--------------------------------------
How to find a serial in WinXfiles v4.6
--------------------------------------

Cracker: stealthFIGHTER

Target: WinXfiles v4.6

Tools: SoftIce
       Brain

Where: http://www.pepsoft.com

Sorry for my english, its not my mother language.

-------
Step 1:
-------

Run winxfiles go to reg screen type your name and
fake s/n. Go to SoftIce (Ctrl+D) and set breapoint
at hmemcpy (bpx hmemcpy) than go back and push enter.
Boom. We are in SI (at lot of bullshit code).
  
Now press 14x "F5" (if you press it for the 15 time
you´ll get the message. Then press F11 to get to the 
caller. Now get to the 32-bit code. Press 11x "F12" (to pass
all RETs). You´ll land here:


004851DE CALL 00415108 
004851E3 MOV EAX, [EBP+FFFFFBD4]       <--- we are here
004851E9 PUSH EAX		       <--- type d eax - our fake s/n	
004851EA LEA EAX, [EBP+FFFFFBD8]
004851F0 LEA EDX, [EBP-0208]  
004851F6 CALL 004037D4		       <--- type d edx - real code



Type bc * to clear bpx.
Enter new s/n - wov, we are a registered user.

---------------------------------------
If i make a mistake, please e-mail 
me to: stealthfighter@another.com
---------------------------------------