Exetools

Exetools (https://forum.exetools.com/index.php)
-   Source Code (https://forum.exetools.com/forumdisplay.php?f=46)
-   -   GTA 5 source code leaked (https://forum.exetools.com/showthread.php?t=20799)

Alpha 12-26-2023 04:59

GTA 5 source code leaked
 
1 Attachment(s)
GTA V source code leaked not sure if it is the complete code or a sample at present, this is around 4gb which from the picture seems legit


HTML Code:

https://cyberfile.me/7bu8


magnet:?xt=urn:btih:0e1610f5c681bbe8e908ddb7f73dc890899994f4&dn=gta%20v%20source%20code&tr=udp%3A%2F%2Ftracker.opentrackr.org%3A1337%2Fannounce

TOM_RUS 12-26-2023 08:24

Or you can grab same thing from torrent, which should be faster and more takedown proof
Code:

magnet:?xt=urn:btih:0e1610f5c681bbe8e908ddb7f73dc890899994f4&dn=gta%20v%20source%20code&tr=udp%3a%2f%2ftracker.opentrackr.org%3a1337%2fannounce

blue_devil 12-26-2023 15:49

Taken from Telegram channel

Code:

Password : Mi76#b>9mRed
http://gtavi3hbdscwivvjscu5cxumykghdj5mv2wxi4wpl4ektdet4qtlvjid.onion/no_pass_gtav_source.zip
Download the small zip(3.4Gigs) MD5 HASH : 39e1ec8038cfd35bc6c55da45ce5ac94

http://gtavi3hbdscwivvjscu5cxumykghdj5mv2wxi4wpl4ektdet4qtlvjid.onion/GTAVSP.7z
Download the full zip(4.3GigsMD5 HASH : cef46a600951bccbe1bfa3408225d9e0

https://gofile.io/d/QeeybV -----> LINK DEAD
Small ZIP GOFILE (may get taken down soon) MD5 HASH : cef46a600951bccbe1bfa3408225d9e0

https://mirrorace.org/m/4A6mj
Small ZIP Mirrors (may get taken down soon) MD5 HASH : cef46a600951bccbe1bfa3408225d9e0

https://www.mediafire.com/file/2wk5ne9bciarmyw/GTAVSP.7z/file
Mediafire full zip (may get taken down soon) MD5 HASH : cef46a600951bccbe1bfa3408225d9e0


bolo2002 12-27-2023 01:15

all links down.

Alpha 12-27-2023 01:36

Quote:

Originally Posted by bolo2002 (Post 129723)
all links down.


magnet:?xt=urn:btih:0e1610f5c681bbe8e908ddb7f73dc890899994f4&dn=gta%20v%20source%20code&tr=udp%3A%2F%2Ftracker.opentrackr.org%3A1337%2Fannounce


https://cyberfile.me/7bu8


Try that ������

SunBeam 12-27-2023 18:21

Here's my mirror (of "GTAVSP.7z" -- keep in mind "full-source-unedited.zip", although larger in size, does not have more content and it's even missing 1 file!):

Code:

https://mega.nz/file/2NRClJiB#SUtC5u6XcPTV6QkJ3QCYsL15o4qhZTH5RI_0CgDcxQY
Note that it's an encrypted RAR (so it's not scanned by any process) that contains the ZIP.
Renamed on purpose so it's not fetched by whatever string scanners looking to bring down links due to DMCAs.

Password for RAR: p455w0rd
Password for 7Z: Mi76#b>9mRed

Cheers,
Sun

wx69wx2023 12-27-2023 19:20

1 Attachment(s)
info about gta v leak:
tg: @gtanewsoffical,@gtanewschat,@gtainsider
discord: https://discord.com/invite/oceanview

source leak:
4gb heavily compressed gtavsp

https://www.mediafire.com/file/2wk5ne9bciarmyw/GTAVSP.7z/file
ps: I have backup (https://od.cloudsploit.top/api/raw/?path=/temp/GTAVSP.7z)

6gb unmodified source
https://anonymfile.com/8bbq/full-source-unedited.zip


9.8gb art behaviour documentation assets

https://pixeldrain.com/u/3inJeg2Y
https://mega.nz/file/mcMmAAhL#9nT3XMTn7zmBkg3Jm4VaEn368oiqR-PLWIwizx8ra0Y

build guide:

SunBeam 12-27-2023 20:45

It's been confirmed to me that "full-source-unedited.zip" has 1 missing file and uses different compression than "GTAVSP.7z", hence the different sizes. Meaning "full-source-unedited.zip" == "GTAVSP.7z" - 1 file. Bigger size doesn't mean more content in this case, it seems :) So "GTAVSP.7z" remains the solid one. I'll update mine as well.

atom0s 12-28-2023 12:25

Here's a bit more detailed information about the main leaks to help people find the proper files and avoid potentially tampered ones.
(There are a lot of repacks and reuploads happening that are being intentionally infected because this is a pretty 'hot' download.)

