Web : http://kickme.to/mxbnet
Contact Me : dheeraj_xp@yahoo.com

Main | Index

Create Install v2002.4.0

Type : Install Maker
Protection : Serial
Tech : Patching

Crack :

Use Win32DASM on file : createinstall.exe
Find Flags ..

if [00438FF4] = C9 ---> Pro Version
if [00438FF4] = 65 ---> Lite Version
if [00438FF4] = 00 ---> Trial Version

Flag Set :

015F:0040B7DD BA00020000 MOV EDX,00000200
015F:0040B7E2 8B0D74944300 MOV ECX,[00439474]
015F:0040B7E8 E8C96D0100 CALL 004225B6
015F:0040B7ED A3F48F4300 MOV [00438FF4],EAX <<<
015F:0040B7F2 C3 RET


Fix :

015F:0040B7D8 6860534300 PUSH 00435360
015F:0040B7DD BA00020000 MOV EDX,00000200
015F:0040B7E2 8B0D74944300 MOV ECX,[00439474]
015F:0040B7E8 E8C96D0100 CALL 004225B6
015F:0040B7ED 33C0 XOR EAX,EAX << Offset = ABED
015F:0040B7EF B8C9000000 MOV EAX,000000C9
015F:0040B7F4 A3F48F4300 MOV [00438FF4],EAX
015F:0040B7F9 C3 RET


Registration Nag is shown .. enter any fake S/N and put
: BPX GETDLGITEMTEXTA

Trace ... we can see we end up in a loop which checks if S/N is in the
form : 1055555551-2055555552

015F:0040B82D 8D58FF LEA EBX,[EAX-01]
015F:0040B830 85DB TEST EBX,EBX
015F:0040B832 7409 JZ 0040B83D
015F:0040B834 803C2B2D CMP BYTE PTR [EBP+EBX],2D
015F:0040B838 7403 JZ 0040B83D
015F:0040B83A 4B DEC EBX
015F:0040B83B 75F7 JNZ 0040B834
015F:0040B83D 83FB0A CMP EBX,0A
015F:0040B840 0F823D010000 JB 0040B983
.....................................................
: Second Part of Fake and Real S/N are compared ...
015F:0040B88C 89442410 MOV [ESP+10],EAX
015F:0040B890 E870680100 CALL 00422105
015F:0040B895 39442410 CMP [ESP+10],EAX
015F:0040B899 740C JZ 0040B8A7


Name : DHEERAJ
Org : MxB
Key : 1055555551-5630DAC252

Nag Box While Running Made Setup File :

So our S/N is not correct ... every Setup is checking with other
algorithm ..

BPX DialogBoxParamA

GERT0!.text
015F:1000CE2F 8B17 MOV EDX,[EDI]
015F:1000CE31 8915A03C0110 MOV [10013CA0],EDX
015F:1000CE37 E874FDFFFF CALL 1000CBB0 --> Check
015F:1000CE3C 83F802 CMP EAX,02
015F:1000CE3F 7405 JZ 1000CE46
015F:1000CE41 E81AF2FFFF CALL 1000C060 << NAG Box
015F:1000CE46 E805BCFFFF CALL 10008A50

gert0.dll --- Copy Of ---> \resource\Inststd.dll

So Patch File "Inststd.dll" ... Offset CE3F : 74 05 --> EB 05