Welcome to Cracking Tutorial #84! Hiya guys, Sorry for delays, again I was busy with coding and all shit.. And now, I would like to present my tKC's Tutorial Viewer 2000 v1.1! It's a fast, better Viewer and Tutor Editor, and more features added! Also released tKC's Tutorial Viewer 2000 Lite, for those who have problems with their 3D cards. You can find them at http://www.crackersinaction.org... enjoy it! Here's a tut84.tKC... OK, let's rave! ...or crack babes? :) You'll need the following tools: (I use these tools, I assume you'll use 'em, but it doesn't mean that you'll need to use all those tools, so be sure to get them handy for the examples in this tutorial!) SoftICE v4.05 W32Dasm v8.93 Hacker's View v6.40 SmartCheck v6.03 ProcDump32 v1.6.2 Windows Commander v4.03 (I use it coz of easier to multitask) Delphi, VB, C++, or TASM to code a keygen or a patch.. Don't ask me where to download all these tools since you had a chance to get them when you used my older tutorials. Here are a few good sites where you can grab tools from: http://protools.cjb.net http://w3.to/protools http://www.crackstore.com or ask any crackers to get you these tools! Are you ready?! OK! ;) WHY PATCHING WHILE SERIAL NUMBER IS FISHY THE FILECHOPPER v3.2 A Cracking Tutorial by ASTAGA [D4C/C4A] DISCLAIMER This reading material is not intended to violate Copyrights and/or it is law, but educational purposes only. I hold no responsibility ( by all means and in any shape whatsoever ) of the mis-used of this material. ABOUT THE PROGRAM This program is designed for moving files between computers, where the files are too large to fit on one floppy, SuperDisk, SyQuest, in an e-mail, or whatever medium is used to transport the file. The program splits the original file into smaller ones of desirable sizes, and, of course, restores it later. These sizes can be chosen arbitrarily by the user, or the program may find out by itself how much space is available on the used medium. Therefore, you may use non-empty and even partly corrupted disks. THE PROGRAM DOES THE FOLLOWING TWO THINGS o Splits a big file into smaller files of desired sizes. These sizes may be choosen either from a fully editable list of Base Sizes, or calculated from within the program. o Restores the big file from the smaller ones. WHERE TO DOWNLOAD Author : Ulf Oreborn, Matex Data HB Homepage : http://home.swipnet.se/matexdata/ URL : http://home.swipnet.se/matexdata/programs/FileChopper.exe Size : 1.1MB HOW TO GET VALID SERIAL NUMBER by using SoftIce 1. Run TheFileChopper.exe, in the main program click on HELP/ LIC INFORMATION submenu. In the registration dialog box type these below informations : Name : Pirates Order Licence Code: 9073884665 Do not click CHECK THE CODE button yet ( hereinafter refered to as OK button ) 2. Fire up SoftIce by pressing [ CTRL + D ], put a new breakpoint in this regard is HMEMCPY : BPX HMEMCPY [enter] and F5 to return to the main program 3. Now it's time to click OK button... you must get into SoftIce! In within SoftIce press F12 several times ( 12 times - if I had no mistaken ) until you see and landed at : _____________________________________________________________________ 00413625: E8D64B0300 call 000448200 <=== YOU LAND HERE 0041362A: 8D55F4 lea edx,[ebp][-000C] 0041362D: 33C0 xor eax,eax 0041362F: 8D4DF0 lea ecx,[ebp][-0010] 00413632: 8B12 mov edx,[edx] 00413634: 8945F0 mov [ebp][-0010],eax 00413637: 8D8310020000 lea eax,[ebx][000000210] 0041363D: FF45D0 inc d,[ebp][-0030] 00413640: E863DE0000 call 0004214A8 00413645: 8D55F0 lea edx,[ebp][-0010] <=== check SS 00413648: 33C9 xor ecx,ecx 0041364A: 52 push edx ___________________TheFileChopper.exe!.TEXT+00012625_________________ 4. Clear the current existing breakpoint since we don't need anymore bd 00 or bd * [enter] Now we are in the main program codes. 