For those wondering, this leak is from the hack that happened last year. It is a dump of the games source code for version: v2699/online 1.61 (mid 2022)

GTAVSP.7z

This file was the originally leaked file. It contains the full source code to GTA V that is able to be compiled.
This also contains a lot of the various tooling used with the development and testing of the game.
  • File Size: 4.33 GB (4,652,367,872 bytes)
  • File MD5: CEF46A600951BCCBE1BFA3408225D9E0
  • File SHA-256: 76F50DD98DA88EC574B6C2800193F3579E588073FD05F18190313AF2CFBB6BF3
  • Password: Mi76#b>9mRed

This was leaked to several locations, the main one being MediaFire before it was eventually DMCA'd and taken down over 10 hours later.

---

GTA5_DEBUG_+_PDB.rar

This file is a leak of a debug build and pdb of GTA V. It was leaked very shortly after the initial main leaked file above.

Not recommended to attempt to run/use this file, but it's useful for static analysis outside of using the source code itself.
  • File Size: 58.9 MB (61,788,160 bytes)
  • File MD5: 8C1D5C1D3A48FC71A78B5528CAC90400
  • File SHA-256: 14F3EEA22444A09FF487DFF5C9F1C6B1757457383FE436212BE75C1E04418E8A
  • Password: (no password)

---

gIKgDXuVHNzIgXkiwpB.zip

This file is a leak of a partial bit of the art assets. This was leaked as a means to get the beggers to shut up about the potential 200gig file that was being kept private still.

This file contains several high resolution assets of the game maps and some other assert related material.
There is also a note within the file to tell people to stop begging for the 200gig file.
  • File Size: 9.81 GB (10,539,257,856 bytes)
  • File MD5: 3E021AAEA091F99593FAD766A6400BEE
  • File SHA-256: A40821BA033B22CC7C5755CF9B179AD30A8B56BBCC6130F47DFBD7A43EEAE683
  • Password: (no password)

---

full-source-unedited.zip

This file is a repackage of the original GTAVSP.7z leak. It was created and posted by the original leaker as well, TMP, on Telegram.

This file is an exact copy of the GTAVSP.7z leak, but with 1 file removed. It is also repacked using a different compression method and has no password.

The removed file is:

Code:

tools_ng\script\coding\protection\guardit\workspace\.metadata\.plugins\org.eclipse.core.resources\.safetable\org.eclipse.core.resources
  • File Size: 6.42 GB (6,900,133,888 bytes)
  • File MD5: 9376CDC97BCC8B523D34EA6A4B591BAB
  • File SHA-256: 7B84DFBE96CC85FC231674AA6CB57AB3D93056B0556E6E2321A29BAF1CA30A9A
  • Password: (no password)


---

There are several public and private servers on Telegram and Discord that are covering the leaks in real time, along with discussions of what is potentially left to be leaked. There is talks of a 200gig file that contains the entire hacked dump which is the source + all assets, however this file is not needed and the current version of GTA V on Steam can be used for its assets to work with this leak. The source code does compile and runs fine. Work is being done to port it to other non-officially-supported platforms such as mobile and Nintendo Switch for starters.

There are hundreds of screenshots and videos floating around now as well showing off various people playing with the leaked source code recompiled and what all can be done with the debugging features and tooling.

I am not including information about the repacks and smaller file variants that have some things stripped or similar to reduce sizes. I am only giving info on the main original file leaks above.

