.62.00 2008.05.18 -
Sophos 4.29.0 2008.05.19 -
Sunbelt 3.0.1123.1 2008.05.17 -
Symantec 10 2008.05.18 -
TheHacker 6.2.92.312 2008.05.18 -
VBA32 3.12.6.6 2008.05.18 -
VirusBuster 4.3.26:9 2008.05.18 -
Additional information
File size: 36947 bytes
MD5...: fac982567201d4be2da1383d7253d892
SHA1..: 592e495f21c1c1bb6ec010ed7f07bde3ec5162ee
SHA256: ae924613dd5a5a04f4796be719214828408cfad510b97a4579 6cf319adc4cd22
SHA512: dcbebfe29dec86fd83616ca54f40f16ebb90cbbf9a032e4a43 a6f67093d1ba8b
abb806773afcee80b4271f764c0cb7ee15a8b85aa8a42a2f28 ade58e4fd985bb
PEiD..: -
PEInfo: -
packers (Kaspersky): PE_Patch.UPX, UPX, PE_Patch.UPX, UPX
packers (F-Prot): UPX ,