5. Set a new breakpoint at the new location ; bpx 0137:00413625 [enter] F5 Note : In case of different address do a search string as follow : s 0 l fffffffffffffffff E8 D6 4B 03 00 [enter] SoftIce will report : Address found at 0XYZ:000XXXXXXXXXXX --> bpx this location. 6. You'll soon returned to the program and saw a dialog box telling you : SORRY, THE LICENSE CODE ENTERED IS WRONG Just click OK to confirm. Click CHECK THE CODE button once again ...... and you're back into SoftIce exactly at the location as per instructed before. 7. Press F10 8 ( eight ) times - stop at 0137:00413645. Now, watch the Register Window and Data Window. You can dump/display the contents of ESI,EDI,EDX, etc., but nothing interesting there. In fishing serial number I didn't always rely on those registers, sometime(s) it was found at SS Re gister contents. Let's continue, see that SS:006EF950=000D2ACF8 ??? Okay..we are gonna check this out, drag your mouse cursor close to the 000D2ACF8, click the RIGHT MOUSE button and choose DISPLAY ..... oooopss ... whatta hell is that ? Did you see 71-83-18-05-44 ?, yeah, that's the real code! ( you can also type D 000D2ACF8 [enter] in the command line ) 8. Disable all breakpoints : bd * [enter] F5 9. Retype the S/N you have noted as your registration code. Click CHECK THE CODE button ..... you'll get this classic message : CORRECT LICENSE CODE ENTERED. THANK YOU FOR BUYING THIS PROGRAM. YOU'RE REGISTERED now... da hast Du Dich aber anscheiáen lassen!. However, as a matter of fact it's ILLEGAL REGISTRATION! END NOTES This program is sold as shareware, so you can try before you buy. This is convenient for you, saves expenses by dispensing with all that packaging, and cuts out the middle person. So it is cheap, but it is not free. If you like the program, and you will, be sure to register and pay. To keep shareware prices low, users must do the right thing: Register, pay up, and smile/grin at yourself in the mirror. Do not distribute your crack release based on this tutorial, because you become a LAMER(s)! ( tHATDUDE (PC97) defined LAMER(s) is the guy who sits in front of personal computer, using Hex Editor, ripping off other group(s) crack release, repacking (distro) them under his name. Adopted from newsgroup alt.cracks, alt.crackers - February 1997 ) More about LAMER(s): lamer /n./ [prob. originated in skateboarder slang] Synonym for luser, not used much by hackers but common among warez d00dz, crackers, and phreakers. Oppose elite. Has the same connota tions of self-conscious elitism that use of luser does among hackers. < SOURCE: http://sagan.earthspace.net/jargon/jargon_27.html > _ Never attribute to malice that which is adequately explained by stupidity _ ASTAGA [D4C/C4A] [EOF] WHY PATCHING WHILE SERIAL NUMBER IS FISHY MHS šberweisung v1.3 A Cracking Tutorial by ASTAGA [D4C/C4A] DISCLAIMER This reading material is not intended to violate Copyrights and/or it is law, but educational purposes only. I hold no responsibility ( by all means and in any shape whatsoever ) of the mis-used of this material. ABOUT THE PROGRAM Mit MHS šberweisung k”nnen Sie šberweisungsvordrucke schnell und einfach bedrucken. Untersttzt werden Sie dabei von einer komfort ablen Datenbank, mit der Sie Ihre šberweisung einfach durch anklicken ausfllen k”nnen. Alle Druckpositionen sind frei konfi gurierbar, damit bedruckt das Programm so gut wie alle handelsb lichen DIN-A4-šberweisungsvordrucke, in vielen F„llen auch die bankeigenen Vordrucke. ... aiyay9aaaa ... i don't even understand one word ... krauuuuttt! WHERE TO DOWNLOAD Author : Mathias Harbeck Software Homepage : http://www.mhsoft.de URL : http://home.joice.net/j100505/bank13.exe