These are not my links, I am not uploading or sharing any leaked content personally. These are just mirrors that are available for the time being until they get nuked offline:

Code:

Darkweb mirror; requires TOR or similar browser:
http://gtavi3hbdscwivvjscu5cxumykghdj5mv2wxi4wpl4ektdet4qtlvjid.onion/

Torrent:
magnet:?xt=urn:btih:0e1610f5c681bbe8e908ddb7f73dc890899994f4&dn=gta%20v%20source%20code&tr=udp%3A%2F%2Ftracker.opentrackr.org%3A1337%2Fannounce

Original asset leak link:
https://big.fileditchnew.ch/b9/gIKgDXuVHNzIgXkiwpB.zip

Reupload from the original leaker, TMP:
https://anonymfile.com/8bbq/full-source-unedited.zip

Reupload collection of all thats been leaked so far: (~20gigs)
https://mega.nz/file/sWlFmRYR#lPuYRM10-OCgivyJbj_eXjjRYj15Q-Ra7Q80LpIWhRA

Mirrors of stuff:
https://pixeldrain.com/u/3inJeg2Y
https://pixeldrain.com/u/j4BFajbz


To build the source code, you will need tooling and SDKs from various sources. There is a MediaFire folder currently with the needed things here:
Code:

https://www.mediafire.com/folder/28kg25m6wqs7k/GTAV-Tools

  - DirectX SDK (June 2010)
  - Incredibuild 4.0
  - 3D Studio Max 2010 SDK
  - Visual Studio 2012

For those aware and able, you can get it to compile on newer versions of Visual Studio, you don't have to use 2012.

As with any leak, be careful, be mindful and don't run files blindly. You are highly encouraged to run any of this stuff in a VM!

bolo2002 12-28-2023 23:40

It's off topic but what about the I.n.s.o.m.niac leaks?

atom0s 12-29-2023 11:16

Quote:

Originally Posted by bolo2002 (Post 129751)
It's off topic but what about the I.n.s.o.m.niac leaks?

I can't confirm if this is that leak, but this is shared in several private/public places in regards to that:

Code:

https://qiwi.gg/file/8hKV4960-i33coredevel-CL09092380-202211271129-MFITZNUC-TC-DoNotUse-PC
Not my link, I have not downloaded or tested this, use with caution etc.

wx69wx2023 12-30-2023 07:39

1 Attachment(s)
More than 1.3 million files – stolen from Sony-owned Insomniac Games in last week’s ransomware attack – have now been leaked online by the Rhysida gang.

Rhysida darkweb site:
http://rhysidafohrhyy2aszi7bm32tnjat5xri65fopcxkdfxhi4tidsg7cad.onion/

data is too big , Could not download!
1.67TB 1318733files

Stingered 12-30-2023 11:43

Quote:

Originally Posted by atom0s (Post 129760)
I can't confirm if this is that leak, but this is shared in several private/public places in regards to that:

Code:

https://qiwi.gg/file/8hKV4960-i33coredevel-CL09092380-202211271129-MFITZNUC-TC-DoNotUse-PC
Not my link, I have not downloaded or tested this, use with caution etc.

Magnet link (not mine):

magnet:?xt=urn:btih:27CC6B7DFD66FC6F59A80CC04B443998B66E40BA&dn=i33_core_devel-CL09092380-202211271129-MFITZ_NUC-TC-DoNotUse-PC-2.7z

bolo2002 12-31-2023 00:17

Quote:

Originally Posted by wx69wx2023 (Post 129766)
More than 1.3 million files – stolen from Sony-owned Insomniac Games in last week’s ransomware attack – have now been leaked online by the Rhysida gang.

Rhysida darkweb site:
http://rhysidafohrhyy2aszi7bm32tnjat5xri65fopcxkdfxhi4tidsg7cad.onion/

data is too big , Could not download!
1.67TB 1318733files

thank's for the link,it's too big for me too and no place to dl it anonymously btw none interest for personal,private infos about peoples company with the leak,it's just for educational purpose.

JMP-JECXZ 12-31-2023 02:31

1 Attachment(s)
About the gta 5 code signing certs that are included too, found the pass to the second pfx in a post build script.
CRAPwh@ckIT, C!EZxYUxVGPzQDj3

Tiredinlimbo 01-02-2024 02:52

got it compiled but cant get it to start cause of all the missing assets so i guess i gotta somehow mix it with stuff from the steam version

Fyyre 01-02-2024 14:02

too bad it's expired and not useful for signing =( .. I need another EV cert *smile*

sweettangerine 01-10-2024 13:45

New link for gta source code
 
I found a new link for the GTA source code for torrent:
magnet:?xt=urn:btih:dc64eab5027cc21c...969%2Fannounce

JonathanVQP 01-11-2024 08:16

GTA V Source Code leak - Compiled in VS2022
 
The GTA V Source code can be compiled (with changes and retargeting) in the latest version of VS 2022 successfully. I am currently testing the compiled version with GTA V on steam.

niculaita 10-20-2024 23:02

Can some help me with a valid, in windows 10 and 11, *.pfx file and his password to resign .cat and .sys files for a soft dongle key?

niculaita 10-20-2024 23:25

https://tij.me/blog/finding-and-utilising-leaked-code-signing-certificates/

https://book.hacktricks.xyz/crypto-and-stego/certificates

JMP-JECXZ 10-21-2024 00:26

that useless
Quote:

8 days later Sectigo stated that, upon continued investigation, they found that the signing certificate was indeed involved in malicious activity and has now been revoked.

niculaita 10-21-2024 04:02

Even on computers without internet, are they useless?

