ROM Hack Discussion MHrise save edit,address,or other。

limoonfeat

Active Member
OP
Newcomer
Joined
Jun 2, 2018
Messages
30
Trophies
0
Age
33
XP
434
Country
China
All this behavior without test,only watch and log,you can try it yourself
1.Use checkpoint dump it
2.Use hxd or something open it
3.Maybe my address different with you (item address or something)
(Eng not my first language so maybe hard to read,Sorry about that’)

address :0x101c0 573d0000
my money:15703
address: 0x101d8 241c0000
my point:7204

Item box address maybe start with 0x18658
form like this
回復薬
01 00 00 00 F2 65 D2 24 1C 95 B3 C2 11 00 00 00 02 00 00 00 37 E3 D2 54 0F 5D 48 AF 01 00 00 00 04 00 00 00 06 00 10 04 16 A9 11 8C 07 00 00 00 04 00 00 00 20 00 00 00
回復薬グレート
01 00 00 00 F2 65 D2 24 1C 95 B3 C2 11 00 00 00 02 00 00 00 37 E3 D2 54 0F 5D 48 AF 01 00 00 00 04 00 00 00 07 00 10 04 16 A9 11 8C 07 00 00 00 04 00 00 00 13 00 00 00

or look the picture
Update1.
Item bag armor address 0x181a0
LV2 通常弾
01 00 00 00 F2 65 D2 24 1C 95 B3 C2 11 00 00 00 02 00 00 00 37 E3 D2 54 0F 5D 48 AF 01 00 00 00 04 00 00 00 1E 00 10 04 16 A9 11 8C 07 00 00 00 04 00 00 00 63 00 00 00

item bag 0x178b0
回復薬
01 00 00 00 F2 65 D2 24 1C 95 B3 C2 11 00 00 00 02 00 00 00 37 E3 D2 54 0F 5D 48 AF 01 00 00 00 04 00 00 00 06 00 10 04 16 A9 11 8C 07 00 00 00 04 00 00 00 04 00 00 00
回復薬グレート
01 00 00 00 F2 65 D2 24 1C 95 B3 C2 11 00 00 00 02 00 00 00 37 E3 D2 54 0F 5D 48 AF 01 00 00 00 04 00 00 00 07 00 10 04 16 A9 11 8C 07 00 00 00 04 00 00 00 0A 00 00 00

maybe big???(look the picture)
01 00 00 00 43 D4 B9 35 1C 95 B3 C2 11 00 00 00 02 00 00 00 37 E3 D2 54 0F 5D 48 AF 01 00 00 00 04 00 00 00 26 04 10 04 16 A9 11 8C 07 00 00 00 04 00 00 00 11 00 00 00

Update.2
It seems everyone‘s savedata different with others‘ ,so the address different too。


PS.I haven't change anything .
 

Attachments

  • item.png
    item.png
    520.1 KB · Views: 316
  • bag armor.png
    bag armor.png
    588.9 KB · Views: 321
  • big.png
    big.png
    301.5 KB · Views: 298
Last edited by limoonfeat,
  • Like
Reactions: Topfly

Topfly

New Member
Newbie
Joined
Mar 26, 2021
Messages
2
Trophies
0
Age
25
XP
36
Country
Armenia
All this behavior without test,only watch and log,you can try it yourself
1.Use checkpoint dump it
2.Use hxd or something open it
3.Maybe my address different with you (item address or something)
(Eng not my first language so maybe hard to read,Sorry about that’)

address :0x101c0 573d0000
my money:15703
address: 0x101d8 241c0000
my point:7204

Item address maybe start with 0x18658
form like this
回復薬
01 00 00 00 F2 65 D2 24 1C 95 B3 C2 11 00 00 00 02 00 00 00 37 E3 D2 54 0F 5D 48 AF 01 00 00 00 04 00 00 00 06 00 10 04 16 A9 11 8C 07 00 00 00 04 00 00 00 20 00 00 00
回復薬グレート
01 00 00 00 F2 65 D2 24 1C 95 B3 C2 11 00 00 00 02 00 00 00 37 E3 D2 54 0F 5D 48 AF 01 00 00 00 04 00 00 00 07 00 10 04 16 A9 11 8C 07 00 00 00 04 00 00 00 13 00 00 00

or look the picture

PS.I haven't change anything .