Size : 694 KB HOW TO GET VALID SERIAL NUMBER by using SoftIce 1. Run BANK.EXE, in the main program click on HILFE/ šBER DAS PROGRAMM submenu. In the registration dialog box type these below informations : Ihr Benutzername : Pirates Order Zugeordneter Code: 9073884665 Do not click FREISCHALTEN! button yet ( hereinafter refered to as OK button ) 2. Fire up SoftIce by pressing [ CTRL + D ], put a new breakpoint in this regard is HMEMCPY : BPX HMEMCPY [enter] and F5 to return to the main program 3. Now it's time to click OK button... you must get into SoftIce! In within SoftIce press F12 several times ( 12 times - if I had no mistaken ) until you see and landed at : _____________________________________________________________________ 00422506: E8D9CB0400 call 00046F0E4 -------- 0042250B: 66C743100800 mov w,[ebx][00010],00008 00422511: 66C743102C00 mov w,[ebx][00010],0002C 00422517: BAADB74B00 mov edx,0004BB7AD ;" K+ó 0042251C: 8D45F4 lea eax,[ebp][-000C] 0042251F: E8846F0800 call 0004A94A8 -------- 00422524: FF431C inc d,[ebx][0001C] 00422527: 33C0 xor eax,eax ________________________BANK!.TEXT+00021506__________________________ 4. Clear the current existing breakpoint since we don't need anymore bd 00 or bd * [enter] Now we are in the main program codes. 5. I've wrote 3 tutorials for 3 main programs from the same Author ( i.e MHS AnsiEditor, MHS AsciiEditor and Passwort ). The S/N are very easy to be found by only pressing F10 key around 10 times. I thought this program was easy to be cracked by the same mehod, but I got wrong expectation! I almost gave up and decide to make a dead listing of the prog ... but Hell ... I lost my patience for 1.7MB executable file thru WDASM. However, after several times trial and error I noticed the memory location where our REAL S/N were generated, and hopefuly the address not so much different in your PC. set a new breakpoint at the new location ; bpx 0137:0041B60B [enter] u 0137:0041B60B [enter] F5 Note : In case of different address do a search string as follow : s 0 l fffffffffffffffff e8 e0 6e fe ff 83 c4 08 [enter] SoftIce will report : Address found at 0XYZ:000XXXXXXXXXXX --> bpx this location. 6. You'll soon returned to the program and saw a dialog box telling you : Ihre Lizenznummer ist nicht korrekt! Just click OK to confirm. Click again FREISCHALTEN button re-enter your desired user name and fake S/N must at least 8 characters ( numeric only! ). Click OK ...... you're back into SoftIce again. 7. If nothing goes wrong, you;ll be landed at 0137:0041B60B . Press F10 once , Look at the Data Window, did you see 7816A6C7E720065 at the memory address 013F:75EE38 ?? Don't you feel that's looks like a serial number ? Let's check it out! 8. Disable all breakpoints : bd * [enter] F5 9. Repeat registration procedure and keyed-in the S/N you have noted as your registration code. Click OK ..... you'll get this message : Die Freischaltung der war erfolgreich. Vielen Dank fr Ihre Registrierung! Simply, YOU'RE REGISTERED. However, as a matter of fact it's ILLEGAL REGISTRATION! END NOTES This program is sold as shareware, so you can try before you buy. This is convenient for you, saves expenses by dispensing with all that packaging, and cuts out the middle person. So it is cheap, but it is not free. If you like the program, and you will, be sure to register and pay. To keep shareware prices low, users must do the right thing: Register, pay up, and smile/grin at yourself in the mirror. Do not distribute your crack release based on this tutorial, because you become a LAMER(s)! ( tHATDUDE (PC97) defined LAMER(s) is the guy who sits in front of personal computer, using Hex Editor, ripping off other group(s) crack release, repacking (distro) them under his name. Adopted from newsgroup alt.cracks, alt.crackers - February 1997 ) _ Never attribute to malice that which is adequately explained by stupidity _ ASTAGA [D4C/C4A] [EOF] WHY PATCHING WHILE SERIAL NUMBER IS FISHY MHS Passwort v1.0 Build A A Cracking Tutorial by ASTAGA [D4C/C4A] DISCLAIMER This reading material is not intended to violate Copyrights and/or it is law, but educational purposes only. I hold no responsibility ( by all means and in any shape whatsoever ) of the mis-used of this material. ABOUT THE PROGRAM WAS IST MHS PASSWORT? -------------------- Das Programm bernimmt die undankbare Aufgabe, vor der vor allem Systemadministratoren oft stehen, n„mlich die Erstellung von zuf„lligen Passw”rtern. Sie k”nnen Passw”rter nach bestimmten Konventionen erstellen (nur Buchstaben, nur Zahlen, bestimmtes Muster, Groá-/Kleinschreibung etc.). Wahlweise k”nnen Sie auch ganze Passwortlisten erstellen, welche auf Wunsch jedem Passwort bestimmte Daten zuordnen (Datum, Wochentag, Uhrzeit, Nummer etc.). ... aiyay9aaaa ... i don't even understand one word ... krauuuuttt! WHERE TO DOWNLOAD Author : Mathias Harbeck Software Homepage : http://www.mhsoft.de URL : passwd10.zip Size : 318 KB HOW TO GET VALID SERIAL NUMBER by using SoftIce 1. Run Passwort.exe, in the main program click on REGISTER! button. In the registration dialog box type these below informations : Ihr Benutzername : Mathias Muchus Zugeordneter Code: 9073884665 Do not click FREISCHALTEN! button yet ( hereinafter refered to as OK button ) 2. Fire up SoftIce by pressing [ CTRL + D ], put a new breakpoint in this regard is HMEMCPY : BPX HMEMCPY [enter] and F5 to return to the main program 3. Now it's time to click OK button... you must get into SoftIce! In within SoftIce press F12 several times ( 11 times - if I had no mistaken ) until you see and landed at : _____________________________________________________________________ 00404830: E8DB840200 call 00042CD10 <==== you land here 00404835: BA70D04600 mov edx,00046D070 ;" F-p" 0040483A: A194C64600 mov eax,[00046C694] 0040483F: 8B08 mov ecx,[eax] 00404841: 8B81E0010000 mov eax,[ecx][0000001E0] 00404847: B9F3010000 mov ecx,0000001F3 ;" _" 0040484C: E8BF840200 call 00042CD10 00404851: 6870D04600 push 00046D070 ;" F-p" 00404856: 6894CA4600 push 00046CA94 ;" F-”" 0040485B: E840E1FFFF call 0004029A0 00404860: 83C408 add esp,008 <====== D EDX HERE! 00404863: 3C01 cmp al,001 ;"" 00404865: 0F85C8000000 jne 000404933 _____________________________________________________________________ 4. Clear the current existing breakpoint since we don't need anymore ; bd 00 or bd * [enter] set a new breakpoint at the new location ; bpx 0137:00404830 [enter] 5. Okay... let's start tracing the codes .... if you dump/display EDI register you'll see your typed user name. d edi [enter] =====> User Name Note: if you scroll up/down a bit, you'll see your fake serial number too. 6. Keep pressing F10 around 10 (ten) times, and stop at the location 0137:00404860. Just for our curious let's dump/display what is the contents of EDX : D EDX [enter] 7. Look at to the Data Window, at the memory address 013F:6DF308 ... did you see 7747A817BFE24 ??? Calm down, watch the Register Window... yeah there are nothing changed except EDX. ( Remember of what we have done at step 5 ) Is that registration code that you're looking for ? Let's check it out ... write down the above suspected S/N beforehand 8. Disable all breakpoints : bd * [enter] F5 9. Repeat registration procedure and keyed-in the S/N you have noted as your registration code. Click OK ..... oops YOU'RE REGISTERED. As a matter of fact it's ILLEGAL! END NOTES This program is sold as shareware, so you can try before you buy. This is convenient for you, saves expenses by dispensing with all