JMP-JECXZ 10-21-2024 05:02

more like absurd, if it need zero network and an outdated windows system between a range where the cert is valid to make the whole thing work.

wx69wx2023 10-27-2024 11:35

Quote:

Originally Posted by niculaita (Post 131991)
Even on computers without internet, are they useless?

Maybe you can try, there is nvdia .pfx in the leaked files.

magnet:?xt=urn:btih:e349b6cf9c9a396610ec2a841557c8b3874720fc&dn=integdev_gpu_drv.rar&tr=udp://tracker.openbittorrent.com:80&tr=udp://tracker.opentrackr.org:1337/announce

And there is a project, patch signtool for the expired cer.

https://github.com/namazso/MagicSigner


Note:
If the host apply the Microsoft vulnerable driver blocklist ,that is bad, but if not,that should be ok.


https://learn.microsoft.com/en-us/windows/security/application-security/application-control/app-control-for-business/design/microsoft-recommended-driver-block-rules

niculaita 10-29-2024 01:25

please upload only nvdia .pfx and password
magnet link has 18 GB too big form me

niculaita 10-29-2024 04:22

pass is nv1d1aRules ?
https://www.digicert.com/support/tools/certificate-utility-for-windows
but we do not need also public key ?

wx69wx2023 10-29-2024 12:46

I have already downloaded to onedrive.
https://od.cloudsploit.top/api/raw/?path=/temp/integdev_gpu_drv.rar

I am not at home, so can not download and extract the pfx file.

The rar should include the files below:
https://prnt.sc/E6TmE4EHCSCr

Useage:
sign.bat aaa.sys (.bat maybe include signtool /p password or you can find password in the .txt file)

sendersu 10-29-2024 14:33

Quote:

Originally Posted by wx69wx2023 (Post 132036)
Maybe you can try, there is nvdia .pfx in the leaked files.

Note:
If the host apply the Microsoft vulnerable driver blocklist ,that is bad, but if not,that should be ok.

https://learn.microsoft.com/en-us/windows/security/application-security/application-control/app-control-for-business/design/microsoft-recommended-driver-block-rules




With Windows 11 2022 update, the vulnerable driver blocklist is enabled by default for all devices,
and can be turned on or off via the Windows Security app

sendersu 10-30-2024 15:06

Quote:

Originally Posted by niculaita (Post 132051)
please upload only nvdia .pfx and password
magnet link has 18 GB too big form me

there are 24 .pfx files in this monster archive, which ones r u looking 4?

wx69wx2023 10-30-2024 23:37

1 Attachment(s)
Quote:

Originally Posted by niculaita (Post 132051)
please upload only nvdia .pfx and password
magnet link has 18 GB too big form me

are you try?I have download and find the file, the path is dev\gpu_drv\stage_rel\apps\Ansel\signtool

if you do not download the big rar, i attached the pfx file and signtool.

I have test it success.


first change system time to 2015/7/28- 2018/7/27
then sign.bat your.sys.

my log below:
D:\NVIDIA\dev\gpu_drv\stage_rel\apps\Ansel\signtool>sign atapi.sys
Sign File atapi.sys

D:\NVIDIA\dev\gpu_drv\stage_rel\apps\Ansel\signtool>signtool.exe sign -a -f current_cert.pfx -p nv1d1aRules -t http://timestamp.verisign.com/scripts/timstamp.dll atapi.sys
Done Adding Additional Store
SignTool Error: ISignedCode::Timestamp returned error: 0x80072EE7
An unknown error has occured. Please contact your vendor for assistance.
SignTool Warning: Signing succeeded, but an error occurred while attempting to
timestamp: atapi.sys

Number of files successfully Signed: 1
Number of warnings: 1


the result:
https://prnt.sc/YjiicE_MR2H1

sendersu 10-31-2024 05:54

what happens if you omit using the -t parameter?