Thanks for your sharing.
Do you have Line or Discord?
I'm very interested too, maybe we can study together

by the way ji3aj3m3u,3g45j/ jp6x87 c8 c8 XD
 

limoonfeat

Active Member
OP
Newcomer
Joined
Jun 2, 2018
Messages
30
Trophies
0
Age
33
XP
434
Country
China
Thanks for your sharing.
Do you have Line or Discord?
I'm very interested too, maybe we can study together

by the way ji3aj3m3u,3g45j/ jp6x87 c8 c8 XD
Sorry,I don't have Line or Discord because there are hard to use for me (read & write)
 

limoonfeat

Active Member
OP
Newcomer
Joined
Jun 2, 2018
Messages
30
Trophies
0
Age
33
XP
434
Country
China
Do U have wechat?I wanna discuss this with you,Thx、
等修改器吧,大家的地址都不一样,没有参考的必要了,但是道具格式是固定的,你要找也能找到。
关键是每个人的存档的大小都不一样,我下了那100%解锁的存档,放hxd里一看就懂了,前面的那位老哥说他改了之后存档报错,虽然不知道是他操作有问题还是另外有一层加密,怕不是跟那个data00-1.bin有关联,想想就觉得麻烦,失去干劲。
 

MarshallMZ

New Member
Newbie
Joined
Mar 28, 2021
Messages
4
Trophies
0
Age
30
XP
39
Country
China
等修改器吧,大家的地址都不一样,没有参考的必要了,但是道具格式是固定的,你要找也能找到。
关键是每个人的存档的大小都不一样,我下了那100%解锁的存档,放hxd里一看就懂了,前面的那位老哥说他改了之后存档报错,虽然不知道是他操作有问题还是另外有一层加密,怕不是跟那个data00-1.bin有关联,想想就觉得麻烦,失去干劲。
行叭,谢啦,我就是想改一点神护,怪物素材如果都改出来这个游戏就可以封盘了
 

w350922439

Well-Known Member
Newcomer
Joined
Apr 4, 2020
Messages
80
Trophies
0
Age
34
XP
895
Country
Hong Kong
行叭,谢啦,我就是想改一点神护,怪物素材如果都改出来这个游戏就可以封盘了
不但是每个人大小不一样,修改前后也不一样,唯一有的参考价值就是可以通过我发的两个存档反推物品信息,然后找到字段进行写入。
 

limoonfeat

Active Member
OP
Newcomer
Joined
Jun 2, 2018
Messages
30
Trophies
0
Age
33
XP
434
Country
China
不但是每个人大小不一样,修改前后也不一样,唯一有的参考价值就是可以通过我发的两个存档反推物品信息,然后找到字段进行写入。
我尝试改自己的存档加道具确定会报废,但是报废的基准不是data00-1.bin,而是存档本身data001Slot.bin绝壁内置了加密code。
然后我就想起以前有一作就是这样,必须要找到对存档进行加密的地址和代码(当年是固定地址)
修改之后要一起修改加密码,不然对存档的任何修改都会炸。
现阶段如果不介意重打的话真的可以走仅替换data001Slot.bin,就可以白嫖这个版本的所有道具,代价可能是重打,因为任务记录?和猫狗数据都在存档里面。但是之后更新新道具素材还是要等修改器。
如果已经打了很久的话就不建议这样做,如果刚开始没打多少的,搞起!
data00-1.bin只记录了玩家的角色信息(外观什么的都在里面)


1.I try to modify my savedata then get error.
2.It seems somewhere encoded that locked the save so modify everywhere get error.
3.U can only copy the(100%unlocked) data001Slot.bin to get all items but it will reset your gameplay.
4.Should waiting tools
 
Last edited by limoonfeat,

secXsQuared

Well-Known Member
Member
Joined
Dec 22, 2015
Messages
186
Trophies
0
Age
28
Location
Ever studied geography mate?
XP
169
Country
Canada
我尝试改自己的存档加道具确定会报废,但是报废的基准不是data00-1.bin,而是存档本身data001Slot.bin绝壁内置了加密code。
然后我就想起以前有一作就是这样,必须要找到对存档进行加密的地址和代码(当年是固定地址)
修改之后要一起修改加密码,不然对存档的任何修改都会炸。
现阶段如果不介意重打的话真的可以走仅替换data001Slot.bin,就可以白嫖这个版本的所有道具,代价可能是重打,因为任务记录?和猫狗数据都在存档里面。但是之后更新新道具素材还是要等修改器。
如果已经打了很久的话就不建议这样做,如果刚开始没打多少的,搞起!
data00-1.bin只记录了玩家的角色信息(外观什么的都在里面)


1.I try to modify my savedata then get error.
2.It seems somewhere encoded that locked the save so modify everywhere get error.
3.U can only copy the(100%unlocked) data001Slot.bin to get all items but it will reset your gameplay.
4.Should waiting tools

Maybe they used some sort of serialization (grpc)? <- This also results in save file varying in size. I encountered the same thing studying BL3 savefile. Maybe this gen they finally removed the cap for # of items. I would expect some offset dwords in the header pointing to various locations.

The invalid save file thing could also be a simple checksum in the header.

The easiest way to find out is to use a debugger on switch but I don't even wanna attempt that.

There are just not enough incentives for Capcom to obfuscate the MH save file too much.
 

YZblade1020

New Member
Newbie
Joined
Aug 6, 2019
Messages
1
Trophies
0
Age
30
XP
99
Country
China
报错是因为有校验加密 而且这个加密可能是多段的 并不是一段简单的ADD SUB或者CRC 所以内存修改是最简单快捷的办法
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    Veho @ Veho: Spring is in the air. +1