that packaging, and cuts out the middle person. So it is cheap, but it is not free. If you like the program, and you will, be sure to register and pay. To keep shareware prices low, users must do the right thing: Register, pay up, and smile/grin at yourself in the mirror. Do not distribute your crack release based on this tutorial, because you become a LAMER(s)! ( tHATDUDE (PC97) defined LAMER(s) is the guy who sits in front of personal computer, using Hex Editor, ripping off other group(s) crack release, repacking (distro) them under his name. Adopted from newsgroup alt.cracks, alt.crackers - February 1997 ) _ Never attribute to malice that which is adequately explained by stupidity _ ASTAGA [D4C/C4A] [EOF] WHY PATCHING WHILE SERIAL NUMBER IS FISHY ShowSize v2.6/2.65 A Cracking Tutorial by ASTAGA [D4C/C4A] DISCLAIMER This reading material is not intended to violate Copyrights and/or it is law, but educational purposes only. I hold no responsibility ( by all means and in any shape whatsoever ) of the mis-used of this material. ABOUT THE PROGRAM ShowSize V2.6 - New version, improved for FAT32 drives! An Explorer like interface to get smart disk space reports on the sizes of folders, file types and wasted space in clusters. Quickly sort out the larger folders when you want to remove the unused stuff to make room for new software. Many sorting options! 32-bit software for Windows 95, 98 and Windows NT. I found a .zip package of this program which (even we entered the corect S/N ) reported ' You are using a cracked / hacked of this program ...... ' , the .exe file has around 723,000B long. WHERE TO DOWNLOAD ftp.funet.fi/pub/mirrors/simtel.net/pub/simtelnet/win95/ diskutl/showsz26.zip Size : 483 KB HOW TO GET VALID SERIAL NUMBER by using SoftIce 1. Run the program (SHOWSIZE.EXE - 623,616 Bytes ), when the nag pops up click REGISTER BY CODES button, you'll see the regis tration window that required our code 1 and code 2 in the field box respectively . 2. Type our fake codes i.e : code 1 : Cripix Sanjay code 2 : 9073884665 DO NOT CLICK OK button Yet! 3. Fire up SoftIce by pressing [ Ctrl + D ], set new breakpoint, in this regard iam using HMEMCPY : bpx hmemcpy [enter] then press F5 to return to the main program. Now you can click OK button which brings you back into SoftIce. 4. You're in SoftIce now. All you have to do is to reach the main prog codes, press F11, F5, F11 and then press F12 eleven (11) times until you see : _____________________________________________________________ 004214C2: E8ADFFFFFF call 000421474 ---> YOU LAND HERE 004214C7: 8B45FC mov eax,[ebp][-0004] 004214CA: 8BD6 mov edx,esi 004214CC: E85B29FEFF call 000403E2C 004214D1: 7410 je 0004214E3 __________________SHOWSIZE!+CODE+000204C2____________________ 5. Disable old breakpoint and set a new breakpoint as follows : bd 00 or bd hmemcpy [enter] bpx 0137:004214C2 [enter] Note : 1*) 6. Look at the Data Window, did you see your Fake Name copied to the memory address as indicated in the SS register ? 7. Let's continue tracing the code, press F10 23 times until you see your Fake S/N appear (copied) in the Data Window at memory address 013F:00E83F08. 8. At the 29th of pressing F10, again the fake s/n appear at memory address 013F:00E83F38. This would be repeated again at the 65th of F10! Just calm down dude ... keep an eye into Data Window. 9. At the 75th of pressing F10, did you see new 8 characters appear in the screen ? To me it's 3F6CF31A which located at memory address 013F:00E83F18. Well, it looks like very suspicious is that S/N that you're lookin for ? Let's try your luck, then. 10. Disable existing breakpoint by typing bd 004214C2 or bd 01 [enter] 11. Press F5 to return to the main program. Repeat the registration procedure, and keyed-in 3F6CF31A as your Code 2 . Click OK ..... the license agreement window appear, just click NEXT button, and finally you'll found the classic 'Thank You for Registering' message. Badasss.... you're REgistered! 