KEYGEN IS DEMON, PATCHING IS EVIL, SERIAL FISHING IS LESS ATTITUDE Toggler v1.0 A Cracking Tutorial by ASTAGA [TTM] DESCRIPTION Toggler allows you to gain control over your Caps Lock, Num Lock, and Insert keys. It prevents you from writing in ALL CAPS when your finger has slipped to accidentally hit the Caps Lock key. Similarly, you'll never again overwrite any valuable text by having accidentally hit the Insert key. Toggler shows you which keys are currently toggled on by a visual representation of the Caps/Num Lock keys in the system tray. In addition, you can optionally play a sound or have the icon flash a number of times to get your attention if you'd prefer not to be bothered by sound. Windows 2000 users can take advantage of the best features of Toggler: - set a customizable delay before the Caps Lock or Insert keys will be toggled. - disable the "Windows" keys and the Context Menu key on Windows-specific keyboards. - SmartShift (a feature that automatically toggles off the Caps Lock status when you press and a letter while the Caps Lock light is ON. tHIS FEATURE PREVENTS YOU FROM WRITING SENTENCES LIKE THIS. WHERE TO DOWNLOAD Philip Jones Aestas Software http://www.siunits.com/toggler Rel date : Jan 12, 2001 SELF REGISTERING THE PROGRAM by using SOFTICE 1. Run TOGGLER.EXE , choose YES when opening nag pops-up. Keyed-in information required as follow : Name : Pirates Order Code : 73881050 Do not click OK button yet 2. Load SoftIce, create breakpoint as follow : : bpx hmemcpy [enter] Press F5 to return to main program 3. Press OK button. You'll return back into SoftIce. Press F11, F5, F11 followed with F12 several times. If you do the right thing , you'll see and break at these below snippet codes : 015F:00402519 FFD3 CALL EBX break 015F:0040251B 8D45D8 LEA EAX,[EBP-28] <== here 015F:0040251E 50 PUSH EAX 015F:0040251F FF750C PUSH DWORD PTR [EBP+0C] 015F:00402522 E899000000 CALL 004025C0 015F:00402527 59 POP ECX 015F:00402528 85C0 TEST EAX,EAX 015F:0040252A 59 POP ECX 015F:0040252B 742D JZ 0040255A 015F:0040252D 8D45D8 LEA EAX,[EBP-28] ==> F11 .... ___________________ TOGGLER!.text+1519 _____________________ Press F10 7 times - stop at 015F:0040252B - type in the Command Line as follow : : r fl z [enter] Press F10 once ( 015F:0040252D ) followed with pressing F11. When the screen splash did you see your name is registered in the dialog box ? 4. Disable all breakpoint(s), press F5 to return to the program. Quit the progs ( reboot if necessary ) and re-run again TOGGLER.EXE , click on ABOUT tab ... there you're still registered. Since iam not using Win2000, so I can't test options that are applied only within Win2000. Maybe you have to perma nently patch TOGGLER.EXE at this below address : ^^^^^ 0000192B: 85 C0 59 74-2D 8D 45 D8 change into 0000192B: 85 C0 59 75-2D 8D 45 D8 5. I dont know exactly where fake code is stored in the registry, except these below information : REGEDIT4 [HKEY_CURRENT_USER\Software\Aestas\Toggler] "SoundCapsOff"=dword:00000001 "SoundCapsOn"=dword:00000001 "DelayCapsOff"=dword:00000000 "DelayCapsOn"=dword:00000000 "SoundNumOn"=dword:00000001 "SoundNumOff"=dword:00000001 "SoundInsert"=dword:00000001 "InsertDelay"=dword:00000000 "InsertEnabled"=dword:00000001 "DelayDuration"=dword:00000000 "StartAtWinStartup"=dword:00000000 "SoundFlag"=dword:00000001 "WinSound"=dword:00000002 "WAVName"="chimes.wav" "SoundRepeat"=dword:00000000 "FlashDelay"=dword:00000003 "Flash"=dword:00000001 "FlashCount"=dword:00000003 "DialogTab"=dword:00000005 "LeftWinKeyDisabled"=dword:00000000 "RightWinKeyDisabled"=dword:00000000 "SmartShift"=dword:00000000 "DisableContextKey"=dword:00000000 "RegName"="Pirates Order" Note : Deletion the whole registry key above will return the program unregistered. [EOF] ASTAGA [TTM] tute-toggler10.zip Tute Layout - Free version B First Edited : 1/22/01 6:40:10 AM