tag:blogger.com,1999:blog-1981425846546053493.post5163832993793357241..comments2024-01-17T22:33:52.069+01:00Comments on Arcade Hacker: Capcom Kabuki CPU - Part 3Eduardo Cruzhttp://www.blogger.com/profile/18379284498583161191noreply@blogger.comBlogger10125tag:blogger.com,1999:blog-1981425846546053493.post-27685674400845677592014-12-30T20:36:17.932+01:002014-12-30T20:36:17.932+01:00my question is: how capcom originally encrypt the ...my question is: how capcom originally encrypt the prg roms ?Manuel Assonihttps://www.blogger.com/profile/04196924960164473342noreply@blogger.comtag:blogger.com,1999:blog-1981425846546053493.post-79893637872591845912014-12-29T23:55:09.389+01:002014-12-29T23:55:09.389+01:00Hi Manuel,
Mask file: Yes, and also manual finis...Hi Manuel, <br /><br />Mask file: Yes, and also manual finishing as there will be areas of the rom never accessed by the game during your execution.<br /><br />Desuicide: Correct, my last post describes the process to recover full working originals of any kabuki powered game.Eduardo Cruzhttps://www.blogger.com/profile/18379284498583161191noreply@blogger.comtag:blogger.com,1999:blog-1981425846546053493.post-63997682365383773372014-12-29T21:39:58.541+01:002014-12-29T21:39:58.541+01:001) my english is not so good
2) i'm not a MAC ...1) my english is not so good<br />2) i'm not a MAC user<br />3) my coding skill is very poor<br /><br />let me know if i've understood<br />the only way to obtain the mask file to do the work ( and will not be enough ) is to play the game with your modded z80 core c file recompiled in mame right?<br /><br />in your last post you talk about recode the kript key into the kabuki?<br /><br />i've a suicided original poker ladies pre jamma pcb that i've dumped 10 year ago ( when the foard was not faulty ) and added to mame , i will like to revive it without solder ecc..Manuel Assonihttps://www.blogger.com/profile/04196924960164473342noreply@blogger.comtag:blogger.com,1999:blog-1981425846546053493.post-86597809210376153712014-12-29T18:14:03.488+01:002014-12-29T18:14:03.488+01:00Yes, it should be posible by using the tools I sha...Yes, it should be posible by using the tools I shared.Eduardo Cruzhttps://www.blogger.com/profile/18379284498583161191noreply@blogger.comtag:blogger.com,1999:blog-1981425846546053493.post-45813891264514966962014-12-29T15:36:10.555+01:002014-12-29T15:36:10.555+01:00So this could be done on a Poker Ladies suicided P...So this could be done on a Poker Ladies suicided PCB too?Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-1981425846546053493.post-78264394028439636472014-12-20T01:22:00.624+01:002014-12-20T01:22:00.624+01:00Have you tried toggling pin 28 *while running* a s...Have you tried toggling pin 28 *while running* a specially crafted test program? like: execute encrypted op code, toggle pin, execute non encrypted code to read register statesUnknownhttps://www.blogger.com/profile/10287515662096131853noreply@blogger.comtag:blogger.com,1999:blog-1981425846546053493.post-86994499532805752622014-12-16T01:56:46.899+01:002014-12-16T01:56:46.899+01:00I'm reading your blog because I _love_ the art...I'm reading your blog because I _love_ the art of reverse-engineering, and am not all that passionate about video games.... (no dis-respect intended, let's just consider this a personality defect on my part). Can someone tell me where the word "Kabuki" came from?Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-1981425846546053493.post-33420585391084945412014-12-15T09:06:26.935+01:002014-12-15T09:06:26.935+01:00It should be possible to use a 'clever' di...It should be possible to use a 'clever' disassembler to decrypt the program. Feed it with the binary and the keys, and do some hands on, then it should do most of the work.Lennartnoreply@blogger.comtag:blogger.com,1999:blog-1981425846546053493.post-46738242575446650872014-12-14T19:59:20.716+01:002014-12-14T19:59:20.716+01:00Totally yesTotally yesEduardo Cruzhttps://www.blogger.com/profile/18379284498583161191noreply@blogger.comtag:blogger.com,1999:blog-1981425846546053493.post-66357372139372940562014-12-14T19:54:02.505+01:002014-12-14T19:54:02.505+01:00I wonder if the same could be done with the capcom...I wonder if the same could be done with the capcom CPS-1 qsound z80 kabuki encrypted roms.....<br /><br />dlfrsilverAnonymousnoreply@blogger.com