12. Once registered - the registration info are stored in 2 files called - Sscmd.key and Sswin01.ser . Deleting those 2 files may caused the program returned unregistered. 13. You can practice to register with your own fave name, the break points are : bpx 0137:004214C2 [enter] bpx 0030:00E83E00 [enter] bpm 0030:00E83E00 [enter] press F5, click OK, and keep continue pressing F5 several times until desired REAL S/N appear in the Data Window. END NOTES This program is sold as shareware, so you can try before you buy. This is convenient for you, saves expenses by dispensing with all that packaging, and cuts out the middle person. So it is cheap, but it is not free. If you like the program, and you will, be sure to register and pay. To keep shareware prices low, users must do the right thing: Register, pay up, and smile/grin at yourself in the mirror. Do not distribute your crack release based on this tutorial, because you become a LAMER(s)! ( tHATDUDE (PC97) defined LAMER(s) is the guy who sits in front of personal computer, using Hex Editor, ripping off other group(s) crack release, repacking (distro) them under his name. Adopted from newsgroup alt.cracks, alt.crackers - February 1997 ) _ Never attribute to malice that which is adequately explained by stupidity _ 1*) at this step you have to watch every changes in the SoftIce Register Window which look like as follow : _____________________________________________________________ EAX=xxxx EBX=xxxx ECX=xxxx EDX=xxxx ESI=00E83E30 EDI=xxxx EBP=xxxx ESP=xxxx EIP=xxxx SS:0073F780=00E83E4C _____________________________________________________________ if you type d esi --> you'll see your Fake Name in the SoftIce Data Window if you type d 00E83E4C --> same as above you can also click the RIGHT mouse button and choose DISPLAY to see what is the contents in each register flag. Just drag the mouse cursor to the desired register (i.e ESI) and click then you'll see the contents. I prefer to do this procedure rather than typing i.e D EAX or D 00E83E4C . ASTAGA [D4C/C4A] [EOF] WHY PATCHING WHILE SERIAL NUMBER IS FISHY SuperBot v2.20 A Cracking Tutorial by ASTAGA [D4C/C4A] DISCLAIMER This reading material is not intended to violate Copyrights and/or it is law, but educational purposes only. I hold no responsibility ( by all means and in any shape whatsoever ) of the mis-used of this material. ABOUT THE PROGRAM EliteSys SuperBot 2.2 for Windows 95/98/NT4 (SHAREWARE) Description: SuperBot downloads entire websites automatically, and saves them on your computer. Thanks to SuperBot's HTML rewriting technology, the copied websites look and feel just like the online versions. Unlike other offline browsing tools, SuperBot is efficient, inexpensive, and very easy to use. SuperBot 2.20.0009 WHERE TO DOWNLOAD Homepage : http://web.idirect.com/~elitesys/superbot/index.html URL : http://web.idirect.com/~elitesys/prog/sb.exe Size : 174 KB HOW TO GET VALID SERIAL NUMBER by using SoftIce 1. Run SUPERBOT.EXE, click OK to get into main program. ( we don't want to get rid of that nag Okay ?! ) 2. Click HELP/ABOUT, then Type your fake NAME AND CODES codes i.e : ( I won't tell you how to show registration window ) Name : Pirates Order Company : EliteSys, Inc Registration code : 9073884665 DO NOT CLICK REGISTER button Yet! 3. Fire up SoftIce by pressing [ Ctrl + D ], set new breakpoint, in this regard iam using GETWINDOWTEXTA : bpx getwindowtexta [enter] then press F5 to return to the main program. Now you can click OK button which brings you back into SoftIce. 