niculaita 10-31-2024 07:48

C:\signtoolm>signtool.exe sign -a -f current_cert.pfx -p nv1d1aRules -t http://timestamp.verisign.com/scripts/timstamp.dll Exetools.sys
Done Adding Additional Store
SignTool Error: ISignedCode::Sign returned error: 0x80880253
The signer's certificate is not valid for signing.
SignTool Error: An error occurred while attempting to sign: Exetools.sys

Number of errors: 1
C:\signtoolm>signtool.exe sign -a -f NVidia-OPM.pfx -p Green-87! -t http://timestamp.verisign.com/scripts/timstamp.dll E
xetools.sys
SignTool Error: No certificates were found that met all the given criteria.

Number of errors: 1

niculaita 10-31-2024 08:39

I used signtool signwizard but if testsigning is off and PC restarted, the key does not apear in localhost:1947.

wx69wx2023 10-31-2024 08:52

I am in win 10 x64, test is ok.
Please note:first change system time to 2015/7/28- 2018/7/27
then sign.bat your.sys.

Thank sendersu, omit -t parameter, may result in no timestamp error, it will use system time for timestamp, but if expired, file is considered untrustworthy.
if a timestamp server such as VeriSign and Digicert is used, as long as the signing time is within the validity period of the certificate, even if the certificate expires, the file will be considered valid because the file is signed within the validity period.

niculaita 11-01-2024 04:12

Yes, thank you again
first set date between 2015 7 28- 2018 7 27 be it 10/10/2015

unlock bat and exe

make 1 folder in c:
extract archive to c:\1\signtool\

search cmd and run it as administrator
c:
Enter
cd\
Enter
cd 1
Enter
cd signtool
Enter
sign.bat Exetools.sys
Enter

now sys is signed without time stamp but ok

if you use good http://timestamp.sectigo.com then in message General tab of Signature:
A required certificate is not within its validity period when
verifying against the curent system clock or the timestamp in
the signed file.

I put XmlLite.dll near signtool.exe but no magic yet for me

run Batchinfgenv3.cmd from __batchinfgeneratorv2

use exetool.inf and exetool.cat (2 lines inside) from __batchinfgeneratorv2\exetools_out\emul_64

later use exetool.inf and exetool.cat (2 lines inside) from __batchinfgeneratorv2\exetools_out\emul_32

copy signed sys and above ini and almost empty cat files into folder __inf2cat\Driverforcat

if sys is 64 bit edit ini and instead of DriverVer=08/05/2024,1.0.0.0001 put DriverVer=10/10/2015,1.0.0.0001
if sys is 32 bit edit ini and instead of DriverVer=08/05/2024,1.0.0.0000 put DriverVer=10/10/2015,1.0.0.0000

if sys is 64 bit copy files from __inf2cat\X86\X64 into/over __inf2cat\X86\
if sys is 32 bit copy files from __inf2cat\X86\Xx86 into/over __inf2cat\X86\

run _makei2cw8.cmd from __inf2cat\

copy exetool.cat file into c:\1\signtool

sign.bat exetools.cat

Instal succesfuly but without testsigning On mode, no key in localhost:1947
Windows nu poate încărca driverul de dispozitiv pentru acest hardware. Este posibil ca driverul să fie deteriorat sau să lipsească. (Cod 39)

Windows cannot verify the digital signature for this file. The signing certificate for this file has been revoke

So, please help me more!
Windows cannot verify the digital signature for this file. The signing certificate for this file has been revoked.

sendersu 11-01-2024 05:11

>>The signing certificate for this file has been revoked.

niculaita 11-01-2024 05:35

Please digitaly sign both sys and cat files within this archive
https://mega.nz/file/fXo02agT#zfRYGVN2Afvuapkq3dP1RmxSwBUmQFTVbyobJLvkOyw
!

sendersu 11-01-2024 14:20

I told you above there are 24 different .pfx certs in that huge 18 GB archive,
have you tried them all?

sendersu 11-01-2024 15:57

Your .sys driver is already signed - https://prnt.sc/cWRnwIaVncv5
what does it do? "

[Strings]
SPSVCINST_ASSOCSERVICE= 0x00000002
MSFT = "exetools"
StdMfg = "(Standard system devices)"
DiskId1 = "exetools exetools Installation Disk #1"
exetools.DeviceDesc = "exetools exetools"
exetools.SVCDESC = "exetools exetools"


All times are GMT +8. The time now is 21:37.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2026, vBulletin Solutions, Inc.
Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX