View Full Version : Help on Hasp4
To,
All Dongle Reverser Engineers
I am unable to dump HASP4-M1 memory with HASPGrab 1.00.2. Is any working snippet/ utility to dump Hasp4 available? If not, Is it possible to get hasp data/memory from application? & How to do this?
I am a newbie to hasp reversing & I have read articles on hasp reversing by CrackZ Archives. How to code/emulate, to run application, if I have Hasp dump?
Help on above subject is highly appreciated.
Cah…
CrackZ
May 13th, 2002, 21:36
Hiya,
The author of this tool, (might have been someone else), told me you have to plug in live the correct passwords (since it uses 0:0 I recall) to get a working HASP 4 dump, well, I debugged it a very long time back and put in the correct passwords and it didn't dump, unless anyone knows any better, forget this one ;-). I do have another HASP 4 dumper with source, e-mail me if you want to try it, again, I'm really not convinced it works.
In the end I settled for using Haspedit from any of the HASP CD's or the Haspdemo program (also from the CD), this assumes you can dig out the HASP passwords of the dongle you are trying to read ;-).
If you can't/ you are going to have to start tracing through the later H4 drivers to see how HASP works, i.e. unlocking sequences, I should hurry up and write my findings on this really, Tip: v4.0x drivers are FAR more friendly for this than any of the latest ones, trust me on this, I've traced a LOT of them.
Regards
CrackZ.
Please check your email
Cah...
helloman
May 24th, 2002, 09:23
please mail me the tools ,thank u ,i have the same problem,
my mail is CRACKDOG@21cn.com.
r00t
May 28th, 2002, 08:29
Look at h**p://w*w.brstudio.com/HardKeys.htm.
The guy there is claiming that he can emulate HASP4.
(U can download the emulator).
Try it, and post here the results.
Greets.
helloman
May 29th, 2002, 01:44
I went to the Web and download the pro VER ,after install i run the installed program ,i run the program which protected with hasp4 m1 but it can not work ,i can see the PAS1 pAS2 but it didn't return the right code ,what can i do now??
CrackZ
May 29th, 2002, 19:02
Hiya,
The 'Glasha' HASP replacement drivers are pure HASP 3 replacements, and cannot (or do not) support the HASP 4 services (unknowns are currently 3Ch/3Dh block encode and decode functions). Aladdin actually believe these functions to be secure from what I've heard, unfortunately, I know you can actually *buy* the algorithm from someone who has recovered it.
As an aside I had a brief look in IDA at these drivers, its one of a few thats a pretty custom piece of code from what I can tell, all of the others I have looked at (I'm thinking UCL/Safesoft (blatently stolen (or licensed?) from UCL) are just rewrites of the HASP int 6/int E core plus emulation routines), strip out the decryption and the registry routines and theres your HASP emulator, these drivers also locked my system too, sorry, see below why I'm not going to debug them ;-).
If anyone wants my own HASP drivers, (tested 9x/NT/XP/2K written in ASM I'm afraid) contact me by e-mail and I'll send them, in later versions of the HASP driver the core communication routines were all incorporated into hardlock.* (vxd/sys), this is HEAVILY encrypted, v4.01 drivers were the last (i.e. hasp95dl.vxd/haspnt.sys which still have the actual IN/OUT routines inside the HASP side driver), v4.65/v4.70 which I based my code on merely pass a structure into hardlock, under 9x this is via VMMCall Directed_Sys_Control and under NT IofCallDriver (from memory).
To answer the original post, which HASP service did the drivers fail on?, check BH's value. Oh and I'll write something sooner or later about all of this, just need a few days off or 3, since I don't like Aladdin too much right now ;-).
Regards
CrackZ.
Please check your Inbox & send me your hasp drivers
Cah...
scorpie
June 9th, 2002, 16:19
Hello CrackZ__,
How about letting me "testing drive" your driver ?
cah
July 15th, 2002, 05:48
Still, no reply from you. Please share with us your hasp & sentinel reversing knowledge
Cah...
scorpie
July 15th, 2002, 06:26
Hi,
Mr. CrackZ__ is an "elite" Reverser, so do not expect to much from him. I have sent a proggy of ca. 6MB to him to test the driver. Do you think he let us test his driver ? He does not even thank for that. Nice person ?
Scorpie
CrackZ
July 15th, 2002, 23:05
Actually, some would say I usually am a 'Nice person', it just boils down to my not having enough time / interest or motivation, I got out of this game many months ago.
And now.....
With the greatest of respect, I don't owe ANYONE here any sort of explanation as to what I do (or don't do), or why I behave the way I do, I'm sorry you feel let down, but frankly you(?) could have found your answers by now doing your own work instead of expecting me to do it for you (now I sound like G-RoM ;-) ).
Of course if you are offering $100/hr it might be a wholly different story .....
Regards
CrackZ
- genuine "Nice person" *honestly* ;-) -
Powered by vBulletin® Version 4.2.2 Copyright © 2018 vBulletin Solutions, Inc. All rights reserved.