4. You'll land in SoftIce and see these below following codes : _____________________________________________________________________ 00421788: FF158C634200 call GetWindowTextA ;USER32.dll 0042178E: 8B4D10 mov ecx,[ebp][00010] 00421791: 6AFF push 0FF 00421793: E8F1A6FFFF call 00041BE89 00421798: EB0B jmps 0004217A5 0042179A: 8B4510 mov eax,[ebp][00010] 0042179D: FF30 push d,[eax] 0042179F: 56 push esi 004217A0: E840FEFFFF call 0004215E5 004217A5: 5F pop edi 004217A6: 5E pop esi 004217A7: 5D pop ebp ______________________SUPERBOT!.TEXT 00020788________________________ Let's start tracing the codes, you have press F10 several times to get into where exactly the real code were generated. And just because,i've traced for you, lemme make it simple; clear/disable current breakpoint by typing : bd 00 or bd * [ enter ] 5. Create new breakpoint as described on the below : u 0137:00402493 [enter] bpx 0137:00402493 [enter] Note : Since the address may differ on your PC, do a search string in the Command Line as follow : s 0 l ffffffffffffff 8D 7C 24 10 8A 0E [enter] Press F5 to return to the registration window (click OK when necessary) , then you'll soon back into SoftIce again and landed at : _____________________________________________________________________ 00402493: 8D7C2410 lea edi,[esp][00010] <=== D ECX HERE 00402497: 8A0E mov cl,[esi] 00402499: 8A17 mov dl,[edi] 0040249B: 8AC1 mov al,cl 0040249D: 3ACA cmp cl,dl 0040249F: 751E jne 0004024BF 004024A1: 84C0 test al,al 004024A3: 7416 je 0004024BB __________________________SUPERBOT!.TEXT 1493________________________ 4. Look at Register Window, and let's dump/display the contents of ECX and EDI Register : d edi [enter] ===> all typed Name and Fake number d ecx [enter] ===> real registration code Kewl, there is a xxxx-xxxx-xxxx appear in your Data Window, which take location at 0066E9B4 Yeah .... it looks like a serial number that you're looking for, take a piece of paper ( or cigarette wraps ) write it down the codes ( in xxxx-xxxx-xxxx format ). Now, let's disable all breakpoints : bd * [enter] F5 5. Repeat registration procedure and keyed-in the S/N you have noted as your registration code. Click OK ..... oops YOU'RE REGISTERED. END NOTES This program is sold as shareware, so you can try before you buy. This is convenient for you, saves expenses by dispensing with all that packaging, and cuts out the middle person. So it is cheap, but it is not free. If you like the program, and you will, be sure to register and pay. To keep shareware prices low, users must do the right thing: Register, pay up, and smile/grin at yourself in the mirror. Do not distribute your crack release based on this tutorial, because you become a LAMER(s)! ( tHATDUDE (PC97) defined LAMER(s) is the guy who sits in front of personal computer, using Hex Editor, ripping off other group(s) crack release, repacking (distro) them under his name. Adopted from newsgroup alt.cracks, alt.crackers - February 1997 ) _ Never attribute to malice that which is adequately explained by stupidity _ ASTAGA [D4C/C4A] XGVWDHLKIISV [EOF] I really hope you've enjoyed this tutorial as much as I did! Don't miss Tutor #85 soon! ;) Credits goto: bM[tfgx] for Splash Logo. ASTAGA for providing 5 tuts in this version. To ALL the crackers: You are welcome to send me your tutors to publish them .. see below for my email address! *** 95 chars per line in textfile please! *** And all the tutors can be found at: http://www.crackersinaction.org (or on IRC, ask CiA ops for urls!) Greetz goto all my friends! You can find me on IRC or email me at tkc@reaper.org Coded by The Keyboard Caper - tKC The Founder of PhRoZeN CReW/Crackers in Action 2000 Compiled with Delphi 5 on 5 June 2000 Cracking Tutorial #84 is dedicated to Sonia...