Crack for : ProTill for windows 98/2000 version 1.063.04 Download : www.ccs-software.co.za Cracked By : OutCast3k/CiA Protection : Serial tools : SoftIce : A Brain Level : [X]v.easy [ ]easy [ ]medium [ ]Hard Welcome to my 2nd tutorial and not my last, and i hope u can understand my english...... - step 1 - Run the program (ProTill for windows 98/2000 version 1.063.04) that you have downloaded and go to were you register which is under the suport option... it and enter these deteals.... Site Id = LEAVE BLANK! Till Id = LEAVE BLANK! REG TO = OutCast3k/CiA Exp Date = 01/01/9999 UNLOCK CODE = 666999 - - - - - - - DO NOT PRESS!!!! OK!!! - - - - - - - -Now Press [CTRL] and [D] and soft ice will popup. -then enter 'BPX hmemcpy' this will set a break point. -Press [CTRL] and [D] to exit Sice and then press the Ok button -Then we Press [F5], 3 times this is because its calculating what infomation into the RegTo, Machine ID, Unlock Code, and - step 2- Now we need to get into what i will call important code (32bit) we don NOT! want xxxx:xxxx. We need xxxx:xxxxxxxx (E.G we need: 0120:0000F919 somthing that looks like that, it is in the left of Soft-Ice) so we press [F12] untill we come the that code location which is 7 times if i am correct, then we need to search a bit more we need to try and loose the 'RET's so we press [F12] again untill there are no RETS in the next 8/9 lines, which is another 5 times so in total 12 times that we have pushed [F12] - step 3- Then we come to somthing that looks a bit like this. (Might be a bit diffrent on ur PC) :039FA42A Call 039f150 :039FA42D MOVE eax :039FA42E LEA eax :039F3431 push eax - right u will land at address '039F3451' and u need to trace down with [F10] (press [F10] 12 times) untill you come to: :039F3451 POP eax - Then just Dump on that address with 'edx' by typing D EDX *BOOM* our little serial pops up in the data window :D Greets fly out to: tKC, DnNuke, aj-san, Z-wing, innun3ndo, H3llSpAwn, in fact all of C.i.A and |thrawn|, M_, Froost, [SHEEP], EVC-IF,