Log in

View Full Version : SERIAL FISHING Problems!!


Zkhan13
May 19th, 2003, 01:46
I tried for Serial No. ‘Fishing’ on a Word File Password Recovery Prgm Called “aw2000pr.exe" from ElcomSoft. When I put BPX on GetDlg ItemTextA DO “D esp->C”, and enter a Dummy Serial, I could see it sits neatly on top of Data Window. But I was unable to find a Real ‘CHECK’, there on wards. It really has a TEST al, 03, and then some Encryption…. that I couldn’t understand.
I found some strings in DataWindow as “MD5 Algorithm…”.Is it so hard to beat ..
Is it a special kind of protection, where I could find an unprotection technique?

OR, SOME BODY PLEASE TELL ME HOW I COULD USE SoftIce Commands
Like, “BPR” in these kinds of Situations (Serial Number Catching)….
Please Pour Your experience & Ideas.

dELTA
May 19th, 2003, 06:53
The Elcomsoft guys are quite handy both with crypto and with coding in general, so I would seriously doubt that there would be any point in the program at which you could fish a valid serial from the memory. Judging from your post you would probably need to understand the assemlby code a bit better, rather than just using generic Softice commands, before being able to crack their products. Then disassemble it and try to understand the deadlisting, it's the only way for such better-than-trivial protections.


dELTA

comrade
May 20th, 2003, 17:19
Do not underestimate Russian IT resources.

Zkhan13
May 21st, 2003, 06:27
It is not a question of Russians or Indians....
It is a Question of Knowledge. & Ignorance...
When ignorance is Bye passed, there is no question of Russians ...INDIANS or US......
It is purely the Question of Knowledge....

I am optimistic , one day i will attain that knowledge where i could laugh on .......

newbcrk
May 29th, 2003, 09:12
1/Use the command s 0 l ffffffff 'false code you type'
2/read the adresse that SOFTICE gives don't keep the adresse beginning by C0 or 800
3/Put a bpr with a adresse of 2/
such as bpr adresse adresse+length of your false code RW
4/Press F5 even as often as necessary and even if your windows "wronG serial appear" continue to press F5